Eye on Microsoft: Emergency, Botnets, and No Remedy
- Dr. Roy Schestowitz
- 2009-07-26 08:50:30 UTC
- Modified: 2009-07-26 08:50:30 UTC
Summary: Self-explanatory news about Microsoft and security
●
Microsoft to issue emergency patches next week
Microsoft plans to issue two emergency patches next week that fix vulnerabilities in the Internet Explorer browser and Visual Studio developer suite that allow attackers to remotely execute malware.
●
Software Crackdown
Cyber attacks seem to be getting more sophisticated by the hour. A few weeks ago malware known as Zero Day was found to have exploited a vulnerability in Microsoft's Windows operating system that could allow online criminals to take control of a computer from anywhere in the world without being detected. The operation involved what is known as "drive by" attacks, in which visitors to legitimate Web sites are redirected to a page that secretly downloads the malicious software.
●
Microsoft admits it can't stop Office file format hacks
Microsoft's plan to "sandbox" Office documents in the next version of its application suite is an admission that the company can't keep hackers from exploiting file format bugs, a security analyst said today.
Recent Techrights' Posts
- Slopwatch: Fake Articles About "Linux", Slop Images in VentureBeat, Linux Foundation Spam Made With LLM Slop and Slop Images
- The only relief or upside - if any exists - is that the pace of slop was down a bit this week
- Richard Stallman (RMS) Talk in Ethereum Cypherpunk Congress Will be Remote
- This past week RMS received lots of accolades online
- Links 28/08/2025: Chatbots Distorting/Fabricating History and Also Driving Suicide
- Links for the day
-
- Downlplaying the Impact of "UEFI 9/11" is a Losing Strategy
- we won't publish much whilst on holiday
- In Many Places in the World Vista 11 "Market Share" is Going Down, Not Up
- In some countries Windows is already down to third place or lower
- More Microsoft-Connected Layoffs, at Least Third Time This Month! (Also Another Death on Campus)
- Microsoft as a "gaming" company is where studios, projects, games, and even developers come to die
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Thursday, August 28, 2025
- IRC logs for Thursday, August 28, 2025
- Gemini Links 29/08/2025: Poems, Games, and Java 25 Performance
- Links for the day
- Links 28/08/2025: Greenland 'Interferences' by US and Skinnerboxes to Get Banned in Korean Schools
- Links for the day
- The Register MS (Run by Microsoft Operatives): Free Software is Putin, Hence Evil and Dangerous
- The current editor in chief is an American Microsofter, the previous one went to work for Google (US)
- Gemini Links 28/08/2025: Back in Japan and Why "Hacker News" Sucks
- Links for the day
- A Much-Needed Wake-up Call to Users of Wordpress.com, Blogspot, Substack and All Those Other Outsourced (and Centralised) Platforms
- There are several lessons in there
- The UEFI 9/11 - Part II - Campaign of Censorship and Defamation Against Critics
- In dictatorships, humour serves an important role. It's tragic.
- Open Source Initiative (OSI) Resists Software Freedom, Even by Attacking Its Own
- The OSI is compromised
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Wednesday, August 27, 2025
- IRC logs for Wednesday, August 27, 2025
- Slopwatch: linuxsecurity.com, Slopfarms in Google News, and More
- Some readers of ours end up sending us links that are from slopfarms, not realising those are slopfarms
- Gemini Links 27/08/2025: Katrina Memories and Google Versus Software Freedom
- Links for the day
- Links 27/08/2025: Police Against Media Freedom in the UK, Energy-Hungry Countries Targeted by China
- Links for the day
- Microsoft Windows Fell to All-Time Lows in Egypt This Summer, Vista 11 Adoption Decreases While GNU/Linux Increases
- Vista 11 is going down rather than up
- Links 27/08/2025: Microsoft Demoralises Staff With Slop Demands, Leaving Mastodon Explained
- Links for the day
- 12 Hours Ago The Register MS Published a Fake (Paid-for) Article, But This One for a Change Did Not Promote a Ponzi Scheme
- There are also Free software alternatives, but they don't pay The Register MS for "synthetic" so-called 'journalism'
- More People Need to Call Out and Put a Stop to Serial Sloppers
- Unless slopfarms are stopped, people will read and share Microsoft propaganda made by chatbots
- Gemini Links 27/08/2025: Headphones and Tartarus
- Links for the day
- Morale at Microsoft is Terrible (Proprietary Plagiarism Machines Have No Future, LLM Slop is a Bubble)
- The slop sceptics/critics are going to have lots of "told you so" moments
- GNOME "governance issues, staff reduction, etc." amidst Albanian whistleblowing and women trafficking
- Notice the connection to Software Freedom Conservancy (SFC) and GNOME
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Tuesday, August 26, 2025
- IRC logs for Tuesday, August 26, 2025
Comments
David Gerard
2009-07-26 19:01:17
Roy Schestowitz
2009-07-26 19:28:25
Forget about malicious programs. When we have binary formats we also deal with malicious file formats and files that become malicious when merely interpreted, not executed.
David Gerard
2009-07-26 20:33:59
(a) in the '90s, Microsoft made a lot of their file formats dumps of C structs, for performance reasons;
(b) when this became incredibly hazardous with the Internet, and computers were powerful enough to check for malicious input ... they just kept on using the old code.
Then their master stroke of putting a complete programming language inside Office, thus inventing the macro virus.
Then their other master stroke of programs that execute any random instructions they happen to find in EMAIL MESSAGES.
INNOVATION!