Eye on Security: Windows is Vulnerable, GNU/Linux is Not
- Dr. Roy Schestowitz
- 2010-06-11 21:17:22 UTC
- Modified: 2010-06-11 21:17:22 UTC
Summary: Today's examples of security weaknesses in Windows (which help justify Google's recent abandonment of Windows on the desktop)
●
Microsoft Security Vulnerability Disclosed (no
silent patches yet?)
Microsoft was left racing to patch a Windows Help and Support Center vulnerability after Tavis Ormandy, an information security researcher who's charged with keeping Google's products secure, Thursday publicly disclosed both the bug as well as proof-of-concept attack code.
Ormandy reportedly informed Microsoft of the vulnerability on Saturday, June 5, and Microsoft acknowledged receipt the same day. Five days later, however, Ormandy went public with a posting to the Full Disclosure mailing list. Later that day, Microsoft issued its own vulnerability announcement.
●
Bug gives attackers complete control of Windows PCs [
via]
A security researcher has warned of a vulnerability in older versions of the Windows operating system that allows attackers to take full control of a PC by luring its user to a booby-trapped website.
The flaw resides in the Windows Help and Support Center, a feature that provides users with online technical support. Malicious hackers can exploit the weakness of Windows by embedding commands in web addresses that activate the feature's remote assistance tool, which allows administrators to execute commands over the internet. The exploit works in XP and Server 2003 versions of Windows and possibly others.
●
Malware Squared
Use browsers and operating systems that are more secure. Get away from the monopoly OS that is the main target of attacks. Cut down your risk by a factor of 1000 or so by a single step, migrating to GNU/Linux. It makes sense.
Recent Techrights' Posts
- In Europe, More People Turn to Russia for Answers, Not Microsoft
- The future of computing doesn't look pretty
- SLAPP Censorship - Part 48 Out of 200: Brett Wilson LLP and 5RB Copy-Pasting Bogus Claims for Violent Americans (Microsoft) Who Tell Women to Kill Themselves
- Microsoft's Graveley telling his partner to kill herself is probably a crime
-
- ActBlue former IT boss disappearance: Decklin Foster & Debian, Harvard suicide lab, Chris Gleason is wife, whistleblower or both?
- Reprinted with permission from Daniel Pocock
- Gemini Links 17/04/2026: Getting competent in NixOS and Alhena 5.5.6 Released
- Links for the day
- Links 17/04/2026: "We Cannot Lose Sight of Ukraine" and "When Leaders Should Resign"
- Links for the day
- GizChina Appears to Have Become a Slopfarm, I.e. Fake News Site With Fake Text
- Don't waste a moment reading LLM slop, as at the very least it rewards plagiarism [...] Deemed to be slop also by two human beings, not just two scanners
- Massive, Cross-Site Strike at the EPO Today
- There's coordination across sites for maximal pressure
- Dr. Andy Farnell Says "AI" is "Only a Marketing Term" for Things That Exist for "Entertainment Purposes Only"
- distortion or misuse of the term (now buzzword/s) "AI"
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Thursday, April 16, 2026
- IRC logs for Thursday, April 16, 2026
- Strikes at the EPO Carry on, Staff Union of the European Patent Office (SUEPO) Increases Pressure Ahead of Technical and Operational Support Committee (TOSC) Meeting Next Week
- the local section The Hague (or SUEPO TH) wants to rally many staff members
- Gemini Links 16/04/2026: LLM Nuisance, Identity Systems (Surveillance), and Why Windows is Failing
- Links for the day
- 'Going Offline' is Not Primitivism
- Computers are good at automation, but people are not robots
- The Register MS Has Published Article With "AI" 18 Times in it, "Cloud" 9 Times. It Got Paid to Do This.
- What happened to journalism?
- The EFF Is Hardly Doing Anything Anymore
- Our series about the EFF has been brewing for over 2 years already
- Microsoft Uses Slop to Bribe (at No Cost) Nations That Otherwise Would Move to GNU/Linux and IBM is Forcing Red Hat Staff to Use Slop
- Life it too short to waste "consuming" slop
- Links 16/04/2026: Roblox Launching ‘Roblox Kids’ Accounts and "Deepfake Nudes Crisis in Schools"
- Links for the day
- Red Hat Staff: IBM Red Hat Laid Off About 400 Engineers, the Media Did Not Cover This
- The media is not doing its job or doing a really shoddy job
- Gemini Links 16/04/2026: Nocturnal Pulse, Unpersoned Outlaws, and Monaspace Lagrange Fontpacks
- Links for the day
- Richard Stallman Lecture in GDC Auditorium in Austin, Texas
- corporate power could not 'cancel' the man
- It's Not About the Head, It's About the Masters (and Funding)
- Regardless of who the OSI claims to be its leader, its masters are Microsoft, just follow the money
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Wednesday, April 15, 2026
- IRC logs for Wednesday, April 15, 2026
- Links 15/04/2026: Geelong Corio Refinery Fire, Journalist Sentenced for "Insulting the President"
- Links for the day
- Gemini Links 15/04/2026: Organiding .bashrc with Imports, Oddμ as SSG
- Links for the day
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Tuesday, April 14, 2026
- IRC logs for Tuesday, April 14, 2026