Eye on Security: Internet Still Threatened by Microsoft Windows
- Dr. Roy Schestowitz
- 2010-07-20 10:49:10 UTC
- Modified: 2010-07-20 10:49:10 UTC
Summary: New Windows Trojans, malware, and the likes of that
●
Can Windows kill the Internet?
I've long thought that someday Windows' security problems could foul up the Internet for everyone. That day may be arriving.
It's not just me being paranoid about Windows. It's the ISC (Internet Storm Center), the group that tracks the overall health of the Internet. They're wondering whether the newly discovered "LNK" exploit might be used to slam the brakes on the Internet's high-speed traffic.
According to Lenny Zeltser, an ISC security consultant, the ISC has
decided to raise the Infocon level to Yellow to increase awareness of the recent LNK vulnerability and to help preempt a major issue resulting from its exploitation. Although we have not observed the vulnerability exploited beyond the original targeted attacks, we believe wide-scale exploitation is only a matter of time. The proof-of-concept exploit is publicly available, and the issue is not easy to fix until Microsoft issues a patch. Furthermore, anti-virus tools' ability to detect generic versions of the exploit have not been very effective so far.
●
New Menace in the War Against Online Crime
Avoiding Web-borne infections is increasingly difficult, because many malicious sites are legitimate sites that have been hacked. But here are four steps to take to protect your computer:
1) Use the latest version of your favorite Web browser, because most have important anti-malware technologies not available in the older models. Consider using Google Chrome, which uses so-called sandboxing technology to stop drive-by downloads.
●
Microsoft initiates zero-day vulnerability probe
Microsoft is investigating reports of ongoing "targeted attacks" that reportedly exploit a serious Windows Shell vulnerability.
●
Zeus baddies unleash nasty new bank Trojan
Hackers have created a new version of the Zeus crimeware toolkit that's designed to swipe bank login details of Spanish, German, UK and US banks.
The malware payload, described by CA as Zeus version 3, is far more selective in the banks it targets. Previous versions targeted financial institutions around the world while the latest variant comes in two flavours: one that only target banks in Spain and Germany, and a second that only targets financial institutions in the UK and US.
●
MS Patch Tuesday: Googler zero-day fixed in 33 days
●
You Have to Wait a Month for Reinforcements
Folks who have migrated to GNU/Linux may have to work hard to make the transition but they can relax a lot afterwards. That other OS and its apps will be around for years drawing attention from malware and GNU/Linux will just keep growing staying small and modular with lots of immunity built in. The cost of fighting malware is almost entirely born by users of that other OS and GNU/Linux gets a free ride. I like that. The cost of monopoly is compounding itself and the price of Freedom declines.
Recent Techrights' Posts
- Distinguished Lecture by Richard Stallman This Coming Monday in Rome
- After "Free software, Crucial for Freedom in a Digital World"
- The Lawsuit by Clients of Brett Wilson LLP Against Brett Wilson LLP is Officially On, It is Progressing, The 'Experts' Pick Outside Law Firms (RPC and Mills & Reeve) to Spare Them From Litigants in Person
- So it is probably quite potent
- The 'Culture Wars' in Free Software Have Gone Out of Control
- Social control media amplifies such utterly infantile discourse
- Teaser: To Compensate for the Fact Our Clients Are Terrible Human Beings Who Strangle Women (While on Microsoft's Payroll) and We Get Paid by Mystery Parties We Bombard You and Your Wife With Almost 10 Kilograms of Legal Papers
- If you can't win an argument, then drown the other side with papers?
- Now Confirmed in Western Media: Microsoft Azure Layoffs This Month
- Affirmed by more sources moments ago
- 10 Out of 10: RMS Attracts Massive Audience in Göteborg, Sweden (All Seats Occupied, Some People Standing)
- a 55-second clip of his talk
- Slopwatch: Plagiarism and "Linux" Articles by Bots
- Sites that do this won't survive; many of them rely on slop services (suppliers) that will cease to exist after the bubble bursts
-
- The Demise of Shopping in Person
- In a world like this, how valued is the customer?
- We Are Safe in a Modern "Tech" Society, Right?
- People are safer if they control their own computing
- This Past Friday, "Nearly 700 People Came to Listen to RMS!" (Richard Stallman)
- "Nearly 700 people came to listen to RMS!"
- Slopwatch: UbuntuPIT Churning Out Plagiarism and the Slopfarm LinuxSecurity Turns to Pseudonyms
- Our hunch is, UbuntuPIT will sooner or later realise that this toxic approach is just harming UbuntuPIT and tainting the reputation of past articles
- Gemini Links 11/10/2025: Nyctography, Gerrymandering, and Lurking
- Links for the day
- Links 11/10/2025: World Mental Health Day 2025, Another European Legal Defeat for Microsoft 360
- Links for the day
- MIT Technology Review is Part-Time SPAMfarm of Billionaires and Mega-Corporations
- Does MIT operate its own "b2b" SPAMfarm?
- Open Source Initiative Executive Director Leaves, Replacement Sought by Monopolists, Not the Community or OSI Members
- Serves to show who runs this show...
- Links 11/10/2025: China-US Tensions Grow Again, "Hey Hi" More Widely Recognised as Bubble Made of Capital That Doesn't Exist
- Links for the day
- Peter O'Callaghan QC represented grandparents, Westernport Hotel, at Liquor Royal Commission
- Reprinted with permission from Daniel Pocock
- Either The Register MS Divests From FOSS Coverage or Liam Proven is on Long Holiday
- Publishers perish when their audience loses trust in them
- Microsoft Cancelling Another Datacentre is a Sign of Financial Trouble and Lack of Growth
- The debt continues to grow
- Gemini Links 11/10/2025: An Evening at the Fair and Fast Fourier Friday
- Links for the day
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Friday, October 10, 2025
- IRC logs for Friday, October 10, 2025
- Geminispace is Very Large
- The word continues to spread and the number of participants grows
- Another Wave of Microsoft Layoffs, This Time During National Day Holiday
- This time it's China again
- Staying Happy in Times of Crackdowns on Civil Society
- Optimism in this sort of "new reality" or "new normal" seems like something for the irrational person
- "Nobel" Exploited Posthumously for "AI" Hype, Now They Do the Same With "Quantum"
- ere have been many jokes about "Nobel" for peace (often granted to pro-war people) and a fake one for "Economics" (establishment propaganda)
- Links 10/10/2025: Putin Admits Russia Downed Azerbaijan Airlines Jet, More New Heat Records
- Links for the day
- Noteworthy Claim That IBM is Firing a Lot of Lawyers This Week (RAs in the Legal Department)
- A lot of what they do is patent 'trolling' or lawyering up against their own staff (e.g. HR disputes)
- Links 10/10/2025: US Judge Bars Attacks by ICE On Journalists and Protesters; “We Took The Freedom of Speech Away” Says the President
- Links for the day
- Slopwatch: Serial Sloppers, Google News Gifting Slopfarms, and Fake News/Plagiarism About "Linux"
- Google itself is a slop pusher these days
- Qualcomm, the New Owner of Arduino, Blasted for Its Software Patents Tax on 'Smartphones'
- A lot of Qualcomm's patents are on software. We wrote about this in prior years.
- XBox Layoffs Rumours, Downtime, and Criticism From XBox Co-Founder
- "everyone is ditching the xbox."
- Links 10/10/2025: Honoring The Legacy Of Robert Murray-Smith, Many Articles on the Hey Hi (AI) Bubble
- Links for the day
- Gemini Links 09/10/2025: October Gothic and Reading Middle Earth Role Playing; C and Ada
- Links for the day
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Thursday, October 09, 2025
- IRC logs for Thursday, October 09, 2025
- Links 09/10/2025: Farewell to Jane Goodall, California Bans Algorithmic Price-Fixing
- Links for the day
- Gemini Links 09/10/2025: Lost Wages and a Saga Of Continuing To Use Palm PDAs
- Links for the day
- Richard Stallman's Talk in Helsinki is Done. Tomorrow Göteborg.
- There are scarce details in Finnish about Dr. Stallman's talk
- New XBox Leaks Probably Serve to Confirm XBox's Collapse (Many More Layoffs)
- It's very much consistent with what many other sites have reported lately
- The Slop Song
- The train wreck marches on
- LLM Slop/Advanced Plagiarism Flooding the Zone With Capital That Does Not Exist
- Many publishers out there still participate in this bubble instead of calling it what it is
- Links 09/10/2025: Sacked Microsoft Workers Make "Sackbird", IBM Taps CockroachDB for PostgreSQL
- Links for the day
- "Happy Hacking Day" Richard Stallman Talk This Afternoon (From 14:00 to 16:00) at Haaga-Helia University in Pasila
- Richard Stallman in Helsinki, Finland
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Wednesday, October 08, 2025
- IRC logs for Wednesday, October 08, 2025
- Links 09/10/2025: Impact of Microsoft Layoffs, More Data Breaches
- Links for the day
- Gemini Links 09/10/2025: Autumn Blues and C IRC Bot
- Links for the day