Bonum Certa Men Certa

Like Teaching Children to 'Smoke' Safely to Reduce Risk of Cancer

No smoking



Summary: "National Cyber Security Awareness Month" is being exploited by a programme that receives the support of Howard Schmidt from Microsoft (now Cyber Security Czar); In it, children aged 11-14 would be taught cyber 'security' rather than insecure parts of the systems simply removed

"The estimated cost of unsolicited emails to businesses in 2007 was $100 billion," wrote lnxwalt earlier today, pointing to this page. The overall cost of Windows botnets that dispatch spam and cause other harm may be measurable on the scale of trillions.



Microsoft is currently alerting customers that ASP.NET is a security problem. We covered this in earlier stages of the problem [1, 2]. It affects a lot of Windows-powered Web sites and last night there was a discussion in IRC about the serious Twitter flaw and whether it affects just Internet Explorer, Windows, and Office users. One newly-published article says:

[T]he worms of yore were so devastating because they could exploit a global monoculture: Microsoft Internet Explorer or Microsoft Word running on Microsoft Windows just about everywhere. This made it far simpler to exploit weaknesses in distant PCs, because the actual architecture was known with a high degree of probability.

With the mouseover mess, we were saved by the wonderfully diverse ecosystem of Twitter clients operating through the Twitter API. This meant that assumptions that were correct for code running on the twitter.com site were not valid elsewhere.

This hammers home once more the importance of avoiding monocultures, and encouraging rich and diverse ecosystems (multicultures?) One of the easiest ways of doing that is to adopt free software alternatives to all the Microsoft warhorses. The open source world being what it is, it is far more varied, not least in terms of versions and applications (critics might even call it fragmented). That makes mass attacks hard, and therefore unlikely, since ne-er-do-wells don't even bother trying when they can just code for Windows.

Open source is certainly not immune to attacks - for example, I fell victim to the mouseover exploit despite using a completely free software stack (thanks, Twitter.com) - but it reduces the risk overall. That means if you are not using it for business, you are increasing that risk - which would be a pretty irresponsible thing to do, no?


On the client side, having Windows cannot help.

Microsoft's former employee Howard Schmidt of now the Cyber Security Czar in the United State (after a recent appointment which we mentioned in [1, 2, 3, 4, 5, 6, 7]) and rather than calling out Windows and making platform recommendations, he does the usual thing by endorsing/giving people unnecessary 'education' about Windows et al. He can't take Windows off schools' agenda where Gates (his former boss) is increasingly taking control, can he? Some PR puppets sent us the following E-mails a short while ago, helping to show how Schmidt and his subordinates try to tackle this problem. Below we put the message, without appending an accompanying press release that we omit.

A free program that brings top cyber security experts into schools to teach kids how to avoid online dangers has received the support of White House Cyber Security Coordinator Howard Schmidt.

The (ISC)2 Safe and Secure Online Program, administered by the world’s largest body of information security professionals, brings experts into schools to teach children ages 11-14 how to protect themselves in a cyber-connected world. Issues addressed include cyber bullying, social networking, online predators, identity theft, online reputation, and more.

Launched in the U.S. in the fall of last year, the program has reached more than 30,000 kids. Just in time for National Cyber Security Awareness Month, the U.S. program now has more than 1,000 cyber expert volunteers signed on to conduct presentations this fall.

Please see full details below. If you would like to know if any schools presentations are taking place near you, or if you would like additional information on the program, please contact me. Thank you.

Juliette Mutzke Maples Communications, Inc.


Schools should not be used to indoctrinate children with presentations on how to use Microsoft software and other products securely (it is often not possible). It is neither effective nor a decent use of school time/budget.

“[W]hen nobody is using Windows, there will be no botnets”

--Professor Eben Moglen, 2010



Comments

Recent Techrights' Posts

Politicians Ought to Invite Dr. Richard Stallman and Prof. Eben Moglen to Speak About Policies, Licensing, Digital Sovereignty
Is there something in Europe other than RMS' talk this coming Monday (that we're not yet aware of)?
Good Explanation of Why IBM Has Chosen to Conceal Mass Layoffs (of 'Expensive' Staff) as "R.T.O." (Even For People Who Never Worked at the Office to Which They're Ordered to "Return")
Many remaining IBM (or Red Hat) workers in Europe are in "cheaper" places such as Brno
Microsoft's Serial Strangler and Matthew J. Garrett Join Forces in Trying to Gag Techrights (for Exposing Microsoft Corruption and Crimes Against Women)
Whose terrible idea was it?
 
Links 23/02/2025: Apple Back Doors, Ukraine Updates, and Gemini Leftovers
Links for the day
Recent Improvements in Techrights
minimalism works fine when the main goal is to relay information
Slopwatch: Brian Fagioli, Brittany Day (linuxsecurity.com), and Microsoft Misinformation, False Marketing
Serial Sloppers
Censored: Debian Zizian transgender vigilante comparisons in open source Linux communities
Reprinted with permission from Daniel Pocock
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Saturday, February 22, 2025
IRC logs for Saturday, February 22, 2025
Links 22/02/2025: OpenAI Plans to Possibly Abandon Microsoft, Facebook Doubles Execs' Bonuses While Sacking Thousands
Links for the day
Gemini Links 22/02/2025: Weekend Chill and Programming Thoughts
Links for the day
Links 22/02/2025: Labour Department Investigates Microsoft Infosys Amid Mass Layoffs, Large Law Firms Caught Red Handed With LLM Slop (Defrauding Clients and Courts)
Links for the day
Gemini Links 22/02/2025: Analog Stuff, Sigil, and SSGs
Links for the day
Microsoft's Market Share in Cameroon Falls to New Lows
This means a lot of Android users (iOS is about 4 times smaller), but Android does not mean freedom
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, February 21, 2025
IRC logs for Friday, February 21, 2025
The Streisand Effect is Real
So don't be evil. Also, don't strangle women.
Links 21/02/2025: Linux Foundation Openwashing, Microsoft Copilot Goes Down
Links for the day
Links 21/02/2025: Doomscrolling and European Ham Radio Show
Links for the day
Free University of Bozen-Bolzano Proud to Host Free Software Talk by Richard Stallman
ahead of Monday's talk
Slopwatch: Anti-Linux Machine-Generated FUD (LLM Slop) From GBHackers, CybersecurityNews, and Guardian Digital, Inc (Google News Promotes Slop Plagiarism, Misinformation)
Companies that lie try to drown out the signal with falsehoods
Links 21/02/2025: TikTok Layoffs, WebOS Software Patents in Bad Hands
Links for the day
Gemini Links 21/02/2025: Web Browsers, Mechanical Shortcuts, and Internet Hygiene
Links for the day
Richard Stallman 'Only' Founded the FSF
there's no reason to be upset at the FSF for keeping their founder in the Board
Techrights Disconnected From the United States Two Years Ago
Did people really need to wait for the US government to become this hostile towards the media before recognising the threat?
Before Trying Censorship by Extortion the Serial Strangler From Microsoft Literally Begged Us to Delete Pages
This is very clearly just a broad campaign of intimidation
Hype Watch: Weeks After Microsoft Disappointed Investors With "Hey Hi" It's Trying Some "Quantum" Hype (Adding Impractical Vapourware to Accompany This Hype and Even LLM Slop in 'News' Clothing)
Remember "metaverse"? What happened to media hype about "blockchain" and "IoT"?
Report About February Mass Layoffs at Microsoft (Third Wave of Microsoft Layoffs in 2025) Comes Back From the Dead
Yesterday we wrote about an article in CRN (reporting Microsoft layoffs) being removed without any reasons specified
Links 21/02/2025: Myanmar Scam Centre and Disruptions at USPTO
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, February 20, 2025
IRC logs for Thursday, February 20, 2025