Bonum Certa Men Certa

Security Propaganda From Microsoft: Villains Become Heroes

Robin Hood



Summary: A survey of security news and an analysis of Microsoft spin, namely how the company diverts attention away from its failures and portrays itself as a security leader

YESTERDAY we caught up with 3 weeks of Microsoft (in)security news, adding to our record more evidence to show what we had argued earlier this month. While the former Microsoft executives who now run Juniper Networks help protect Windows from those many vulnerabilities (some of which are hidden), there is no denying of the fact that Windows vulnerabilities are on the rise [1, 2]. To highlight bits from the news, vulnerabilities multiply fast and they are found by the dozens:

VUPEN Security Discovers Critical Vulnerabilities in Microsoft Software



VUPEN Security, the world leader in vulnerability research and analysis, today announced that the VUPEN Vulnerability Research Team (VRT) has been working with Microsoft for six months to address twenty-one vulnerabilities discovered by VUPEN in major Microsoft software.


Also in the news:

Windows full of holes, ready for Microsoft patch

In case you were wondering, the previous record was 34 in late 2009, which makes the number 49 seem even bigger. You have to wonder if we are getting better or worse about this security thing.


Microsoft Issues Biggest Fix Ever For Windows, Explorer, Office

Microsoft releases security patches for Windows, IE, Office

Microsoft will roll out a whopper load of patches

Microsoft Preps Record Security Patch Tuesday

Microsoft Patch Tuesday expected to set record

Microsoft's Biggest Patch Tuesday Ever -- Better Update Your System, or Else

Microsoft sets Patch Tuesday record, fixing 49 security holes

Microsoft issues patches for a record 49 security holes

Patch Tuesday brings record harvest of security fixes

As that last one puts it: "Many of these holes allow a remote takeover of your computer, in some cases after you do nothing wrong beside visit the wrong Web page. One such opening has frequently been exploited by the Stuxnet worm that's been running around the world."

Microsoft has only just done something about Stuxnet, which we wrote about in:

  1. Ralph Langner Says Windows Malware Possibly Designed to Derail Iran's Nuclear Programme
  2. Windows Viruses Can be Politically Motivated Sometimes
  3. Who Needs Windows Back Doors When It's So Insecure?
  4. Windows Insecurity Becomes a Political Issue
  5. Windows, Stuxnet, and Public Stoning
  6. 1
  7. Has BP Already Abandoned Windows?
  8. Reports: Apple to Charge for (Security) Updates
  9. Windows Viruses Can be Politically Motivated Sometimes
  10. New Flaw in Windows Facilitates More DDOS Attacks
  11. Siemens is Bad for Industry, Partly Due to Microsoft
  12. 4
  13. Microsoft's Negligence in Patching (Worst Amongst All Companies) to Blame for Stuxnet
  14. Microsoft Software: a Darwin Test for Incompetence
  15. Bad September for Microsoft Security, Symantec Buyout Rumours
  16. Microsoft Claims Credit for Failing in Security
  17. Many Windows Servers Being Abandoned; Minnesota Goes the Opposite Direction by Giving Microsoft Its Data
  18. Windows Users Still Under Attack From Stuxnet, Halo, and Zeus


Now, any sane person would say that Microsoft and almost nobody else is to blame for these vulnerabilities and should therefore be held accountable. But not when Microsoft's spin machine occupies the news, though. Take the Bill Gates-funded Guardian [1, 2, 3, 4] for example. It serves as Microsoft's platform right now by publishing "Microsoft Removed 6.5 Million Bots From Windows Machines In Q2" and it's the same propaganda the MSBBC published some days ago, having previously (just a week beforehand) given Microsoft's Charney the platform yet again. It's rather astonishing that journalists are able to portray Microsoft as the "good guy" in this story by merely reciting reports from Microsoft. It's an example of the failure of today's journalism and it's hard to tell just how much impact the former Microsoft UK executives who run the BBC or Bill Gates' sponsorship of The Guardian have here. A few hours ago our reader told us that "Bill Gates on BBC breakfast news later." Later this week we'll write about that too.

“It's rather astonishing that journalists are able to portray Microsoft as the "good guy" in this story by merely reciting reports from Microsoft.”Anyway, here is a rant about what Microsoft is trying to do here and here are a few more examples of the Microsoft spin [1, 2, 3]. So fake news is good news? It should not be the case. Either way, it's clear that they portray Microsoft as the saviour, not the culprit, even though the problem itself was caused by Microsoft's continued negligence [1, 2, 3]. Earlier this morning we gave an example of similar spin. Here is the same propaganda with a "Zeus" flavour [1, 2]. The latter says that "Zeus-created botnets, known as Zbots, control many millions of computers -- mostly Windows XP machines --- in almost 200 countries." Okay, so why give Microsoft any credit? That's just mastery of spin. We wrote about Zeus in posts such as [1, 2, 3, 4, 5, 6, 7].

Watch out for the spin, some of which originates in the 'Microsoft press' (e.g. Kurt Mackie). As usual, Microsoft will just blame the users, even though zero-day flaws mean that any Windows computer can be hijacked even if it's fully patched. As for those who patch early, they take other types of risks and this bit of news is why people are reluctant to patch:

On Tuesday, Microsoft released updates for both Microsoft Office 2004 and 2008 to correct some security vulnerabilities in the software, but a number of people are having difficulties opening some Excel spreadsheets in Office 2004 after the update.

As mentioned by CNET member and MacFixIt reader Kurt in the comments of our article announcing the update:
"After applying the update yesterday, some Excel documents refuse to open. For a fraction of a second the open progress bar shows up, then nothing happens."
This problem has been echoed by numerous other Office users here at CNET as well as at the Office for Mac forums, and Microsoft's Mac team is currently investigating the issue.


Yes, that's why many people won't patch, either. Even those whose machine is not fully patched can sometimes blame Microsoft's poor quality of patches.

Comments

Recent Techrights' Posts

Within Weeks, Clownflare Has Collapsed Again, Time to Dump Clownflare
It's run by amateurs who, even if you maintain your site perfectly well, will render it inaccessible without prior notice
Web Developers in the US Can Already Disregard Mozilla, Firefox, and Firefox Users
"Last month, Firefox turned 21"
 
Does This Pass the NDA "Sniff Test" at IBM?
In many companies, those who suck up to management get ahead
Links 05/12/2025: Slop Harming Democracy/Elections, More Bans Around the World on Kids' Use of Social Control Media
Links for the day
IBM Has No Layoffs, According to IBM, and According to the Media Parroting IBM
Another day of parrots (losers) who call themselves "journalists"
IBM Will Make You Unemployed On Christmas Eve
lists of people to cull
Cars Getting Worse and More Lethal
Who will be held accountable?
To "Take Back Control" Start With Actions Against 'Tech' (Mass Surveillance, Mass Censorship, Mass Control) Monopolies
collusion, price-fixing, a "cartel" of sorts
Beyond the Hype: Almost Nobody Uses Chatbots, Not Even 1% of Activity Online
3 years ago when Scam Altman (Microsoft) acted as if Google (search) was doomed a lot of the press got paid to pretend this was true
Rumour That Another IBM Round of Mass Layoffs (RAs) in Preparation Before the Current One is Even Completed
IBM still has strong brand recognition (because of its age and past might), but that won't last forever
Techrights Publication Pace to Increase Next Year
one is encouraged to stay indoors
Upgrading the Site
Debugging might be needed, so feedback helps
Why Microsoft is Panicking
Keep advocating (or "marketing") GNU/Linux to Vista 10 (or Vista 7) users... there are still over a billion of them "out there".
The Fate of "Blockchains" and "Metaverse" as a Sign of Things to Come for Slop ("AI")
Doesn't that tell us a lot about the modus operandi of these companies?
A Year After the Owner of X (Twitter) Performed Several Nazi Salutes on Stage the Germany-Based and Microsoft-Funded 'FSFE' Decides to Exit X (Twitter)
Will the real Free Software Foundation (FSF) follow suit?
EPO: What Comes Next
European media seems to have been sedated by soft bribes from cocaine addicts
Slopwatch: The Volume of Slop Has Certainly Gone Down a Lot Lately, Slop Image Providers Abandoned/Changed
It's a big improvement compared to past months
Thousands Laid Off at IBM, "Last Day" Yesterday
IBM is a dying company. This is a problem for Red Hat.
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, December 04, 2025
IRC logs for Thursday, December 04, 2025
Gemini Links 05/12/2025: Espressif ESP32-C5 UEXT Module, Pixelfed, and the Web Getting Much Worse
Links for the day
Links 04/12/2025: "People Hooked on [Slop] Far Are More Likely to Experience Mental Distress", Monopolies in Europe, and "Blogging Makes Me Feel Like A Worse Writer"
Links for the day
Dr. Andy Farnell: Can we regain control (of technology)?
"Technology as spiralling mass hysteria has the unsettling potential to draw even rational sceptics like myself into disaffection"
Links 04/12/2025: "Hey Hi" Implosion and Half of Europeans See Cheeto Trump as Enemy of Europe
Links for the day
Communication Needs Open Standards and Open Data
Standards are imperative
The "Hey Hi" House of Cards
The "Hey Hi" bubble is living on borrowed time (days or weeks) and it can implode any time now
Supporting the Free Software Foundation (FSF) Also Supports GNU Development
The FSF is mostly raising money to pay salaries
IBM's "AK Sez" Campaign
In today's media, to be characterised as important and smart one needn't be important and smart
Microsoft's Vista 11 Not Gaining, Just Plateauing or Even Going Down (Over Time)
"Desktop Windows version Market Share Worldwide"
Bubbles Popping, "Hey Hi" (AI) a Passing Fad
"Microsoft slides amid report it's cutting software sales quotas tied to AI"
At The Register MS, "Exclusive Webinar" Means Sponsored Video Ad Disguised as an Article
Why would one choose to watch these?
IBM Forces Staff to Sign an NDA If They Want Severance Package, in Effect Bribing Them or Denying Them Money They're Entitled to If They 'Disparage' IBM
We wrote about the legality or illegality of this in relation to Microsoft two years ago
IBM and Red Hat Not Done With 2025 Layoffs ("RAs") Yet
IBM isn't quite done laying off people this year, with only 3 weeks till Christmas
Gemini Links 04/12/2025: Christmas Looms, Devuan, and Programming
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, December 03, 2025
IRC logs for Wednesday, December 03, 2025
Loads of People Exit IBM Tomorrow
Way to slam the door on on those who march or walk on
Slopwatch: It's Blowing, Jim (Gym), the Bubble is Blowing Up
Let's race to "zero GPT"
At IBM, "Last Day" Can be Same as Layoffs ("RAs"), Might be Euphemism Advanced by PR/HR Under NDA-Tied Conditions
They try to act all happy cheerful (in public) about becoming unemployed
Links 03/12/2025: "Disastrous Hey Hi (AI)", Breaches of Confidentiality, and "Global Democratic Recession"
Links for the day
Fake Security and 'Free' Certificates as a Trap of Planned Obsolescence and Top-Down Centralisation
The boiling frogs
Links 03/12/2025: UK Budget Leak and Criticism of Peace Posturing Over Ukraine
Links for the day
So Far Rust in Ubuntu Has Turned Out to be an Expensive Mistake
it is certainly seeming or feeling like the wrong people are in charge and they make bad decisions based on false reasoning
Gemini Links 03/12/2025: Obsession, Ubuntu, and Programming With Scheme
Links for the day
The Next Stages of EPO Coverage (and Why That Matters)
What's at stake here?
Wayland Rejection Is Not Racist
We need to collectively reject that
Reflections on a Month of Techrights Search
it looks like we've survived nearly a month without the search functionality being leveraged to stage DDoS attacks
New Year's Resolutions 4 Weeks Ahead of 2026
the main New Year's Resolution was... sleep
IBM Layoffs: It's Like They Read From a Script, Like They've Signed a Non-Disparagement Agreement/Clause
Some new departures
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Tuesday, December 02, 2025
IRC logs for Tuesday, December 02, 2025