Bonum Certa Men Certa

Security Crisis in Windows Provides Excuse for Microsoft to Take More Control of Windows

Watching over people



Summary: The latest inexcusable security problems in Windows (affecting software as old as one decade) and how Microsoft pushes additional control mechanisms (restrictions) via Windows Update

"Unpatched IE bug exploited in targeted attacks," reports The Register and what's truly mystifying is that Microsoft refuses to end support of old Web browser versions, whose lifetime is partly caused by Microsoft's misuse of web standards:



Unknown attackers have been targeting a previously unknown vulnerability in Internet Explorer to take control of machines running the Microsoft browser, security watchers warned on Wednesday.

The exploits were hosted on a page of an unidentified website that had been breached without the owner's knowledge, according to antivirus provider Symantec, which discovered the attacks a few days ago. The perpetrators then sent emails that lured a select group of people in targeted organizations to the booby-trapped page, causing those who used IE versions 6 and 7 to be infected with a backdoor trojan.


This causes expensive havoc that everyone must pay for (not just Internet Explorer users because costs are collectively covered). SJVN has valid reasons to complain:

God help us: Internet Explorer 6 Lives On



Please, please, just let Internet Explorer 6 die. It was an awful browser even in its day, 2001. The only reason it became popular was that Microsoft got away with illegally beating Netscape into the ground. Unfortunately, many corporate developers created crude, IE 6-specific Web applications that we’re stuck with to this very day. And, now thanks to Browsium’s UniBrows, we may be stuck with for many more years to come.

UniBrows will let users run IE6 within IE8. Yes, that’s right; people will be able to keep running IE 6 for years to come.


All these security problems may also allow Microsoft to sell the 'medicine' and take even more control over people's PCs (e.g. flagging which applications are "good" and "bad" and sometimes flagging controversial ones as "bad" too, as is currently the case with an application that demonstrates wireless-imposed vulnerability in large sites). In order to push this control mechanism into Windows even more rapidly Microsoft may be exploiting anti-competitive advantage, based on this new article that says "Microsoft Security Essentials now offered via Windows Update":

We're big fans of Microsoft Security Essentials -- it's lightweight, free, and offers malware protection that's every bit as good as (if not better than) more recognized names like Norton and McAfee (quit giggling, DS regulars...). Today, Microsoft has begun offering Security Essentials as an optional install via Windows Update.


Based on the comments, this is not entirely new. It does not make it any more justified, though. Just as a bogus threat (alarmist calls) of "cyberwar" is used by authorities to gain power and take more control over the Internet, Microsoft may be using security problems in its own software to take greater (and remote) control over it. It's already similar with Apple, but its customers are more willing to accept servitude, with hardly even resistance or protest.

For computing one controls, Free software is an essential ingredient. Transparency breeds trust.

Recent Techrights' Posts

Microsoft Staff Explains How Microsoft Swindled Employees and Avoided Paying Out Severance Pay (Microsoft Hasn't Much Money Left in the Bank)
This is a classic way to avoid paying workers
 
Gemini Links 01/02/2025: LLMs, Analog Computer, and BorgBackup
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, January 31, 2025
IRC logs for Friday, January 31, 2025
Links 31/01/2025: Mass Layoffs at Amazon and Microsoft, Sweden Again Fails to Protect Critics of Violence
Links for the day
Slopwatch: Fake Articles About "Linux" and More (Latest Roundup Featuring BetaNews, Janus Atienza, and Brittany Day From Guardian Digital, Inc)
LLM slop season
"Not one of us" by Dr. Andy Farnell
Elon Musk has brought embarrassment to nerds and technologists
Gemini Links 31/01/2025: "Bulletin Buble" and "Why Blog?"
Links for the day
Static Site Generators (SSGs) Pay Off: Vastly Faster Sites, Much Smaller Hosting Bills
success story for SSGs
Of Note: Linux Foundation Has Already Let Linux.com Rot for About 4 Months (No Activity)
there's no campaign aside from marketing spam there
Techrights Should be Even Faster Now
We're now better off
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, January 30, 2025
IRC logs for Thursday, January 30, 2025
Richard Stallman (RMS) Gave 3 Talks in India in Less Than a Week
In India this month we've not seen a single negative comment about RMS
Indian Data Biases statCounter For or Against "Linux"
In statCounter, the GNU/Linux increases and decreases are deeply tied to what it does with data collected in India
The Corporate Media Pretends That Facebook ("Meta") Has Performed Well, But Its Debt Doubles Every 2 Years Despite Mass Layoffs
That same media also helps parrot misleading financial claims
Microsoft's Debt Surged by More Than 6,000,000,000 Dollars in Just 3 Months
numbers released hours ago
The Sheer Irony of Microsoft Proxy Accusing Others of 'Stealing'
Wherever DeepSick's data came from, Microsoft (or its proxy) is in no position to issue criticism.
The Difference a Decade (and GAFAM Money) Makes
Credibility cannot be purchased
[Meme] The Free Software Foundation (FSF) Has Critics Because Its Message is Effective
Applying to others the same standards one is willing to violate?
The Free Software Foundation (FSF) Raised $422,000 (Another $22k in the Two Weeks After Campaign Ended), Proving That Truth and Justice Tend to Find a Way
10,000+ dollars a week even without campaigning for more funds
Faking Revenue Increase by Buying Your Own Products and Services (Through Scams and Scammers Like Scam Altman)
Is this what society deserves? Media that instead of exposing corruption has chosen to participate in it and profit from it?
Microsoft Mass Layoffs Without Severance Pay Reported Hours After Microsoft Reported Weak Numbers and Microsoft Stock Fell
Microsoft has a bloodbath this month
Links 30/01/2025: Fentanylware (TikTok) Causes Deaths, FBI Seizes Domains
Links for the day
Gemini Links 30/01/2025: Action vs Inaction, Gopherholes, and More
Links for the day
Another Slew of Fake Articles About 'Linux' and 'Security' From Brittany Day at linuxsecurity.com (Spamfarm/Slopfarm)
linuxsecurity.com is basically a pariah and parasite. It lessens the incentive to write real articles about "Linux" by generating fake ones to outrank the originals.
Links 30/01/2025: Microsoft Wants Convicted Felon to Give Fentanylware (TikTok) to It (After Making a Phonecall Asking for That in 2019), "Moving Away From Google's Ecosystem"
Links for the day
Jack M. Germain (LinuxInsider) Seems to Have Turned to LLM Slop, Graphics Slop, and B2B SPAM
LinuxInsider is barely active anymore
Links 30/01/2025: Amazon Layoffs and DeepSeek Panic
Links for the day
Gemini Links 30/01/2025: Chaos Reigns, E-mail, Searching
Links for the day
IBM: Many Thousands of Layoffs in 2025
If 2025 is expected to be the same, then perhaps about 20,000 IBM workers will no longer be there
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, January 29, 2025
IRC logs for Wednesday, January 29, 2025