Bonum Certa Men Certa

Security Crisis in Windows Provides Excuse for Microsoft to Take More Control of Windows

Watching over people



Summary: The latest inexcusable security problems in Windows (affecting software as old as one decade) and how Microsoft pushes additional control mechanisms (restrictions) via Windows Update

"Unpatched IE bug exploited in targeted attacks," reports The Register and what's truly mystifying is that Microsoft refuses to end support of old Web browser versions, whose lifetime is partly caused by Microsoft's misuse of web standards:



Unknown attackers have been targeting a previously unknown vulnerability in Internet Explorer to take control of machines running the Microsoft browser, security watchers warned on Wednesday.

The exploits were hosted on a page of an unidentified website that had been breached without the owner's knowledge, according to antivirus provider Symantec, which discovered the attacks a few days ago. The perpetrators then sent emails that lured a select group of people in targeted organizations to the booby-trapped page, causing those who used IE versions 6 and 7 to be infected with a backdoor trojan.


This causes expensive havoc that everyone must pay for (not just Internet Explorer users because costs are collectively covered). SJVN has valid reasons to complain:

God help us: Internet Explorer 6 Lives On



Please, please, just let Internet Explorer 6 die. It was an awful browser even in its day, 2001. The only reason it became popular was that Microsoft got away with illegally beating Netscape into the ground. Unfortunately, many corporate developers created crude, IE 6-specific Web applications that we’re stuck with to this very day. And, now thanks to Browsium’s UniBrows, we may be stuck with for many more years to come.

UniBrows will let users run IE6 within IE8. Yes, that’s right; people will be able to keep running IE 6 for years to come.


All these security problems may also allow Microsoft to sell the 'medicine' and take even more control over people's PCs (e.g. flagging which applications are "good" and "bad" and sometimes flagging controversial ones as "bad" too, as is currently the case with an application that demonstrates wireless-imposed vulnerability in large sites). In order to push this control mechanism into Windows even more rapidly Microsoft may be exploiting anti-competitive advantage, based on this new article that says "Microsoft Security Essentials now offered via Windows Update":

We're big fans of Microsoft Security Essentials -- it's lightweight, free, and offers malware protection that's every bit as good as (if not better than) more recognized names like Norton and McAfee (quit giggling, DS regulars...). Today, Microsoft has begun offering Security Essentials as an optional install via Windows Update.


Based on the comments, this is not entirely new. It does not make it any more justified, though. Just as a bogus threat (alarmist calls) of "cyberwar" is used by authorities to gain power and take more control over the Internet, Microsoft may be using security problems in its own software to take greater (and remote) control over it. It's already similar with Apple, but its customers are more willing to accept servitude, with hardly even resistance or protest.

For computing one controls, Free software is an essential ingredient. Transparency breeds trust.

Recent Techrights' Posts

Technology: rights or responsibilities? - Part VIII
By Dr. Andy Farnell
GNU/Linux Reaches All-Time High in Europe (at 6%)
many in Europe chose to explore something else, something freedom-respecting
Techrights' Statement on Code of Censorship (CoC) and Kent Overstreet: This Was the Real Purpose of Censorship Agreements All Along
Bombing people is OK (if you sponsor the key organisations), opposing bombings is not (a CoC in a nutshell)
 
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Sunday, November 24, 2024
IRC logs for Sunday, November 24, 2024
Gemini Links 25/11/2024: Purity and Cory Doctorow's Ulysses Pact, Smolnet Portal and SGI
Links for the day
Patents Against Energy Sources That Reduce Pollution
this EV space (not just charging) is a patent mine field and it has long been that way
DARPA’s Information Innovation Office, Howard Shrobe, Values Compartmentalisation But Loses the Opportunity to Promote GNU/Linux and BSDs
All in all, he misses an opportunity
Wayland is an Alternative to X
the alternative to X (as in Twitter) isn't social control media but something like IRC
BetaNews, Desperate for Clicks, is Pushing Donald Trump Spam Created by LLMs (Slop)
Big clap to Brian Fagioli for stuffing a "tech" site with Trump spam (not the first time he uses LLMs to do this)
[Meme] Social Control Media Bliss
"My tree is bigger than yours"
Links 24/11/2024: More IMF Bailouts and Net Client Freedom
Links for the day
Gemini Links 24/11/2024: Being a Student and Digital Downsizing
Links for the day
[Meme] The Most Liberal Company
"Insurrection? What insurrection?"
apple.com Traffic Down Over 7%, Says One Spyware Firm; Apple's Liabilities Increased Over 6% to $308,030,000,000
Apple is also about 120 billion dollars in debt
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Saturday, November 23, 2024
IRC logs for Saturday, November 23, 2024
[Meme] GAFAMfox
Mozilla Firefox in a state of extreme distress
Google Can Kill Mozilla Any Time It Wants
That gives Google far too much power over its rival... There are already many sites that refuse to work with Firefox or explicitly say Firefox isn't supported
Free (as in Freedom) Software Helps Tackle the Software Liability Issue, It Lets Users Exercise Greater Control Over Programs
Microsofters have been trying to ban or exclude Free software
In the US, Patent Laws Are Up for Sale
This problem is a lot bigger than just patents
ESET Finds Rootkits, Does Not Explain How They Get Installed, Media Says It Means "Previously Unknown Linux Backdoors" (Useful Distraction From CALEA and CALEA2)
FUD watch
Techdirt Loses Its Objectivity in Pursuit of Money
The more concerning aspects are coverage of GAFAM and Microsoft in particular
Links 23/11/2024: Press Sold to Vultures, New LLM Blunders
Links for the day
Links 23/11/2024: "Relationship with Oneself" and Yretek.com is Back
Links for the day
Links 23/11/2024: "Real World" Cracked and UK Online Safety Act is Law
Links for the day
Links 23/11/2024: Celebrating Proprietary Bluesky (False Choice, Same Issues) and Software Patents Squashed
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, November 22, 2024
IRC logs for Friday, November 22, 2024
Gemini Links 23/11/2024: 150 Day Streak in Duolingo and ICBMs
Links for the day