Bonum Certa Men Certa

Microsoft Outlook is a Wiretapping Device, Just Like Hotmail and Hotmail 2.0 (Facebook)

Looking through the tube



Summary: Microsoft Outlook, an Office component, does what it says on the tin by providing an outlook on users

Wiretapping on Windows users is trivial due to irresponsible disclosure of source code and owing to FBI malware/backdoor-ware like CIPAV*. But what about Microsoft Office? Based on this new report from Ars Technica, "[u]sing Outlook's mail rules can make you a wiretapper":



Reading your boss' e-mail account isn't just a bad idea—it could also get you hauled in federal court on wiretapping charges. David Szymuszkiewicz, an Internal Revenue Service worker in Wisconsin, found this out the hard way after using an Outlook mail rule to copy his supervisor's messages over to his own account for a full three years.

[...]

Easterbrook and two fellow judges agreed on appeal; this was wiretapping. There was no direct evidence that Szymuszkiewicz had set up the rule. No one had seen him do it, but he had the means, motive, and access to Infusino's computer. In addition, Szymuszkiewicz's own Outlook account showed that he had received the Infusino e-mails and then copied them into a personal folder, "which is not what would have happened had all of Szymuszkiewicz's access been legitimate."


Hotmail too is sensitive to eavesdropping even by the US government, reveals Cablegate (yes, snooping is part of the plan). Phil Shapiro has just published this complaint about Hotmail letting down Haiti relief volunteers. From the closing parts:

Here's a solution to the problem. Microsoft, and all other free e-mail service providers, should provide some fee-based service for people to recover their password if their account has been compromised. The community member I'm helping, Jean Louis Jean Presnel, would gladly pay $25 to speak to someone on the phone about having his Hotmail password reset. Considering that it would take no more than 10 minutes for such a phone call to take place, Microsoft ought to provide this service. If they don't voluntarily provide such a fee-based password recovery service, then maybe legislation is needed to require them to do so.


Add to this the observation that Facebook is eerily close to Microsoft. Moments ago someone told us in an IRC channel that this pair had just taken it another step further and Facebook is like Hotmail 2.0 in some ways. For privacy, always stay away from proprietary software. ____ * In addition, Steven J. Vaughan-Nichols wrote a few days ago that "Windows is insecure by design" and the context was as follows:

Windows is insecure by design and used by hundreds of millions and many of those users wouldn’t know an anti-virus program from Angry Birds. Millions of Windows computers, including maybe yours, are slave labor in one of the various botnets. Since we’re not going to be rid of Windows anytime soon and it’s not going to get any safer, the reality is that botnet-powered, brute-force DDoS attacks are only going to continue.

Actually, that’s not true. I think DDoS attacks are actually going more and more often. Here are some ways to mitigate them.

Recent Techrights' Posts

Technology: rights or responsibilities? - Part VIII
By Dr. Andy Farnell
GNU/Linux Reaches All-Time High in Europe (at 6%)
many in Europe chose to explore something else, something freedom-respecting
Techrights' Statement on Code of Censorship (CoC) and Kent Overstreet: This Was the Real Purpose of Censorship Agreements All Along
Bombing people is OK (if you sponsor the key organisations), opposing bombings is not (a CoC in a nutshell)
 
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Sunday, November 24, 2024
IRC logs for Sunday, November 24, 2024
Gemini Links 25/11/2024: Purity and Cory Doctorow's Ulysses Pact, Smolnet Portal and SGI
Links for the day
Patents Against Energy Sources That Reduce Pollution
this EV space (not just charging) is a patent mine field and it has long been that way
DARPA’s Information Innovation Office, Howard Shrobe, Values Compartmentalisation But Loses the Opportunity to Promote GNU/Linux and BSDs
All in all, he misses an opportunity
Wayland is an Alternative to X
the alternative to X (as in Twitter) isn't social control media but something like IRC
BetaNews, Desperate for Clicks, is Pushing Donald Trump Spam Created by LLMs (Slop)
Big clap to Brian Fagioli for stuffing a "tech" site with Trump spam (not the first time he uses LLMs to do this)
[Meme] Social Control Media Bliss
"My tree is bigger than yours"
Links 24/11/2024: More IMF Bailouts and Net Client Freedom
Links for the day
Gemini Links 24/11/2024: Being a Student and Digital Downsizing
Links for the day
[Meme] The Most Liberal Company
"Insurrection? What insurrection?"
apple.com Traffic Down Over 7%, Says One Spyware Firm; Apple's Liabilities Increased Over 6% to $308,030,000,000
Apple is also about 120 billion dollars in debt
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Saturday, November 23, 2024
IRC logs for Saturday, November 23, 2024
[Meme] GAFAMfox
Mozilla Firefox in a state of extreme distress
Google Can Kill Mozilla Any Time It Wants
That gives Google far too much power over its rival... There are already many sites that refuse to work with Firefox or explicitly say Firefox isn't supported
Free (as in Freedom) Software Helps Tackle the Software Liability Issue, It Lets Users Exercise Greater Control Over Programs
Microsofters have been trying to ban or exclude Free software
In the US, Patent Laws Are Up for Sale
This problem is a lot bigger than just patents
ESET Finds Rootkits, Does Not Explain How They Get Installed, Media Says It Means "Previously Unknown Linux Backdoors" (Useful Distraction From CALEA and CALEA2)
FUD watch
Techdirt Loses Its Objectivity in Pursuit of Money
The more concerning aspects are coverage of GAFAM and Microsoft in particular
Links 23/11/2024: Press Sold to Vultures, New LLM Blunders
Links for the day
Links 23/11/2024: "Relationship with Oneself" and Yretek.com is Back
Links for the day
Links 23/11/2024: "Real World" Cracked and UK Online Safety Act is Law
Links for the day
Links 23/11/2024: Celebrating Proprietary Bluesky (False Choice, Same Issues) and Software Patents Squashed
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, November 22, 2024
IRC logs for Friday, November 22, 2024
Gemini Links 23/11/2024: 150 Day Streak in Duolingo and ICBMs
Links for the day