Bonum Certa Men Certa

Firefox 93 Disables Triple DES and Doesn’t Mention NSA Backdoors. Windows 11 Continues Degrading VPNs With It If They Use the Native APIs.

Guest post by Ryan, reprinted with permission from the original

Summary: Firefox 93 has finally disabled the NSA-backdoored and weak Triple DES encryption when you connect to “secure” websites.

In their blog post, Mozilla imply that all that’s wrong with it is that it’s obsolete and seen better days, however, the US National Security Agency was involved and weakened the entire scheme to the point where they could easily break it, but thought that nobody else could for a while.



Flash forward to today, and Triple DES can be easily attacked using many known weaknesses and, if you know the terrible security track record of the OpenSSL project, they dropped it by default (and you’d have to turn it back on) in 2016.



What’s amusing, is that Microsoft and their pet lap dogs over at the Linux (Destroying) Foundation, which has little to do with Linux anymore and more to do with producing mountains of whitepapers using indecipherable buzzwords, technobabble, and treknobabble that would probably make Laura Callahan blush, got together with other companies and poured money into OpenSSL. Lots of money.



And the result of this money is…….. that we’re still stuck with a bloated train wreck that has a lot of obsolete code and security issues.



Some GNU/Linux distros tried switching to LibreSSL, but that turned out to be an even bigger disaster in some ways because the OpenBSD people consider the Apache 2 license to be “non-Free” because it doesn’t allow patent trolls to give you a program and then sue you for using it, and since OpenSSL is now under that license, it means they can’t just pull code from it, and pretty much all hope of remaining API/ABI compatible or something close to it went out the window.



"Still, just one of the many lingering security problems regarding Triple DES is that the Windows 10 and now, “11” operating systems continue to use it despite it being known for years to be bugdoored by NSA and vulnerable to known attacks and providing weak security, if you use the built-in implementation of IKEv2 to connect to a virtual private network."And although OpenSSL is a crucial component of every Windows OS out there, anything that goes wrong with it is a “Linux bug” in the media. That’s not an accident. It’s a deliberate red herring.



Still, just one of the many lingering security problems regarding Triple DES is that the Windows 10 and now, “11” operating systems continue to use it despite it being known for years to be bugdoored by NSA and vulnerable to known attacks and providing weak security, if you use the built-in implementation of IKEv2 to connect to a virtual private network. This is one reason why no decent VPN company will touch Windows’ included VPN services and usually bundle OpenVPN or, now, Wireguard.



Microsoft is still out there pretending to give a shit about security, when this is happening. Windows “11” has been a complete disaster of performance-killing bugs, especially for gamers and people who use the AMD Ryzen CPU platform, and that’s assuming folks can even get it to install in the first place.



Internally, Windows rots away and continues its ride into the sunset as a legacy platform, which oddly can now be used by only 15-20% of all PCs out there. Meaning, there’s never been a better time to get away from it.



Yes, that’s right, while the overwhelming majority of PCs out there can install GNU/Linux distributions, Microsoft has deliberately made most of them “incompatible” with a blacklist, or slowed them down with “bugs” so that users go “Welp, time to buy new stuff again!”.



"Microsoft usually sabotages their older products so that people holding out on them or trying to use them on newer computers to forestall having to deal with the latest bloat, bugs, backdoors, and other bullshit give up and throw in the towel."There’s about to be a fire sale of cheap used computers that will run GNU/Linux fine. Many people fall for this old chestnut every few years and never learn.



Microsoft usually sabotages their older products so that people holding out on them or trying to use them on newer computers to forestall having to deal with the latest bloat, bugs, backdoors, and other bullshit give up and throw in the towel.



They talk about “new silicon” (CPUs) “being designed” for their latest OS, but people were installing Windows 7 on Skylake stuff that came with Windows 10, and the only thing that got in the way was Microsoft disabling Windows Update at a certain point if you did.



This goes way back, I’m told, to at least Windows 95.



Hey, Nathan Lineback would probably know. He was doing just about anything to keep Windows 95 trucking along, including figuring out how to use USB thumb drives on it and getting Seamonkey 2.0 to work. Which is oddly dedicated to a Microsoft OS from decades past (for a guy who otherwise seems to hate everything they’ve done), but oh well.



They are easily one of the most dishonest and disreputable companies on the planet. Why, oh why, do people insist on using this?

Recent Techrights' Posts

The World's 'Richest Country' Chooses GNU/Linux
This has gone on for quite some time
Apple's LLM Slop Told Us Luigi Mangione Had Shot Himself, BetaNews Used LLMs to Talk About a Dead Linus Torvalds
They can blame it on some bot
Technology: rights or responsibilities? - Part XI
By Dr. Andy Farnell
GNU/Linux and ChromeOS in Qatar Reach 4%, an All-Time High
Qatar has money to spend, but not much of it will be spent on Microsoft, or so one can hope
This 'Article' About "Linux Malware" is a Fake Article, It's LLM Slop (Likely Spewed Out by Microsoft Chatbot)
They're drowning out the Web
Early Retirement Age: Linus Torvalds Turns 55 Next Week
Now he's almost eligible for retirement in certain European countries
 
Links 23/12/2024: The Book of Uncommon Beings, Squirrels, and Slop Ruining Workplaces
Links for the day
Links 23/12/2024: North Korean Death Toll in Russia at ~1,100, Oligarch Who Illegally Migrated/Stayed (Musk) Shuts Down US Government
Links for the day
Richard Stallman on Love
Richard Stallman's personal website includes a section that lists three essays on the subject of love
Microsoft, Give Me LLM Slop About "Linux" and "Santa", I Need Some Fake Article...
BetaNews is basically an LLM slop site
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Sunday, December 22, 2024
IRC logs for Sunday, December 22, 2024
Links 22/12/2024: Election Rants and More Sites Available via Gemini
Links for the day
Links 22/12/2024: North Pole Moving and Debian's Joey Hess Goes Solar
Links for the day
Gemini Links 22/12/2024: Solstice and IDEs
Links for the day
BetaNews: Microsoft Slop is Your "Latest Technology News"
Paid-for garbage disguised as "journalism"
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Saturday, December 21, 2024
IRC logs for Saturday, December 21, 2024
Links 21/12/2024: EU on Solidarity with Ukraine, Focus on Illegal and Unconstitutional Patent Court in the EU (UPC)
Links for the day
[Meme] Microsofters at the End of David's Leash
Hand holding the leash. Whose?
Deciphering Matt's Take on WordPress, Which is Under Attack From Microsofters-Funded Aggravator
the money sponsoring the legal attacks on WordPress and on Matt is connected very closely to Microsoft
Gemini Links 21/12/2024: Projections, Dead Web ('Webapps' Replacing Pages), and Presentation of Pi-hole
Links for the day
American Samoa One of the Sovereign States Where Windows Has Fallen Below 1% (and Stays Below It)
the latest data plotted in LibreOffice
[Meme] Brian's Ravioli
An article per minute?
Links 21/12/2024: "Hey Hi" (AI) or LLM Bubble Criticised by Mainstream Media, Oligarchs Try to Control and Shut Down US Government
Links for the day
LLM Slop is Ruining the Media and Ruining the Web, Ignoring the Problem or the Principal Culprits (or the Slop Itself) Is Not Enough
We need to encourage calling out the culprits (till they stop this poor conduct or misconduct)
Christmas FUD From Microsoft, Smearing "SSH" When the Real Issue is Microsoft Windows
And since Microsoft's software contains back doors, only a fool would allow any part of SSH on Microsoft's environments, which should be presumed compromised
Paywalls, Bots, Spam, and Spyware is "Future of the Media" According to UK Press Gazette
"managers want more LLM slop"
Google Has Mass Layoffs (Again), But the Problem is Vastly Larger
started as a rumour about January 2025
On BetaNews Latest Technology News: "We are moderately confident this text was [LLM Chatbot] generated"
The future of newsrooms or another site circling down the drain with spam, slop, or both?
"The Real New Year" is Now
Happy solstice
Microsoft OSI Reads Techrights Closely
Microsoft OSI has also fraudulently attempted to censor Techrights several times over the years
"Warning About IBM's Labor Practices"
IBM is not growing and its revenue is just "borrowed" from companies it is buying; a lot of this revenue gets spent paying the interest on considerable debt
[Meme] The Easier Way to Make Money
With patents...
The Curse (to Microsoft) of the Faroe Islands
The common factor there seems to be Apple
Electronic Frontier Foundation Defends Companies That Attack Free Speech Online (Follow the Money)
One might joke that today's EFF has basically adopted the same stance as Donald Trump and has a "warm spot" for BRICS propaganda
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, December 20, 2024
IRC logs for Friday, December 20, 2024
Gemini Links 21/12/2024: Death of Mike Case, Slow and Sudden End of the Web
Links for the day