01.17.10

Microsoft Takes Responsibility for Internet Explorer Chaos, Conficker Damage Carries on

Posted in Europe, Google, Microsoft, Security, Windows at 8:21 am by Dr. Roy Schestowitz

Smart card

Summary: Just as Microsoft pretends that the attacks on Google are no big deal it turns out that Microsoft’s Internet Explorer is the sole culprit

“Adobe Flaw Wasn’t Part of Attack on Google,” says this latest news report from IDG and Microsoft is almost accepting liability by admitting that Internet Explorer is the culprit. “Cyberattacks are an unfortunate way of life,” said Microsoft CEO Steve Ballmer to CNBC regarding these attacks after his own incompetence caused these issues. This sums up a discussion (and at times heated argument) that we had in previous posts on the subject, namely:

  1. Microsoft Flaws — Not Adobe Flaws — Responsible for China’s Attack on Google; Microsoft Takes China’s Side, as Usual
  2. Chinese Google ‘Attack’ Involves Microsoft Windows Flaws
  3. Germany’s Office for Information Security Warns Against Microsoft’s Internet Explorer After China Attacks

Germany is paying for Conficker through the nose, so it only makes sense to advise against the use of Internet Explorer (they should go further and recommend GNU/Linux). According to this weekend’s news from IDG, Conficker is still alive and it’s kicking hard:

Conficker Still Striking Online

Russia and Brazil are now the top hotspots for global Internet attack traffic, Net giant Akamai has said in its latest threat report, placing most of the blame on the hardy Conficker worm.

Conficker Worm Hasn’t Gone Away, Akamai Says

Variants of the Conficker worm were still active and spreading during the third quarter, accounting for much of attack traffic on the Internet, according to Akamai Technologies.

“Although mainstream and industry media coverage of the Conficker worm and its variants has dropped significantly since peaking in the second quarter, it is clear from this data that the worm (and its variants) is apparently still quite active, searching out new systems to infect,” Akamai said in its State of the Internet report for the third quarter of 2009, released Thursday.

For those who think that Vista 7 will change anything, we’re appending some links below.

  1. Cybercrime Rises and Vista 7 is Already Open to Hijackers
  2. Vista 7: Broken Apart Before Arrival
  3. Department of Homeland Security ‘Poisoned’ by Microsoft; Vista 7 is Open to Hijackers Again
  4. Vista 7 Security “Cannot be Fixed. It’s a Design Problem.”
  5. Why Vista 7 Could be the Least Secure Operating System Ever
  6. Journalists Suggest Banning Windows, Maybe Suing Microsoft Over DDoS Attacks
  7. Vista 7 Vulnerable to Latest “Critical” Flaws
  8. Vista 7 Seemingly Affected by Several More “Critical” Flaws This Month
  9. Reason #1 to Avoid Vista 7: Insecurity
  10. Vista 7 Left Hijackable Again (Almost a Monthly Recurrence)
Share in other sites/networks: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Reddit
  • email

This post is also available in Gemini over at:

gemini://gemini.techrights.org/2010/01/17/microsoft-pretends-re-msie/

If you liked this post, consider subscribing to the RSS feed or join us now at the IRC channels.

Pages that cross-reference this one

13 Comments

  1. your_friend said,

    January 17, 2010 at 4:07 pm

    Gravatar

    [Thanks to Windows] Cyberattacks are an unfortunate [prevalent, debilitating, increasingly unsustainable and successful] way of life. How much will society pay for Windows?

  2. TheTruth said,

    January 17, 2010 at 7:02 pm

    Gravatar

    HAHAH, and google is supposed to be the FOSS/Linux love child, yet they are still hacked, linux and all !!!!! oh dear, poor poor linux.

    oh and what did the chinese steal, IP, I thought you hated IP ROY, you must be in great internal conflict.

    Trying to spin this as a positive for Linux, it’s a hard job but someone has to apply the spin.

    (how’s you job searching going, anyone willing to hite a zealot?).

    I cant wait to email you boss, and inform him about what you spend you’re entire life doing .. But I would not stoop so low, but you would,,, dont you ROY.. :)

    Mikko Reply:

    troll get out!

    your_friend Reply:

    People “hacked” several Gmail accounts, this is something that happens to Windows users every day. They also have their hotmail, yahoo, aol and bank accounts violated because Windows is so easy for criminals to break. The things that make it notable is that Google is accusing the Chinese government of targeting dissidents with malware and that the government has also used broken Windows machines for DDoS attacks against Google and other ISPs. All of these problems revolve around Windows, not GNU/Linux.

    This is a positive development for free software because it shows off some of the downsides of non free software. The US has used the same tactics on a more limited scale. The large scale of the problems in China, their more blatant political use and the involvement of a large and powerful US firm all point to broader coverage of these issues in the western world. As people are exposed both to the weakness of Windows and the results, they will want something better. That will be good for everyone.

    Finally, your talk about Roy’s job prospects are both ugly and poorly veiled threats.

    your_friend Reply:

    Brilliant, blame Google for Microsoft’s security flaws. I have to hand it to you for knowing exactly how Microsoft friendly news sources would spin this issue. I don’t think it’s going to work as governments and everyone else with a clue gives credit where credit is due. I have to hand it to you for being so well connected to Microsoft spin.

  3. TheTruth said,

    January 17, 2010 at 7:22 pm

    Gravatar

    Imagine, if you house was broken into, you call the police, they come around they look at your house, and they see there are no locked on any of the doors and windows and they are left open.

    The police say, yes you were broken into, but it’s you’re own stupid fault for leaving you’re house open. And putting huge adds all over you’re house saying “valuables held in here”.

    What you’re saying is that if you’re house was broken into and the theif used a hammer to break in, then it’s the hammers fault for the break in.

    Just mabey if you have critical data on you’re systems, you lock you’re doors, and make them so strong that a hammer will not break in.

    There is ONE group at fault here, and it’s GOOGLE.

    If you’re stupid enough to keep critical data on insecure systems, (in this case LINUX). that is YOUR fault.

    Sure the criminals have done wrong, but you dont have to make it so easy for them by leaving you’re house unlocked.

    But thats not nearly as interesting a spin as you would like ROY, that means you cannot blame you’re hate child MS for it.

    Google are trying to break into OS’s, applications and cloud, and they cant even protect THEIR OWN data, would you trust them to protect YOUR data.

    So you headline could read, “Man breaks into house, hammer found guilty of break and enter”.

    As usual ROY, you’re the running joker of the FOSS world. nothing more…

    (get a job).

    Mikko Reply:

    why are you here? stupid troll!

  4. Yuhong Bao said,

    January 17, 2010 at 9:03 pm

    Gravatar

    I already explained many of these, why you keep posting the links, particularly bad is “Vista 7 Security “Cannot be Fixed. It’s a Design Problem.””

    Roy Schestowitz Reply:

    Where did you explain this?

    Yuhong Bao Reply:

    Briefly in the comments, and a few times in IRC, in fact I just talked about it today on IRC.

    your_friend Reply:

    People believe that Windows will never be fixed because Windows has never been fixed despite repeated false promisses and lots of technical sounding BS. Roy pointed to an excellent article explaining the major design flaws. Can you point to a technical refutation of the points? Even if you did, it’s not worth anything because people have already broken Windows 7 like every other version of Windows.

  5. Yuhong Bao said,

    January 17, 2010 at 9:04 pm

    Gravatar

    In fact, one of the Conflicker’s exploit vectors did not affect Vista.

    your_friend Reply:

    The Microsoft spinners are busy defending microsoft business practices and Vista. Less spun sources recognize that all versions of Windows and all versions of IE are at fault. It looks like the latest round of security failure is being used by Microsoft to force upgrades. It is too bad for them that people are starting to realize that GNU/Linux is the practical upgrade path. Windows will never be secure.

    Roy has done a nice job of keeping up with this story:

    Germany Urges people to dump IE. It is too bad they did not go the Munich route.
    Microsoft blames Adobe and ignores Communist China’s repulsive human rights abuses. More disgusting was their spinner’s attempt to claim Google was exploiting other people’s revulsion for business advantage.
    China uses Windows botnets to harass dissidents, DDoS Google and other companies.
    Reality Calling

What Else is New


  1. [Meme] Microsoft is Lecturing Us on Security!

    Dev Kundaliya and 'Hacker' News play along and go along with this laughable lie that Microsoft is some kind of security expert with moral authority/credibility on this subject



  2. [Meme] EPO 2025 (When Most of the Decent Patent Examiners Have Been Chased Away)

    Based on this week's reports (see batches of Daily Links), many recently-granted European Patents are being thrown out by courts, which means it's hardly surprising that demand for European Patents is in fact decreasing (while quality/validity/legal certainty nose-dives)



  3. Funding Sources Like Corporate Sponsors/Patrons/Masters Put at Risk the Freedom of Free Software

    Sources of funding or “sponsors” such as large corporations typically come with some barely-visible or temporarily-invisible strings attached (an expectation of commercial reciprocity, rendering the recipients subservient like ‘slaves’) and we need to understand how to preserve software freedom in the face of such trends



  4. Links 26/7/2021: Nanotale on GNU/Linux and IBM Promoting Microsoft GitHub

    Links for the day



  5. Free Software Projects Should Quit Selling Keynote Speeches to the Highest Bidders (Corporations) and Choose Based on Merit/Relevance

    OSI, SFC, FSF and Linux Foundation are in effect selling time and space (even to Microsoft, except the FSF was never foolish enough to do this). As of today, LibreOffice does the same thing (which might remain benign; just be sure to reject rivals as "sponsors" because it dooms projects and events).



  6. Microsoft Windows Has Lost Another 2 Million Web Sites This Past Month Alone (IIS Floundering)

    The rapid decline of Microsoft, Windows and IIS in servers is undeniable; it's just a damn shame that corporate and so-called 'tech' media never writes about this subject



  7. Links 26/7/2021: Grml 2021.07 and DXVK 1.9.1

    Links for the day



  8. Increasing Focus on Advocacy for the Free Software Community (Putting Control Over Computing in the Hands of People, Not Large Corporations)

    After 31,000 blog posts it's time to add a new theme to our coverage, which prioritises science, computer developers, and technology users; an urgent matter and pressing issue is the passage of control (e.g. over code and policy) to non-practising entities



  9. Video: How to Follow All Our Channels (Interactively) From the Command Line

    We’ve been enhancing the access possibilities/options for #techrights and other IRC channels, partly because we want to encourage more people to wean themselves off the DRM-ready Web, the monoculture, the bloat, the surveillance, and centralisation in general (the Web favours centralisation, which is exacerbated by the bloat and other topological dynamics)



  10. IRC Proceedings: Sunday, July 25, 2021

    IRC logs for Sunday, July 25, 2021



  11. Links 26/7/2021: Third RC of Linux 5.14 and Beta 3 of Haiku Project

    Links for the day



  12. No, Microsoft Does Not Get to Lecture Us on GNU/Linux Security (or Security in General)

    The corporate media wants us to think (or feel) like Microsoft is some kind of security guru; the reality, however, is the exact opposite because at Microsoft sometimes if not always/by default insecurity is the actual objective (back doors)



  13. Links 25/7/2021: MyGNUHealth 1.0.3 and Lots About Patents

    Links for the day



  14. Links 25/7/2021: LibreELEC (Matrix) 10.0 RC1 and Ubuntu 20.10 (Groovy Gorilla) End of Life

    Links for the day



  15. IRC Proceedings: Saturday, July 24, 2021

    IRC logs for Saturday, July 24, 2021



  16. Following Techrights IRC Channels From the Command Line (or the Web and Gemini)

    The (almost) real-time logs for #techrights have been available in http://techrights.org/irc and in gemini://gemini.techrights.org/chat/index.gmi for over a month; today we extend that to cover all channels (aggregated into one)



  17. Links 24/7/2021: Skrooge 2.26.1 and K-9 Mail Release

    Links for the day



  18. Links 24/7/2021: FreeBSD Report (April-June) and KDE Reporting Its Progress

    Links for the day



  19. Support the Founders of GNU and Linux, Besieged by People and Corporations That Hate Development Communities and Seek Oppressive Monopoly Over Everything

    The founders of GNU and Linux (Stallman and Torvalds, respectively) want to give us free (as in freedom) software by which to control our destiny; the forces looking to demonise and marginalise both of them don’t have the same objectives (to whom they’re antithetical)



  20. IRC Proceedings: Friday, July 23, 2021

    IRC logs for Friday, July 23, 2021



  21. [Meme] Linus Should Reassert Control of Linux

    Linus Torvalds needs to quit being at the mercy of monopolies (or monopolists who sent him to see therapists as if he was mentally ill); at the moment the development of Linux isn’t steered by people and thus not for people (but large corporations that work with states and armies)



  22. Remember That the 'Linux' Foundation is Working Against You (Unless You're a Monopoly)

    The corporate siege by a certain so-called ‘Linux’ Foundation (a siege against people and against their authentic communities) carries on; of course they try to disguise it as the exact opposite of what it really is and it is therefore essential that we all understand how and why they do this (these tactics are borrowed from dirty politics and contagious cults)



  23. Links 24/7/2021: Rackspace Layoffs and Ubuntu Touch's Latest

    Links for the day



  24. Improving the Signal-to-Noise Ratio in IRC

    The IRC channels in the new network include #TechPol — another addition that helps keep the main channel focused on our principal priorities



  25. The Next One Thousand Blog Posts and the 15th Anniversary of Techrights

    A quick video about our future focus as a Web site that seeks to illuminate suppressed subjects — a timely issue to bring up as we very soon complete and surpass our 31,000th blog post (some time next week) and some topics are becoming obsolete by their very nature



  26. Links 23/7/2021: SquashFS Tools 4.5 and PineTime Released

    Links for the day



  27. Where There's Smoke...

    Recent events in and around the EPO (with deficient media coverage or none at all) make one wonder why the EPO's management writes several shallow "news" postings per day



  28. IRC Proceedings: Thursday, July 22, 2021

    IRC logs for Thursday, July 22, 2021



  29. The Tragedy of Freenode

    IRC.com/Freenode said an influx of "millions" of users was impending, but it doesn't look like it; judging by how poorly the network has been run, it will be hard to undo the damage



  30. Links 23/7/2021: Firewalld 1.0, Librem 5 File Transfer, Stockfish GPL Enforcement

    Links for the day


RSS 64x64RSS Feed: subscribe to the RSS feed for regular updates

Home iconSite Wiki: You can improve this site by helping the extension of the site's content

Home iconSite Home: Background about the site and some key features in the front page

Chat iconIRC Channel: Come and chat with us in real time

Recent Posts