Bonum Certa Men Certa

Here Come Many More Microsoft Windows Attacks

Computer danger



Summary: A lot of security headaches caused to lot of people, all due to Microsoft Windows being so vulnerable

Yesterday we wrote about Microsoft's risk that impacts people's lives. Blame Microsoft's utter negligence [1, 2, 3] for it. Where there is deliberate negligence there is also liability and responsibility.



It has been surprising to some network experts that the Internet has yet not come under an attack that fragments or altogether suspends it at root level [1, 2]. It's not as though it is impossible; it's just that nobody has dared to trigger it just yet and the United States considers bombing (in the physical sense) any botmaster who may attempt this. According to this latest report, the United States is not prepared for an attack from Windows botnets.

During the simulated cyber attack that took place yesterday in Washington and was recorded by the CNN, one thing became clear: the US are still not ready to deflect or mitigate such an attack to an extent that would not affect considerably the everyday life of its citizens.


Already, there are some notable attacks that show up in the news. Here is an article that will appear in the New York Times tomorrow:

A malicious software program has infected the computers of more than 2,500 corporations around the world, according to NetWitness, a computer network security firm.


It's a John Markoff article, so neither Microsoft nor Windows are mentioned, as usual. Under some pressure he once made an exception. Here is a similar report from Reuters:

Virus has breached 75,000 computers: study



A new type of computer virus is known to have breached almost 75,000 computers in 2,500 organizations around the world, including user accounts of popular social network websites, according Internet security firm NetWitness.


Here is another Windows disaster unfolding:

City of Norfolk hit with code that takes out nearly 800 PCs



Malicious code that mysteriously found its way onto an internal virtual print server took out nearly 800 computers used by the city of Norfolk, Virginia, last week.

The code apparently was activated when workers shut down their computers, said Hap Cluff, IT director for the city of Norfolk. "It was triggered by the action of logging off," he said. "

The code nearly wiped out the C drives of the 784 affected computers and essentially deleted the Windows operating system. The contents of the system folders on those machines, normally about 1.5GB in size, shrunk to 500 MB, he said.


Yes, all the above indicates that it's a Windows problem. More here:

Hap Cluff, director of the information technology department for the City of Norfolk, said the incident began on Feb. 9, and that the city has been working ever since to rebuild 784 PCs and laptops that were hit (the city manages roughly 4,500 systems total).


Wonderful, eh? Here is an article about source of vulnerabilities, based on data that we mentioned in yesterday's post about security.

Just as they did last year, over thirty international security organisations have come together, to publish a list of the 25 most dangerous programming errors leading to vulnerabilities that can be exploited for cybercrime and espionage. The 2010 CWE/SANS Top 25 Most Dangerous Programming Errors has been updated with a number of improvements to how the errors are graded, prioritised and categorised. For example, new "Focus Profiles" allow readers to quickly see the listed errors sorted for particular professionals' interests.


As we pointed out yesterday, Microsoft is not well positioned here and its general programming practices and use cases (e.g. clicking attachment to execute) are part of the problem. One might add to this the fact that Microsoft's patches vulnerabilities poorly and sloppily, often hiding known flaws until they are actively exploited.

"Our products just aren't engineered for security."

--Brian Valentine, Microsoft executive

Comments

Recent Techrights' Posts

Evri (HermesUK) is Now Run by Bots and Hallucinating Scammers
Years ago they virtually removed support and tried chatbots instead
Clown Storage Without Backups
Setting up several reliable copies of the data, plus several off-site backups (this data is nowhere as sensitive as medical data), should only cost a few grand
FreeCAD is Becoming Slop-ware, Use LibreCAD Instead
It has regular releases and "Qt5 is mandatory" now [...] they at least audit what they add
 
Links 18/08/2026: Sergey Brin Controlling State Policies, "Dario Amodei's (Anthropic) Wife Is Closely Linked to Jeffrey Epstein"
Links for the day
SBS News Interviews Daniel Pocock
The locals say this PR stunt (by the bigot, Farage) was a waste of money
Clownflare Sees One in 7 Web Requests in Libya Originating From GNU/Linux
GNU/Linux has taken a (foot)hold there
Openwashing and Manifestos Composed in Private by Dictators With Deliberately Addictive (and Subsidised, Bundled) 'Tech'
It's long, so make a cuppa first
SLAPP Censorship - Part 153 Out of 200: Decades of Debt, Weaponising Borrowed Money to Try to Put Their Critics in Debt
they've always had a financial report by now
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Monday, August 17, 2026
IRC logs for Monday, August 17, 2026
Gemini Links 18/08/2026: Solar Power, Kipple and Impermanence, Catastrophe Ethics
Links for the day
Less Technology, More Life
Technology is being associated (sometimes rightly) with physical and mental problems
Google Search Has Gotten Worse (a Lot Worse)
getting worse
Birthday in 80 Days
we'll start decorating and party online with our community
Loans and Massive Debt at Microsoft, This Won't End Well.
Microsoft running out of money to pay salaries (to the point of paying people for 'voluntary' layoffs) is a positive sign?
Gemini Links 17/08/2026: Life in Plain Text, Mimicking KARL, Release of Jugulans, Avoiding Slop
Links for the day
Cuba and Venezuela High in Adoption of GNU/Linux
some of the "communist" nations
Links 17/08/2026: Myanmar’s Cholera Outbreak, China Sends Commercial Vessels Through Arctic
Links for the day
GAFAM Loyalty Has Come to an End, Morale Low, People Whose Future is Uncertain Choose to Become "Lifers"
morale is low and there's no loyalty anymore
SLAPP Censorship - Part 152 Out of 200: Injunctions Do Not Cover Criticism, They Have Scope
self-incriminating communications
Clownflare Sees About Quarter of Web Requests in Ireland Coming From GNU/Linux
Well, in Ireland it seems like many people adopted GNU/Linux
Clownflare: In Australia and New Zealand GNU/Linux Peaks at Over 10% During Working Hours
That right there is interesting in its own right
Slowing Down by Intention
At the moment we have 6 or 7 ongoing series
Gemini Links 17/08/2026: Chamboree, Partial Solar Eclipse, Lady Macbeth
Links for the day
Links 17/08/2026: "Bluesky Is Down Again!" and "Anti-Social Media"
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Sunday, August 16, 2026
IRC logs for Sunday, August 16, 2026
A Vortex of Beacons (or "Bluetooth Everywhere" Vision)
If someone (or someones) calls you paranoid for taking about "beacon"-like functionality, there will be no lack of authoritative citations (e.g. Web links) they can be provided to prove them wrong
Falkland Islands: GNU/Linux Elevated to 6%
GNU/Linux usage seems to have increased a lot there
Links 16/08/2026: Reading Outside, Going Offline More, and Art of Computer Programming
Links for the day
The Question of Patience
Is there a lesson here somewhere?
IBM May be Sued for Mass Layoffs Via PIPs
Some whole threads (with all the long comments in them) recently got nuked by thelayoff.com
Links 16/08/2026: Ceuta Reports Social Control Media Used as a Weapon
Links for the day
Links 16/08/2026: Europe in Crisis of Droughts While Energy- and Water-Consuming, Pollution-Emitting Chatbots Are Spread by GAFAM (US) to Keep a Ponzi Scheme Going
Links for the day
GNU/Linux is a Platform for Work (Usage Surges in Daytime)
GNU/Linux 15% in daytime
We Need Rain, Not Chatbots
There's no "anti-AI" (it's not even AI), there's opposition to fraud, to plagiarism, and to companies that profit more when there's global warning (caused in part by their business activities)
SLAPP Censorship - Part 151 Out of 200: Dealing With Sleazy People and Companies That Steal (While Employing These Sleazy People)
we offer a quick summary and we're reflecting
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Saturday, August 15, 2026
IRC logs for Saturday, August 15, 2026
Gemini Links 16/08/2026: Sterrenkijker Releases, Solar Gemini Server
Links for the day