03.03.10

Gemini version available ♊︎

Microsoft’s Government Insider Wants Mac Users and GNU/Linux Users to Pay Microsoft for Its Incompetence

Posted in Apple, GNU/Linux, Microsoft, Security, Windows at 10:09 am by Dr. Roy Schestowitz

Assorted international currencies

Summary: While Microsoft software comes under another zero-day attack, Microsoft’s Charney, who came from the U.S. Department of Justice, wants to introduce Internet usage tax to pay for the inspection and quarantine of Windows zombies, according to IDG

Microsoft software is full of security holes and there is clearly negligence [1, 2, 3] because Microsoft does not patch known holes until the attacks begin. We wrote a lot of posts about this in January [1, 2, 3, 4, 5, 6, 7, 8, 9, 10, 11, 12] since a known Internet Explorer hole that Microsoft had ignored for 5 months caused enormous damage to many businesses, Google included. This is the type of situation that Microsoft should be made liable for. It’s not about shoddy programming but about shoddy maintenance and damage that could easily be avoided. Yesterday we shared reports about Free software being more secure than proprietary software because it is patched more regularly, according to Veracode (more on that here).

There is a new hole in Internet Explorer and not surprisingly it is a zero-day hole, which means that it’s already being exploited. From the news we have:

Microsoft warned of a new hole on Monday that could be exploited by attackers to take control of older Windows systems running Internet Explorer and for which proof-of-concept exploit code has been released publicly.

Here is another report:

According to the firm the problem relates to Windows 2000 and Windows XP by default, and to a lesser extent, Windows 2003 Server. It added that its internal investigations revealed that Windows 7, Windows Server 2008, and Windows Vista were not affected. Regardless of this, it appears that if there is a risk to systems it is users that cannot stop themselves from pressing a button.

How long can Microsoft get away with this? Windows users seriously need help here, but they cannot press F1.

Now, here comes the outrageous part amid scaremongering about cyberwars. According to IDG (also here), “Microsoft’s Charney suggests ‘Net tax to clean computers” [via]

How will we ever get a leg up on hackers who are infecting computers worldwide? Microsoft’s security chief laid out several suggestions Tuesday, including a possible Internet usage tax to pay for the inspection and quarantine of machines.

Today most hacked PCs run Microsoft’s Windows operating system, and the company has invested millions in trying to fight the problem.

Microsoft recently used the U.S. court system to shut down the Waledac botnet, introducing a new tactic in the battle against hackers. Speaking at the RSA security conference in San Francisco, Microsoft Corporate Vice President for Trustworthy Computing Scott Charney said that the technology industry needs to think about more “social solutions.”

Remember last month's "Internet 'Driver's Licenses'" fiasco from Microsoft’s Mundie? This company has got some nerve. As Richard Rasker put it, regarding another report from RSA, “I’ve got to hand it to this guy, this is a Great Idea. Taking some 60% of the world’s PC’s offline will certainly clean up the Internet. Now there appears to be some doubt about the viability of this plan:

The logistics of such a plan remain woefully unformed. While many say ISPs should monitor subscribers for infections, there’s considerable disagreement about how with providers should carry out and pay for such a system.

“So providers should monitor users’ computers? What a stupid idea. It’s almost exclusively a Microsoft problem, so why not dump it on Microsoft’s plate? Let those computer wizards from Redmond adapt their Malware Tool to disconnect any suspect machine from the larger Internet, and force this tool onto their hapless users’ machines in the usual way (i.e. through a Critical Update). Now that should really make a dent in malware infestations.” In Germany, taxpayers already pay for Microsoft's negligence.

We have occasionally shown how Microsoft is profiteering from Conficker (there are several examples that we gave), but what also ought to be mentioned is Charney’s position in the United States government. As we once showed (when he was hired), an article revealed that “he had worked for the U.S. Department of Justice and served as assistant district attorney in the Bronx, at what he said was a unique time.” Microsoft’s Charney has some more government connections that he is apparently using. He might be what Microsoft calls “insider friend, ‘the fox’.”

Share in other sites/networks: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Reddit
  • email

Decor ᶃ Gemini Space

Below is a Web proxy. We recommend getting a Gemini client/browser.

Black/white/grey bullet button This post is also available in Gemini over at this address (requires a Gemini client/browser to open).

Decor ✐ Cross-references

Black/white/grey bullet button Pages that cross-reference this one, if any exist, are listed below or will be listed below over time.

Decor ▢ Respond and Discuss

Black/white/grey bullet button If you liked this post, consider subscribing to the RSS feed or join us now at the IRC channels.

A Single Comment

  1. Needs Sunlight said,

    March 3, 2010 at 1:35 pm

    Gravatar

    I’m sure there’s a solid list of problem individuals that have worked at Microsoft or registers as a partner or have a Microsoft certification. Garnish their wages, say 5% of gross annual income for ten years and use the money to remove Microsoft products first from the public sector, then from the private sector.

    Incompetence going on for as long as it has is not an accident, but malice.

DecorWhat Else is New


  1. Links 30/01/2023: Plasma Mobile 23.01 and GNU Taler 0.9.1

    Links for the day



  2. EPO Management Isn't Listening to Staff, It's Just Trying to Divide and Demoralise the Staff Instead

    “On 18 January 2023,” the staff representatives tell European Patent Office (EPO) colleagues, “the staff representation met with the administration in a Working Group on the project “Bringing Teams Together”. It was the first meeting since the departure of PD General Administration and the radical changes made to the project. We voiced the major concerns of staff, the organization chaos and unrest caused by the project among teams and made concrete proposals.”



  3. Links 30/01/2023: Coreboot 4.19 and Budgie 10.7

    Links for the day



  4. IRC Proceedings: Sunday, January 29, 2023

    IRC logs for Sunday, January 29, 2023



  5. [Meme] With Superheroes Like These...

    Ever since the new managers arrived the talent has fled the company that falsely credits itself with "Open Source"



  6. Not Tolerating Proprietary 'Bossware' in the Workplace (or at Home in Case of Work-From-Home)

    The company known as Sirius ‘Open Source’ generally rejected… Open Source. Today’s focus was the migration to Slack.



  7. The ISO Delusion: A Stack of Proprietary Junk (Slack) Failing Miserably

    When the company where I worked for nearly 12 years spoke of pragmatism it was merely making excuses to adopt proprietary software at the expense of already-working and functional Free software



  8. Debian 11 on My Main Rig: So Far Mostly OK, But Missing Some Software From Debian 10

    Distributions of GNU/Linux keep urging us to move to the latest, but is the latest always the greatest? On Friday my Debian 10 drive died, so I started moving to Debian 11 on a new drive and here's what that did to my life.



  9. Stigmatising GNU/Linux for Not Withstanding Hardware Failures

    Nowadays "the news" is polluted with a lot of GNU/Linux-hostile nonsense; like with patents, the signal-to-noise ratio is appalling and here we deal with a poor 'report' about "Linux servers" failing to work



  10. Microsofters Inside Sirius 'Open Source'

    Sirius ‘Open Source’ has been employing incompetent managers for years — a sentiment shared among colleagues by the way; today we examine some glaring examples with redacted communications to prove it



  11. Links 29/01/2023: GNOME 43.3 Fixes and Lots About Games

    Links for the day



  12. The Hey Hype Machine

    "Hey Hype" or "Hey Hi" (AI) has been dominating the press lately and a lot of that seems to boil down to paid-for marketing; we need to understand what's truly going on and not be distracted by the substance-less hype



  13. IRC Proceedings: Saturday, January 28, 2023

    IRC logs for Saturday, January 28, 2023



  14. Unmasking AI

    A guest article by Andy Farnell



  15. The ISO Delusion/Sirius Corporation: A 'Tech' Company Run by Non-Technical People

    Sirius ‘Open Source’ was hiring people who brought to the company a culture of redundant tasks and unwanted, even hostile technology; today we continue to tell the story of a company run by the CEO whose friends and acquaintances did severe damage



  16. Links 28/01/2023: Lots of Catching Up (Had Hardware Crash)

    Links for the day



  17. IRC Proceedings: Friday, January 27, 2023

    IRC logs for Friday, January 27, 2023



  18. Microsoft DuckDuckGo Falls to Lowest Share in 2 Years After Being Widely Exposed as Microsoft Proxy, Fake 'Privacy'

    DuckDuckGo, according to this latest data from Statcounter, fell from about 0.71% to just 0.58%; all the gains have been lost amid scandals, such as widespread realisation that DuckDuckGo is a Microsoft informant, curated by Microsoft and hosted by Microsoft (Bing is meanwhile laying off many people, but the media isn’t covering that or barely bothers)



  19. This is What the Microsoft-Sponsored Media Has Been Hyping Up for Weeks (Ahead of Microsoft Layoffs)

    Reprinted with permission from Ryan



  20. [Meme] António Campinos Wants to Be F***ing President Until 2028

    António Campinos insists he will be EPO President for 10 years, i.e. even longer than Benoît Battistelli (despite having appalling approval rates from staff)



  21. European Patent Office Staff Losing Hope

    The EPO’s management with its shallow campaign of obfuscation (pretending to protect children or some other nonsense) is not fooling patent examiners, who have grown tired and whose representatives say “the administration shows no intention of involving the staff representation in the drafting of the consultant’s mandate” (like in Sirius ‘Open Source’ where technical staff is ignored completely for misguided proposals to pass in the dark)



  22. IRC Proceedings: Thursday, January 26, 2023

    IRC logs for Thursday, January 26, 2023



  23. Sirius Relegated/Demoted/Destined Itself to Technical Hell by Refusing to Listen to the Technical Staff (Which Wanted to Stay With Asterisk/Free Software)

    In my final year at Sirius ‘Open Source’ communication systems had already become chaotic; there were too many dysfunctional tools, a lack of instructions, a lack of coordination and the proposed ‘solution’ (this past October) was just more complexity and red tape



  24. Geminispace Approaching Another Growth Milestone (2,300 Active Capsules)

    The expansion of Geminispace is worth noting again because another milestone is approached, flirted with, or will be surpassed this coming weekend



  25. [Meme] Cannot Get a Phone to Work... in 2022

    Sirius ‘Open Source’ wasted hours of workers’ time just testing the phone after it had moved to a defective system of Google (proprietary); instead of a rollback (back to Asterisk) the company doubled down on the faulty system and the phones still didn’t work properly, resulting in missing calls and angst (the company just blamed the workers who all along rejected this new system)



  26. [Meme] Modern Phones

    Sirius ‘Open Source’ is mistaking “modern” for better; insecurity and a lack of tech savvy typically leads to that



  27. The ISO Delusion: Sirius Corporation Demonstrates a Lack of Understanding of Security and Privacy

    Sirius ‘Open Source’, emboldened by ISO ‘paperwork’ (certification), lost sight of what it truly takes to run a business securely, mistaking worthless gadgets for “advancement” while compelling staff to sign a new contract in a hurry (prior contract-signing scandals notwithstanding)



  28. Links 26/01/2023: LibreOffice 7.4.5 and Ubuntu Pro Offers

    Links for the day



  29. Links 26/01/2023: GNU poke 3.0 and PipeWire 0.3.65

    Links for the day



  30. IRC Proceedings: Wednesday, January 25, 2023

    IRC logs for Wednesday, January 25, 2023


RSS 64x64RSS Feed: subscribe to the RSS feed for regular updates

Home iconSite Wiki: You can improve this site by helping the extension of the site's content

Home iconSite Home: Background about the site and some key features in the front page

Chat iconIRC Channel: Come and chat with us in real time

Recent Posts