03.21.10

Gemini version available ♊︎

The Brute Force and Sheer Power of Microsoft Windows

Posted in Microsoft, Security, Windows at 7:36 pm by Dr. Roy Schestowitz

Fuerza bruta
“Fuerza Bruta”

Summary: How Windows botnets enable criminals to make a lot of money at the expense of Windows users

WINDOWS means business. Sure, it stands in the way of many legitimate businesses, but at least some bad guys manage to make a living out of Windows’ flaws. Here is the latest example:

Facebook’s 400 million users have been targeted by a spam run that could infect their computers with malicious software designed to steals passwords and other data, according to security researchers at McAfee.

There are two elements at play here; first, there is the brute-force mailing, which typically requires botnets; secondly, there is malware here that only runs on Windows (the article neglects to say this, just like many others). Tracy Anne corrects this in the comments, but it really should not be required if journalists do their job properly.

It wasn’t so long ago that the SEC reported the effects of SPAM (Microsoft Windows zombie spewage) on Wall Street trade. It was reportedly the same outside the United States. Botnets were affecting stock prices with manipulation through brute-force disinformation for pump-and-dump schemes (references here). Wired Magazine reported the following some days ago:

SEC: Hacker Manipulated Stock Prices

U.S. regulators are moving to freeze the assets and trading accounts of a Russian accused of hacking into personal online portfolios and manipulating the price of dozens of stocks listed on the Nasdaq Stock Market and New York Stock Exchange.

A New York federal judge on Tuesday sided with the Securities and Exchange Commission and froze the assets of Broco Investments, believed to be a one-trader operation based in St. Petersburg, Russia. The SEC said Broco capitalized by artificially moving prices of more 38 thinly traded securities — enabling Broco to profit from up-or-down price swings.

[...]

The so-called “hack, pump and dump” scheme is among the latest illicit methods of gaming the market though hacking.

Earlier today we wrote about Bitdefender (which is supposed to defend Windows) simply castrating and breaking the operating system. That’s what one gets for trying to secure Windows. Our reader Tim wonders if “Bitdefender is spot on”:

Allegedly Bitdefender has identified several parts of Windows as a trojan, fixed them and subsequently brought down Windows.

Being flippant, one could argue that Bitdefender was merely doing its job and identifying Windows as a trojan was correct, another camp could list it as yet another issue Microsoft’s OS has stumbled into.

By the definition of the words “malware” and “spyware”, Microsoft Windows is both. Just because it’s widely used does not except it from the symptoms and the diagnosis.

Share in other sites/networks: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Reddit
  • email

Decor ᶃ Gemini Space

Below is a Web proxy. We recommend getting a Gemini client/browser.

Black/white/grey bullet button This post is also available in Gemini over at this address (requires a Gemini client/browser to open).

Decor ✐ Cross-references

Black/white/grey bullet button Pages that cross-reference this one, if any exist, are listed below or will be listed below over time.

Decor ▢ Respond and Discuss

Black/white/grey bullet button If you liked this post, consider subscribing to the RSS feed or join us now at the IRC channels.

DecorWhat Else is New


  1. Pension Fraud Investigation Not a High Priority in Standard Life (Phoenix Group Holdings)

    The 'Open Source' company where I worked for nearly 12 years embezzled its staff; despite knowing that employees were subjected to fraud in Standard Life's name, it doesn't seem like Standard Life has bothered to investigate (it has been a fortnight already; no progress is reported by management at Standard Life)



  2. Links 20/03/2023: Tails 5.11 and EasyOS 5.1.1

    Links for the day



  3. Links 20/03/2023: Amazon Linux 2023 and Linux Kernel 6.3 RC3

    Links for the day



  4. IRC Proceedings: Sunday, March 19, 2023

    IRC logs for Sunday, March 19, 2023



  5. An Update on Sirius 'Open Source' Pensiongate: It's Looking Worse Than Ever

    It's starting to look more and more like pension providers in the UK, including some very major and large ones, are aiding criminals who steal money from their workers under the guise of "pensions"



  6. Services and Users TRApped in Telescreen-Running Apps

    TRApp, term that lends its name to this article, is short for "Telescreen-Running App". It sounds just like "trap". Any similarity is not purely coincidental.



  7. Links 19/03/2023: Release of Libreboot 20230319 and NATO Expanding

    Links for the day



  8. Great Things Brewing

    We've been very busy behind the scenes this past week; we expect some good publications ahead



  9. Links 19/03/2023: LLVM 16.0.0 and EasyOS Kirkstone 5.1 Releases

    Links for the day



  10. IRC Proceedings: Saturday, March 18, 2023

    IRC logs for Saturday, March 18, 2023



  11. Links 18/03/2023: Many HowTos, Several New Releases

    Links for the day



  12. Links 18/03/2023: Tor Browser 12.0.4 and Politics

    Links for the day



  13. Links 18/03/2023: Docker is Deleting Free Software Organisations

    Links for the day



  14. IRC Proceedings: Friday, March 17, 2023

    IRC logs for Friday, March 17, 2023



  15. New Talk: Richard Stallman Explains His Problem With Rust (Trademark Restrictions), Openwashing (Including Linux Kernel), Machine Learning, and the JavaScript Trap

    Richard Stallman's talk is now available above (skip to 18:20 to get to the talk; the volume was improved over time, corrected at the sender's end)



  16. Links 17/03/2023: CentOS Newsletter and News About 'Mr. UNIX' Ken Thompson Hopping on GNU/Linux

    Links for the day



  17. The European Patent Office's Central Staff Committee Explains the Situation at the EPO to the 'Yes Men' of António Campinos (Who is Stacking All the Panels)

    The EPO’s management is lying to staff (even right to their faces!) and it is actively obstructing attempts to step back into compliance with the law; elected staff representatives have produced detailed documents that explain the nature of some of the problems they’re facing



  18. Links 17/03/2023: Linux 6.2.7 and LibreSSL 3.7.1 Released

    Links for the day



  19. GNU/Linux in Honduras: 10% Market Share? (Updated)

    As per the latest statistics



  20. Links 17/03/2023: Update on John Deere’s Ongoing GPL Violations and PyTorch 2.0

    Links for the day



  21. IRC Proceedings: Thursday, March 16, 2023

    IRC logs for Thursday, March 16, 2023



  22. RMS: A Tour of Malicious Software, With a Typical Cell Phone as Example

    Tonight in Europe or this afternoon in America Richard M. Stallman (RMS), who turned 70 yesterday, gives a talk



  23. Skyfall for Sirius 'Open Source': A Second Pension Provider Starts to Investigate Serious (Sirius) Abuses

    Further to yesterday's update on Sirius ‘Open Source’ and its “Pensiongate” we can gladly report some progress following escalation to management; this is about tech and “Open Source” employees facing abuse at work, even subjected to crimes



  24. NOW: Pensions Lying, Obstructing and Gaslighting Clients After Months of Lies, Delays, and Cover-up (Amid Pension Fraud)

    The “Pensiongate” of Sirius ‘Open Source’ (the company which embezzled/robbed many workers for years) helps reveal the awful state of British pension providers, which are in effect enabling the embezzlement to carry on while lying to their clients



  25. Links 16/03/2023: War Escalations and More

    Links for the day



  26. Links 16/03/2023: OpenSSH 9.3 Released and WordPress 6.2 Release Candidate 2, Lapdock News

    Links for the day



  27. IRC Proceedings: Wednesday, March 15, 2023

    IRC logs for Wednesday, March 15, 2023



  28. Links 16/03/2023: OpenSSL 3.1 Released, 10,000 More Staff Cut in Facebook, and Windows Loses 10% in Speed

    Links for the day



  29. Links 15/03/2023: Transmission 4.0.2 and Lots in Geminispace

    Links for the day



  30. Links 15/03/2023: Qubes OS 4.1.2, Mozilla Swallows Buzzwords

    Links for the day


RSS 64x64RSS Feed: subscribe to the RSS feed for regular updates

Home iconSite Wiki: You can improve this site by helping the extension of the site's content

Home iconSite Home: Background about the site and some key features in the front page

Chat iconIRC Channel: Come and chat with us in real time

Recent Posts