05.20.10

Gemini version available ♊︎

Disable Aero in Vista 7

Posted in Microsoft, Security, Vista 7, Windows at 5:36 am by Dr. Roy Schestowitz

Aero

Summary: Resource-hungry visual effects become a security threat to Windows

YET another security problem is found in Vista 7, which begs for the question, “how on Earth does the GUI/presentation layer pose a risk to the entire operating system?”

Microsoft on Tuesday warned users of a vulnerability in 64-bit versions of Windows 7 and Windows Server 2008 R2 that could expose users to malware attacks.

[...]

Bryant said a patch would be forthcoming, but didn’t say when. In the meantime, users can prevent attacks by disabling the Windows Aero Theme. To turn it off, choose Start > Control Panel and click on Appearance and Personalization. Then click on Change the Theme. Then select one of the Basic and High Contrast Themes.

Vista 7 — like its predecessors — is not secure. Also see:

Did anyone really think that Vista 7 would improve security? Some say that Vista 7 is less secure than Vista. What’s even more perplexing:

People who paid for Vista do not feel they should pay again for “7″. Folks who sell defective cars should expect no more custom. Consumers may find “7″ acceptable but business wants to be free of the burden of that other OS. Some businesses and organizations will go with “7″ as the line of least resistance but GNU/Linux really looks good to users and administrators who have kept XP going for years. My users are asking for something fast that runs on our hardware. “7″ is not happening. We even were given some brand new machines with 3gB RAM, and, to my surprise, find they shipped with XP… That says something about this notion that customers are demanding “7″. Why would an OEM ship us XP if that were the case?

Best of Windows is not the best operating system.

Share in other sites/networks: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Reddit
  • email

Decor ᶃ Gemini Space

Below is a Web proxy. We recommend getting a Gemini client/browser.

Black/white/grey bullet button This post is also available in Gemini over at this address (requires a Gemini client/browser to open).

Decor ✐ Cross-references

Black/white/grey bullet button Pages that cross-reference this one, if any exist, are listed below or will be listed below over time.

Decor ▢ Respond and Discuss

Black/white/grey bullet button If you liked this post, consider subscribing to the RSS feed or join us now at the IRC channels.

14 Comments

  1. your_friend said,

    May 20, 2010 at 12:57 pm

    Gravatar

    Vista 7 is pretty? It’s one of the ugliest and least efficient interfaces inflicted on users. Virtual desktops are still rudimentary and the flip view is useless for anything but advertising to the ignorant. Microsoft’s ribbon interface is a confusing change for prior users that wastes screen space in the more limited direction of most LCDs, forcing people to bow their heads and scroll a lot. The looks themselves are a step backwards from previous less cluttered versions of Windows. The proportions are even worse, being more complicated and less coherent than others that were forced by technical limitations. The overall result is something that is more cluttered and bewildering than the electronic games section of a casino but twice as crass.

  2. Yuhong Bao said,

    May 20, 2010 at 8:08 pm

    Gravatar

    “Vista 7 — like its predecessors — is not secure. Also see:”
    I already rebut some of them, particularly bad is the “Vista 7 Security “Cannot be Fixed. It’s a Design Problem.”” one (see the IRC logs).

    your_friend Reply:

    A dozen cases of complete failure can be rebutted? After 25 years of the worst kinds of software insecurity you still think Windows can be used for anything but non networked games or toys? What amazing faith you have.

    Yuhong Bao Reply:

    I was rebutting the evidence used. See old IRC logs.

    Dr. Roy Schestowitz Reply:

    Microsoft will need to rebuild Windows. It still lacks security features that are found in UNIX/Linux.

    Marketing hype campaigns about “security” and UAC restrictions are not enough.

    Yuhong Bao Reply:

    It still lacks security features that are found in UNIX/Linux.
    What features? UAC is a pretty close clone of sudo, for example.

    Dr. Roy Schestowitz Reply:

    Repositories for starters. I can’t give you a complete list right now. See http://www.theregister.co.uk/2004/10/22/linux_v_windows_security/

    Yuhong Bao Reply:

    Yea, I have read this. Let me try to rebut some of them. The first one “Windows has only recently evolved from a single-user design to a multi-user model” is just plainly not true. NT has existed since 1993, even before Windows 95! On RPC, I know (I have seen Blaster, for example), but that is not easy to change even if Windows is rewritten since it is a network protocol, for God’s sake. And yes MS has been trying to make Windows more modular, see Windows Server 2008, for example, which was released after the article.

    Yuhong Bao Reply:

    Now 95 indeed ended up more popular than NT, which led to for example a lot of Win32 applications written without the NT security model in mind.

    Dr. Roy Schestowitz Reply:

    Yea, I have read this. Let me try to rebut some of them. The first one “Windows has only recently evolved from a single-user design to a multi-user model” is just plainly not true. NT has existed since 1993, even before Windows 95! On RPC, I know (I have seen Blaster, for example), but that is not easy to change even if Windows is rewritten since it is a network protocol, for God’s sake. And yes MS has been trying to make Windows more modular, see Windows Server 2008, for example, which was released after the article.

    Please provide me with proof that it’s more modular. Microsoft patented a modular O/S, but it does not mean this was properly implemented (or that Microsoft invented it).

    Now 95 indeed ended up more popular than NT, which led to for example a lot of Win32 applications written without the NT security model in mind.

    The article is not from early NT days. It’s just several years old. I think you are nitpicking.

    Yuhong Bao Reply:

    Please provide me with proof that it’s more modular. Microsoft patented a modular O/S, but it does not mean this was properly implemented (or that Microsoft invented it).
    Windows Server 2008, with it’s Server Core support, should be proof that MS is at least trying to make it more modular.

    Dr. Roy Schestowitz Reply:

    Please provide me with proof that it’s more modular. Microsoft patented a modular O/S, but it does not mean this was properly implemented (or that Microsoft invented it).

    Windows Server 2008, with it’s Server Core support, should be proof that MS is at least trying to make it more modular.

    Trying. It’s still not there. For a truly modular architecture see how Linux/GNU/X can be decoupled.

  3. Yuhong Bao said,

    May 21, 2010 at 3:51 pm

    Gravatar

    “The article is not from early NT days. It’s just several years old. ”
    Which only makes the claim that “Windows has only recently evolved from a single-user design to a multi-user model” even less true. NT has existed for more than a decade by then.

    Dr. Roy Schestowitz Reply:

    That’s just a distraction really. It’s not the ‘meat’ of the article.

DecorWhat Else is New


  1. [Meme] Protecting European Patent Courts From EPO 'Mafia'

    With flagrant disregard for court rulings (or workarounds to dodge actual compliance) it seems clear that today's EPO management is allergic to justice and to judges; European Patents perish at unprecedented levels in national European courts and it should be kept that way



  2. Links 15/10/2021: Pine64's New PinePhone Pro and Ubuntu 22.04 LTS Codename

    Links for the day



  3. [Meme] GitHub Isn't Free Hosting, It's All About Control by Microsoft

    Deleting GitHub isn’t a political statement but a pragmatic decision, seeing how Microsoft routinely misuses its control over GitHub to manipulate the market



  4. With EPO 'Strike Regulations' Belatedly Ruled Unlawful, EPO Management May be Lowering the Salary Even Further by Introducing Outside 'Temps' or Casual Workers

    Institutional capture by an 'IP' (litigation) Mafia is nearly complete; with illegal so-called (anti) 'Strike Regulations' out the door, they're quickly moving on to another plan, or so it seems on the surface



  5. Links 15/10/2021: 95% of Ransomware Targets Windows

    Links for the day



  6. IRC Proceedings: Thursday, October 14, 2021

    IRC logs for Thursday, October 14, 2021



  7. The EPO’s Overseer/Overseen Collusion — Part XII: The French Connection

    The EPO‘s presidency (led by Frenchmen for nearly 15 years out of the past 18 years; Benoît Battistelli and António Campinos are both French despite their somewhat misleading surnames) is extremely unlikely to even be mildly scrutinised by the French delegates because of a web of nepotism and protectionism



  8. [Meme] Another Maladministration Meeting Comes to an End

    Did the EPO‘s overseeing body properly tackle Benoît Battistelli‘s illegal acts, authorised by that very same overseeing body? Don’t hold your breath as António Campinos continues to crack down on staff (maybe ILOAT will rule on it in 2030)



  9. Links 14/10/2021: LibreOffice 7.2.2, Happy Birthday to Jolla, Ubuntu 21.10, Devuan GNU+Linux 4.0, OpenBSD 7.0

    Links for the day



  10. [Teaser] What Miguel de Icaza Really Thinks of the CEO of Microsoft GitHub

    Following the opening of a new series about Microsoft GitHub we drop a little teaser today; we expect dozens of parts to be released in the coming weeks/months as facts are being validated and organised



  11. Splitting the Time to Cover More Leaks and Exposés

    We take stock of Part 11 of the ongoing EPO series (“EPO’s Overseer/Overseen Collusion”) and explain what caused various delays yesterday; we may have to up our pace a little in order to keep up with an influx of leaks and whistleblowers



  12. [Meme] Destroying the Workplace

    The working conditions at the EPO continue to worsen under the António Campinos regime, perpetuating the decade-long 'demolition project' of Benoît Battistelli and his cohorts in the complicit Administrative CouncilThe working conditions at the EPO continue to worsen under the António Campinos regime, perpetuating the decade-long 'demolition project' of Benoît Battistelli and his cohorts in the complicit Administrative Council



  13. Microsoft GitHub Exposé — Part I — Inside a Den of Corruption and Misogynists

    Today we commence a new series that implicates Microsoft, GitHub, Copilot, and Team Mono



  14. EPO Management Tricks EPO Staff Into Taking More Paycuts

    “Education and childcare reform” [sic] is an António Campinos "reform" in the same sense regressive salary reductions are just “adjustments” (euphemism); Electronic opt-in gaffes, according to staff representatives, show that the tradition of Benoît Battistelli carries on at the Office, taking away from staff for a few corrupt officials to milk the institution to death



  15. Links 14/10/2021: Whisker Menu 2.6.1 and KDE's Birthday

    Links for the day



  16. Links 14/10/2021: DragonFly 6.0.1 Released and Red Hat Loses Another Top Executive

    Links for the day



  17. IRC Proceedings: Wednesday, October 13, 2021

    IRC logs for Wednesday, October 13, 2021



  18. Süddeutsche Zeitung Became a Propaganda Arm of EPO Management (and by Extension Software Patents/Patent Lobbyists)

    EPO ‘genius’ António Campinos enjoys shallow press coverage, which echoes or resembles Benoît Battistelli‘s corruption of the media (paid-for fluff)



  19. GNOME (and Debian) Infringe Human Rights by Shipping Parental Control Software (Internally Called “Malcontent”)

    Guest post by Ryan, reprinted with permission



  20. No, JWZ, Discord is Not “IRC With Pictures”

    Guest post by Ryan, reprinted with permission



  21. The EPO’s Overseer/Overseen Collusion — Part XI: “General Bock” - Battistelli's Swiss Apprentice?

    The António Campinos-led EPO won’t be subjected to real oversight by the Administrative Council, which ‘met’ (online) earlier today; so we look at who in the Administrative Council did what; today we wrap up the parts about Switzerland (third part of three)



  22. Links 13/10/2021: Sparky 2021.10 and New Archcraft

    Links for the day



  23. Links 13/10/2021: Firefox Keylogger on (By Default), GNOME Platform Design Discussed

    Links for the day



  24. [Meme] [Teaser] Swiss Alexandre Benallas

    The EPO‘s French dictator, Benoît ‘Vichy’ Battistelli, might be relieved to hear that his enabler in the adjacent Switzerland also enlisted armed bullies to keep the population down (the father of António Campinos might know a thing or two about those; it’s why he fled to France)



  25. IRC Proceedings: Tuesday, October 12, 2021

    IRC logs for Tuesday, October 12, 2021



  26. A Tale of Two KDE Distributions: Kubuntu 21.10 and Debian 11 GNU/Linux

    Guest post by Ryan, reprinted with permission



  27. Citation/Atlas 'Security' Exam is a Total Farce, But It's Still Good for Entertainment Purposes

    What are people being taught about so-called 'security'? Might that explain so many security breaches? (Poor training, wrong assumptions)



  28. [Meme] [Teaser] Swiss Rumbustious Alpha-Rambos

    Aggressive men tarnish the image of Switzerland as a soft nation of peace; details tomorrow...



  29. Unqualified Managers and Demoralising Leadership in Switzerland (Like in EPO)

    Switzerland’s media (what’s left of it) is currently looking into new scandals associated with Christian Bock, who back in 2013 helped back the EPO's illegal anti-strike regulations



  30. The EPO’s Overseer/Overseen Collusion — Part X: Introducing the Controversial Christian Bock

    An enabler of Benoît Battistelli, who illegally brought firearms to the EPO, very recently had a firearms-related scandal in his home country


RSS 64x64RSS Feed: subscribe to the RSS feed for regular updates

Home iconSite Wiki: You can improve this site by helping the extension of the site's content

Home iconSite Home: Background about the site and some key features in the front page

Chat iconIRC Channel: Come and chat with us in real time

Recent Posts