Bonum Certa Men Certa

Recent FUD About GNU/Linux Security May be Related to Windows XP EOL Propaganda and Adware

Microsoft propaganda agents occupy the press and pressure people to stay with Windows

Tony Bradley



Summary: Analysis of some of the recent claims that GNU/Linux and Android are not secure, the source of such claims (sometimes Microsoft), and what the timing of these claims may or may not tell us about agenda

WE WOULD like to put forth the possibility that the latest 'security'-themed negative coverage about GNU/Linux is not a natural outcome of standard/routine research or even amplified naturally because GNU/Linux having flaws is the "man bites dog" equivalent [1]. Microsoft has familiar tactics, partly revealed by leaked documents, of manufacturing negative coverage about competitors like GNU and Linux. We gave many examples in the past (see this page for example). It can take years for relevant documents to be leaked.



It is not at all unthinkable that Microsoft still pays think tanks and partners to flood news site with negative publicity relating to GNU/Linux security. One reader wrote to us the following: "I saw on Diaspora that you were planning to write a story about how Microsoft coordinates PR across what should be an independent press. You might be interested in some old work that I did to highlight a minor revolt against "embargos" by Techchrunch and Wired" (we covered those years ago).

The 'security'-themed negative coverage goes beyond GnuTLS [1, 2] and the latest from Symantec and others (claiming UNIX/Linux botnets while ignoring the cause and the elephant in the room, which journalists don't like to name). There were dozens of articles about it, simply relaying the claims without digging any deeper. Earlier this week we saw some headline about Microsoft finding and reporting Android security holes ("paper published by researchers from Indiana University and Microsoft" [1, 2]). Yes, Microsoft sure is "embracing" Android... trying to paint GNU/Linux "equally bad" (another familiar old strategy). Ars Technica, at times the Fox 'news' of tech (depending on the writers), is trying to peddle some other smears against GNU/Linux security. A lot of the latest can be attributed to shoddy 'reporting' by Dan Goodin, who started a lot of the other recent panic and continues his long smear attack on GNU/Linux security (this time he blames out-of-date servers that can and should be freely upgraded). This FUD was so bad that entire articles were written to rebut it (after it had spread to other places [2]). See the comments/updates in Cisco's Web site; it is very revealing. There is also a long discussion about this in Disapora. It seems like some journalists made it their mission to make GNU/Linux look insecure by whatever means necessary (even misrepresentation). As Susan Linton put it: "A lot of Websites are still covering the last couple of Linux security breaches and today Steven J. Vaughan-Nichols said, "It's not Linux's fault!"" (and he's right).

Will Hill wrote that the mistakes are starting to get unraveled: "Looks like his source, Cisco, was shredded for saying what they did. Check out all the strike outs and retractions.

"...The observation of affected hosts running Linux kernel 2.6 is anecdotal and in no way reflects a universal condition among all of the compromised websites. Accordingly, we have adjusted the title for clarity. We have not identified the initial exploit vector for the stage zero URIs. It was not our intention to conflate our anecdotal observations with the technical facts provided in the listed URIs or other demonstrable data, and the below strike through annotations reflect that. We also want to thank the community for the timely feedback."

Will Hill connects this to the following bit, saying "it was also used as XP EoL hype."

To quote the FUD: "In April 2014, Windows XP will become unsupported. Organisations urgently need to review their use of unsupported systems in operation. Such systems need to be upgraded where possible, or regularly monitored to detect compromise. Organisations should consider their exposure to risks from the use of unsupported systems..."

So they hardly even hide some of their motive, perhaps thinking it would be too subtle. ZDNet and other Microsoft-friendly sites also found the above an opportunity convenient enough to FUD both Bitcoin and GNU/Linux at the same time [3,4].

What we basically have here is an explosion of semi-truths, spin, and fabrications -- all trying to make a perception of GNU/Linux not being more secure than Windows. Timing matters here. We previously saw 'former' Microsoft people smearing Android security from academic standing (no disclosures given) and here too we see Microsoft appearing in a paper against Android security, seemingly coming from a university. This isn't uncommon and it's one of these cases where showing the Microsoft connection is simple, as in the case of other academics whom Microsoft is paying to be spreading law-themed FUD against Android (also without disclosures).

Windows XP support is ending and many look forward to/towards a GNU/Linux migration, at the very least for security. That is true for the Indian government [5] and some British companies I happen to know about but cannot name (being discreet is important when dealing with a bully like Microsoft). GNU/Linux distributions are typically replacing Windows XP [6,7,8]; Apple is rarely even an option. Indian Banks may switch to Linux [9] and many other banks may soon move to Linux because of security of course [10-14]. There are several separate reports about potential mass migration of ATMs from Windows (XP) to GNU/Linux and Microsoft is of course paying attention to this (maybe it's reading people's E-mails, too). What is the alternative, the truly horrible Vista 8? Microsoft partners like Tony Bradley (shown above; he is strongly tied to Microsoft professionally and has a long history of attacking and smearing GNU/Linux in IDG) desperately try to whitewash Vista 8. "Microsoft apologist gets column space," wrote iophk, perhaps not knowing that this "apologist" is actually tied to Microsoft (Forbes lets him run Microsoft's propaganda campaign right now, without disclosures). One can truly see how miserable Microsoft has become.

Now is a good time for many to move from Windows XP to GNU/Linux, even in businesses. This new article says that "the largest percentage (41 percent) found “simply that Windows applications are not compatible.”"

Wine might do better at compatibility than newer versions of Windows, including Vista 8. As iophk put it: "Maybe this will lead the removal of Microsoft from SMB environments and the movement to open standards." Swapnil Bhartiya explained a few days ago that a migration to GNU/Linux is no longer what it used to be. "Don’t get scared," he argues, "Linux is not what you might have heard about it way back in 2005. Today Linux is dominating the world – Android is powered by Linux, Chromebooks are powered by Linux, your Chromecast runs on Linux. And these are consumer-grade devices extremely easy to use."

According to another new report, "Windows XP users are mistaking Microsoft's nag screens for adware" (Windows XP users are faced with Microsoft ads now).

"Just upgrade to a GNU/Linux distro and be done with it," concludes iophk.

GNU/Linux is the secure option, no matter how much Microsoft spin is trying to convince people otherwise.

Related/contextual items from the news:


  1. Why the media loves to exaggerate Linux security problems
    There have been a lot of media reports about Linux security problems recently. ZDNet has taken a stand and pointed out that the problem isn't with Linux, the problem is with certain Linux users and administrators. I'd also argue that the problem is also with certain media outlets who jump on the "linux security stinks!" bandwagon at the earliest opportunity.


  2. Attack hits Web servers with outdated Linux kernels


  3. Linux Malware Evolves to Mine Cryptocurrencies


  4. Linux worm Darlloz targets Intel architecture to mine digital currency


  5. Is it Linux over Windows?
    Microsoft India has decided to discontinue support for its legacy Windows XP platform. This doesn’t affect too many people — since most users of Microsoft’s products have already moved onto the newer Windows systems —Vista, 7 and now 8. It does, however, hit one of the largest employers of the nation — the Indian government.

    When the support for XP goes out of order next month, the Indian government might start taking on Linux in a big way — if a recommendation issued by the Tamil Nadu government is any indicator.


  6. Windows XP User? Here’s 4 Reasons to Switch to Lubuntu This April
    Support for Windows XP officially ends on April 8, 2014. After this date Microsoft will no longer issues security updates, patch exploits or provide any other means of official, direct support to its users


  7. Meet Xubuntu, For Life Beyond Microsoft Corporation (MSFT) Windows XP OS !
    Xubuntu is a distribution of Ubuntu, which uses the same architecture and software repositories as the mainstream Ubuntu. The only difference is that in the regular Ubuntu distribution, it uses a GUI called Unity, which is much more Mac OSX like, whereas Ubuntu uses XFCE which resembles a prettier version of XP. Alternatively, you could also check out Linux Mint, which pretty much feels exactly like Vista, but I stick to Xubuntu due to better Cannonical support – the People behind Ubuntu). Xubuntu is incredibly stingy on resources, and can run smoothly on a Pentium 4 or higher with a measly 512MB of RAM. Recommended specs being any Dual Core Intel/AMD CPU with 1GB of RAM.


  8. Lubuntu might be the best Linux distro for Windows XP users
    In today's open source roundup: Lubuntu could be the best replacement for Windows XP. Plus: A review of Portal 2 for Linux, and an interview with the creator of educational distro Ubermix


  9. Indian Banks may switch to Linux, rather than taking extended Windows XP Support
    As we have reported you earlier that Microsoft is pulling out their Windows XP support after April 8 2014. Since a vast majority of bank ATMs around the world currently runs on Windows XP, but if they’ll continue sticking to it after the deadline, then they’ll be exposed to all kinds of security threats, as Microsoft will no longer provide the security patches thereafter.


  10. Financial Firms Looking To Linux, Windows 7 As XP Support Dries Up
  11. ATM operators eye Linux as alternative to Windows XP
    Some financial services companies are looking to migrate their ATM fleets from Windows to Linux in a bid to have better control over hardware and software upgrade cycles.


  12. ATM operators decide on Linux over Windows


  13. 95% of bank ATMs face end of security support
    It might sound odd that ATMs are running on aging software better suited to a home PC. In fact, security experts have chastised the financial industry for putting ATMs on a PC operating system in the first place. They argue ATMs should be using software that is scaled down and less buggy, such as Linux.
  14. Huge Swath Of XP Machines May Go To */Linux


Recent Techrights' Posts

Maintenance Reminder
We'll carry on publishing
EPO "Cocaine Communication Manager" - Part VIII - Mobbing and Silencing of Dissenting Staff
that's the very cornerstone of functional democracies with real opposition parties
Reader Shares Recent Memes on Slop and 'Coding' by LLMs
"just some funny memes I thought were relevant to current coverage."
Invitation to General Assembly After 1,200 EPO Workers Participated in the Demonstration 3 Days Ago
"the strike of 19 March was also very well followed."
SLAPP Censorship - Part 17 Out of 200: A Long Track Record of Online Abuse, Then Choosing a Low-Cost Law Firm to Muzzle People Who Have Illuminated This Abuse for Over a Decade
Censorship by targeting ISPs and webhosts isn't unprecedented
 
SLAPP Censorship - Part 18 Out of 200: Third Parties Funding Attacks on the Messengers, Lawsuits Against GAFAM-Critical Voices That Uphold Real National Security
Women are like kryptonite to them
Never Trust People Who Write Their Own Wikipedia Pages (Vanity Pages About Themselves) or Ask Friends to Do So. Also: Jono Bacon is Married to Microsoft.
We'd hardly be the first to point out Wikipedia isn't what it seems
No Tolerance for Attacks on Family Members
Being a Free software activist ought not lead to "collateral damage" like attacks on family members, including doxing
Sirius Open Source is Just a Zombie Firm With Shell Entities
Many companies fake their health and their size
Communities Can Only Survive When Trust Prevails
PCLinuxOS is still a vibrant and authentic community
Techrights Was Always a Community Site
The harder we're attacked, the more people participate in the site
Behind the PR Smokescreen and Microsoft-Sponsored Chaff, Microsoft Layoffs in "AI" Alleged This Month
In an age when ~1,000 simultaneous layoffs aren't enough to receive any media coverage, what can we expect remaining publishers to tell us about Microsoft layoffs in 2026?
Bluewashing at Confluent: Some Workers to Leave Within 3 Months (IBM Mass Layoffs)
Is the "era of AI" an era when none of the media will mention over 800 layoffs? [...] There's a lesson here about the state of the contemporary media, not just IBM and bluewashing
Microsoft OpenAI, Drowning in Debt and Forced to Make Significant Cuts (as Reports Reveal This Month), Does Hiring Disguised as "Takeovers" to Fake Value or Alleged Potential
Remember what happened to Skype last year
Slop Does Not Replace Art, It Contaminates Everything With Reckless Nonsense
many Computer Scientists do not want programs to get contaminated by slop
Coders Don't Just Reject 'Vibe Coding' Because They're "Luddites", They Just Know the True Cost of Slop
if some programmer says slop sucks, don't rush to assume selfishness or defence of one's occupation
When Nobody Else Covers the News
There's an obvious "media blackout" regarding the mass layoffs
Links 21/03/2026: David Botstein Dies, Slop as Censorship Apparatus
Links for the day
Links 21/03/2026: Metastablecoin Fragmentation and Crescent Moon
Links for the day
Gemini Links 21/03/2026: Historic Ada Docs; The Lurking LLM on the SmolNet
Links for the day
HSBC the Latest Failed Bank Using Slop as Excuse for Its Financial Failure
"HSBC is planning on cutting as many as 20,000 jobs in the near future as the company allies with AI revolution."
A/Prof Susan G Kleinmann, Enkelena Haxhija & Debian-private risk to MIT
Reprinted with permission from Daniel Pocock
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, March 20, 2026
IRC logs for Friday, March 20, 2026
Plagiarism in "Linux" Clothing (LLM Slop in linuxiac.com, LinuxTeck.com, and linuxsecurity.com)
The net effect of those slopfarms is very negative
Links 20/03/2026: Facebook Weaponised Politically, Openwashing by LF and NVIDIA, Encyclopedia Britannica Sues Microsoft Proxy for Plagiarism
Links for the day
The EPO's Local Staff Committee Munich (LSCMN) Explains to the Administrative Council (AC) How Bad Things Have Become at Europe's Second-Largest Institution, Biggest Patent Office, and Corruption/Cocaine Hub (Jobs Sold to Friends)
We'll say a bit more tomorrow
IBM's Red Hat Diversity: Only 3 Women (Out of 11 Leaders)
For comparison's sake, the FSF is about 50% female
Symptom of Publishers Dying: They Move to Adopt Slop. Symptom of Software Companies Dying: They Move to Adopt Slop ('Vibe').
It'll always fail. It's hype. It's a bubble.
Under IBM, Red Hat Replaces Code With LLM Slop, Fedora is Slopware
Not even hiding it, those things are in plain sight
Gemini Links 20/03/2026: Depictions of Culture and The Social Smolnet
Links for the day
SimilarWeb Was Never a Reliable Yardstick for Traffic
5RB may need some "house-cleaning"
Strangulation, suffocation, Jonathan Carter & Debian toxic culture confirmed
Reprinted with permission from Daniel Pocock
Reports or Hearsay Suggest Ogilvy Broke Up With IBM and Insiders Report Mass Layoffs in "Infrastructure" (Might Impact Red Hat Entrants)
hearsay in Social Control Media
Scheduled Server Maintenance Tomorrow Night
Starting 9PM
None of the Above (NotA) & Debian snubbing Sruthi Chandran
Reprinted with permission from Daniel Pocock
Links 20/03/2026: Cryptography Pioneers Win Turing Award and BMG Sues Anthropic for Copyright Infringement
Links for the day
Even Uganda Understands That Journalists Never Belong in Prison
"Ugandan authorities must respect the spirit of this ruling and abandon any measures that seek to jail Ugandans for the free flow of ideas."
Inaction Helps Your Enemies
Without freedom, there's nothing else left
Windows Down From 99% to ~50% in Republic of Seychelles (République des Seychelles)
Windows fell by a lot
"systemd is essentially a corporate IBM/Redhat project and corporations of course will comply"
Microsoft and IBM care about users' freedom like Cheeto Lump cares about the US Constitution
Confluent Insiders: IBM Laid Over Over 800 at Confluent, Not Just 800
For the record, the layoffs at Confluent won't be over. After the bluewashing there will be "IBM RAs" impacting Confluent folks, aside from PIPs
The Layoffs at IBM Carry on (Shades of Enron)
Is IBM another Enron?
"IBM boss Arvind Krishna... financial package valued at $38 million in calendar 2025 - equivalent to the average collective pay of 765 Big Blue workers."
continues to ruin the company to enrich himself while pretending he has a strategy
Gemini Links 20/03/2026: Digital Identity Bifurcation and a "Return to Gemini"
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, March 19, 2026
IRC logs for Thursday, March 19, 2026
SLAPP Censorship - Part 16 Out of 200: Detailing the Actors and Explaining Techrights' Own Internet Relay Chat (IRC) Network
For those who have not followed our story
Microsoft "hiding behind bigger news of war, Epstein, other companies' layoffs"
They know what's coming, they just don't know when
Joerg Jaspert (Debian Account Manager/DAM) personally approved Raphael Hertzog's wife Sophie Brun
Reprinted with permission from Daniel Pocock
Letter 'A' prohibited by Code of Conduct extremism
Reprinted with permission from Daniel Pocock
Spoiler: Diversity & Debian means different things to different people
Reprinted with permission from Daniel Pocock
Solicitors Regulation Authority (SRA) Admits Failures and Criticism of Inaction on SLAPPs
many if not all solicitors and solicitor firms in the UK are in effect unregulated
Archiving or Preserving Pages About IBM Layoffs
Layoffs at IBM and the media does not talk about these
ABC, the American National Broadcaster, "Now Publishes Slop"
If the "big media" absorbs slop, it'll no longer be trusted and therefore not read/watched by the public
Links 19/03/2026: Culling Deepfakes of Artists’ Music and "Age Verification Isn’t the Answer"
Links for the day
Gemini Links 19/03/2026: "Aktion GPT-4" and "Kill All Descendants"
Links for the day
"AI" 15 Times in Short 'Article' From The Register MS. And The Register MS Got Paid to Publish It.
gets paid to do this
People Who Decided to Boycott Novell Over Its Microsoft Alliance Should Also Boycott Canonical
As an associate put it, "selling out further, due to Microsoft moles inside Canonical"
Links 19/03/2026: "AI Glasses" as Euphemism for Mass Surveillance and ABC (US) Has Begun Publishing Slop as 'News'
Links for the day
The European Patent Office, Europe's Second-Largest Institution, is on Strike Today
Lots more to come
What People Impacted by the Bluewashing Layoffs at IBM Confluent Say (While the Media Says Nothing at All, in Effect Burying the News)
Worse yet, the mainstream media spreads lies about it right now
IBM Has Turned Red Hat and Fedora Into Slop
This is IBM policy
IBM is Being Robbed, Companies and Jobs Are Destroyed
Companies taken over by IBM will be exploited and destroyed to keep a bubble inflated for a little while longer
In Confluent Layoffs, IBM Vapourises a Quarter of Its Workforce (IBM Buys Something That It Destroys Already)
In the past, such things were typically referred to as "media blackout"; now it's just "the norm".
IBM Effect at Confluent: Mass Layoffs and IBM's Business Conduct Guidelines (BCGs) Said to be Violated
For Confluent employees who survived the layoffs there will be "culture chock"
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, March 18, 2026
IRC logs for Wednesday, March 18, 2026
Links 19/03/2026: LLM Fatigue (It Doesn't Work as Advertised), "Small Web Feeds"
Links for the day