Bonum Certa Men Certa

Featuritis as Threat to Computer Security

posted by Roy Schestowitz on Jun 10, 2024

Featuritis

They say too much of a good thing can be bad for you. And "apropos OpenSSH," an associate said, "I suspect traces of Microsoft in that growing mess".

Like Mesa and Linux, Microsoft has in effect infiltrated (by payment) OpenSSH, which puts it at risk. They add Windows code to otherwise-simple and relatively secure bits of software to "extend" them to platforms with NSA back doors.

Here are some old articles about creeping featurism, featuritis, or feature creep [1, 2, 3].

Featuritis, also known as feature creep or creeping featurism, refers to the phenomenon in technology wherein a product does many things poorly rather than doing one thing well. At the very least, features will be “hidden” from the user among other features. In UX terms, this might manifest as poor information architecture, but it could lead to an unusable product.

When I think about avoiding featuritis I’m thinking about minimalism. What’s my MVP? How does “less is more” apply to my design? Of course, there are a certain number of affordances and features that belong to this product, but it’s my job to make sure users are not overwhelmed by a product that is poorly thought out.

1. Describes a systematic tendency to load more chrome and features onto systems at the expense of whatever elegance they may have possessed when originally designed. See also feeping creaturism. “You know, the main problem with BSD Unix has always been creeping featurism.”

2. More generally, the tendency for anything complicated to become even more complicated because people keep saying “Gee, it would be even better if it had this feature too”. (See feature.) The result is usually a patchwork because it grew one ad-hoc step at a time, rather than being planned. Planning is a lot of work, but it's easy to add just one extra little feature to help someone ... and then another ... and another.... When creeping featurism gets out of hand, it's like a cancer. The GNU hello program, intended to illustrate GNU command-line switch and coding conventions, is also a wonderful parody of creeping featurism; the distribution changelog is particularly funny. Usually this term is used to describe computer programs, but it could also be said of the federal government, the IRS 1040 form, and new cars. A similar phenomenon sometimes afflicts conscious redesigns; see second-system effect. See also creeping elegance.

“Creeping featurism is the tendency to add to the number of features of a product, often extending the number beyond all reason. There is no way that a product can remain usable and understandable by the time it has all of those special-purpose features that have been added in over time.”

― Donald A. Norman, The Design of Everyday Things

K.I.S.S. (Keep It Simple, Stupid) is essential for real security and outsourcing is the very opposite of security because it is compromising oneself based on trust in some unverifiable, inauditable entity, i.e. the antithesis of self-determination. It is imperative that we collectively reject the doctrine of fake security, wherein people controlling their computers is "sideloading". This morning we mentioned this in relation tom CAs.

Other Recent Techrights' Posts

Links 27/09/2024: Kangaroo Courts, Invalidating More Software Patents
Links for the day
Gemini Links 27/09/2024: Project Skydrop, PubSub
Links for the day
"Essential Server Security Security" at linuxsecurity.com is SEO SPAM (the Usual)
Another day passes, more slop and SPAM
Links 27/09/2024: Microsoft Layoffs Again, Hey Hi (AI) Disappointments, and Ampere at Risk
Links for the day
Gemini Links 27/09/2024: Reward Work, Smolnet, and More
Links for the day
China is Abandoning Windows Already (But Web Surveys Won't Show That)
China has its own operating systems (which Web surveys cannot correctly recognise)
Chinese Whispers About "Linux" (Apple Really)
CUPS is Apple
[Meme] A Cup of Apple
Turns out it's some Apple thing
Links 27/09/2024: China Tensions Growing, JUVE Patent Posting SPAM Again (the Real Business Model)
Links for the day
Maintenance and Plans for Next Week
a headsup
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, September 26, 2024
IRC logs for Thursday, September 26, 2024
More Microsoft Layoffs, Second Very Large Wave This Month
Will OpenAI collapse soon (exodus of executives continues)?
Gemini Links 27/09/2024: Run Results, Primitive Pics
Links for the day
Microsoft Won't Need to Kill Red Hat Because IBM is Already Doing It (Corporate Suicide)
Many comments critical of Arvind are deemed "racist" and removed, which is probably serving to justify IBM's choice of identity politics
[Meme] Break the Law for the European Patent Office (EPO) or Die (Get Sacked in a Terrible Economy)
Europe's second-largest institution forces scientists to grant illegal monopolies to multinationals (or go broke)
The EPO's Central Staff Committee Explains the EPO Became So Corrupt That It Strives to Almost Automatically Grant Every Patent (Monopoly) Request
Each time this is done deliberately by the management should be considered a serious white-collar crime, but at the EPO they flaunt diplomatic immunity as they destroy Europe for "profit" (we know whose)
Lots of Anti-Linux FUD This Week, Some of It is Microsoft- or Chatbot-Generated Spew
The bad news is, we're seeing lots of anti-Linux trash this week in the media
Links 26/09/2024: Russia's Escalation in Its Nuclear Tone
Links for the day
Red Hat Publishes Windows Article, Omits Authors' Names
In the past, Red Hat published Windows articles for Microsoft staff. We covered examples.
Why We Keep Saying Bryan Lunduke is a Liability
In recent days he promoted the idea Trump had won the 2020 election
The Media Has Hardly Mentioned This, But New Antitrust Complaint Filed Against Microsoft in the European Union
"AFP has wirefeed article picked up only by two sites about how Microsoft abuses Azure to 1) lock-in 'customers' and 2) overcharge them 400%"
[Meme] How Crime Becomes the 'Normal' in Society
crimes pile up and nobody even keeps a count
EPO Dictatorship, Facing Growing Pressure From Senior Staff for Breaking Laws and Illegally Running the System, Turns to "Young Professionals" (to Crush Voices, Rights, and Benefits)
The European patent system has become a bloody jungle and the "courts" are themselves a violation of the law. They have no actual legitimacy, they're run for and by industry (as in, large corporations, not even European).
A Year Since the Big Switch - Part V - In Summary
"The truth always finds its way out, even years and years and years later. The truth always prevails." -Tyler Hamilton
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, September 25, 2024
IRC logs for Wednesday, September 25, 2024
Gemini Links 25/09/2024: Banning Leasehold, Eshell Ramble
Links for the day
opensource.org Remains Almost Nothing But 'Hey Hi' Spam Sponsored by Microsoft
opensource.org (OSI) is a corrupt, compromised organisation, making up for its corruption with political correctness
Links 25/09/2024: Escalation in Lebanon, Disruptions in Seoul's Airports
Links for the day
What "Linux" Articles Look Like in ZDNet Right Now
It has been like this for days already
Gemini Links 25/09/2024: Endless Summer and Public TV Experiment
Links for the day
Technology: rights or responsibilities?
I've been wondering why I enjoy occasionally writing things for the Techrights site? What does "tech rights" mean to me?
Truth Prevails
Truth will ultimately prevail where there is pains taken to bring it to light. -George Washington
A Year Since the Big Switch - Part IV - Intimidation Against the Host/ISP, Which Offered Help Relocating to a Safer Haven
Robust hosting helps sites prevail for decades, not years
Links 25/09/2024: ccTLD Phishing Characterisation, Advertising Industry Has Over a Thousand Contracts With Polluting Industries
Links for the day
[Meme] EPO Versus Technology (and Versus the Law)
They just simply don't care about the law; they break the law for profit
A Lot of Litigation at the European Patent Office Because the Administration Crushes the Rights of Staff
"on the real scope of cutting benefits the Office is thriving, with new measures every year."
Consensus Inside IBM That the Leadership is Gutting What's Left of the Company
Considering the debt and the lack of direction, it's hard to see how IBM can recover
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Tuesday, September 24, 2024
IRC logs for Tuesday, September 24, 2024
Gemini Links 25/09/2024: Playing With Micro Emacs and Luddites
Links for the day