Eye on Microsoft: Windows (In)Security in the News
- Dr. Roy Schestowitz
- 2009-04-24 10:24:19 UTC
- Modified: 2009-04-24 10:24:19 UTC
●
Windows Trojan That Infected Over 3.6 Million PCs Evolves with Worm Behavior
One of the top families of malicious code targeting the Windows platform has evolved with the addition of worm behavior, Microsoft warns. According to data made public via the Microsoft Security Intelligence Report, the Win32/Vundo Trojan infected over 3.6 million computers in the second half of 2008, and occupies the third position in a malware ranking behind Renos and Zlob. Vundo is a family of malware with various components that are designed to serve victims 'out of context' pop-up advertisements following infection. Microsoft warns that the Vundo family of malicious software can also
be used to download and execute arbitrary files.
●
One bot-infected PC = 600,000 spam messages a day
TRACElabs concluded that Rustock and Xarvester, the latter perhaps linked to the down-and-out Srizbi botnet, are the most efficient spam spewers of the nine bots. Each is capable of sending up to 25,000 messages per hour, or 600,000 per day, and 4.2 million per week.
●
Updated research of the largest base of real-world vulnerability data
4. Exploitation - Eighty percent of vulnerability exploits are now available within single digit days after the vulnerability’s public release. In 2008, Qualys Labs logged 56 vulnerabilities with zero-day exploits, including the RPC vulnerability that produced Conficker. In 2009, the first vulnerability released by Microsoft, MS09-001 had an exploit available within seven days. Microsoft’s April Patch Tuesday included known exploits for over 47 percent of the published vulnerabilities. This law had the most drastic change from the Laws 1.0 in 2004, which provided a comfortable 60 days as guidance.
Recent Techrights' Posts
- What Happened to the Open Source Initiative (OSI) Elections: Missed Deadline
- they helped expose a number of other scandals
- Red Hat's Owner is Called "America's Worst Tech Company" (IBM) and Microsoft's Liabilities Grow
- Microsoft has about a quarter of a trillion (yes, trillion with a "T") in liabilities
-
- Major Microsoft Layoffs This Week (Discussed Online)
- later we can expect a lot of spin, even misinformation
- Links 12/05/2025: Measles Rising and Taliban Outlaws Chess in Afghanistan
- Links for the day
- Gemini Links 12/05/2025: Advice, Iorist Ethics, and Touchscreens
- Links for the day
- The Finances of GAFAM Aren't as They Seem
- MICROSOFT FINANCIAL PYRAMID revisited
- Links 12/05/2025: US Brain Drain and Reminder That "Microsoft's Lobbying Efforts Eclipsed Enron" (Fraud Coverup)
- Links for the day
- The Enshittification of Royal Mail (Post Office/Postal Services) Continues
- Enshittification is a thing, not only in the digital realm
- If the Gossip is True, Today Microsoft Has "Large M1 Meetings" to Discuss Almost 30,000 More Microsoft Layoffs in 2025
- the claim is that Microsoft is preparing to lay off 10% of its staff
- Microsoft Has a Long and Proven History of Funding Meritless Lawsuits Against Rivals and Critics (It Always Backfires)
- It also looks like the solicitor used by two Microsofters to SLAPP us is being urgently replaced
- Links 12/05/2025: Gardens and Kitchens
- Links for the day
- Links 12/05/2025: Media Being Attacked (New Forms of Attack on the Press), Many Data Breaches
- Links for the day
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Sunday, May 11, 2025
- IRC logs for Sunday, May 11, 2025
- Links 11/05/2025: Pyotr Wrangel and Kubernetes With FreeBSD
- Links for the day
- What Happened to the Open Source Initiative (OSI) Elections: A Moment of Silence and Revisionism Amid US Government Investigation and Community Uproar
- Not a word this month
- Microsoft Florian Becomes Patent Troll, Arranges to Sue Companies (Extorting Money Out of Them)
- From campaigner against software patents to paid Microsoft shill to "FOSS patents" (actually attacking FOSS) to revisionism as "books" (for Microsoft)... and now this
- How the SLAPPs From Microsoft Staff Are Connected to the Corrupt OSI, Whose Majority of Money Comes From Microsoft for Openwashing, LLM Hype, and Whitewashing GPL Violations During Class Action Trial
- Let's explain how some of these things are connected
- Links 11/05/2025: China's Fentanylware (TikTok) Tells Kids to Vandalise Schools' Chromebooks and Increased Censorship in India
- Links for the day
- You Need Not Be a Big Company to Defeat Microsoft If You Can Successfully Challenge Its Core "Ideas"
- Maybe that's just a sign that the ideas of RMS have become too effective and thus "dangerous"
- Gemini Links 11/05/2025: Yeeting Oligarch Tech, Offline Browsing
- Links for the day
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Saturday, May 10, 2025
- IRC logs for Saturday, May 10, 2025
- One is Simply Doomed to Fail When Working for Violent Men From Microsoft and Attacking Women as Well as People Who Merely Expose Crimes or Report Real Crimes
- Imagine saying to people that you "practice law" or "exercise law"
- The Tariffs Are Accelerating Microsoft's Decline in China
- Judging by the way things are going, there will be considerable adoption of GNU/Linux in years to come, China being one major contributing factor.
- Control Your Systems, Control All Your Data
- what does it take for us to control our own systems and data?
- Misplacing Blame for Security Problems, Sometimes With LLM Slop That Blames "Linux" for Microsoft's Failures
- Broken telephones and stochastic parrots beget plenty of Fear, Uncertainty, Doubt (FUD)
- Links 10/05/2025: WW2 Revisionism, Further Tit-for-tat in India-Pakistan Conflict
- Links for the day
- Links 10/05/2025: Germany Considers Smartphone Ban in Schools, Right to Repair Bills
- Links for the day
- Gemini Links 10/05/2025: Git Server and Great LLM DDoS of 2025
- Links for the day
- Blizzard/Microsoft Unions Grow Ahead of Mass Layoffs at Microsoft, Apparently Starting Next Week (as Many as 30,000 Workers Laid Off by Year's End)
- Microsoft already fired about 5,000-6,000 workers this year by our estimates; that's not counting resignations compelled through pressure (i.e. pushed, did not jump) and contractors
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Friday, May 09, 2025
- IRC logs for Friday, May 09, 2025