Bonum Certa Men Certa

ISP Under Unfortunate 'DDOS Attack' by Microsoft Corporation; Liability of Software Debated in Europe

Stranded



Summary: Microsoft servers run amok and questions about liability return

SIMON PHIPPS has just found this very interesting message about an ISP which was brought down to its knees by "Windows Update". It is actually a recurring issue that affects networks in all sorts of ways (e.g. global Skype downtime).

We were facing a distributed denial of service attack from the world's largest "botnet:" Microsoft's "Windows Update."

[...]

As Spider-Man creator Stan Lee once noted, "with great power comes great responsibility." Microsoft, by virtue of its control over Windows-based PCs, has the ability to shut down the entire Internet at will -- and must be careful not to do it, inadvertently, by turning 90% of the world's PCs into a "zombie army."

Furthermore, content delivery networks such as Akamai, which distributes Microsoft's updates, must not be allowed to discriminate against smaller providers by making updates uncacheable (at least by a standards-conforming Web cache) and then denying smaller ISPs access to a cache that WILL cache them.


This is reminiscent of past incidents (see [1] and [2] at the bottom of this post). Yesterday we wrote about FAA where the damage of Microsoft's security, reliability and stability track record seems immense (in a very negative way). Now we find this from UC Berkeley right at the top of the news.

University of California, Berkeley, officials said Friday that hackers infiltrated restricted computer databases, putting at risk health and other personal information on 160,000 students, alumni and others.


Can liability put an end to this? That's the question the European Commission is asking and Glyn Moody reports on this matter.

Should Software Developers Be Liable for their Code?



Should Microsoft pay for the billions of dollars of damage that flaws in its software have caused around the world? It might have to, if a new European Commission consumer protection proposal becomes law. Although that sounds an appealing prospect, one knock-on consequence could be that open source coders would also be liable for any damage that errors in their software caused.

Here's what the European Commission is proposing:

A priority area for possible EU action is "extending the principles of consumer protection rules to cover licensing agreements of products like software downloaded for virus protection, games or other licensed content", according to the commissioners' agenda. "Licensing should guarantee consumers the same basic rights as when they purchase a good: the right to get a product that works with fair commercial conditions."

EU consumer commissioner Kuneva said that more accountability for software makers, and for companies providing digital services, would lead to greater consumer choice.


We have already covered this issue of liability and a reader wrote to us yesterday and offered his opinion too:

I suppose that this means that it is soon possible for the new administration to use military force to deal with Microsofters, if they don't dismantle their movement voluntarily:

Pentagon girds for cyber warfare

Official: No options ‘off the table’ for U.S. response to cyber attacks

Not so long ago, someone (or some group) did the electronic equivalent of cutting holes in the perimiter fence and taking out the guard towers by deploying Microsoft products inside a US Army base inside Afghanistan. The damage was quite bad as a result, and maybe the corrective actions were kept quiet and in-house, but certainly there is a paper trail leading back to those who brought MS products into the base.

In a recent speech, President Obama mentioned that US workers must come first. If that priority is followed, then it leads to removal of threats to US workers. Considering that the conficker Windows worm cost over $ 9.1 billion in the first three months, and that is on par with the other Windows worms, the 100's of billions saved over a few years by getting rid of any last trace of MS can easily pay for a new tech sector *and* a new economy.



Should Microsoft be made responsible and liable for damages caused by its software? Would this serve as a preventive measure? ____ [1] Are we being DOS attacked by a Microsoft employee?

Now I find it funny that a person that lives about 5 minutes from Redmond which is the headquarters of Microsoft is DOS attacking us and I don't believe that this is a coincidence.


[2] Bots Helped To Boost Microsoft Live Search Gains

In a blog post, Compete analyst Steve Willis attributed Microsoft's search gains to prizes awarded to users participating in Live Search Club, which features games that post queries to Microsoft's search engine.

[...]

Microsoft is essentially being DDoSed by thousands of people hundreds of times per minute, but they are mistaking this rise in traffic for people actually using Live Search."


Recent Techrights' Posts

GNU/Linux Reaches 5% in Indonesia (Population Size Near 300 Million)
You would need not envy "Microsoft Indonesia" right now
GNU/Linux Back to 5% in 2025
That's not counting ChromeOS
GNU/Linux Gained About 0.5% Last Year, According to StatCounter
2024 ended with "proper" GNU/Linux at +0.4%, ChromeOS at +0.1% (based on statCounter/StatCounter)
Microsoft FakeHub: Identity Theft in Microsoft GitHub (Microsoft Won't Bother Addressing It; It Gives a False Impression of Adoption by GNU/Linux Veterans)
This is the same company that kept intact deleted accounts and counted them as if they're live and active (to hide the gradual abandonment and demise of the "hub")
Microsoft Tries to Force People Into Vista 11 by Stopping Vista 10 Patching, Herding Them Into TPMdom
It's backfiring
CyberShow Blog Upgraded, RSS Feed Added
CyberShow Blog has just had somewhat of a facelift
 
Microsoft Plummets to New Lows in Azerbaijan
Perhaps the Azerbaijani population is looking for something other than the NSA's foremost facilitator
We Need Something More Like DMOZ, Not Search Engines and Bill-Funded Wikipedia (Censoring Unfaltering Information About Powerful People and Institutions)
era of LLMs trained on Wikipedia... Microsoft tried - and failed - to game the narrative to the same extent Google does
Tens of Billions of Dollars Down the Drain (Microsoft Lost the Search "Arms Race" or Market)
But caused injury to itself and others, just like with Nokia in mobile
Seems Like GNU/Linux Usage Doubled in Japan Last Year
So says statCounter data anyway
GNU/Linux Measured at 4.4% in South America and 3.34% in Africa, Based on 2025's Preliminary Data
All-time highs
GNU/Linux Leaps to 6% in the United States of America (Not Even Counting ChromeOS)
Additionally, the FSF in Boston is managing well
GNU/Linux Usage in Europe Leaps Above 6% in 2025
This is a big deal because a lot of Microsoft's revenue came from Europe
Windows Falls to 22.5% Worldwide, Android Up to 48%
The world's (by far) biggest populations don't use Windows much
Links 02/01/2025: Production of Apple Vision Pro Halted, More on Public Domain Day 2025
Links for the day
Links 02/01/2025: OpenAI Whistleblower Suchir Balaji Alleged to Have Been Murdered, Islamic Terrorism in New Orleans
Links for the day
Gemini Links 02/01/2025: Friends, Blunder Valley, and New Year
Links for the day
Links 02/01/2025: Violence Crisis in South Africa and Arrest Warrant for South Korean Leadership
Links for the day
Rumour: IBM Will Try to Induce Mass Resignations This Month Using R.T.O. (Just Like Amazon Does This Month)
Amazon will start some of this in March, sources have told us
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, January 01, 2025
IRC logs for Wednesday, January 01, 2025
Last Day of 2024 Was Spent by Brittany Day Publishing Only Fake 'Articles' (LLM Slop) About "Linux", Joined by Serial Slopper Brian Fagioli
Not even a holiday was enough to stop Day from "spamming" the Web with fake 'articles' (LLM slop) about "Linux"
Gemini Links 01/01/2025: Looking Back at 2024 and Happy 2025
Links for the day
Addendum: What the Software Freedom Law Center (SFLC) Really Is
Not serum free light chains (SFLC)
Sitting on a Mountain of Money (Almost 8 Million Dollars) is "Pro Bono"
Does the general public realise what SFC is?
Software Freedom Conservancy Inc (SFC) Lost Revenue and Also Got Rid of "Senior Director of Diversity and Inclusion" (Sage A Sharp, Formerly Known as Sarah Sharp, Who Ran an Ill-Spirited Campaign Against Linus Torvalds, Theodore Tso, and Other Prominent Linux Developers)
Not much needs to be said; a little needs to be shown (from an authoritative source, the IRS)
In Operating Systems, Google Was the Biggest Winner in 2024
Nevertheless, 10% of the managers are to be laid off shortly (after a leak led to confirmation by the CEO)
FSF-EEE (Colonial Splinter Group Based in Germany) Promotes Microsoft
New and misleading
Did GAFAM or IBM 'Downgrade' Pensions to 'Insurance' (Which Can be Denied)?
'Insurance' does not mean what it may sound like
Gemini Protocol Continued to Grow in 2024
it's no longer hosted from home
Geoffrey Knauth, FSF President and Treasurer, Comments on the FSF Raising Over $300,000
Now almost $304,000
Links 01/01/2025: Whistleblowers Shunned, EU/Germany Blasts Twitter (X, MElon) Interference
Links for the day
Mother of OpenAI Whistleblower Says Her Son Was Murdered (He Accused OpenAI of Copyright Violations at a Massive Scale, OpenAI is Running Out of Money That It Borrowed)
"Mother of OpenAI Whistleblower Alleges He Was Murdered, Says There Were Signs of Struggle"
Housekeeping and Productivity
The less we tinker with those things (system administration tasks), the more we can write and curate links
The Engineering Side in 2024: A Look Back, Taking Stock
uptime was somewhere around 99.95%
Dr. Andy Farnell Nominates Gromit the Dog "as an Unlikely Hacker Hero."
The world needs more decent engineers
The Free Software Foundation's (FSF) Holiday Fund-Raising Campaign Reaches About $303,000
in some parts of the US it's still 2024
[Meme] The Microsoft Syndrome
Typical Microsoftism
Gemini Links 01/01/2025: Reflecting on 2024 and FSMs
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Tuesday, December 31, 2024
IRC logs for Tuesday, December 31, 2024
Links 31/12/2024: Another Jeju Air Plane Has Severe Landing Gear Issue (Cannot Blame Birds Anymore), Turku Quits Twitter/X
Links for the day
2025 Coming. "Lawsuits are temporary. Glory is forever. Go public."
another promising year for us
Free Software Foundation (FSF) Raises about $50,000 After Saying We Should Put Pressure on Microsoft, Might Exceed $300,000 in Total Before 2025 (Boston Time)
FSF fund-raiser now at 292k US dollars. Spectacular growth, rising at a pace of about $20k per day!
Brittany Day Unleashes Microsoft Propaganda About Linux, Likely Generated by Microsoft LLM to Strategically Googlebomb a Topic
Yes, it's definitely LLM slop
Gemini Links 31/12/2024: Default Apps 2024 and Google News RSS Woes
Links for the day
Links 31/12/2024: 'Open'AI Has Run Out of Money Again, Venezuela Fines TikTok, Germany Warns X/Twitter Over Election Interference, Google Search Takedowns Out of Control
Links for the day
Gemini Links 31/12/2024: Google's Evil and VF-1 1.0.0 is Out
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Monday, December 30, 2024
IRC logs for Monday, December 30, 2024