Bonum Certa Men Certa

Government Shoots Itself in the Foot by Letting Microsoft Control Insecurity Departments

Rooster



Summary: President Obama puts a fox in change of the hen house with yet another appointment of Microsoft for security; Microsoft helps malware writers

THE United States government is not engineered for security because it hires "security" people from the very same company that causes a lot of the problems. The DHS is already affected and Obama pondered making Scott Charney, head of Microsoft's cybersecurity division, the US cybersecurity czar. Eventually he picked another person from Microsoft for this job (also in [1, 2, 3, 4]):



The White House is naming a former Microsoft and eBay executive as the government's new cyber security coordinator. Former Bush administration official Howard Schmidt will lead the effort to shore up the country's computer networks.


More here:

Obama names former Microsoft exec new U.S. cybersecurity czar



President Obama this morning named a new U.S. cybersecurity coordinator: Howard Schmidt, a longtime computer security specialist who has worked as an executive for companies including Microsoft and eBay, and as a security adviser to the administration of George W. Bush.


How shameful. We have already explained why this is a mistake and when poor decisions are made in the future it may be possible to blame them on bias. One reader of ours wrote in relation to this news: "If they already have the technical knowledge, then why haven't they made a computer that can't be compromised to be used in botnets, merely by clicking on a URL or opening an e-mail attachment?

Also in yesterday's news we now find:

Microsoft AV advice may aid attackers, researcher warns

A security researcher is taking Microsoft to task for advising customers to exclude certain files and folders from anti-virus scanning, arguing the practice could be exploited by pushers of malware.


Microsoft shows malware writers where to hide

In a document published on its support site, Microsoft suggests that users do not need to scan some files and folders for malware as a way to improve performance in Windows 2000, XP, Vista, Windows 7, Server 2003, Server 2008 and Server 2008 R2. "These files are not at risk of infection. If you scan these files, serious performance problems may occur because of file locking," the Vole said.


Microsoft accused of helping virus writers [via]

Security firm Trend Micro has accused Microsoft of giving malware writers a helping hand by advising users not to scan certain files on their PC.

In an article published on Microsoft's Support site the company claims it's safe to exclude certain file types from virus scans because "they are not at risk of infection". Microsoft claims ignoring these files will help improve scanning performance and avoid unnecessary conflicts.


Yes, Microsoft does not seem to have a clue about security.

Microsoft's influence in the United States government is increasing and this is becoming a matter of national security. They spread that so-called "Microsoft religion" to areas that are mostly UNIX- and Linux-based. They ignore many decades of good practices.

"It is no exaggeration to say that the national security is€ also implicated by the efforts of hackers to break into€ computing networks. Computers, including many running Windows€ operating systems, are used throughout the United States€ Department of Defense and by the armed forces of the United€ States in Afghanistan and elsewhere."

--Jim Allchin, Microsoft



Comments

Recent Techrights' Posts

In Malawi, Windows Down to 10%, GNU/Linux Growing
it's not a small country
[Meme] Featuritis
Newer is not always better
Ireland Last to Report Election Results
Daniel Pocock's involvement in Australian politics goes back to his university days
Never Sleeps, Never Slumbers
We're going to try to improve not just in quantity but also in quality
EPO Has Gotten So Bad That Workers Need to Ask to be Allocated a Desk (at Work)
Wow!!!! An “allocated workplace”!!
 
The Corruption of Open Source Initiative (OSI), a Front Group of Microsoft and GAFAM, Openwashing Proprietary Things and Even Plagiarism, GPL Violations
Stefano Maffulli (and Microsoft's staff that works with him) basically profits from anti-FOSS
"AI" Tech Bubble
How much "hype quotient" does this whole "hey hi" (AI) thing have left in it?
Links 13/06/2024: Science, Politics, and Gemini
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, June 12, 2024
IRC logs for Wednesday, June 12, 2024
Gemini Links 12/06/2024: The Rodent Revolution and Adding Twisty Puzzles
Links for the day
Links 12/06/2024: Ukraine War Updates and Many Patents Being Subjected to Squashing Bounties
Links for the day
[Meme] The Purpose of Life is to Find a Desk
dogs have desks
Tux Machines Parties Going Well Do Far
Cross-posted from Tux Machines
In Many Countries, Both Large and Small, Vista 11 is Losing Market Share (Despite New PCs Coming Preloaded With It)
One need not even consider large nations in isolation
By "Going Public" the Raspberry Pi Ensures It'll No Longer Serve the Public
It'll be owned and controlled by whatever people wish to control it
Dave Wreski Also Plays the Bot Game (Chatbot) at LinuxSecurity to Fake 'Articles' About "Linux"
How much longer can they fool search engines (SEO) and readers?
[Meme] Indisputable Success
MICROSOFT buys shares of MICROSOFT
Links 12/06/2024: 'Hey Hi' (AI) Bubble Imploding Already, Danish Media Threatens to Sue OpenAI
Links for the day
Links 11/06/2024: Floods in Germany and Brazil, Political Violence
Links for the day
Gemini Links 12/06/2024: Sketching Plants, OpenBSD Pubnix
Links for the day
"2025 the year of Linux on the Desktop"
Charlie Stross quote
In Bahrain, Historically Low on GNU/Linux Adoption, Things Change for the Better
They have some people who understand Free software
Daniel Pocock Received Twice as Many Votes as Andreas Tille (Debian Project Leader After 2024 Election)
From the media yesterday...
Debian is Built by Hundreds of Volunteers and 524 Irish People Voted for Daniel Pocock
524 in that area went to the polling station to vote Daniel Pocock (Ind)
[Meme] RMS is 'Too Old', Says Company Run by a Person 5 Years His Junior (Ginni Rometty) and 10 Years His Junior (Arvind Krishna)
Never again?
[Meme] Women in Computer Science
Grace Hopper, Ada Lovelace etc.
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Tuesday, June 11, 2024
IRC logs for Tuesday, June 11, 2024
Togo: GNU/Linux Growing Fast This Year, Now Measured at 6%
Sending Bill Gates with a suitcase to bribe African officials isn't enough anymore
Free Software Projects Need to Chase Away Men Who Attack Women Rather Than The Women Who Complain
A just society holds people accountable rather than covers up such blunders
Improving the Image of Women in Free Software by Hiring and Promoting the Proficient Ones
Million's shaman background isn't the problem, or even the superstitious ghost-chasing. The problem is that she has absolutely no background in Free software.
They Say Cash is King
People who value their freedom will pay with cash any time they can
'Team Microsoft' Wants to Leverage Our Popularity as a Weapon Against Us
In the past 2 days we published 64 articles and served over a million HTTP/S requests
[Meme] Microsoft Has Enough of Its Own Problems (Layoffs Abundant), It Won't Rescue IBM or Canonical
"It's OK, we're partners"
Know Your Allies, Know Your Enemies
The answer to censorship attempts is more speech, not less speech
Debian is Back to Taking Money From Microsoft, the Company That's Attacking Linux From the Inside
If Debian fails to understand what's wrong with it, that's a problem
Ghana: Windows Down From 97% to Just 15%
The doors are closing on Windows
Links 11/06/2024: Practice of Retaliatory Layoffs at Microsoft
Links for the day
Gemini Links 11/06/2024: GMID 2.0.5 and More
Links for the day
The United States Will Cut Off or Cull Firefox
It is only a matter of time
[Meme] Firefox Is Not an Alternative to Google, Only to Chrome (and It Has Become Proprietary or OSPS Like Chromium)
The illusion of remaining "choice" on the Web
No, the World Wide Web Isn't Open (and Hasn't Been for Years)
It's proprietary all the way now
The War on Free Software Reporters - Part VII - Groupthink, Censorship Demands, and Ultimatums
There's a lot of groupthink in the Free software community
Microsoft Told Us That LLMs Were a Boon for Azure and 'Clown Computing', But the Thousands of Layoffs This Month Prove That It Was a Lie All Along
Azure is collapsing
Why We Post Statistics About the Usage of Operating Systems Worldwide
We're hoping to see GNU/Linux at over 10% (on desktops/laptops) some time in the coming years
Winning Defamation Cases is Incredibly Difficult (for Plaintiffs), Even in the United States and the United Kingdom
SLAPP should always backfire
In Kuwait, Microsoft's Windows Fell From 97% to Just 15%
According to statCounter
GNU/Linux in Philippines Climbs to New Levels
This is an all-time high
Links 11/06/2024: Windows Outcry and Climate News
Links for the day
Tux Machines Was Always a Women-Run Site (the Real Voices of GNU/Linux, Not Political Props in Corporate Events)
Corporate "diversity" is more of a marketing/PR gimmick than real, genuine diversity
Macao: GNU/Linux Desktop/Laptop Operating System Market Share Rising Close to 7%
GNU/Linux Rises to Record High in Macao
FSF is Now 50% Female, Unlike Red Hat (Which Moaned About Lack of "Diversity" at FSF)
Isn't the hypocrisy just astounding?
Since COVID-19 Lockdowns Windows Fell From Almost 50% to Just 10% in Loas
According to statCounter
[Meme] Quantity Says Nothing About Worth, Value, or Quality
People will generally gravitate towards things of quality and reputation
Microsoft's Windows in Gabon: From 20% 'Market Share' Down to Around 10% in a Few Months
Gabon is not a small country
Meanwhile at canonical.com
Canonical knows exactly what Ubuntu users want
[Meme] Microsoft (and the NSA) Will Never Forget
The user trying to permanently disable 'recall'
Windows Falls Below 20% in United Arab Emirates This Month
According to statCounter
"Windows 11's Recall AI, known to take snapshots and recordings of user computers regularly, including key presses, was discovered to store all its information in an unencrypted local folder."
"You can copy the data from another user's "recall" folder as another user."
Fedora Week of Diversity (FWD) 2024 Outsourced to Proprietary Spyware of GAFAM
Need to use proprietary software to participate
IRC Proceedings: Monday, June 10, 2024
IRC logs for Monday, June 10, 2024
Over at Tux Machines...
GNU/Linux news for the past day
[Meme] Clown Computing is Better For...
Clown: they said clown computing enhances security
One in a Thousand Voters Chose to Vote Daniel Pocock (as First Preference)
He got about 4 times more votes than what had him win FSFE elections
Daniel Pocock on Good Performance in His EU Election Campaign: Thanking the voters of Midlands-North-West, Ireland
Reprinted with permission from Daniel Pocock
The 'IT Industry' is Already in Ruins
The "powers that be" do not want the "hoi polloi" to possess skills and systems
Microsoft's Windows is Sliding Away Into Minority Platform Territories, Even in Rich Countries With Affluent Computer Users
We seem to be striking a nerve at Microsoft every time we say this
Self-Hosting Should be Taught and Embraced, Outsourcing Creates More Problems (or Risks) Than It Solves
One can control one's destiny...