Comments on: Windows patch backfires on the security-minded
People who tweaked their OS settings are getting hit hardest by a flawed Microsoft update meant to fix a serious flaw.
People who tweaked their OS settings are getting hit hardest by a flawed Microsoft update meant to fix a serious flaw.
November 24, 2009 4:00 AM PST
November 24, 2009 4:00 AM PST
November 24, 2009 4:00 AM PST
Add headlines from CNET News to your homepage or feedreader.
More feeds available in our RSS feed index.
Related quotes
The blame for this problem lies at the feet of those who made (or suggested making) these security changes.
Please take the MS brown nosing over to zdnet or winsupersite. Is that you Paul?
http://news.com.com/5208-1002-0.html?forumID=1&threadID=10575&messageID=77196&start=0
The blame for this problem lies at the feet of those who made (or suggested making) these security changes.
Please take the MS brown nosing over to zdnet or winsupersite. Is that you Paul?
http://news.com.com/5208-1002-0.html?forumID=1&threadID=10575&messageID=77196&start=0
all manner of excuses. What I don't understand is why? What
does MS do right to engender that kind of product line loyalty;
poor quality control, lousy coding, ancient interface, and a sooo
90's attitude toward new media? Really, all that loyalty for a big
ugly box to play games???
If this were a TV with this many problems set you'd be tossing it
off the local Best Buy cliff. Are you all that afraid of changing
platforms - perhaps to a platform that will love you back? A
platform that has been highly rated by well respected industry
professionals. A platform that has transformed the music and
video industry...
I am of course, talking about Linux... naw, I'm kidding. Linux is
MS's ugly conjoined twin.
I talking about Apple, my friends. It'll luv ya back. We'll even
show you the secret handshake!
http://espellahumanzee.blogspot.com/
What does Apple do right to inspire this kind of loyalty? Overpriced products? Proprietary and locked down technology? Product bundling? Form before function?
I could understand that kind of fanaticism from Linux users. It's free after all, and it makes you feel part of the project. But Apple? Please!
Sorry, I have no desire to have an Apple, or to know the secret handshake. It seems that the current battle is being fought between MS, Apple, and Linux. Well, there's a fourth power out there, one big enough to end it. I'm talking about BSD...FreeBSD to be specific. The granddaddy of them all.
You want to know about security? In FreeBSD 5.4-RELEASE, there have been 8 security holes found since March 28 2005. That's only *8* security holes in the base system in *7* *MONTHS*!! Come to think of it, Mac OS/X (Darwin) is based on FreeBSD, so I don't know what Apple is doing wrong to require so many updates. Maybe it's that Mach kernel that they are using. One other interesting tidbit...OpenBSD (the most secure OS on the planet) has had only *1* remote hole in the default install in more than *8* *Y-E-A-R-S*!!
Am I a zelot? Maybe, but I do know good code when I see it, and the *BSDs have excellent code. The BSDs are not really suited to the desktop though as it is more akin to the server arena, but many people use it on their desktop anyways. It can run Linux-x86 and SVR4-x86 binaries directly without modification. Need more info? Head over to http://www.freebsd.org, http://www.openbsd.org, or http://www.netbsd.org.
can't be the ability to mix and match cheap Korean parts that
rarely work together that is the draw?
... and spare me your misconceptions about a platform you
obviously know nothing about. At least be honest about that.
Quality, innovation, and security costs a little more than that
black boat anchor junk you all wrap your lives around.
C'mon, there's a secret handshake in it fer ya...
all manner of excuses. What I don't understand is why? What
does MS do right to engender that kind of product line loyalty;
poor quality control, lousy coding, ancient interface, and a sooo
90's attitude toward new media? Really, all that loyalty for a big
ugly box to play games???
If this were a TV with this many problems set you'd be tossing it
off the local Best Buy cliff. Are you all that afraid of changing
platforms - perhaps to a platform that will love you back? A
platform that has been highly rated by well respected industry
professionals. A platform that has transformed the music and
video industry...
I am of course, talking about Linux... naw, I'm kidding. Linux is
MS's ugly conjoined twin.
I talking about Apple, my friends. It'll luv ya back. We'll even
show you the secret handshake!
http://espellahumanzee.blogspot.com/
What does Apple do right to inspire this kind of loyalty? Overpriced products? Proprietary and locked down technology? Product bundling? Form before function?
I could understand that kind of fanaticism from Linux users. It's free after all, and it makes you feel part of the project. But Apple? Please!
Sorry, I have no desire to have an Apple, or to know the secret handshake. It seems that the current battle is being fought between MS, Apple, and Linux. Well, there's a fourth power out there, one big enough to end it. I'm talking about BSD...FreeBSD to be specific. The granddaddy of them all.
You want to know about security? In FreeBSD 5.4-RELEASE, there have been 8 security holes found since March 28 2005. That's only *8* security holes in the base system in *7* *MONTHS*!! Come to think of it, Mac OS/X (Darwin) is based on FreeBSD, so I don't know what Apple is doing wrong to require so many updates. Maybe it's that Mach kernel that they are using. One other interesting tidbit...OpenBSD (the most secure OS on the planet) has had only *1* remote hole in the default install in more than *8* *Y-E-A-R-S*!!
Am I a zelot? Maybe, but I do know good code when I see it, and the *BSDs have excellent code. The BSDs are not really suited to the desktop though as it is more akin to the server arena, but many people use it on their desktop anyways. It can run Linux-x86 and SVR4-x86 binaries directly without modification. Need more info? Head over to http://www.freebsd.org, http://www.openbsd.org, or http://www.netbsd.org.
can't be the ability to mix and match cheap Korean parts that
rarely work together that is the draw?
... and spare me your misconceptions about a platform you
obviously know nothing about. At least be honest about that.
Quality, innovation, and security costs a little more than that
black boat anchor junk you all wrap your lives around.
C'mon, there's a secret handshake in it fer ya...
"tweaking"....
os vs os... its so old school man, its all the same.. disgruntled programmers publish code.. and underserving companies enhance open source code... sooner or later.. the mac os yellow box idea will come to fruition.. or wait.. thats Ajax.. no, its KDE... yah whatever, I think the concentrated wealth in the tech industry needs to be more fairly disbursted... plenty of people are truely better off spending more time with thier families and figuring out their messed up lives... and their are plenty of youngerlings in need of fair wages and fair opportunity...
the growth model needs growth.. think globally but act locally...
"tweaking"....
os vs os... its so old school man, its all the same.. disgruntled programmers publish code.. and underserving companies enhance open source code... sooner or later.. the mac os yellow box idea will come to fruition.. or wait.. thats Ajax.. no, its KDE... yah whatever, I think the concentrated wealth in the tech industry needs to be more fairly disbursted... plenty of people are truely better off spending more time with thier families and figuring out their messed up lives... and their are plenty of youngerlings in need of fair wages and fair opportunity...
the growth model needs growth.. think globally but act locally...
writing a virus for one.
A virus for Windows? Whoa, big news. There are only what,
100,000?
A virus for Mac is a bigger news item at this point.
However hackers who are in it for glory would probably want to attack systems that run Linux, Mac OSX, and BSD. The reason is anybody can hack Windows, but according to users and developers of those systems they are much more secure. I would think that if you are hacking for glory you would want to attack a system that supposedly is much harder to hack.
However if your intent is to create zombie computer and what not then you are better off to hack Windows who does have the largest desktop base.
It's my understanding that most hackers aren't particularly glory hounds. They have a purpose for what they do besides name recongnition.
writing a virus for one.
A virus for Windows? Whoa, big news. There are only what,
100,000?
A virus for Mac is a bigger news item at this point.
However hackers who are in it for glory would probably want to attack systems that run Linux, Mac OSX, and BSD. The reason is anybody can hack Windows, but according to users and developers of those systems they are much more secure. I would think that if you are hacking for glory you would want to attack a system that supposedly is much harder to hack.
However if your intent is to create zombie computer and what not then you are better off to hack Windows who does have the largest desktop base.
It's my understanding that most hackers aren't particularly glory hounds. They have a purpose for what they do besides name recongnition.
Running "Driver Verifier" and "Software Compatibility Analyzer" will alos uncover some ugly warts in older software that has been upgraded to work with XP.
None of my managed machines (40+))have seen any issues. I always try to use only "logo'd" software or run the verifiers.
COM has been a problem for some time since many developers learn how to use COM without actually readying and understanding toe rules. This, at times, applies to Microsoft's own developers and techs.
Patches for critical production machines should always be tested first. Before installing you must set a restore point and do a backup of the OS. System State makes this very easy to accomplish.
Running "Driver Verifier" and "Software Compatibility Analyzer" will alos uncover some ugly warts in older software that has been upgraded to work with XP.
None of my managed machines (40+))have seen any issues. I always try to use only "logo'd" software or run the verifiers.
COM has been a problem for some time since many developers learn how to use COM without actually readying and understanding toe rules. This, at times, applies to Microsoft's own developers and techs.
Patches for critical production machines should always be tested first. Before installing you must set a restore point and do a backup of the OS. System State makes this very easy to accomplish.
On a Unix box (Sun) during an install we decided to use the "secured" installation.
Guess what teh outcome was?
We were unable to get Oracle or any other third party software to run. THe "root" account had less than usual access to system utilities without specifically granting these rights.
Does anyone remember the security nightmare with Novell?
On a Unix box (Sun) during an install we decided to use the "secured" installation.
Guess what teh outcome was?
We were unable to get Oracle or any other third party software to run. THe "root" account had less than usual access to system utilities without specifically granting these rights.
Does anyone remember the security nightmare with Novell?
Today, the average computer user is bombarded with promises of anti-virus, anti-spyware, firewalls, and the like. Something is obviously wrong. If security was as it should be, you shouldn't need this extra software. So who's responsibility should it be to keep your pc secure. Your ISP? The operating system creators? Or are 3rd party programs the best way to tackle internet security.
A more interesting approach to this topic is to suggest that the government is lacking. Why shouldn't the government be more proactive against hackers and the like? It is illegal isn't it? You can't just recommend that everyone lock their doors, and have no police on duty when something actually happens.
I think this topic will tend to itself over time. If the next operating systems doen't have a higher base security, the gov'ts will be forced to step in and force ISP's to do something or, less likely, do something themselves. Personally I don't think the random assortment of 3rd party progs are doing much good. The avg computer user is basically hiding behind a glass wall.
Today, the average computer user is bombarded with promises of anti-virus, anti-spyware, firewalls, and the like. Something is obviously wrong. If security was as it should be, you shouldn't need this extra software. So who's responsibility should it be to keep your pc secure. Your ISP? The operating system creators? Or are 3rd party programs the best way to tackle internet security.
A more interesting approach to this topic is to suggest that the government is lacking. Why shouldn't the government be more proactive against hackers and the like? It is illegal isn't it? You can't just recommend that everyone lock their doors, and have no police on duty when something actually happens.
I think this topic will tend to itself over time. If the next operating systems doen't have a higher base security, the gov'ts will be forced to step in and force ISP's to do something or, less likely, do something themselves. Personally I don't think the random assortment of 3rd party progs are doing much good. The avg computer user is basically hiding behind a glass wall.
Just a thought...
- It's strange...
- by thedreaming October 19, 2005 8:03 AM PDT
- This flaw causes problems for people that tightened security on their systems on their own, but anyone that just leaves things as is isn't affected. Is microsoft telling us that we are too smart for our own good and that we should join the rest of the idiots of the world that don't know what a defrag program is?
- Like this Reply to this comment
-
Showing 1 of 2 pages (106 Comments)Just a thought...