Comments on: Cybercrooks add Windows flaw to arsenal
Days after sample attack code for a yet-to-be-patched flaw surfaced, malicious sites are popping up that exploit the hole.
Days after sample attack code for a yet-to-be-patched flaw surfaced, malicious sites are popping up that exploit the hole.
December 1, 2009 5:28 PM PST
December 1, 2009 4:58 PM PST
December 1, 2009 4:38 PM PST
Add headlines from CNET News to your homepage or feedreader.
More feeds available in our RSS feed index.
Related quotes
You get what you deserve.....
And how much money is being saved in your organization by
dealing with this issue? How much have you spent in the last
three years? Guess the cheaper hardware makes up for it.
NOT!!!
Of Course, it does provide a lot of employment for IT
professionals to repair and keep the Windows systems running.
I actually bill higher rates for repair for anyone using IE as their primary browser, and lower rates for users that run day to day as user-level accounts.
As for maintenance, we must dedicate one full server to WSUS, and I'd estimate One full workday a month is spend patching, verifying, testing security patches.
I doubt it would be much different on linux, but there sure would be far fewer reboots, which is the biggest annoyance currently with windows and whatever runs on top of windows.
And this is the company that wants to be the sole provider of your
computer's security..!!!
Are Window user really that naive..???
It will also have the added benefit of remove the scum from the gene pool, preferrably before they spawned.
Windows than to go around killing people? What other "crimes" will
warrant the death penalty once your plan is put into place?
Have a nice day!
Get a Clue.
Don't get me wrong, Linux is a great OS. It's my OS of choice for running web servers, SQL, etc. I'm not as crazy about Mac OSX and I think its security is overrated, but just because these Operating Systems are better than Windows in some aspects doesn't mean that they have the answer for everything.
business over to Mac OSX. They almost never look back. Mac
OSX becomes their standard, and it is a very good one.
Students know Word because that is what Mommy and Daddy
have at home, and Mommy and Daddy are paying for their kid's
software. If you asked a teenager to shell out for the software
themselves, you bet they would learn to use something else.
Anyway, Word is available for the Mac in case you haven't heard.
I don't use linux myself but I'm sure anyone smart enough to use
it can probably figure out how to use OpenOffice.
People are scared of change, but guess what? Change
requires...CHANGE. When the pain of using Windows becomes
enough, people will look for other options. They are doing this
in droves right under your nose. Apple laptops are selling like
crazy.
Most common peripherals work perfectly fine with a Mac. If you
believe otherwise, you don't know what you are talking about. I
am not saying there is 100% compatibility, but I have rarely had
trouble installing peripherals on my Mac, including many that
did not even mention they were Mac compatible on the box.
Networks are not easier to manage on a PC. Networking with
Macs is simple, and you can do it without ANY security being
sacrificed. Mac security is not overrated. All you have to do is
look at the CERT website to see what operating systems are
under real, daily, unpatched threats. Need I mention that OSX
still has no viruses?
PC IT departments protect themselves. Who is going to tell their
own boss to switch to Macs when it would mean they will lose
their job because they are no longer needed? The total cost of
ownership of Macs is less than for PCs. End of story.
Operating systems are a personal choice, not a religion or a
political party. Use what works best for you, but do not spread
unwarranted fear, uncertainty, and doubt when you do not have
the facts on your side.
Have a nice day!
reading the replies and posts there seems to be some sort of idea the business and for that matter the general IT personnel out there wouldn't sell a bum deal, that they truly feel that MS is a better product.. LOL... Most of the business IT and the general IT out there are only trying to secure their jobs. Attempting to show that the $5000 they spent on those stupid tests after high school made them superior... what a rip! yeah, I am an IT professional, not a tech, a professional and that means something. I do not have to lie or mislead to keep my job secure, I am well trained, am degreed and have been doing the IT gig for well over 15 years. My corporation, 19 billion dollar liquid worth btw, listened to me in regards to using open source software, and currently we are evaulating replacing some 5000 to 7000 of our Windows desktops to Suse or RedHat.
The MS Kool-aid drinkers want to make everyone feel MS is the only game, how can OSS be secure. It is always the one with the most to lose that will re-direct direct questions and close inspection. 'You have a flaw you haven;t fixed in 6 months.. Yeah, well, umm... Linux has this gnome thingy, it;s evil I tell you, look at that foot!'.. get over yourselves Microsoft shills, and sheep your time is ending, move otuta the way so a real OS can finally take the helm...
Working Windows admins have a major conflict of interest and need to come clean.
Any of my clients that still use me have or will be converting to Linux.
I am recommending that users requiring advanced macros get Crossoffice to be able to continue to run MS Office. Otherwise I install Ubuntu with OpenOffice & Evolution.
This change in my business has cut my yearly income by at least 50% but I feel a lot better now. My high blood pressure is also doing much better.
So for your spirit and your health please join me as a former Windows support addict. You feel good about yourself.
Don't hide behind a "realistic" approach just because "it is what everyone wants". When you tell them you are moving from a Windows based business to a Linux, Mac or BSD busines they will be so surprised that I know you will hear "Oh, will that work for me".
"switching to a non-Microsoft Web browser"
AMEN
Exploit Code is OUT for a few days already.
Today is Oct 3rd, 2006.
BUT
Microsoft still wants to wait until Oct 10, 2006?
We're way past when will Microsoft ever learn as this clearly shows that they WILL NEVER LEARN!!!
Walt
- Looking for blacklists
- by Seaspray0 October 3, 2006 8:54 AM PDT
- I'd like to find a good blacklist of all these websites that repeatedly attempt to exploit holes to install their garbage on computers. Perhaps Cnet will be willing to do a story on this, since they seem to mention these "miscreants" often.
- Like this Reply to this comment
-
-
- I wish you luck on that one.
- by Penguinisto October 3, 2006 12:15 PM PDT
- This is a serious reply from a guy who has to admin email and HTTP usage, among other things...
- Like this
-
(29 Comments)A blacklist isn't going to work. If a single hosting service server is compromised, suddenly 100's of new domains are open to become exploiters.
Also, new domains pop up all the time.
There's no sane way to keep such a list current, even through third parties - it's hard enough to do when it comes to email blacklisting/greylisting, and at least in SMTP you have tell-tale signs that you can cue into. You get no such luck in HTTP at all.
There is also the nasty side effect of accidental/unintentional blacklisting, which is also a bad enough problem in e-mail... if a site you actually need to reach gets compromised (it can and does happen), or the blacklister accidentally included it, that inclusion will suddenly have adverse effects on your business.
Your best bet to avoid this little nightmare (seriously) is to simply banish MSIE usage within your organization wherever possible. Restrict it to windowsupdate.microsoft.com only, if you can. Replace MSIE usage with Firefox, Opera... basically something else.
/P