Re: Hackers exploit Windows patches

From: Harry Phillips (harry_at_hkjsfh.com)
Date: 02/29/04


Date: Sun, 29 Feb 2004 00:09:49 +0000

Sybren Stuvel wrote:
> nick enlightened us with:
>
>>"Malicious hackers and vandals are lazy and wait for Microsoft to
>>issue patches before they produce tools to work out how to exploit
>>loopholes in Windows, say experts.
>
>
> What does this have to do with Linux? I don't want to have anything to
> do with Microsoft what so ever.
>
> Sybren

Your Linux mail host has to handle all those "hey here is a Security
patch from MS" and the e-mail that just say "hi" with the virus attached.

Just because you don't use MS software and can't be infected doesn't
mean you aren't effected by their crappy security and the dumb users
that sit behind the keyboard.

I was reading a page the other day of someone that wrote some software
that MS decided to include in XP and credit him for. When the Klez came
out his Linux mail servers were handling 23,000 infected messages an hour.

I was not surprised he was a bit pissed at the tacked on security model
that MS use. I can see it now,

"hey Windows is finished"
"Did you remember the security part?"
"Oops, hang on five seconds I will just tack that on"

-- 
Regards,
Harry Phillips
--- Failure is not an option,
     it comes bundled with your Microsoft product.


Relevant Pages

  • [NT] Cumulative Security Update for Internet Explorer (MS04-025)
    ... Get your security news from a reliable source. ... * Microsoft Windows NT Workstation 4.0 Service Pack 6a ... Navigation Method Cross-Domain Vulnerability ...
    (Securiteam)
  • [NT] Vulnerability in HTML Help Allows Code Execution (MS05-001)
    ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... Get your security news from a reliable source. ... * Microsoft Windows XP Service Pack 1 and Microsoft Windows XP Service ...
    (Securiteam)
  • Re: The Myth of the secure Mac
    ... OEM Windows XP Home goes for a bit under $100. ... >> secure than Home. ... Though this really has nothing to do with security. ... Microsoft counts on third-party developers to provide more ...
    (comp.sys.mac.advocacy)
  • SecurityFocus Microsoft Newsletter #120
    ... Strengthening Network Security: FREE Guide Network security is a ... MICROSOFT VULNERABILITY SUMMARY ... Microsoft Windows File Protection Signed File Replacement... ... PlatinumFTPServer Information Disclosure Vulnerability ...
    (Focus-Microsoft)
  • SecurityFocus Microsoft Newsletter # 149
    ... MICROSOFT VULNERABILITY SUMMARY ... EveryBuddy Long Message Denial Of Service Vulnerability ... Intellitactics Network Security Manager ... Windows operating systems. ...
    (Focus-Microsoft)