Slashdot Mirror


Microsoft a Weak Link In Possible Cyber War

climenole writes 'Microsoft has vast resources, literally billions of dollars in cash, or liquid assets reserves. Microsoft is an incredibly successful empire built on the premise of market dominance with low-quality goods,' says former White House advisor Richard Clarke in a recent book. Microsoft makes the list of risks because so many people have installed its software for critical systems.

371 comments

  1. He said what? by siloko · · Score: 3, Insightful

    Microsoft is an incredibly successful empire built on the premise of market dominance with low-quality goods.

    If he really said that I bet Microsoft execs are spewing their cornflakes as we speak!

    1. Re:He said what? by decipher_saint · · Score: 5, Funny

      *in deep trailer-guy voice*

      "In 2010; Chairs WILL be Thrown"

      --
      crazy dynamite monkey
    2. Re:He said what? by StuartHankins · · Score: 4, Insightful

      If Microsoft execs aren't already aware of that, they should be fired. Part of managing a company is knowing your weaknesses.

    3. Re:He said what? by siloko · · Score: 5, Insightful

      Part of managing a company is knowing your weaknesses.

      Knowing your weaknesses is not the same as having them advertised to the world by a White House advisor!

    4. Re:He said what? by Anonymous Coward · · Score: 0

      Yeah tell that to that UFO aspergers guy.

    5. Re:He said what? by StuartHankins · · Score: 3, Informative

      It's not as if people didn't already know about Microsoft's abysmal security record. Just a simple query such as http://www.google.com/search?hl=en&safe=off&client=firefox-a&hs=kKP&rls=org.mozilla%3Aen-US%3Aofficial&q=site%3A*.gov+microsoft+advisory&aq=f&aqi=&aql=&oq=&gs_rfai= shows tens of thousands of hits. Maybe Microsoft will be shamed enough to take action and improve their products.

      I guess the point of it is "Is Microsoft the weak link when it comes to security?" to which the only answer can be "Yes." Kudos to the White House team for telling it like it is!

    6. Re:He said what? by gstoddart · · Score: 2, Insightful

      If Microsoft execs aren't already aware of that, they should be fired. Part of managing a company is knowing your weaknesses.

      I think by the time you get to the C-level execs, it's more about leveraging your synergies and maximizing your returns.

      They don't likely know much about the technology, and believing in the company and drinking the Kool-Aid is mandatory.

      In their mind, they produce high quality goods. The best there is.

      --
      Lost at C:>. Found at C.
    7. Re:He said what? by M.+Baranczak · · Score: 5, Informative

      Clarke is not on the "White House team". He retired a few years ago. Come on, people, would it hurt you to at least read the summary?

    8. Re:He said what? by StuartHankins · · Score: 1

      The difference is academic in this case. You have someone who held a public position and is now making a bold statement. If this were some unknown person with shaky credentials it would not have been a story.

    9. Re:He said what? by M.+Baranczak · · Score: 1

      No, there's a big difference. If he was a current government official, then the statement would represent a government policy.

    10. Re:He said what? by Trent+Hawkins · · Score: 1

      Makes you wonder why all the white house staff have brand new I-pads.

    11. Re:He said what? by Anonymous Coward · · Score: 0

      Oh hell no he di'n't.

      CALLING ALL SHILLS CALLING ALL SHILLS... Westlake, Blakeyrat, Soppsa, FuckingNickName, HalPorter and the rest of the Redmondian hordes!! Scurry out of your holes! The mothership needs you now!!11 It's time to lay down some 'turf and we got a whole forklift full for ya!

    12. Re:He said what? by UnknowingFool · · Score: 1

      What is being advertised? It's not a big secret or anything. Who in the IT world doesn't know that Windows is a weak link? The vast numbers of hackers in other countries writing malware already know this. Any IT security personnel worth their salt should already know this.

      --
      Well, there's spam egg sausage and spam, that's not got much spam in it.
    13. Re:He said what? by Foofoobar · · Score: 2, Insightful

      Oh give me a break! If the entire tech community doesn't realize that Microsoft's security is a wet paper sack and a sign that says 'do not lean against' then they've been in a coma since before Robin Williams was funny.

      --
      This is my sig. There are many like it but this one is mine.
    14. Re:He said what? by Anonymous Coward · · Score: 0

      Microsoft...you are...the weakest link.

    15. Re:He said what? by causality · · Score: 4, Insightful

      No, there's a big difference. If he was a current government official, then the statement would represent a government policy.

      "This company dominated the market with low-quality products" is not a policy. It is an observation. It's true or it's false no matter who says it or how "official" they are. Try thinking for yourself and being less impressed with authority.

      --
      It is a miracle that curiosity survives formal education. - Einstein
    16. Re:He said what? by ackthpt · · Score: 1

      Spew Cornflakes, sure.

      Actually do anything about it? Dream on.

      --

      A feeling of having made the same mistake before: Deja Foobar
    17. Re:He said what? by WrongSizeGlass · · Score: 1

      Makes you wonder why all the white house staff have brand new I-pads.

      From what I hear they just happened to "fall off a truck" in the Chicago area and Rahm Emanuel new the guy that "found" them. It's a small world ... ;-)

    18. Re:He said what? by quickOnTheUptake · · Score: 1

      That is patently not true. A person who is part of an organization is always able to have personal opinions, unless of course, the person holds some sort of sole discretion in setting that particular policy, in which case one could safely presume that his opinion then is the policy.
      Admittedly: If the opinion directly touches on something he does at the organization, he may need to put a massive disclaimer on his statement (that these are his own opinions) or in extreme cases even abstain from comment altogether to avoid confusion. But that a person holds a high position in the government doesn't imply that his opinion as found in a privately-published book is government policy.

      --
      Mod points: Guaranteed to remove your sense of humor.
      Side effects may include gullibility and temporary retardation
    19. Re:He said what? by ackthpt · · Score: 2, Funny

      Part of managing a company is knowing your weaknesses.

      Knowing your weaknesses is not the same as having them advertised to the world by a White House advisor!

      There was something in Hamlet about a ghost not needing to appear to tell us this.

      --

      A feeling of having made the same mistake before: Deja Foobar
    20. Re:He said what? by Anonymous Coward · · Score: 0

      Security through obfuscation is a terrible technique, that will get us nowhere. We need to know the dangers now and fix them.

    21. Re:He said what? by lennier1 · · Score: 1

      True

      And there's a reason why government agencies don't use MS Windows above a certain security level.

    22. Re:He said what? by erroneus · · Score: 1

      Yeah, he really said it and it's true. Even Microsoft fans have to admit that much. The market has been maturing around Microsoft, but Microsoft hasn't planned to mature it's OS. Bug fixes are their biggest motivation for trying to get people to move from one OS to the next... they tried "features" but it stopped exciting people and Microsoft wasn't able to deliver on their promises of new features with Vista and offered little to nothing with Windows 7.

      It's good to see that someone came out and said "Hello!" to the elephant in the room -- Microsoft is a huge weak link where cyber security in concerned and we don't need to go into details as to why and how or even "if people configured their systems right..." The fact is what it is, and whining about "if they..." will not change the fact. And it's Microsoft's product. So what will they do about it?

      It's time Microsoft spent a few of its billions to create a "Business/Government Hardened OS" and forget about "Consumer Windows" in business and government. Take a page out of Apple's play book and start with BSD, write an GUI that may or may not be X and then put it out there. It's not like they don't have VM technology available to them to host WindowsXP for compatibility.

      Once they do that, they will have something the IT community can respect a bit more and even work with for a lot longer.

      They either want to stay in business or they don't. I don't think any government supplier can remain as a government supplier for long when these things are being said about their main product. If they want to stay in business, it is past time for Microsoft to abandon Windows as unworkable for the future just as Apple did with Mac OS 9 and prior versions. Start anew Microsoft... you are LATE to the party.

    23. Re:He said what? by erroneus · · Score: 4, Insightful

      Could it be that someone "out of office" is the only one with the freedom to say such things in public? Anyone in office would fear for his job. It would be my guess that this statement was desired and even requested by people in office. Who better than someone who once held the seat (read: an expert on the topic) and someone who has nothing to lose (read: already out of office).

    24. Re:He said what? by ClosedSource · · Score: 1

      The way Clarke refers to MS's products as "goods", perhaps he thinks MS makes cornflakes.

    25. Re:He said what? by gringofrijolero · · Score: 1

      I think the issue here is that the world is full of ex-officials with the "wisdom of the sages", but they showed none of that when they had the power to do something about it.

      --
      Todos mis movimientos están friamente calculados
    26. Re:He said what? by StuartHankins · · Score: 1

      +1 insightful. Very good point.

    27. Re:He said what? by Anonymous Coward · · Score: 0

      would you get the same if you did your query on Bing ?

    28. Re:He said what? by Johnny+O · · Score: 1

      I am searching real hard to find this "bold statement"....

    29. Re:He said what? by Anonymous Coward · · Score: 0

      Too bad the movie voice guy died...

    30. Re:He said what? by Sulphur · · Score: 1

      Naw, they are in it for Good Government.

    31. Re:He said what? by Anonymous Coward · · Score: 0

      No, Microsoft is NOT the weak link and there is NO weak link. The WEAK LINK is the USERS. The people who are too stupid and ignorant to take even the most basic precautions before surfing the web. People who download everything and click every pop up they find and turn off their anti-virus "because it slowed up the computer" are the weak links. A Windows Operating system, A Mac OS, and any of the Linux varieties of operating systems are equally vulnerable to security threats, unless you turn off or don't install the proper protection and updates.

      On top of that, THERE IS NO DAMN CYBER WAR!!!

    32. Re:He said what? by shiftless · · Score: 1

      Try thinking for yourself and being less impressed with authority.

      Now there's irony. Yat you totally missed the point, which was that most people DO base their opinions on authority/social status, which is exactly why this statement holds so much more weight. Try thinking things through before speaking.

    33. Re:He said what? by causality · · Score: 1

      Now there's irony. Yat you totally missed the point, which was that most people DO base their opinions on authority/social status, which is exactly why this statement holds so much more weight.

      I got the point, alright. I get it, I just don't agree with it. Therefore I made a contrary point, also called a counterpoint.

      Try thinking things through before speaking.

      Falsely equating disagreement with lack of understanding doesn't put you in a good position to offer such advice.

      --
      It is a miracle that curiosity survives formal education. - Einstein
    34. Re:He said what? by Anonymous Coward · · Score: 0

      I think by the time you get to the C-level comments, it's more about leveraging your idiocies and MAXIMIZING YOUR AWESOME.

      You don't likely know much about anything, and believing in Jim Jones and drinking the Kool-Aid is mandatory.

      In your mind, you produce nothing. The worst there is.

  2. Microsoft Weak Link ... by gstoddart · · Score: 2, Insightful

    Film at 11.

    I mean, seriously, it's the most widely used OS on the planet. It's also the most likely target.

    --
    Lost at C:>. Found at C.
    1. Re:Microsoft Weak Link ... by Anonymous Coward · · Score: 2, Insightful

      False.

      It may be the most widely used desktop OS, but once you include servers and small devices, Linux beats it easily.

    2. Re:Microsoft Weak Link ... by Anonymous Coward · · Score: 1, Interesting

      So you claim that attacks are proportional to how widely used it is. Why don't you also claim that bug reports come proportionally faster? Or that its security should be proportional to how much profit they make from it?

    3. Re:Microsoft Weak Link ... by Anonymous Coward · · Score: 0

      Actually, no. There was a /. article some years ago saying it was one that gets used in all kinds of devices. But you meant personal computers no doubt.

    4. Re:Microsoft Weak Link ... by UnknowingFool · · Score: 2, Insightful

      And Apache is the most widely used Web Server but its security record is far better than IIS. So what does that say. Also Unix/Linux far outnumber Windows Server in terms of presence on the Internet; however, they are more on the yet their track record is far better than Windows server.

      --
      Well, there's spam egg sausage and spam, that's not got much spam in it.
    5. Re:Microsoft Weak Link ... by 1s44c · · Score: 4, Insightful

      Film at 11.

      I mean, seriously, it's the most widely used OS on the planet. It's also the most likely target.

      That's a flawed argument. It isn't bad because lots of people use it, it's bad because it's bad.

    6. Re:Microsoft Weak Link ... by Anonymous Coward · · Score: 0

      It is by FAR not the mostly used OS.

      Mostly used desktop PC OS? Yes.

      Linux surpasses Windows and all other Microsoft products 12 to 1 in OS's running on hardware.

      Every Blu Ray player. Every DVD player. Almost every embedded consumer device.

    7. Re:Microsoft Weak Link ... by ((hristopher+_-*-_-* · · Score: 1

      In regards to the book and security, it's the most widely used OS of the systems that are at risk (always networked with IP Address).

      In regard's to his Richard Clarke's comments, Microsoft are one of the highest quality software providers, no doubt for me. It's the biggest target, not the worst protected.

      Also I don't see why people don't realize that for there to be the kind of security on home systems that are on DOD system, you would have to put in place the same restrictions on how the computer is used and accessed.

    8. Re:Microsoft Weak Link ... by DeadDecoy · · Score: 1

      Also Unix/Linux far outnumber Windows Server in terms of presence on the Internet

      It also helps that the linux alternatives are free and available for any os. It allows apache to reach a more diverse user base who just want to setup a basic web server.

    9. Re:Microsoft Weak Link ... by erroneus · · Score: 1

      You really need to scan some basic stats about what is actually running on the internet right now. Clients are mostly Windows. Servers are mostly non-Windows. Windows servers get compromised frequently. Windows clients get compromised frequently. *Nix servers get compromised considerably less frequently (but they do... and often become command and control servers for botnets) and *nix clients are almost never compromised... never heard of one anyway.

      Microsoft is not the biggest target unless you are talking about client machines. Linux hosts are presently the biggest target on the internet. They are the least often compromised, however.

    10. Re:Microsoft Weak Link ... by Anonymous Coward · · Score: 0

      > I mean, seriously, it's the most widely used OS on the planet. It's also the most likely target.

      That's a flawed argument. It isn't bad because lots of people use it, it's bad because it's bad.

      While, of course, saying "you have a flawed argument" and tacking on a tautology completely void of reason or proof, is a very compelling argument. Bravo.

    11. Re:Microsoft Weak Link ... by suburbanmediocrity · · Score: 1

      I thought TRON was the most widely used OS on the planet.

    12. Re:Microsoft Weak Link ... by 1s44c · · Score: 1

      While, of course, saying "you have a flawed argument" and tacking on a tautology completely void of reason or proof, is a very compelling argument. Bravo.

      I don't need to argue that windows is bad, the size of current and past windows botnets plus the ongoing virus problems do that for me.

    13. Re:Microsoft Weak Link ... by 1s44c · · Score: 1

      I thought TRON was the most widely used OS on the planet.

      It can't be or it would fall over every 10 minutes and form massive botnets just like windows. Oh hang on, I'm using the same flawed argument the windows fanboys use.

    14. Re:Microsoft Weak Link ... by Anonymous Coward · · Score: 0

      and "bad because it's bad" doesn't sound like an argument at all

    15. Re:Microsoft Weak Link ... by flyingfsck · · Score: 1

      Actually, Linux is the most widely used OS on the planet, with more than 2 billion devices running it (mostly cell phones and routers) and more than 300 million being manufactured every year. Microsoft Windows is the leader in a small market segment for desktop systems, but on the floor beneath each Windows machine, amongst the spiders and dust bunnies, you will find a tiny little Linux router box trying its best to keep the MS desktop system safe...

      --
      Excuse me, but please get off my Pennisetum Clandestinum, eh!
  3. No shit by Anonymous Coward · · Score: 0

    anyone could have told you this.

    1. Re:No shit by WrongSizeGlass · · Score: 1

      anyone could have told you this.

      True, but now that it's been posted on /. it's officially official.

  4. Microsoft's Business by HeX314 · · Score: 5, Insightful

    One of my computer science professors once stated, quite succinctly, that Microsoft was not in business to make a quality operating system (or quality product). They are in business to make money.

    On a related note, if they were in business to make a quality operating system, they would have a tough time selling "upgrades."

    1. Re:Microsoft's Business by Lunix+Nutcase · · Score: 3, Insightful

      One of my computer science professors once stated, quite succinctly, that Microsoft was not in business to make a quality operating system (or quality product). They are in business to make money.

      What a stupid statement that is complete tautology. The entire point of starting a business is to make money. Otherwise the business *ahem* goes out of business.

    2. Re:Microsoft's Business by Em+Emalb · · Score: 4, Insightful

      The entire point of starting a business is to make money.

      This is false. While a company needs to make money to be successful, this is not the only reason for a company to exist. And I thought I was jaded.

      --
      Sent from your iPad.
    3. Re:Microsoft's Business by Iphtashu+Fitz · · Score: 1
      On a related note, if they were in business to make a quality operating system, they would have a tough time selling "upgrades."

      Not necessarily. It would just mean that they would have to work harder to design and develop new features that continue to improve functionality & ease of use while maintaining those high quality standards.

    4. Re:Microsoft's Business by Lunix+Nutcase · · Score: 3, Insightful

      The entire point of a business is to provide goods and services for money. Otherwise you're running an NPO.

    5. Re:Microsoft's Business by Anonymous Coward · · Score: 1, Interesting

      Ahhhh yes.... it's what I call the Greed Creed factor! Just about every major company in the world is now engaged in more more more... well more for THEM, and less for us. Take the phone company, ATT. Their mission is to make profits for their stockholders. That is primary. Everything else, like providing quality service at an affordable price, and efficient customer service, is secondary. Yeah, they'll give you a dial tone, but what they really want it to give you a bill. Why do we have the slowest and most expensive broadband in the civilized world? Because while the technology exists to make it faster and cheaper, doing so would actually mean spending money, which, of course would interfere with the number one goal of making money!

      News aggregators are another great example. They don't produce anything. Just gather up the pieces, perhaps in a unique way, display them on a page with lots of ads, and get paid basically for producing not one iota of content.

      Until we reach the tipping point were providing goods and services is the number one goal of every company, as opposed to profits, The middle class will continue to shrink into oblivion.

      Trust me, the next civil war won't be about left or right, about conservative vs liberal, black vs white(or any other color combination), but the have vs the have nots.

      It will be about money, and it won't be pretty.

    6. Re:Microsoft's Business by jonbryce · · Score: 1

      Every business is in business to make money. Some businesses make money by selling a premium product at a premium price. Others, like Microsoft, make money by selling a good enough product at a competitive price.

    7. Re:Microsoft's Business by snowraver1 · · Score: 2, Insightful

      One of my computer science professors once stated, quite succinctly, that Microsoft was not in business to make a quality operating system (or quality product). They are in business to make money.
      On a related note, if they were in business to make a quality operating system, they would have a tough time selling "upgrades."

      That's horseshit. When someone makes a better OS than MS, I'll start believing these stories. The level of complexity between Windows and OSX is incomparable. OSX works on like 5 hardware configurations, while windows will run on pretty much any hardware. OSX doesn't have enterprise level support/management, and it's arguable that the only reason that OSX is more "secure" is simply because they are less of a target.

      Linux may have some technical merit, but is a mess where people without advanced computer skills are left in the dark. Sure windows had bugs, but many of those aren't MS's fault, but rather venders that write crap drivers.

      P.S. MS is having problems selling upgrades. Why do you think ~90% of businesses are still on XP? Because it was/is a useable, relatively stable OS that did what people wanted. You can say what you want about MS, but the fact is, they are the best OS for Businesses, and most consumers. When OSX works for more than a handfull of hardware configs, I'll take it seriously. When Linux is usable by joe user, I'll take it seriously. Until then, we have MS.

      --
      Copyright 2010. All rights reserved. This comment may not be copied in any way including, but not limited to caching.
    8. Re:Microsoft's Business by Anonymous Coward · · Score: 0

      +5 insightful? Ok I'm going back to Digg.

    9. Re:Microsoft's Business by Anonymous Coward · · Score: 0

      I believe the op is referring to security related upgrades in windows, such as uac. In my opinion, it would be very hard to release these changes without charging, but extremely good for the os ecosystem.

    10. Re:Microsoft's Business by Rusty+KB · · Score: 1

      You can't really call it a competitive price when the competition is free. It's good enough for a premium, at best.

    11. Re:Microsoft's Business by pitdingo · · Score: 1

      Wow. So you are saying the number of drivers determines the complexity of the OS? Wow. Just wow.

    12. Re:Microsoft's Business by Rudeboy777 · · Score: 1

      You praise Microsoft for "running on any hardware" while that is the vendors' drivers responsibility (and open standards such as SATA, PCI, USB). At least Apple owns the driver quality themselves ensuring OSX does not have problems like those seen when Vista was young.

      While you sit and wait for OSX to work on "more than a handful of hardware configurations" to "take it seriously", Microsoft themselves have identified Apple as a clear and present danger for several years now and are scrambling to catch up (and failing often, witness Zune for example).

      --

      From hell's heart I fstab at /dev/hdc

    13. Re:Microsoft's Business by lymond01 · · Score: 1, Insightful

      This is all true. Microsoft is learning, painfully slowly, how to construct a better network operating system. I think Windows 7 (or maybe Vista...sort of skipped that one) is their first OS that requires an initial password to proceed with installation. Something as basic as requiring a password for your administrator account...and it was left out for over a decade, despite security issues in the news again and again.

      With the latest Windows 7, Microsoft may finally be getting security right, at least from a basic viewpoint. How innately hackable their system is even with a strong password I'm not certain. But at least you can't just wander into anyone's box anymore.

      As far as usability in terms of day-to-day as well as configuration both mundane and advanced, Windows blows away any OS out there. Well...MacOS is pretty good as a user OS. It's a ridiculous choice for enterprise use because of its weak management tools. Apple does have some tools, but they aren't nearly as good as what MS puts out. I haven't seen any of the Linux Enterprise management tools. We just use Puppet.

    14. Re:Microsoft's Business by Anonymous Coward · · Score: 0

      It will be about money, and it won't be pretty.

      Every war is about money.

    15. Re: Microsoft's Business by Black+Parrot · · Score: 1

      One of my computer science professors once stated, quite succinctly, that Microsoft was not in business to make a quality operating system (or quality product). They are in business to make money.

      More specifically, a stock pyramid, though that model has faltered in recent years.

      --
      Sheesh, evil *and* a jerk. -- Jade
    16. Re:Microsoft's Business by snowraver1 · · Score: 1

      No. I'm saying that Enterprise level features like AD do. I'm saying that supporting millions of different hardware configurations does, and I'm saying that only supporting a handfull of hardware configurations sure makes things easier.

      --
      Copyright 2010. All rights reserved. This comment may not be copied in any way including, but not limited to caching.
    17. Re:Microsoft's Business by IsaacD · · Score: 0

      So, if the "next civil war ... will be about money", doesn't that also indicate that the "have nots" are greedy themselves? Why is greed a negative property only for the "haves"? If the "have nots" win this civil war and end up with everything that the "haves" once had, are the "have nots-become-haves" then greedy? Doesn't the fact that these "have nots" are willing to go to war over money indicate an insatiable desire for the "haves" monies serve as a perfect example of greed?

    18. Re:Microsoft's Business by Narpak · · Score: 3, Insightful

      This is false. While a company needs to make money to be successful, this is not the only reason for a company to exist.

      Agreed. Though a more important question, as far as I am concerned, is whether or not something as important, and voluntarily, as computer/network/internet infrastructure should be run for profit (specifically government/utility system software/hardware). One could argue that there is a financial incentive for companies to make a good product, but time and time again it seems that companies are happy sacrificing the long term for short term profit. Even when that means taking short cuts that risk creating significant problems down the road. Thankfully my country, Norway, has decided to start shifting all software used by the state over to Open Standard alternatives.

    19. Re: Microsoft's Business by Black+Parrot · · Score: 4, Insightful

      Linux may have some technical merit, but is a mess where people without advanced computer skills are left in the dark.

      The same can be said of Windows. People ask me for help with their Windows computers all the time, but I can rarely help because I don't often use anything besides Linux, and contrary to what you'd like to believe, there's nothing inherently intuitive about the way Windows works.

      --
      Sheesh, evil *and* a jerk. -- Jade
    20. Re:Microsoft's Business by TheRaven64 · · Score: 4, Insightful

      The level of complexity between Windows and OSX is incomparable. OSX works on like 5 hardware configurations, while windows will run on pretty much any hardware

      Yup, OS X only runs on three hardware platforms; ARM, PowerPC, and x86. Five if you count the 64-bit variants of PPC and x86 as different. Windows runs on x86, x86-64, and PowerPC (XBox). It used to run on MIPS and Alpha as well, but hasn't since NT 4.

      Or are you talking about device drivers? Because I hope that you realise that most of these are provided by the hardware manufacturers, rather than by Microsoft. So, your argument for Windows' superiority is that more third parties support it? That's certainly a valid reason for using it, but not really an indication of its intrinsic quality.

      --
      I am TheRaven on Soylent News
    21. Re:Microsoft's Business by Bing+Tsher+E · · Score: 1

      Is there some reason you completely changed the subject to a completely different product type in your last sentence?

      I listened to the whole WWDC keynote yesterday. Jobs didn't mention ANYTHING new for the Mac. It appears to be a dying platform.

    22. Re:Microsoft's Business by Captain+Splendid · · Score: 4, Insightful

      The entire point of a business is to provide goods and services for money. Otherwise you're running an NPO.

      No, the real world's not binary like that. Plenty of people running businesses not just (or not at all) for the money. Yes, the balance sheet at the end of every month needs to be right, but there's a huge difference between lots of profit, and enough to get by.

      --
      Linux, you magnificent bastard, I read the fucking manual!
    23. Re:Microsoft's Business by snowraver1 · · Score: 1

      AFAIK, Apple is not in a position, nor has the desire to enter the enterprise market where MS makes a large portion of their money. MS is not going anywhere in the forseeable future. The Zune was unquestionably a flop. Apple has a great foothold in the consumer market, but in the business world they are barely even a player.

      --
      Copyright 2010. All rights reserved. This comment may not be copied in any way including, but not limited to caching.
    24. Re:Microsoft's Business by eldavojohn · · Score: 1

      The entire point of a business is to provide goods and services for money. Otherwise you're running an NPO.

      Logically defending Microsoft's profit motive!? You're not being a very good Linux Nutcase right now. Here, let me help you with that:

      We agree the entire point of a business is to make money. Since that's the entire point then there is no fraction of a point for them to even make or support an operating system. Therefore Microsoft, being a business, has no point in making an operating system because all of its energies are concentrated on this nebulous "profit" or "prophet" if we're talking about Apple. Therefore Windows does not and cannot exist. It was just a bad nightmare that everyone had now let's all collectively wake up.

      *picks up glass of cyanide flavored koolaid*

      Who's ready to 'wake up' with me?

      I think that demonstrates my qualifications. Please e-mail me the credentials to that account and I'll take good care of her.

      --
      My work here is dung.
    25. Re:Microsoft's Business by Captain+Splendid · · Score: 2, Insightful

      I'm saying that supporting millions of different hardware configurations does

      And a large portion of that hardware is nominally standards-compliant. Not saying you're wrong, but it's a monitor lizard, not Godzilla.

      --
      Linux, you magnificent bastard, I read the fucking manual!
    26. Re:Microsoft's Business by Rudeboy777 · · Score: 1

      News aggregators are another great example. They don't produce anything. Just gather up the pieces, perhaps in a unique way, display them on a page with lots of ads, and get paid basically for producing not one iota of content.

      Presenting the pieces in a unique and useful way IS the product. Subpar news aggregators fail due to lack of viewers while sites that have figured out appealing ways to do this (Slashdot, Digg, Reddit and plenty more) get the eyeballs.

      --

      From hell's heart I fstab at /dev/hdc

    27. Re:Microsoft's Business by IsaacD · · Score: 0

      "...when Vista was young" Why you bringing up old shit?

    28. Re:Microsoft's Business by tepples · · Score: 1

      So you are saying the number of drivers determines the complexity of the OS?

      Yes. If a defect in some classes of device driver is exploitable, it can be used by a computer criminal to wedge open systems with that device and add them to a botnet.

    29. Re:Microsoft's Business by Nemesisghost · · Score: 1

      If you have ever had to work on a piece of software with any level of complexity you'd understand how difficult it can be to try to include just .1% of the fringe conditions you have to support. I recently worked on a piece of software that was decently complex managing several many to many relationships. The first iteration of what I did was able to handle 95% of all conditions it was expected 100% of the time, and met everyone of its written requirements. But as it was used and those other 5% fringe conditions were presented it choked, and so things had to be redone. Trying to get that last 5% to work easily doubled or tripled its level of complexity. And this has fairly controlled inputs, unlike MS's OSs.

    30. Re:Microsoft's Business by slick7 · · Score: 2, Interesting

      You can't really call it a competitive price when the competition is free. It's good enough for a premium, at best.

      Prof. Lester C. Thurow said in his book "Head To Head" that it isn't about price or quality, but market share. Once you achieve the greatest share, you can control the market. Whether the product improves or not, only time will tell. Anyone who tries to enter the market has to have a better product at a lower cost than the holder of the market share. Although this is no guarantee of acceptance. This is how the Japanese got a foothold in the American auto industry, (but not in Europe) with cheap, crap automobiles. Over time, they improved in quality and the price went up. But then again, look at all the recalls. Market share can control the price. The product, quality, price don't really matter.

      --
      The mind conceives, the body achieves, the spirit manifests.
    31. Re:Microsoft's Business by tepples · · Score: 3, Insightful

      You praise Microsoft for "running on any hardware" while that is the vendors' drivers responsibility (and open standards such as SATA, PCI, USB).

      The praise directed at Microsoft is for managing to convince hardware vendors to put a Windows driver on the included CD and not include a Linux driver.

    32. Re:Microsoft's Business by skids · · Score: 1, Interesting

      No, that is a broken philosophy. In two ways:

      1) In the modern trading environment, making short-term quarterly goals is overemphasized to the point of sacrificing long term prosperity. There's something to be said for demanding returns within a certain timeframe, but 4 months is too short.

      2) It can be trivially shown that mankind could drive itself into distinction, all the while with a majority of investors "making money." The lack of a moral imperative to not only be personally profitable, but also be a net contributor, is what is broken about our current business culture. It's what brings us lovely scenarios like giant oil companies evolving a culture of disregard for safety.
       

    33. Re:Microsoft's Business by skids · · Score: 1

      erm, extinction, not distinction. EPROOFREADINGFAIL

    34. Re:Microsoft's Business by DrgnDancer · · Score: 2, Interesting

      A great deal of what you say is true, but is true mainly for circtuitous reasons. Some of it is false. The level of complexity between OSX and Windows is perfectly compareable. One of the reasons that OSX has had such a relatively good reputation for stabiltiy is the fact that they limit configurations and (here's the key) write or modify the drivers that they use for those configurations. If Apple were willing to allow OSX to be put on non-Apple hardware, it would simply be a matter of producing drivers. Microsoft doesn't produce drivers, at least not for the vast majority of the hardware they run on. The foist that job on the hardware vendors and they get away with it becasue they are so domintant that no vendor wants to not have ther hardware work in Windows. Essentially, Windows works on more stuff for two reasons: 1) They allow vendors to produce drivers, and 2) Their dominance essentially forces vendors to produce drivers. One of the major reasons for the vastly imporoved stabilty of Windows in recent years is that Microsoft has been instisting on quality drivers (there are other reasons, but this is a big contributor).

      Linux is seriously no more complicated to adminster than Windows now, at least not at the invidiual user level. I've been staggered recently by my latest Ubuntu install. While I use the command line becasue I'm comfortable with it and can accomplish many tasks more quickly with it, it has become largely unecesary. There are three major reasons that Linux is unsuitable for "Joe User" at this point.

      First, it has driver support problems. Since it's not hugely dominant in the OS field, it can't force ventdors to provide drivers in a timely manner or at all. Second, application support. This is similar to the driver problem. Third, lack of preinstallation by OEMS. As has often been said, installing Windows from scratch is not really any harder or eaiser than installing Linux from scratch. It's just that most people never do either. They simply buy a preinstalled machine (with Windows). All three of these problems relate to the Microsoft's dominance of the market and have little to do with the quality of Linux or its configuaration and administration tools. Since you forgive Microsoft for vendor problems that "aren't [its] fault" I assume you'll do the same for Linux.

      There was a substantial discussion of the "Enterprise Readiness" of Mac and Unix machines in another thread yesterday. This is largely a Red Herring. Capable admins can manage all the things that Active Directory does in a Mac, Unix, or heterogeneous Mac/Unix enviroments. The only things that create some problems are an equivilant to Group Policy Editor, which can be worked around, and the face that while all the Mac and Unix machines will happilly share directory data and files with each other Mircrosoft refuses to play ball. So anytime you you have an enviroment that includes Macs, Unix machines, and Windows machines you usally wind up with the "Windows Domain" and the "Everybody else Domain." Of course other vendors can't be blamed for Mirosoft both refusing to use standards and refusing to publish how their own system works.

      Essentially, nearly all the problems with migrating off of Windows in the Enterprise or the home boil down to: "Microsoft is so dominant in the market that we can't really change off of them." We can't get drivers... Why? Becasue once you've made one driver that works on 90% of the computers in the world, why bother to make another two or three to placate the other 10%? We can't get apps... Why? Becasue again, if you wrote one piece of software and it works on 90% of the computer in the world, why bother to port it three or four times to get a pitance more systems? These systems won't integrate into out enterprise IT environment... Why? Becasue the vendor that sold them is so domiant that it doesn't need to make make sure it's compatible with anyone else. You aren't *supposed* to have a heterogeneous environment silly. We provide everything you need.

      --
      I don't need a million points of light, just two points of multi-mode fiber and a 10 Gig-E router.
    35. Re:Microsoft's Business by Bert64 · · Score: 2, Insightful

      There is only financial incentive to make a good product if you are in a highly competitive market and your product needs to be better than the competitors...
      Otherwise, the financial incentive is to actually make a poor product so that you can sell upgrades more easily.

      In the case of MS, lock-in ensures that competition is kept at bay enabling them to produce extremely poor quality products. Keeping customers locked in is also far more profitable for them than offering an open product and then having to face competition. This situation *ONLY* benefits MS, and is to the absolute detriment of everyone else, and so considering the importance of computers in todays society something should most definitely be done about it.

      --
      http://spamdecoy.net - free throwaway anonymous email - avoid spam!
    36. Re:Microsoft's Business by Bert64 · · Score: 1

      The "have nots" are unimportant largely because their actions have little impact on anyone else, ie anything they do is on an extremely small scale. Tackle the big problems first and all that.

      --
      http://spamdecoy.net - free throwaway anonymous email - avoid spam!
    37. Re:Microsoft's Business by Bert64 · · Score: 1

      They make money by selling an overpriced product into a market that is locked in to their products and thus has to buy them regardless of quality or price. MS are really selling a second rate product at a premium price because they can get away with it.

      --
      http://spamdecoy.net - free throwaway anonymous email - avoid spam!
    38. Re:Microsoft's Business by Anonymous Coward · · Score: 0

      Also, a quarter is 3 months, not 4 ;)

    39. Re:Microsoft's Business by 1s44c · · Score: 1

      What a stupid statement that is complete tautology. The entire point of starting a business is to make money. Otherwise the business *ahem* goes out of business.

      Making money isn't always the sole aim.

      Good companies try to make a good product or provide a good service and the money just happens. Bad companies try to make money and nothing else.

    40. Re:Microsoft's Business by Bert64 · · Score: 1

      You can get equivalents to AD for Linux and OSX, Novell's current eDirectory product for instance which is descended from Novell (of which active directory is a rather crude clone), Sun/Oracle also makes something similar and there are various systems you can roll your own... Active directory is a HUGE security nightmare...

      As for "enterprise" features - in a business you don't want millions of different hardware configurations, you want as few as possible, so long as suitable configurations are available it doesn't matter how many other choices exist.... You will typically standardise on one, and in the case of apple you can be sure that the few choices on offer are thoroughly tested and well supported. Companies buy highend z/OS and AIX kit from IBM for the same reason.

      --
      http://spamdecoy.net - free throwaway anonymous email - avoid spam!
    41. Re:Microsoft's Business by WrongSizeGlass · · Score: 1

      It will be about money, and it won't be pretty.

      Every war is about money.

      And no wars are pretty.

    42. Re:Microsoft's Business by Bert64 · · Score: 1

      Also having drivers running in kernel mode from a bunch of third parties is not a great idea... How secure/stable are those drivers? How will they play together? Will they continue to work if you upgrade the OS and if not, will the manufacturer bother to provide updates?

      Linux has all the drivers in one place and Apple only provide a limited set of very well tested drivers... The only time i've seen stability issues with either is when loading third party drivers.

      --
      http://spamdecoy.net - free throwaway anonymous email - avoid spam!
    43. Re:Microsoft's Business by 1s44c · · Score: 1

      That's horseshit. When someone makes a better OS than MS, I'll start believing these stories. The level of complexity between Windows and OSX is incomparable. OSX works on like 5 hardware configurations, while windows will run on pretty much any hardware.

      So you believe the stories now? That's nice.

      Where can I find the windows install CD for my SPARC server, my PA-RISC server, or my ALPHA workstation? Nevermind, solaris, HP-UX, and VMS are all way better and a million times more stable than any version of windows.

    44. Re:Microsoft's Business by 1s44c · · Score: 1

      No. I'm saying that Enterprise level features like AD do.

      You didn't finish the sentence. Clearly you meant:

      I'm saying that Enterprise level features like AD do cause a global failure of authentication and directory services each time they cascade fail and should not be used in any environment that cares about uptime.

    45. Re:Microsoft's Business by Princeofcups · · Score: 1

      One of my computer science professors once stated, quite succinctly, that Microsoft was not in business to make a quality operating system (or quality product). They are in business to make money.

      What a stupid statement that is complete tautology. The entire point of starting a business is to make money. Otherwise the business *ahem* goes out of business.

      You miss the point. The only reason that they are a success is through their shady practices to gain a monopoly, and in their even shadier practices to stay there. They have been a bane to the free market since they broke with IBM, and they have been able to crush a lot of good companies who had good products and were making money, until they ended up in Microsoft's crosshairs. One of the reasons that they have so much money to throw around is that they spend so little on actually creating products that people want, and instead spend it all on marketing and sales teams (that which people love to bash Apple over) and destroying the competition in whatever way possible, short of making a better product.

      --
      The only thing worse than a Democrat is a Republican.
    46. Re:Microsoft's Business by ArcherB · · Score: 3, Informative

      That's horseshit. When someone makes a better OS than MS, I'll start believing these stories. The level of complexity between Windows and OSX is incomparable. OSX works on like 5 hardware configurations, while windows will run on pretty much any hardware.

      Uh, no. Windows runs on one, and only one platform, the x86 (x86-64 is still x86). OSX used to only run on RISC (PowerPC) but recently made the switch to x86 as well. It should be noted that Apple did a pretty good job making the old stuff written for RISC run on x86 for a time in order to complete the transition. The core of OSX also runs on a few different mobile platforms as well for i-phone/pod/pad devices.

      Linux will run on just about anything. Sure, you can't download the latest Ubuntu and install it on an Alpha based machine, but you can find Linux distro's designed for just about any platform.

      Linux may have some technical merit, but is a mess where people without advanced computer skills are left in the dark.

      Linux is easier to set up or operate than either Windows or OSX. The problem is that 99% of all computers sold come with either Windows or MacOS installed, so it's what people learn. Once you learn a system, it is easy to you, even if it's some antiquated, console driven, remote accessible Unix app.

      MS is having problems selling upgrades. Why do you think ~90% of businesses are still on XP? Because it was/is a useable, relatively stable OS that did what people wanted.

      People are not upgrading because XP is good enough and it's cheaper to keep running XP than it is to upgrade. Even if the OS itself was free, you still have to pay your IT guys to create an image for every machine config in the office, install it, train your employees to use it, and pay for the downtime they experience backing up their old stuff and learning the new OS.

      You can say what you want about MS, but the fact is, they are the best OS for Businesses, and most consumers

      No. MS produces the OS used by most businesses and consumers, therefor, it is what most businesses and consumers choose when they upgrade. It's easier to make the upgrade from XP to 7 than it is to upgrade form XP to Ubuntu 10.4, just as it's easier to make the move from Ubuntu 9.10 to 10.04. When you upgrade to a newer version of your current OS, odds are that you lose nothing. If you switch OS's entirely, you have find replacements for every application you currently depend on and still convert all your files to the new format.

      When Linux is usable by joe user, I'll take it seriously.

      My three year old daughter runs Linux and she can't even read yet. Hopefully Joe User is more savvy than an illiterate three-year-old.

      --
      There is no "I disagree" mod for a reason. Flamebait, Troll, and Overrated are not substitutes.
    47. Re:Microsoft's Business by ((hristopher+_-*-_-* · · Score: 1

      Examples would be great here. I really fail to see anyone who starts a _commercial_ business doing so without the objective of making a profit, sure maybe not lots of profit, but a profit no less.

      It's not jaded to think that way... NPO charity organizations are a great part of society. But they are definitely not a commercial business.

    48. Re:Microsoft's Business by Amouth · · Score: 1

      tell that to SCO - they haven't made a dime in years and they still won't die..

      --
      '...if only "Jumping to a Conclusion" was an event in the Olympics.'
    49. Re:Microsoft's Business by Anonymous Coward · · Score: 0

      Every business is in business to make money.

      Most are, but certainly not every one. Most non-profits are still businesses.

    50. Re:Microsoft's Business by burnin1965 · · Score: 3, Insightful

      Microsoft was not in business to make a quality operating system (or quality product). They are in business to make money

      I see you are getting hammered with comments that I believe misunderstand your professor's statement. Of course businesses are in business to make money, what people don't seem to get is that Microsoft's core competency, main objective, mission statement, sole purpose, etc. is to make money.

      I could be wrong but I don't believe that Microsoft developers intentionally make bad products with the intention of getting customers hooked and then forced to upgrade. I believe this is just the end result of a business strategy that permeates virtually all of business management in the United States today. I would describe the U.S. business models as, greed is good slash and burn, hookers and extortion profit margin goals, end times are near hoarding and investment(or lack there of), and disaster focused management.

      Greed is good slash and burn: There is an entire generation, perhaps more, of MBAs who watched Wallstreet and fell for Gekko's speech about greed as a driving factor for all human pursuits but either failed to watch the entire movie or did not make the connection to the plot where greed did not result excellence in business pursuits but instead led to cheating, destruction of other people's livelihoods to transfer wealth from a group of people to an individual, and out right criminal activity. And we don't need a movie to tell us that greed is not good, we have real life events that occur over and over and over that show us how greed left unchecked simply leads to crime not excellence.

      Hookers and extortion profit margin goals: Profit margins are important for the viability of a business and its ability to expand and invest into future business opportunities, however, the greed mentality has created a deranged market concept that becomes detached from the real market and real viability of a product. I have seen this mentality at work at a hardware manufacturer during management and engineering meetings where Part B had a lower profit margin than Part A and it was repeatedly suggested that Part B should no longer be manufactured and Part A should be ramped up using the manufacturing capacity of Part B. Unfortunately the MBAs and engineers refused to listen to sanity, the bulk of the market wanted to buy Part B not Part A and the final products that used Part A also required Part B. Without the low margin Part B there was no market for Part A! Once logic failed I gave in to the greedy profit margin goal and suggested we replace all the engineers and manufacturing employees with hookers and thugs as the profit margin in the Hookers and Extortion business was probably better than making parts. As an engineer I would not be needed so I left.

      End times are near hoarding and investment(or lack there of): Again driven by greed, rather than having long term multiple year future plans many U.S. corporations are more concerned with 3 month business plans as if there will be no future for the planet or business beyond the next 3 months. If your engineering project does not have an acceptable ROI within 3 months then it stays on the back burner. Even after presenting the same 3 year plan after 3 years on an annual basis and explaining that 3 years ago if it had been implemented the benefits would have been rolling in the project is perpetually placed on the back burner while the funds that could have financed the project are hoarded until upper management bonus time rolls around.

      Disaster focused management: And as a result of the previous management techniques the focus of U.S. business management becomes continually locked in disaster recovery mode. With everything focused on greed the little things like safety, sustainability, future capability, etc. are all left to the way side until they becom

    51. Re:Microsoft's Business by Anonymous Coward · · Score: 0

      OSX doesn't have enterprise level support/management, and it's arguable that the only reason that OSX is more "secure" is simply because they are less of a target.

      It appears that you are incorrect in your former statement. Take a look at these links:
      http://www.apple.com/server/macosx/ http://store.apple.com/us/product/D2652LL/D http://store.apple.com/us/product/D2653LL/D http://www.apple.com/server/macosx/technology/open-directory.html
      As to your latter statement, that is your opinion, and definitely not a substantiated fact.

      That's horseshit.

      Indeed, I agree.

    52. Re:Microsoft's Business by jedidiah · · Score: 1

      Some people. Some companies. Some countries actually have PRIDE.

      They aren't going to sell crap because it offends their sensibilities. They won't view
      the corporate goal of "making money" as an excuse to skirt the law. H*ll, they will
      probably even have a more balanced view of what a corporation is supposed to be about.

      They will build good stuff. That will just be a part of how they make money.

      They won't merely be glorified con men.

      --
      A Pirate and a Puritan look the same on a balance sheet.
    53. Re:Microsoft's Business by Anonymous Coward · · Score: 1, Insightful

      Then it wouldn't be a business Einstein...what an idiot....let me guess...you typed your comment while wearing a Che shirt on an iPad while sipping a latte at starbucks...your Prius parked out front....Obama 08 sticker proudly on display on the rear bumper.

      Spare us your idiotic notion of business and economics.

    54. Re:Microsoft's Business by Anonymous Coward · · Score: 0

      "Enough to get by" = currency, right? The motivation isn't in question. A business exists to make money. Case closed.

    55. Re:Microsoft's Business by paeanblack · · Score: 1

      here's a huge difference between lots of profit, and enough to get by.

      Yup. It's called market share.

      Microsoft has completely dominated the OS and core business app market for 15 years, for better or worse. All competing products have been designed, priced, and marketed around what MS is or is not doing. When MS makes a move, everybody feels it, even the non-commercial side of Linux.

      I'm not saying that this has been a good or a bad thing...there are arguments either way, but that kind of dominance certainly cannot be accomplished by a company that is just interested in making enough to get by.

    56. Re:Microsoft's Business by bjk002 · · Score: 1

      I admittedly got dizzy reading this...

      --
      Opinion:=TMyOpinion.Create(Me);
    57. Re:Microsoft's Business by Threni · · Score: 1

      Not many companies tell their shareholders that they `just want enough to get by`. Do you have some examples? Are you sure you're not talking about charities, or the sorts of companies which exist for about a year until the bank's load runs out?

    58. Re:Microsoft's Business by VGPowerlord · · Score: 1

      I think Windows 7 (or maybe Vista...sort of skipped that one) is their first OS that requires an initial password to proceed with installation. Something as basic as requiring a password for your administrator account...and it was left out for over a decade, despite security issues in the news again and again.

      As I recall, Windows XP prompts/requires you to set a password for the Administrator account... but then requires you to create 1-7 additional users with the same privileges without passwords in the very next dialog.

      --
      GLaDOS for President 2016! "Well here we are again. It's always such a pleasure." -- GLaDOS, 2011
    59. Re:Microsoft's Business by VGPowerlord · · Score: 1

      Also having drivers running in kernel mode from a bunch of third parties is not a great idea..

      Not all drivers in Windows run in kernel mode.

      Windows Vista introduced User-Mode Drivers, support for which was back-ported to Windows XP SP2.

      --
      GLaDOS for President 2016! "Well here we are again. It's always such a pleasure." -- GLaDOS, 2011
    60. Re:Microsoft's Business by Threni · · Score: 1

      When you say `good` or `bad` companies you need to be clear about whether you're talking about success in the market, or some sort of moral quality. Because very many companies are very successful but are more or less entirely `bad` morally, whereas other companies start off with the best intentions but are clueless about business.

      Google has always seemed to me to be something of an exception - a company which is doing well, and which is trying to avoid being bad. (This makes the current situation, with countries lining up to sue them over their wifi-tapping project, an unusual anomaly. It'll be interesting to see what they do about this).

    61. Re:Microsoft's Business by ATMAvatar · · Score: 1

      On a related note, if they were in business to make a quality operating system, they would have a tough time selling "upgrades."

      That's not entirely true. Even in a theoretically 100% bug- and security hole-free OS, there is always room for updates. These updates could include things like support for new hardware (e.g. adding touchscreen support) or adding new features (e.g. multiple desktops).

      --
      "They that can give up essential liberty to obtain a little temporary safety deserve neither liberty nor safety."
    62. Re:Microsoft's Business by Captain+Splendid · · Score: 2, Interesting

      Not many companies tell their shareholders that they `just want enough to get by`.

      Correct, but that's not the point.

      Do you have some examples?

      Yep. My small business.

      The point, in general, is this: There are many was to run a business. Just because 99% do it a very specific way doesn't mean it's the only way.

      --
      Linux, you magnificent bastard, I read the fucking manual!
    63. Re:Microsoft's Business by newdsfornerds · · Score: 1

      Sadly, in America publicly traded a company's only real obligation is to the shareholders. All other concerns must take a back seat.
      So yes, in a sense, making money aka increasing share value quarter by quarter is the only goal. That's actually the law and personally I believe it's a terrible law.
      Of course public corps must make efforts to adhere to labor, tax and environmental laws as well.

      --
      Damping absorbs vibrations. Dampening is caused by moisture.
    64. Re:Microsoft's Business by newdsfornerds · · Score: 1

      I recently searched for "linux" on two web sites where US govt jobs are posted. These were "official" sites like usajobs.gov. I forget what the other one was named. The search produced two (2) postings, both of which were in Huntsville, Alabama where they test and develop missiles and other weapons.
      I'd love to help the Obama administration replace the Fed's pathetic Windows infrastructure with Linux, *BSD, even Solaris but I don't see any jobs posted anywhere for this sort of work.

      --
      Damping absorbs vibrations. Dampening is caused by moisture.
    65. Re:Microsoft's Business by Anonymous Coward · · Score: 0

      People are not upgrading because XP is good enough

      And Linux is not. Every time I try it (mainly various flavours of Ubuntu in the last few years) I am astonished at the epic brokenness of important features. After the last upgrade (about two months ago):

      • The built in GUI disk management tool (I forget the name) told me that my 300GB disk had 400GB of partitions and offered to format 50GB of (actually non-existent) free space for me. Which would have cause god-knows-what breakage. GParted did understand the (uncomplicated) partition scheme, but this tool isn't installed by default.
      • My bog-standard wired ethernet connection stopped working. Trying to fix that - with no internet access other than by rebooting back into Windows - was an enormous treat. The fix involved editing a config file. This brought the adaptor back, but then the GUI refused to recognise the adaptor because it had been manually configured. Of course.

      And I could go on. I like open source. I've contributed to open source projects. But Linux (well, Ubuntu anyway) is neither easy to use nor good enough. FWIW, my problem isn't that I was brought up on Windows. I was a Solaris developer back in the early '90s before I'd ever used any Microsoft product.

    66. Re:Microsoft's Business by Dragonslicer · · Score: 1

      Not many companies tell their shareholders that they `just want enough to get by`.

      Not every company has shareholders.

    67. Re:Microsoft's Business by Chris+Mattern · · Score: 1

      No. I'm saying that Enterprise level features like AD do.

      AD? You mean Microsoft's bastardized version of LDAP that they mutilated enough to prevent it from interfacing well with anything non-Microsoft? Use OpenLDAP and discover what it's like to use a true standard.

    68. Re:Microsoft's Business by toby · · Score: 1

      And I thought I was jaded.

      Exactly - a cynic "believes that human conduct is motivated wholly by self-interest" (courtesy Merriam-Webster). The Freedictionary definition even uses the word 'jaded'. :)

      By all available evidence, such cynicism towards Microsoft's motives does appear wholly justified.

      --
      you had me at #!
    69. Re:Microsoft's Business by ZFox · · Score: 1

      That was the way we used to think. Now we look past the selfish material profit and focus more on the social benefit. We all now know that sacrifices must be made for the good of the world.

      Why do some people still act in the old selfish ways? I don't know--Who is John Galt?

    70. Re:Microsoft's Business by hey! · · Score: 1

      Well, if we are going to use "ultimate teleology" as our yardstick, then Microsoft (and everyone else) is in business to increase the net entropy of the universe.

      --
      Post may contain irony: discontinue use if experiencing mood swings, nausea or elevated blood pressure.
    71. Re:Microsoft's Business by Anonymous Coward · · Score: 0

      Although it is true that companies go for short term benefits while sacrificing long term goals, this is a problem caused by the SEC because all publicly owned corporations have to report a quarterly earnings report. Thus the short term goals benefit the stock price which allows for sustainability. There might be a bunch of reasons why the SEC doesn't switch this policy, but I believe capitalism can work better for the general public if companies were allowed to report either quarterly, bi-yearly, or yearly.

    72. Re:Microsoft's Business by ZeroConcept · · Score: 1

      I can't remember who said it, but it gets the point across nicely: "Money is to business what blood is to a human body, you need it to survive but is not the point of your existence."

    73. Re: Microsoft's Business by fishexe · · Score: 1

      Linux may have some technical merit, but is a mess where people without advanced computer skills are left in the dark.

      The same can be said of Windows. People ask me for help with their Windows computers all the time, but I can rarely help because I don't often use anything besides Linux, and contrary to what you'd like to believe, there's nothing inherently intuitive about the way Windows works.

      Not to mention, now that I've put Xubuntu on my Dad's laptop he only calls me once a year for computer help, rather than once a month when he had Windows. Really the only problem is when he buys a new printer and needs it installed (happened once) and he accidentally deletes his panel (happened twice)....that's in a 3-year period.

      --
      "I don't care about the Constitution!" --Bill O'Reilly, November 17, 2009
    74. Re:Microsoft's Business by fishexe · · Score: 1

      One of my computer science professors once stated, quite succinctly, that Microsoft was not in business to make a quality operating system (or quality product). They are in business to make money.

      What a stupid statement that is complete tautology. The entire point of starting a business is to make money. Otherwise the business *ahem* goes out of business.

      Um...no? The business has to make a non-negative amount of money, but that doesn't mean it has to maximize income. Choosing to make less money in order to benefit others or to act ethically does not make a business go out of business, as long as that business stays in the black overall.

      Many people start businesses because they dream of owning their own (restaurant/store/fill-in-the-blank) and being their own boss, not to make money. They have to make a living but that's not the purpose of starting the business, they could often do just as well at making money by keeping their day jobs.

      --
      "I don't care about the Constitution!" --Bill O'Reilly, November 17, 2009
    75. Re:Microsoft's Business by fishexe · · Score: 1

      When Linux is usable by joe user, I'll take it seriously.

      My three year old daughter runs Linux and she can't even read yet. Hopefully Joe User is more savvy than an illiterate three-year-old.

      Ten years ago GP's argument held water. But now that my wife, my little sister, and my Dad all use Linux, I don't think it flies any more. My Dad, by the way, is at the level of computer literacy where if you tell him to click something he asks "left click or right click" every time, no matter how many times you tell him that the default is left. Yet to him, the only difference between Linux and Windows was that the Firefox icon was in a different place and the antivirus program had a different name. And that he stopped getting viruses.

      --
      "I don't care about the Constitution!" --Bill O'Reilly, November 17, 2009
    76. Re:Microsoft's Business by mgblst · · Score: 1

      Ben and Jerrie's is another example.

    77. Re: Microsoft's Business by Anonymous Coward · · Score: 0

      Too bad it's not possible to mod you over +5...

    78. Re:Microsoft's Business by Anonymous Coward · · Score: 0

      One could argue that there is a financial incentive for companies to make a good product, but time and time again it seems that companies are happy sacrificing the long term for short term profit.

      I think the reason is quite simple: the salaries and bonuses of most execs are based on the current results. They couldn't care less if the company goes down in 10 or 15 years as long as this means that they can earn twice as much in a year than by following a long-term vision

    79. Re:Microsoft's Business by CaptainJeff · · Score: 1

      You're confusing hardware platforms with instruction set architectures (ISAs). There is a lot more to a hardware platform (chipset, BIOS/EFI, etc) then the type of microprocessor that powers it.

    80. Re:Microsoft's Business by Risen888 · · Score: 1

      while windows will run on pretty much any hardware.

      A modern version of Windows? Because I've got a P3 file server sitting in my closet running Arch Linux that thinks you're full of shit.

      MS is having problems selling upgrades.

      Yeah, that'll happen when your second rate OS costs north of $200. Of course no one wants to buy that crap.

      When Linux is usable by joe user, I'll take it seriously.

      Man, you're a laugh a minute. I sell Linux computers. To Joe User and his mom. I provide a fairly stock Ubuntu configuration for most folks, and a fully set up Arch Linux/KDE 4 config for the more adventurous. I sell these things to yoga instructors, retired grandmas, flight attendants, undergrads, and nurses. If they read your comment they would laugh at you. Congratulations. You've been outgeeked by an 88 year old woman.

      --
      Hey, I finally got my first freak! Took you long enough!
  5. No kidding? by Em+Emalb · · Score: 1

    Why do I feel like Captain Obvious is being obvious here?

    Microsoft is the Walmart of the software world. Cheap goods that a lot of people use. Of course they're the weak link.

    --
    Sent from your iPad.
    1. Re:No kidding? by Anonymous Coward · · Score: 0

      Yes, i would agree, except for the the fact that it really isn't that cheap, and many consider it the best(if not only) thing to use.

      It might be convenient to call Microsoft walmart, but it just isn't true.

    2. Re:No kidding? by clang_jangle · · Score: 1

      It's effectively true, because of all the subsidies the OEMs get for installing windows. Plus the perception of the average "consumer" is "I got windows free with my computer". So while the true cost of windows is huge, almost incalculably so, it's also "cheap", as in everyone gets it without any real effort and minimal up-front expense. Which actually, is exactly like Wal-Mart if you stop to think about it...

      --
      Caveat Utilitor
    3. Re:No kidding? by vcgodinich · · Score: 1
      Which is the same perception when you buy a Mac, or even a Linux PC from Dell, so what is the comparison?

      Yes, dumb people think all software that comes pre-installed is "free", but they think that about ALL preinstalled software.By that token, Apple, Ubunto and ALL operating systems are exactly the same "cheap"

    4. Re:No kidding? by Anonymous Coward · · Score: 0

      Wait, which OS is on 99+% of all PCs in the store? And how much extra do people pay for an Apple?

      IOW, DUH! You're not just wrong, you're completely stupid.

    5. Re:No kidding? by Bing+Tsher+E · · Score: 1

      So while the true cost of windows is huge, almost incalculably so,

      What an insane assertion. Did you spill too much hyperbole into your oatmeal this morning?

    6. Re:No kidding? by Anonymous Coward · · Score: 0

      It is incalculably expensive in terms of lost productivity and losses due to security failures. If you really can't understand that then you just aren't very smart.

    7. Re:No kidding? by tepples · · Score: 1

      By that token, Apple, Ubunto and ALL operating systems are exactly the same "cheap"

      Because Apple chooses not to have an ultra-low-end computer line, Mac OS X doesn't come preinstalled on cheap hardware. Compare Acer Aspire Revo ($200) to Mac mini ($600).

    8. Re:No kidding? by Lumpy · · Score: 1

      The mac mini has a Ton more horsepower than that Aspire Revo. It's not low end hardware.

      We got 20 of them here as a Final Cut render farm.... works wonderfully.

      --
      Do not look at laser with remaining good eye.
    9. Re:No kidding? by tepples · · Score: 1

      The mac mini has a Ton more horsepower than that Aspire Revo. It's not low end hardware.

      Exactly my point. Apple doesn't make bargain-basement PC hardware; it makes Macs. But there's still a market segment that wants to cut corners, and this segment can't tell the difference between a Mac mini and an ION nettop.

    10. Re:No kidding? by westlake · · Score: 1

      It's effectively true, because of all the subsidies the OEMs get for installing windows. Plus the perception of the average "consumer" is "I got windows free with my computer". So while the true cost of windows is huge, almost incalculably so, it's also "cheap", as in everyone gets it without any real effort and minimal up-front expense. Which actually, is exactly like Wal-Mart if you stop to think about it...

      The cheapest 64 bit Win 7 Home Premium laptop at WalMart.com is $378. The cheapest Win 7 SE netbook a $228 Dell Inspiron.

      That is getting perilously close to the price point of the as-yet-unseen ARM sub-netbook.

      The OEM does not pay retail list for Windows.

      There are even greater - truly enormous - economies of scale in building and marketing product for the OS with 90% of the market.

      Product placement is simply the icing on the cake.

      The plug-and-play OEM system install - the hardware and software bundle - sold under warranty - solves so many problems for the user, it is impossible to imagine an OS gaining significant market share without it.

  6. It is simple Darwinism by filesiteguy · · Score: 4, Interesting

    If you look at any ecosystem, you'll find that there are pests trying to gain a foothold into that system by exploiting a weakness. If there is only one type of organism, the pests will adapt and exploit the weakness of that organism. This is why you need ever more powerful pesticides when cultivatign monoculture crops such as corn, wheat or even soybeans.

    Same goes for ecosystems of comptuers. Given 90% are running Wintendo, you find that the pests (virus and other exploit authors) take adavantage of that monoculture. The weaknesses are then exploited and have to be "patched" in order to ensure survival of data and/or systems.

    Given an ecosystem with multiple operating systems - Windows, Linux, Unix/OSX, zOS - you'll find a greater ability to defend against continual threats.

    1. Re:It is simple Darwinism by betterunixthanunix · · Score: 4, Insightful

      There is more to it than that. A very carefully managed Windows system can certainly withstand a number of attacks, just like a carefully managed *nix system. The problem is that most Windows systems are not carefully managed, and a carelessly managed Windows system is much more vulnerable than a carelessly managed *nix system. Windows started out as a single user OS, and even though the NT kernel has everything necessary to support multiuser setups, it is very difficult for Microsoft to push better security as the default in Windows -- there are just too many people who have a habit of doing everything as "Administrator," and too much software the relies on that sort of behavior. Things have started to change, but Windows XP is still widely deployed.

      Really, if Microsoft wanted to, they could start marketing an OS designed for security sensitive environments (perhaps with a compatibility mode that allows Windows software to run in some kind of VM), and leave Windows as a "home PC" operating system. The fact that they are not doing anything like that, despite the fact that MSR developed such an OS, speaks volumes about Microsoft's priorities.

      --
      Palm trees and 8
    2. Re:It is simple Darwinism by Anonymous Coward · · Score: 0

      Evolution needs to be undisturbed to work. You implying that the competitors should be adopted because it will heighten security through obscurity is Design, not evolution. Evolution picks the best choice from a group, and right now that choice is Microsoft.

      Don't preach evolution if you aren't happy with the results.

    3. Re:It is simple Darwinism by vcgodinich · · Score: 3, Interesting
      The fact that at the recent history of security conferences, widows did just as well out of the box as *nix did, and OSX was breached with ease speaks volumes as well.

      No matter WHAT MS does, it isn't going to be able to secure home PCs against "cyber warfare" from China. end of story. MS's security isn't bad at all, in fact it's years ahead of it's nearest competitor (OSX).

    4. Re:It is simple Darwinism by filesiteguy · · Score: 1

      Don't get me wrong. I'm not suggesting any given Windows system cannot be hardened against attack. In fact, I put in many of the MS-Suggested safeguards when designing major systems back in 2000. They included never running as local admin, not allowing programs write access to any system or program files directories, using strong passwords, and using a firewall.

      What I was suggesting is that the single-use of any OS - whether Windows, Linux, Unix or AmigaOS - would make an ecosystem far more vulnerable and expensive to ensure secure against attacks.

    5. Re:It is simple Darwinism by TheCarp · · Score: 5, Insightful

      I would submit that most non-windows systems are also poorly managed.

      The difference is monoculture vs diversity. Look at windows users, and you will find lots of people using the same tools. Outlook, as soon as a company installs exchange you can be sure that the vast majority will be using outlook to connect to it. You find a vulnerability in outlook, or word, or a system service, and you can suddenly hit huge swaths of machines.

      Now, Unix? You have multiple hardware architectures, distributions of even similar systems like Redhat and Debian Linux have made different choices for default daemons for various services. A hole in pine or mutt may not effect evolution users, or thunderbird users.

      So in addition to a smaller audience, you get a smaller percentage of that audience.

      to put it in business terms, the ROI of windows vulnerability exploits is just higher. That is, unless you are targeting a specific system, in which case, well, I know that where I work, many more windows servers exist than the entire unix environment, but, the Unix environment has a higher percentage of the mission critical (or more to the point, patient care critical) servers.

      So thats not to say there isn't definite ROI on such attacks, it can even be higher. However, I don't think that such attacks realy factor into this discussion since specific attacks on specific machines for their content is the exception rather than the rule for most systems/users.

      -Steve

      --
      "I opened my eyes, and everything went dark again"
    6. Re:It is simple Darwinism by Midnight's+Shadow · · Score: 1

      Evolution needs to be undisturbed to work. You implying that the competitors should be adopted because it will heighten security through obscurity is Design, not evolution. Evolution picks the best choice from a group, and right now that choice is Microsoft.

      Don't preach evolution if you aren't happy with the results.

      Not quite right. Evolution needs pressure to work which arise through imposed forces which can be applied by nature or by humans. Evolution also does not necessarily pick the best choice, it picks the choice that has the greatest success of producing offspring. Human caused cows to evolve to their current state even though the cows would now never survive in the wilderness right now.

      The OP is very much correct, by having a computer ecosystem with multiple OS's, there is a greater ability to defend against continual threats. Think of it like a forest full of one type of tree which is much more likely to get wiped out by a single contagion then a forest of many types of trees.

      --
      "God is a comedian playing to an audience too afraid to laugh. " -Voltaire
    7. Re:It is simple Darwinism by 1s44c · · Score: 1

      It's a nice analogy but it just doesn't apply to computers which can automate attacks very well. Windows doesn't have an exploit problem because it's popular, it has an exploit problem because it's insecure.

    8. Re:It is simple Darwinism by Bert64 · · Score: 1

      A standalone windows system is relatively easy to harden against external attack, after all windows was always designed as a single user workstation os so this is how it's meant to be configured...

      However to do so requires various kludges, for instance using a firewall to prevent access to various listening network services, whereas on a unix system you would shut those services down as it makes no sense to keep something running if nothing needs to access it.

      However once you start opening up MS protocols to the network (which you need to do to use things like exchange and active directory) the design flaws start to bite... You have a flawed authentication model where you can use the password hash instead of the actual password (which means the passwords are effectively stored as plain text)... you have extremely complex protocols which are poorly documented, provide no clear demarcation between authenticated and anonymous access and have far too much functionality in one place (some of which is completely unnecessary...
      You have things like the remote desktop protocol which establishes a full gui session (ie lets you move windows around etc) *BEFORE* you have logged in so all of this functionality is available to unauthenticated users to try and exploit.

      --
      http://spamdecoy.net - free throwaway anonymous email - avoid spam!
    9. Re:It is simple Darwinism by Lusixhan · · Score: 1

      Offtopic, but just FYI, the term is "evolution", not "Darwinism". "Darwinism" was a term spun into existence by creationists in an attempt to tie evolution in with creationism as an ideology (hence the -ism) linked to a man instead of an established set of observations under the hit-on-the-head-with-a-shovel idea that if you can bring it down to your level, you can marginalize the "ideology". Sorry for the screed, I just cringe every time I see someone use "Darwinism" in a non-ironic context.

    10. Re:It is simple Darwinism by Lusixhan · · Score: 1

      Er, that's "spun by", not "spun into existence by".

    11. Re:It is simple Darwinism by filesiteguy · · Score: 1

      My bad. I was thinking of the Darwin Awards (http://www.darwinawards.com/) when I wrote.

    12. Re:It is simple Darwinism by vcgodinich · · Score: 1
      You can say all this, but the fact remains that there are no remote desktop (disabled by default btw) exploits in the wild.

      Not to mention that the average user, hell, even a business user rarely uses exchange on an unsecured network, either VPNed or SSL.

      Yes, any computer system that uses a network has vulnerabilities, but it is unfair to call them vulnerable if there are no known exploits., not to mention that you haven't proposed an exchange product that is more secure than MS's email solution.

    13. Re:It is simple Darwinism by Bert64 · · Score: 1

      Running exchange through the web api over HTTPS would be more secure...
      Why? because the encryption and lower levels of the HTTPS protocol are a known quantity and well understood, even if the higher levels are still proprietary. There are also plenty of products offering similar functionality over secure channels (see IMAPS, CalDAV, LDAPS, HTTPS etc).

      Just because there are no exploits for remote desktop doesn't mean none will be discovered. As you pointed out its not enabled by default, and most people have been concentrating on services which are enabled by default. The fact is the service exposes far more functionality pre-authentication than it needs to which shows bad design.

      There is a reason why people use these protocols over a VPN or tunnelled over SSL and that's because the protocols are not securely enough designed to be run directly over an untrusted network. On the other hand, people are quite happy to run SSL and SSH based services directly over the Internet.

      As you pointed out, any system has vulnerabilities, but there are plenty of things you can do at the design stage to minimise both the risk and impact of vulnerabilities... Not least of all is making a clear separation between authenticated and unauthenticated functionality, with the latter being absolutely minimised.

      --
      http://spamdecoy.net - free throwaway anonymous email - avoid spam!
  7. Summary misdirected by ATestR · · Score: 4, Insightful

    For once, I RTFA. The summary seemed interesting. However, the FA was even more interesting, although it had little to do with all the money that Microsoft had in its back pocket, and how it's market dominance was based on low cost products.

    The main thrust of the FA, for those of you who don't want to click the link, is that because the Windows OS is so prevalent in civilian and corporate usage, a Cyberattack could devastate the economy (and western civilization).

    --
    âoeAny society that would give up a little liberty to gain a little security will deserve neither and lose both.
    1. Re:Summary misdirected by vcgodinich · · Score: 2, Insightful
      Implying the Microsoft products are prevalent because they are "low cost" is absurd.

      Granted, OSX in use is a bit pricier, but not -that- much, and Unix/Linux is as close to free as you can get.

      Microsoft isn't low cost at all, if anything, it is high cost in a great many areas.

    2. Re:Summary misdirected by ATestR · · Score: 1

      Agreed. I don't consider MS products particularly low cost, but it was the hope that I could rag on this observation (of the original summary) that led me to RTFA.

      --
      âoeAny society that would give up a little liberty to gain a little security will deserve neither and lose both.
    3. Re:Summary misdirected by Anonymous Coward · · Score: 2, Interesting

      Cost is not just the cost of the box.
      Let us say, as a business, I want to run some servers.
      A quick look over at a job site: Windows Admins - £25-30k, Unix - £30-45k.

    4. Re:Summary misdirected by TheRaven64 · · Score: 1

      So he's saying that a monoculture is less secure than a heterogeneous environment? Wow, it's almost as if he's listened to what security experts have been saying for the last few decades...

      --
      I am TheRaven on Soylent News
    5. Re:Summary misdirected by pmontra · · Score: 1

      That applies to any monoculture, from corn to poultry. Consider this example.

      Lack of genetic variation, simply put, equals greater risk. Members of a population that shares the same set of genes can all be overcome by a disease, but if a population’s members contain different gene sets, there is a chance some will survive.

      Unfortunately monocultures are convenient, even in IT.

    6. Re:Summary misdirected by tophermeyer · · Score: 1

      If you think of cost in terms of both $$$ and time, then I think probably Windows is the least cost solution. I think the majority if home computer owners get turned off by the higher price tag of OSX machines, and are pushed toward the Windows and Linux price points. Then they consider that they don't know anything about Linux works, but do know that since most of their past computing experiences have been on previous versions of Windows they can probably figure out the new version pretty quickly.

      I think the average Joe american that walks into Best Buy for a new home computer looks to Windows for a cheaper product that "just works".

    7. Re:Summary misdirected by Bert64 · · Score: 4, Informative

      While true, by the time MS became an expensive option it no longer mattered - millions of people were already locked in.

      Back in the days, MS (and the cheap hardware they ran on) were a cheap option compared to Novell, Sun, DEC, SGI, IBM, Apple and all the other highend vendors... MS and x86 were massively inferior to everything else on the market, but with such a huge price differential they were able to make it up on volume...

      Ford cars are clearly inferior to Rolls Royce or Ferrari, however you see a lot more Fords on the roads for the same reason. However, cars are standardised enough that its impossible to lock someone in, thus ensuring there is a healthy level of competition in the industry.

      --
      http://spamdecoy.net - free throwaway anonymous email - avoid spam!
    8. Re:Summary misdirected by Bert64 · · Score: 1

      Cost is not just the wages either...

      A decent windows admin costs just as much as a decent unix admin, the difference is that incompetent people are more likely to call themselves windows admins than unix admins... If you hire incompetent staff you will have a poorly functioning network regardless of what software it runs...

      A competent unix admin should be able to maintain far more systems than an equivalent windows admin, meaning you need less of them.

      There is also the cost of hardware and third party software to consider... Windows in a network tends to require third party addons like AV and software management systems which unix systems typically do not require (or include as standard)... Windows also typically requires greater hardware resources that unix to do similar tasks.

      Things like AV, package management, competent (read: expensive) admins, etc are "optional" in that you can limp by without them....

      A typical unix setup with typical expensive admins will include everything you need and cost less than a windows setup including competent (expensive) admins and all the ancillary "optional" addons that really are essential if you want things to run smoothly.
      On the other hand, a windows setup with cheap incompetent admins and none of the ancillary stuff may be cheaper, but will run extremely poorly, and the inevitable problems caused by this will almost certainly outweigh the initial savings.

      --
      http://spamdecoy.net - free throwaway anonymous email - avoid spam!
    9. Re:Summary misdirected by Anonymous Coward · · Score: 0

      Also read the FA which largely disagreed with the author of the book. The FA was more conservative and drew the conclusion that the privatization of OS's and their security was probably the biggest problem facing cyber-security. Not having systems built to specs and audited for compliance and instead buying off-the-shelf, consumer use products means lower quality.

  8. I disagree by 2names · · Score: 5, Insightful

    I am not a Microsoft fan, but I believe the weak link has much more to do with the meat sitting in front of the computer than the software on the computer.

    --
    "I'm just here to regulate funkiness."
    1. Re:I disagree by Anonymous Coward · · Score: 0

      I am not a Microsoft fan,

      "Yes you are!"
        - Ben "Yahtzee" Croshaw

    2. Re:I disagree by axl917 · · Score: 2, Interesting

      I am not a Microsoft fan, but I believe the weak link has much more to do with the meat sitting in front of the computer than the software on the computer.

      Well, that gets to the issue of who bears the responsibility; that which sells a poor but patchable/fixable product, or the buyer who is ignorant of the necessary fixes?

      Is this more like owning a house, where the owner is responsible for regularly checking the foundations for cracks, the locks for security, etc... Or more like owning a car, where the owner is still responsible, but the manufacturer builds in many, many indicators and warnings when things need attention?

    3. Re:I disagree by mlts · · Score: 2, Interesting

      This is why I think and greatly fear that closed systems may end up in our future on mainstream computing just due to the dancing bunny problem.

      Device operating systems are moving that way where if one wants to run stuff on a smartphone, it must pass a gatekeeper, either always like in the case of Windows Phone 7 or iOS, or a reactive system with an after the fact kill switch like Android has.

      Because Joe Sixpack doesn't care about security, it really doesn't matter what OS he uses. He will su to root, log on as Administrator, turn the key and logon as SECOFR on AS/400, or whatever superuser access requires for the website that has the pr0n viewer to be installed. It doesn't matter what the OS is, the dancing bunnies "security hole" is going to kick any OS in the ass. This is one reason why closed environments such as on phones have a lot fewer security issues -- unless Joe Sixpack roots/jailbreaks the device (which will be past his competency and too much trouble in most cases), he most likely isn't going to get a Trojan because the Trojaned app would have had to pass some type of vetting first.

      Yes, there are issues where one can get affected through a hole in a browser or add-ons. However, the advantage of a closed system is that if done right (where the OS has DEP, ASLR, and other base level ways to prevent code injection), sneaking executable code on a device is not going to work.

      Maybe the compromise in the PC world will be going to a hypervisor based system admin access is available, but it takes some deliberate doing to get a superuser prompt, and applications are installed in VMs, where the compatible OS files are stored as an image. With decent deduplication, the OS files only need to be stored once, so installing a program into its own VM where it can only see what is present there, and perhaps files in a shared directory may end up being what is done. This way, a user ends up never needing admin access, and a Trojan is only limited to that VM.

    4. Re:I disagree by slick7 · · Score: 1

      I am not a Microsoft fan, but I believe the weak link has much more to do with the meat sitting in front of the computer than the software on the computer.

      Then why am I constantly being inundated with upgrades? It's like M$ is writing the operating system as I use it.

      --
      The mind conceives, the body achieves, the spirit manifests.
    5. Re:I disagree by Monkeedude1212 · · Score: 1

      the meat sitting in front of the computer

      Is your oven by your desktop or something?

      Or are you cannibalistic?

    6. Re:I disagree by Anonymous Coward · · Score: 0

      You are the weakest meat - goodbye!

    7. Re:I disagree by ProppaT · · Score: 1

      I agree to some extent. It's like going to Wal-Mart. It wouldn't be such a bad experience if it wasn't for the other shoppers there. And, while Wal-Mart has a number of problems, I think it's their customers that give themselves a bad name more than the store itself. Windows, when properly configured and used by someone who doesn't click all the wrong things, is perfectly stable. Most of the instability is due to crappy hardware and bad drivers. The users just make it a target for malware and there's so many people pecking away at windows that any vulnerability is easily found and targeted.

      And, honestly, while I'm not a security expert (and there may be tons of security problems I don't know about)...Windows 7 really upped MSs game. It's a good, user friendly OS that just works. IMHO, MS is a different beast than it was 5 years ago. Windows 7 is great. Zune's were pretty good and Zune HD's are fantastic. Xbox 360 is great. It's funny what new leadership and 5 years can do for a lumbering giant.

      --
      Wise men say, "Forgiveness is divine, but never pay full price for late pizza."
    8. Re:I disagree by LBArrettAnderson · · Score: 1

      Have you ever used a mac? or pretty much any Linux distro? OS X updates occur much more often than windows updates, and linux updates occur daily. And don't say "but that's not linux itself; it's the packages on linux!" -- the same applies to windows.
       
      This entire thread is ridiculous. Microsoft makes quality products, whether or not you choose to believe so. And if you insist on bringing up past versions of windows, why not compare those to other products available at the time?

    9. Re:I disagree by Dragonslicer · · Score: 1

      Have you ever used a mac? or pretty much any Linux distro? OS X updates occur much more often than windows updates, and linux updates occur daily.

      That's because Apple and Linux distributors don't wait for a month to make updates available just to avoid forcing users to reboot twice a day.

    10. Re:I disagree by frank_adrian314159 · · Score: 1

      SECOFR on AS/400

      Ahhh! One of the faithful! But SECOFR didn't get you the whole machine did it? I thought it was sandboxed to the audit logs and security info. You'd still need to log on as an administrator to do anything (though to be fair, you could use SECOFR to create an account with administration privileges and still log on and do anything).

      --
      That is all.
  9. cyber(sic) WAR (another US invention) by myspace-cn · · Score: 0, Offtopic

    Boy, I just can't wait to have the web screwed up even more, by a series of "state secret" over-reactions and lies.

    First the spying goes up
    Then costs go up
    Then some event happens
    Then more BS is rolled out in response

    It won't matter what the truth is.

  10. Clark is all right by Rogerborg · · Score: 4, Informative

    Remember, he was the guy who warned Rice and President Cheney about an imminent Al Qaeda attack. Or depending how you view it, failed to convince them of it. Still, as ass covering goes, his was iron clad.

    --
    If you were blocking sigs, you wouldn't have to read this.
    1. Re:Clark is all right by Anonymous Coward · · Score: 0

      The only source of all the claims on that page is Clarke's own book. People writing books about themselves, especially unverifiable claims about their capacity to have predicted in advance a future improbable calamity, should be viewed with a big dose of skepticism.

      "As a result of writing that memo, he was not invited to any more meetings." - according to whom?

  11. Microsoft created this problem by bugs2squash · · Score: 3, Insightful

    But then, to a large extent they helped popularize the PC which became ubiquitous and hence became worthy of attack. The PC also became a reasonably standard platform upon which Linux etc. could be developed and cheap enough that we can all afford to own one and join in the fun. It is by no means certain that this would have happened otherwise because I don't believe security is the enemy of profit, in fact I think we'll see a future where security tightens to the point where hardware will be locked to only run a certain OS - where will Linux be then ?

    --
    Nullius in verba
    1. Re:Microsoft created this problem by Bing+Tsher+E · · Score: 1

      in fact I think we'll see a future where security tightens to the point where hardware will be locked to only run a certain OS - where will Linux be then ?

      Linux will be running on hardware locked to only run Linux.

    2. Re:Microsoft created this problem by Sir_Lewk · · Score: 1

      That's the problem genius. Tivo-ization only hurts linux.

      --
      "linux is just DOS with a UNIX like syntax" -- Galactic Dominator (944134)
    3. Re:Microsoft created this problem by Anonymous Coward · · Score: 1, Informative

      All the same old ERRORS over and over again. Please, don't do that. It's all wrong.

      1. MS helped popularize the PC: So did IBM, Compaq, Dell, Lotus, Wordperfect, Ashton-Tate, Activision, Id Software, and so on, and so on... How many of the early PCs were sold because of MS Software? Probably none. So saying MS helped "to a large extent" is just a joke.

      2. MS software is weak because it is more prevalent: Simply false. The majority of servers on the Internet DO NOT run MS software. Yet, those who do have been reported the most vulnerable over and over again. The reason for the brokenes is not that it's a bigger target, it's because it's a WEAK target.

      3. Without MS (or the PC) there would be no Linux. So wrong. There was UNIX and BSD looong before Linux. The GNU guys had a very complete toolset in place, also. And by the way, the PC had to fight to quite a lot of other contenders to become the de-facto platform. There was Amiga and Atari, for example.

      Also, your final conclussion is just ridiculous. Locking Windows in any device doesn't make it more secure, but just the opposite. And remember that Intel, AMD, VIA, Dell, Oracle, IBM and many others, all back Linux today. Almost everybody except Apple and Microsoft, of course.

    4. Re:Microsoft created this problem by Lumpy · · Score: 1

      Windows had nothing to do with standardizing the hardware. It was everyone and their brother copying the hell out of IBM.

      you have Compaq to thank for most of what we have in the Intel PC today. Intel simply continued down the same road.

      --
      Do not look at laser with remaining good eye.
    5. Re:Microsoft created this problem by ClosedSource · · Score: 1

      Well, companies like Ashton-Tate made the IBM PC popular, but it was MS that made a significant contribution to making the general PC market possible by licensing DOS.

    6. Re:Microsoft created this problem by mike.mondy · · Score: 1

      I remember when I saw the first IBM PC. I'd seen UNIX on a variety of systems and various flavors of CPM on somewhat aging hardware. Frankly, I was surprised DOS wasn't much more advanced than CPM.

      [...] MS that made a significant contribution to making the general PC market possible by licensing DOS.

      MS sold their OS both to IBM and IBM's clone-making competitors. I'm not so sure I'd count that as a significant contribution to the PC market. In fact, I'd like to think that if MS hadn't sold an OS to the clone makers, DR DOS and other products would have provided more interesting competition.

    7. Re:Microsoft created this problem by ClosedSource · · Score: 1

      DR DOS wasn't available until 7 years after the IBM PC was released. The first PC clone was available less than a year after the IBM PC with MS-DOS.

  12. Interesting by DaMattster · · Score: 4, Insightful

    All of the money spent on lobbying the government against using Linux would have been much better spent on developing a reliable, secure operating system. The shortsightedness of large corporation never ceases to amaze me. Since they spent all of this money on lobbying, which ultimately was unsuccessful, they had to spend money on securing Windows anyway. So, Microsoft spent a large sum of money in total, when they could have just made a better product to being with.

    1. Re:Interesting by feranick · · Score: 1

      If we go by your reasoning (to which I agree!), we would not have had the government sleeping while: 1) BP made the mess he did. 2) the large financial institution were running recklessly wild. Instead Congress took the money and looked the other way. I don't see any real difference here, as far as Microsoft is concerned.

  13. Re:one sided by Anonymous Coward · · Score: 3, Insightful

    Why do you people always say this? Windows is the Single-User system botched into a multi-user environment, not Unix.

  14. Weak links by DaMattster · · Score: 2, Insightful

    I might argue that many operating systems would be wink links in the cyber warfare scheme. The most noteable exception would be OpenBSD. If I were in a decision-making capacity, I would reach out to Theo de Raadt, apologize for the way we previously treated him, and get him started immediately in developing a secure network. He and his team seem to have the understanding of security from the lowest level possible. The current en-vogue trend, end-point security, is useless if your web application leaks memory. Ostensibly, you would need a hole in the end-point to reach the application and that gets exploited opening the network wide open.

  15. Re:one sided by mesanchez · · Score: 1

    I feel I should point out once again that if Apple or Linux was the #1 most popular with like a 75%+ market share, they'd be the horribly insecure ones that are getting hacked all the time. It's not about the product quality, it's about what thousands of foreign programmers are targetting because they're going to find a security hole eventually no matter what system it is.

    Foreign programmers? really? there are no american hackers? Damn', i was sure that there were hackers everywhere

  16. TROLL? WTF?!?! by Anonymous Coward · · Score: 0

    I'm not the poster. Whoever marked this as troll is a fucking jackass. This was a succinct and excellent post.

  17. The weak link is old Software by Toreo+asesino · · Score: 3, Insightful

    There's nothing wrong with the newer rounds of MS software; the problem is the older stuff, which as time goes further back, tends to get less & less secure (all the way to Win98/95 which actually had no security at all).

    Even now I occasionally run into boxen running thoroughly rooted Windows.....98. That's your problem.

    --
    throw new NoSignatureException();
  18. Is Microsoft Considered by Anonymous Coward · · Score: 1, Interesting

    a botnet?

    Yours In L.A.,
    Kilgore Trout

  19. Microsoft is the market leader. by miffo.swe · · Score: 3, Insightful

    As such you would expect them to excel at security nowadays since it seems a very big concern amongst most users. Still their security efforts are pretty laid back and half assed. Microsoft dont take security seriously, its a pr problem for them at the most.

    As a market leader one would expect Windows spanking Linux, BSD and Apples behinds but in reality Windows security sucks. Not because its more prevalent but because its a sitting duck. At Microsoft, features and ease of development has always stood higher than security on the priority lists. The only thing that can change that is monetary pressure like demand for accountability of their products. Until then, Microsoft security is a game of statistics, lies and damn statistics.

    --
    HTTP/1.1 400
    1. Re:Microsoft is the market leader. by DaveV1.0 · · Score: 1

      Perhaps you should read some of the comments here and research them before you go spouting off.

      --
      There is no "-1 offended" or "-1 you don't agree with me" mod options for a reason.
    2. Re:Microsoft is the market leader. by miffo.swe · · Score: 1

      Because thats exactly what im talking about. Microsoft runs around paying analysts warping statistics and bending the world around windows in order to make it atleast look secure. For them its a PR issue and they solve it by paying for better reviews, not by improving security.

      In reality Windows security is a joke.

      --
      HTTP/1.1 400
    3. Re:Microsoft is the market leader. by LBArrettAnderson · · Score: 1

      In reality Windows security is a joke.
       
      How so? Please give me an example of how security on Microsoft's current OS (Windows 7) is a joke.

    4. Re:Microsoft is the market leader. by DaveV1.0 · · Score: 1

      No, dumbass. These are independent contests occurring at security conferences. These contests are about owning boxes using fresh installs of OSes on machines.

      They are not MS paid-for analyses. Apparently, you are either a fanboy or just an MS hater who is too lazy or stupid to actually do the research I suggested. Either way, your bias is obvious.

      --
      There is no "-1 offended" or "-1 you don't agree with me" mod options for a reason.
    5. Re:Microsoft is the market leader. by t0rkm3 · · Score: 1

      Agreed. You should really research the comments. If you did you would find that equating MS to *nix is a false statement, though it gains more weight if you incorrectly categorize Macs as a *nix.

  20. emm... by muckracer · · Score: 0, Troll

    What's Microsoft? Something I have to know? o_0

  21. and a good easy target it is by Anonymous Coward · · Score: 0

    yup considering that more people use apache for servers that must mean that the targeting of home users has a vaule surpassing all the millions of creditcards on linux and apache servers?

    OR is it jsut easier to target windows?

    YUP film at 11

    1. Re:and a good easy target it is by logjon · · Score: 0

      Couldn't have anything to do with the fact that people who run windows are more likely to be the kind of idiots who click the link to see dancing bunnies than a linux admin.

      --
      The stories and info posted here are artistic works of fiction and falsehood.
      Only fools would take it as fact.
    2. Re:and a good easy target it is by jedidiah · · Score: 0

      ...except clicking on that dancing bunny link should pose no danger.

      The idea that it should is precisely the nonsense that Microsoft has been peddling and why they are the weakest link.

      Before Microsoft made it possible, the notion of an "email virus" was considered absurd.

      --
      A Pirate and a Puritan look the same on a balance sheet.
    3. Re:and a good easy target it is by logjon · · Score: 0

      If you have an idea for a computer that's impervious to malware regardless of idiotic user behavior I'd love to hear it. Especially when you consider that the majority of Windows vulnerabilities take advantage of weaknesses in third party applications. You can't compare idiots running desktops who don't even know what the control panel does to network administrators. If a netadmin does something stupid, that linux server is just as vulnerable as a MS desktop. Of course, Microsoft is a big evil corporation, so let's take every opportunity to point the finger at them.

      --
      The stories and info posted here are artistic works of fiction and falsehood.
      Only fools would take it as fact.
  22. Windows, vs. LINUX, vs. MacOS X (security vulns) by Anonymous Coward · · Score: 1, Informative

    "It's not as if people didn't already know about Microsoft's abysmal security record." - by StuartHankins (1020819) on Thursday June 10, @11:16AM (#32523878)

    Ok, let's take a peek at that statements & it's "anti-Microsoft" implications, & we'll do so, by simply using the stats of the "latest/greatest" from the "big 3" OS vendors/OS types out there today, from a respected security vulnerabilities reporting website, in SECUNIA.COM:

    ---

    Linux 2.6x KERNEL SECURITY VULNERABILITIES CURRENTLY AS OF THIS DATE 06/10/2010:

    http://secunia.com/advisories/product/2719/?task=advisories

    Unpatched 5% (11 of 217 Secunia advisories)

    (Again, that's JUST THE KERNEL/CORE OF THE OS ALONE (so, I.E.-> How much more would be added by diff. distros & their softwares/shells (KDE/Gnome), etc.- et al?))

    ---

    APPLE MacOS X SECURITY VULNERABILITIES CURRENTLY AS OF THIS DATE 06/10/2010:

    http://secunia.com/advisories/product/96/?task=advisories

    Unpatched (approximately) 1% (8 of 1233 Secunia advisories)

    (NOTE: I had to calculate the %, & I + others do NOT like how Apple & SECUNIA are reporting on the errors in security present in Apple's MacOS X there... see the comments below those stats, for an "example thereof"...)

    ---

    MICROSOFT WINDOWS 7 SECURITY VULNERABILITIES CURRENTLY AS OF THIS DATE 06/10/2010:

    ---

    http://secunia.com/advisories/product/27467/?task=advisories

    Unpatched 13% (2 of 16 Secunia advisories)

    REMEMBER/AGAIN: This is the ENTIRETY of Windows 7 being analyzed - not just its kernel, as is the case with Linux 2.6x above... & ONLY 2 security problems are present!

    Top that off with the fact that 1 of them IS EASILY "worked-around" no less, in the AERO problem, simply by selecting the "Windows Classic" theme, or, shutting off the "Themes" service!

    The other only deals in SSL, for those that run an IIS 6/7 server (which is FAR from everyone, especially desktop users)... so, for example, from the system I am posting on now during lunchtime @ home? I have no IIS running, & thus, I am "proof to it".

    ----

    (Sure, now I am certain I will also see repliers here to my post here say

    "but the 2 security vulnerabilities in Windows are 'remote' in nature"

    Well, newsflash - ANY OF THESE SECURITY VULNERABILITIES REALLY "BOIL DOWN" TO BEING LOCAL, IN THAT SOONER OR LATER, THEY HAVE TO "TOUCH" THE LOCAL SYSTEM ANYHOW IN ORDER TO EXPLOIT THEM PERIOD! Javascript exploits being the MOST "prevalent" of this type, and where do they ACTUALLY RUN? LOCALLY, inside a webbrowser program's javascript processing engines... turn off javascript (on "every site under the sun", & use it only where you HAVE TO and where you can trust the website)? Problem solved!)

    ---

    So, can Windows be secured far better than it comes "out of the box/oem-stock"? Absolutely. Heck, any OS usually can be... such as is shown here:

    ----

    HOW TO SECURE Windows 2000/XP/Server 2003, & even VISTA/Windows 7 (+ make it "fun-to-do" via CIS Tool Guidance & beyond):

    http://forums.theplanet.com/index.php?s=a3272f47031ff9e8939bf662e3a7b7fe&showtopic=89123

    (Much of what's in it "principles-wise" (uses the concept of "layered security") & yes, tools-wise, can also be applied to LINUX (or other *NIX variants too like MacOS X (done via Apple's guide for this, no CIS Tool exists for MacOS X, sorry) + other BSD variants, Solaris, etc.) & e.g. -> There is a CIS Tool for them also (again, except MacOS X, but Apple's got a GREAT GUIDE for this too

  23. Feature creep by Anonymous Coward · · Score: 0

    There are a few things at work here..

    In order to convince someone to fork over more money when the old version is adequate, the product must have better features (performance, stability, security, etc..). If a company's stock price and health is based upon how many products they sell, then they had better build in new features if they want to continue to sell that product.

    On the same idea, if someone is considering two competing products, it is more likely that he will choose based on feature set rather than on suitability of purpose (with the idea that the more features a product has, the more suitable it can or will be to the task). When a market is saturated or close to saturation, the company then needs to add as many features as possible so that they can win over the niche buyers that are looking for very specific features. This is how products get bloated and MP3 players get added to word processors.

    The alternative would be to use a subscription model. For some products that require periodic updates to remain useful (tax/business software affected by laws, zip code lookups, GPS, etc.) this is neutral to the customer. For other products it is essentially a lock-in, especially when a company that retains customers through proprietary formats or data enslavement rather than on quality and suitability.

    I don't believe that Microsoft would purposefully build in bugs in order to drive their upgrade machine, but I do think that they will use new versions as an excuse not to update the old. They will also use proprietary formats, marginally legal business practices, deceptive advertising, tax loopholes, etc.. They are not unique though as this is how business operates.

    On that note, they will also use cheaper support services. If everyone else in their "space" is saving money by outsourcing (at least initially) then the stock owners almost demand that they go that route, even if the quality suffers. Think of it like using a lawn cutting service... If you do a great job and charge $50 a cut you can probably gain a lot of customers. Pretty soon someone will see your prosperity and say, "Hey, I'll cut that lawn for $40." Some of your customers don't care so much about whether or not you sanitize your lawnmower blade before you cut their lawn, so they go to the new vendor. Maybe lots go. The lawn service guys then start competing on price rather than on quality, always looking for that group who are interested only in price. Pretty soon it's hard for you to charge $50 anymore and retain your customers.

    1. Re:Feature creep by jedidiah · · Score: 1

      Nevermind "adequate".

      It's hard to get a user to spend LESS for an alternative even when they
      are ready to buy an entirely new machine because they think that their
      old machine should be scrapped. That whole "vendorlock" thing comes in
      and users that have no business, end up fixated on bogus compatability
      issues.

      The whole "MS-DOS is compatible with everything,nothing else is" meme
      is alive and well and working to keep people from fleeing Windows.

      --
      A Pirate and a Puritan look the same on a balance sheet.
  24. Corruption to the max by Mantis8 · · Score: 1

    From the headline: "Microsoft is an incredibly successful empire built on the premise of market dominance with low-quality goods". That does not make any sense. WHO in their right minds would knowingly buy a low-quality good (unless they were broke, but then Micro$oft has not quite been known as a discount reseller)? There is no reasonable way any company would be "incredibly successful" and gain "market dominance" with crappy products unless some other stronger force was over riding good common sense and competing by the rules.

    This really smacks of corruption, plain and simple.

    The love of money is the root of all evil. (I timothy 6:10)

    Thanks Micro$oft.

    1. Re:Corruption to the max by gtall · · Score: 1

      "WHO in their right minds would knowingly buy a low-quality good"

      Patrons of Wal-Mart.

    2. Re:Corruption to the max by DaveV1.0 · · Score: 1

      Or, the author is biased.

      Now, apply Occam's Razor.

      --
      There is no "-1 offended" or "-1 you don't agree with me" mod options for a reason.
  25. Microsoft holes need the publicity by Self+Programmed · · Score: 1

    Not new to us, but I still find those who want to stand by their Microsoft, because they are uncomfortable with the unfamiliar alternatives. Microsoft is a weak link in every computer security issue because they continue to put wide-open holes into their system in order to be all encompassing. I believe that they just consider the few that get attacked and taken as being acceptable losses, and look at the masses of the herd (where they make their money). Someone at the higher levels of government making this public may have several effects: 1) Embarrass Microsoft to not stupidly repeat the same mistakes (maybe). 2) Start some agenda towards minimum standards for security. 3) Show that there are more secure alternatives, and make them more familiar.

  26. Windows is widely used where it matters by tepples · · Score: 3, Insightful

    [Windows] may be the most widely used desktop OS, but once you include servers and small devices, Linux beats it easily.

    Compared to home desktop PCs, servers are more likely to be administered by someone with a clue about locking down and updating the system. Small mobile devices have only a sporadic connection to the Internet, much like home PCs in the dial-up era, and many use an executable whitelist managed by the device maker. So barring a security hole in something like a home router appliance, desktop PCs running Windows are likely the juiciest targets for establishing a botnet.

    1. Re:Windows is widely used where it matters by causality · · Score: 4, Insightful

      Compared to home desktop PCs, servers are more likely to be administered by someone with a clue about locking down and updating the system.

      Most of whom choose a non-Windows OS. When people with a clue avoid something and people who don't know better flock to something, it says a lot about that something.

      To put it another way, I have never met a person who was highly competent with using Windows and also highly competent with using a Unix-like OS (Linux, *BSD, etc) who still preferred Windows. I'm sure someone will pipe up now that I've posted this but the point remains, such people are quite rare. Your preference for one thing is meaningless if you are not at least as familiar with an alternative.

      So barring a security hole in something like a home router appliance, desktop PCs running Windows are likely the juiciest targets for establishing a botnet.

      Actually a beefy *nix server with extremely high bandwidth, multiple CPUs, and multiple gigs of ram is the juiciest target to be a member of a botnet. It's also a lot more difficult to compromise. Windows PCs are not the juiciest targets. They are the low-hanging fruit that can be harvested in large numbers with automated tools, making it not worthwhile for the botnet owners to spend too much effort taking over any one target no matter how tempting it is.

      --
      It is a miracle that curiosity survives formal education. - Einstein
    2. Re:Windows is widely used where it matters by Lumpy · · Score: 1

      desktop PCs running Windows are likely the juiciest targets for establishing a botnet.

      because the users of that OS in that configuration are far more likely to click on a popup or run an attachment sent to them.

      Embedded systems dont get infected as fast because it does a good job of removing the idiot user from the loop.

      --
      Do not look at laser with remaining good eye.
    3. Re:Windows is widely used where it matters by Amouth · · Score: 3, Insightful

      Actually a beefy *nix server with extremely high bandwidth, multiple CPUs, and multiple gigs of ram is the juiciest target to be a member of a botnet. It's also a lot more difficult to compromise. Windows PCs are not the juiciest targets. They are the low-hanging fruit that can be harvested in large numbers with automated tools, making it not worthwhile for the botnet owners to spend too much effort taking over any one target no matter how tempting it is.

      I'd tend to disagree with that comment - look what bot nets are used for?? very rarely are they used for mass processing power or for anything more than a spamming and dos'ing..

      - A personal computer on a basic always on connection which tend to keep a dynamic ip for several days then move (some providers it is longer) VS a server that doesn't..

      - a Home computer with a user none the wiser that doesn't even bother to see what is running VS a server that would have an Admin responsible for it and regulatory checking up on thing

      - a home computer on a dynamic ip block owned by a large telcom who doesn't give a shit about crap on that part of the network that won't cut it off or relay infection details or won't respond to your calls VS a server on a company owned block that will checkup on reports and will respond.

      In my experience when we are getting spam or bot attacks - if the source is coming from a private company's network or anyones owned IP block (not blocks for residential service) they always respond to inquiry and normally say thank you. I've NEVER had one blow me off - Now when it's coming from some dynamic block I've been blown off so many times that i don't even bother calling them.

      Take it how you will but i think you are confusing what you personally would want to have with what is sufficient and functional for bot nets.

      --
      '...if only "Jumping to a Conclusion" was an event in the Olympics.'
    4. Re:Windows is widely used where it matters by Anonymous Coward · · Score: 0

      I agree with you.

      But to be fair, beefy *nix servers with extremely high bandwidth, multiple CPUs, and multiple gigs of ram are ran by highly skilled people who don't "surf the web," Yahoo! Toolbars, and Microsoft Security Center 2010 (tongue in cheek.)

    5. Re:Windows is widely used where it matters by Naturalis+Philosopho · · Score: 0

      look what bot nets are used for??

      Take it how you will but i think you are confusing what you personally would want to have with what is sufficient and functional for bot nets.

      Take it for what it's worth, but I think that you're confusing Having A Hammer So I Think I'll Hammer Stuff and I'd Like That Table Router So I Could Cabinet-Make But It's Too Expensive So I Guess I'll Just Use My Hammer On These 2x4s Instead. People do the things they do with botnets because that's that they can do with them. I'm sure that a lot of herders would love to control Amazon's servers and be able to direct them against hardened targets like bank security with a chance of success.

    6. Re:Windows is widely used where it matters by Graymalkin · · Score: 1

      I would say the juiciest targets for botnets are not the big high bandwidth server class machines but the overpowered home desktops. Part of a botnet's power comes from its distributed nature, a big multi-CPU behemoth connected to a T3 would concentrate a lot of power and bandwidth in a single place but if it is ever removed from the botnet it makes for a serious blow to the overall power of the botnet. While a handful of desktop PCs wouldn't be singularly more powerful than the behemoth combined they have a fair amount of power and the loss of any one of them doesn't meaningfully reduce the overall power of the botnet. Also being that the desktop PCs are low hanging fruit security wise it makes way more sense to concentrate more effort on them since you'll get a much better return. There's a hojillion unsecured Windows PCs connected to always-on internet connections in the world.

      --
      I'm a loner Dottie, a Rebel.
    7. Re:Windows is widely used where it matters by Amouth · · Score: 2, Informative

      http://news.cnet.com/8301-1009_3-10413951-83.html

      they already have - seems like they did exactly what they did with other setups..

      --
      '...if only "Jumping to a Conclusion" was an event in the Olympics.'
    8. Re:Windows is widely used where it matters by causality · · Score: 2, Interesting

      I'd tend to disagree with that comment - look what bot nets are used for?? very rarely are they used for mass processing power or for anything more than a spamming and dos'ing..

      Things that require little processing power but do require lots of (aggregated) bandwidth. This is where it's easier for botnet owners to compromise a thousand Windows PCs connected via cable modems than one or two high-end multi-homed Unix servers that could handle the same load.

      Botnet owners also have a disadvantage: they don't want their malware to be easily detected. Thus the less it burdens the host PC, the less likely that it will be detected and removed. Massive processing power certainly does have applications. It's that botnets are working with what is available and readily feasible and this naturally places limits on their uses, the same way a lack of money would prevent you from purchasing a private jet.

      Take it how you will but i think you are confusing what you personally would want to have with what is sufficient and functional for bot nets.

      Actually I sought to explain why the low-hanging fruit is even more desirable than the "juciest" targets available. That doesn't mean the juicy targets are less juicy or that the low-hanging fruit isn't low-hanging. It means botnet owners want maximum return for the least possible effort and big-iron Unix systems run by competent admins don't accomplish that goal like expendable Windows machines that are a dime a dozen though individually far less capable. What I personally like or don't like has nothing to do with this.

      --
      It is a miracle that curiosity survives formal education. - Einstein
    9. Re:Windows is widely used where it matters by Amouth · · Score: 1

      then I apologize for the misreading the intent of your original post

      --
      '...if only "Jumping to a Conclusion" was an event in the Olympics.'
    10. Re:Windows is widely used where it matters by eth1 · · Score: 4, Insightful

      To put it another way, I have never met a person who was highly competent with using Windows and also highly competent with using a Unix-like OS (Linux, *BSD, etc) who still preferred Windows. I'm sure someone will pipe up now that I've posted this but the point remains, such people are quite rare. Your preference for one thing is meaningless if you are not at least as familiar with an alternative.

      OK, I'll bite :)

      Most people that are competent couldn't answer the question "Do you prefer Linux (etc.) or Windows?" (unless the answer is "both"). It begs the question, prefer it for *what* exactly? At work, I have both Windows 7 and Ubuntu systems at my desk running Synergy. I use whichever one happens to be best suited for my current task. Same at home, except that the Linux box has been decapitated and shoved in a closet. I prefer windows (7) on the computer I sit at at home, because in my experience, I spend far less time screwing with it trying to get stuff to work (Mac might be an option, if it wasn't for games).

    11. Re:Windows is widely used where it matters by trust_intuition · · Score: 1

      To put it another way, I have never met a person who was highly competent with using Windows and also highly competent with using a Unix-like OS (Linux, *BSD, etc) who still preferred Windows.

      A computer/operating system is a tool. And like any tool, it's usually best applied to the jobs that suit it. I don't think it's rare to be proficient with more than one tool, and generally prefer one over the other when you have different uses for each.
      For instance, I don't prefer my shovel over my rake, unless I happen to be digging a ditch.

    12. Re:Windows is widely used where it matters by Anonymous Coward · · Score: 0

      Most people that are competent couldn't answer the question "Do you prefer Linux (etc.) or Windows?" (unless the answer is "both"). It begs the question, prefer it for *what* exactly?

      A tangential question: Is this use of "begs the question" grammatically correct?

      http://en.wikipedia.org/wiki/Begging_the_question

  27. i'm still waiting for the warhol worm by circletimessquare · · Score: 2, Interesting

    http://en.wikipedia.org/wiki/Warhol_worm

    one of these days, some genius asshole is going to, just for the lulz, shut down the whole goddamn internet in 15 minutes. he or she is going to it with a worm that, of course, will be based on something in the microsoft constellation of oses/ products/ third party software. perhaps from our other security averse friend, adobe

    i thought it was going to be code red or sql slammer, but no, these infections were content to zombify, not zombify and enslave the nonzombies (see below):

    http://en.wikipedia.org/wiki/Code_Red_(computer_worm)

    http://en.wikipedia.org/wiki/SQL_Slammer

    enslave the nonzombies: of course there are other oses out there, but they are in the minority. so listen up genius asshole: whoever writes this worm will cleverly make sure that all compromised systems DDOS non-microsoft os ip addresses on purpose. sql slammer and code red just blindly reached out to all ips and latched on to any promiscuous microsoft bitches that proved to be receptive to getting fucked. but you, oh genius asshole, will take note of those ips which defy you and share this list dynamically and automatically in real time between your other pwn3d machines

    if a machine does not respond to your rude advances to be fucked, or can otherwise be quickly and reliably sniffed out as a non-microsoft os ip, punish the defiant, hard and cruel

    you leveraging your growing zombie horde of microsoft os monoculturalism to mount a directed attack on nonmicrosoft machines. DDOS the responsible and the vigilant. leverage the power of the insecure to take down the secure. if the bitch won't fuck you, slap that bitch. if they will not be defeated, then they will be enslaved in a deluge of requests until they succumb. none shall survive, all shall be zombified or enslaved

    and therefore completely wipe out the whole goddamn internet. for the lulz, you see

    i'm still waiting, and when it happens, even though my means of livelihood is based on the internet, i'll be clapping and eating popcorn, reveling in the sheer armageddon horror of it all. awesome dude!

    so where are you, genius asshole? make it happen

    please don't let it happen for some insipid mundane making-up-for-my-small-penis-through-nationalism reason like cyberwarfare between usa/ russia/ china/ iran. that would be boring. nationalism is fucking retarded

    get it done FOR THE LULZ my genius asshole friend, where ever you are. i'm waiting to be adequately entertained by global internet meltdown. MAKE IT HAPPEN

    --
    intellectual property law is philosophically incoherent. it is your moral duty to ignore it or sabotage it
    1. Re:i'm still waiting for the warhol worm by bugs2squash · · Score: 1

      Yes, it will be an alien that stops it, someone who has come to warn us to stop threatening the security of other planets. But he won't use a worm; it will be a big fuck-off robot that's indestructible and impossible to encase in Plexiglas.

      --
      Nullius in verba
    2. Re:i'm still waiting for the warhol worm by gtall · · Score: 1

      Now, now. Try the little RED pills this time.

    3. Re:i'm still waiting for the warhol worm by Anonymous Coward · · Score: 0

      Are you a final boss of the internet?

    4. Re:i'm still waiting for the warhol worm by phantomfive · · Score: 1

      Why don't you do it? There are a couple unpatched remote exploits for windows on Secunia. It shouldn't take more than a month of development to build the worm, since worms are fairly standard programs, and you can get hundreds of examples; even borrow pre-made pieces.

      You won't because you are either lazy, afraid you'll get caught (and you really don't want to get caught, the punishment will be real and they'll be looking for you), or interested in profit. The days of the amateur hacker are dead, it's all for profit now. No one will do it, just like no one will create a worm that erases everyone's hard drive.

      --
      Qxe4
  28. Oh really? by SmallFurryCreature · · Score: 1

    Try to install Windows on a powerpc. Thank you, thanks for playing. Retard. Since when is x86 all there is?

    --

    MMO Quests are like orgasms:

    You may solo them, I prefer them in a group.

    1. Re:Oh really? by Lumpy · · Score: 1

      I have a copy of NT4 that will run on an alpha.... No PPC port though......

      Windows runs on far fewer hardware platforms than BSD or Linux does. It's a quite limited OS in it's hardware capabilities. also the current version of the windows OS has far less hardware support than Linux or OSX does. I have several devices that work perfectly under both OSX and linux but there are no drivers available for Windows 7.

      --
      Do not look at laser with remaining good eye.
    2. Re:Oh really? by Amouth · · Score: 1

      WinCE that is used for the XBox is PPC

      --
      '...if only "Jumping to a Conclusion" was an event in the Olympics.'
    3. Re:Oh really? by Amouth · · Score: 1

      before someone points it out .. PPC for the 360 - the original XBox used x86

      --
      '...if only "Jumping to a Conclusion" was an event in the Olympics.'
  29. You can't have secure AND popular by petes_PoV · · Score: 3, Interesting
    For software to be used by "everyone" it must put as few complications as possible between its users and their objectives. Since most people's objectives are focussed on results, not security, if you try to make an operating system or application suite secure, people will find a simpler, more direct way of achieving their goals. One where their perceived balance of speediness and security (i.e. as fast as possible and damn the consequences) is met.

    Once you get away from using popular applications and O/S's, the price rises incredibly quickly. Instead of spreading (say) a billion dollar development costs across 100 million product sales, you have maybe 10,000 customers who can be persuaded to pay for a product. This immediately means no-one will buy it unless forced to by law, or unless they can in turn, pass on the costs to their customers. The smaller market also means there will be fewer suppliers - probably just one. Which in turn will drive up costs due to lack of competition and decrease any incentives to fix problems or develop new wares in a timely fashion.

    We know what a secure operating system for the year 2010 will look like. It will look like VMS from 1995, for all the reasons discussed above. Now, which are we prepared to pay for: Microsoft products on every store shelf, running the country or critical systems with the security, features, lack of connectivity from the mid-90s?

    --
    politicians are like babies' nappies: they should both be changed regularly and for the same reasons
    1. Re:You can't have secure AND popular by evilviper · · Score: 1

      Since most people's objectives are focussed on results, not security, if you try to make an operating system or application suite secure, people will find a simpler, more direct way of achieving their goals.

      Security isn't just locking-down file permissions. worms don't spread around the internet by hiding in legitimate EXEs and overwriting system files. Proper code auditing to eliminate many of the simple code bugs (which are later found to be exploitable) would make a huge difference.

      We know what a secure operating system for the year 2010 will look like. It will look like VMS from 1995, for all the reasons discussed above.

      Funny you should mention it, because VMS is a very good model. Being a microkernel, very little of it is privledged, so all but the 200K of code in your basic kernel can be full of bugs, and yet not be exploitable nor even threaten system stability.

      --
      Slashdot gets worse every day... Pipedot: News for nerds, without the corporate slant
    2. Re:You can't have secure AND popular by dtjohnson · · Score: 1

      Disagree that secure and popular are mutually exclusive. I would much prefer some security built into the software. For example, malware transmission vectors tend to be either executing a hostile executable or unknowingly having hostile active content (scripting agents) execute in the background. Either way, the malware writes stuff to the drive, writes to the registry, modifies files, and then hides itself. This stuff can happen because those are the same things that 'friendly' software from Adobe or Microsoft does. Microsoft's approach to security is to try to prevent hostile software from executing on the system through one of a million holes (a few of which Microsoft plugs every week) and to give certain people 'admin' priveleges who are necessary for 'administrator priveleges.' But why shouldn't ALL software be compelled to identify itself thoroughly when being installed by telling you 1) it's origin, 2) where it will write files, 3) what registry keys it will write too, 4) what files it will write, etc. Microsoft sees nothing wrong with flashing a 24-page EULA up on the screen that you have to read and agree to before you can install but it shows you less than nothing about what that new software is about to do to your system. Where are the priorities there?

  30. No suprise by Rallias+Ubernerd · · Score: 0

    Of course they are the weak link in loss in the financial aspects of the "Cyber war", but that isn't the only aspect of the "Cyber War". There are many factors, from how secure the system is (read my blog post on how secure Microsoft really is), to what the settings of the machine are, to other issues, such as how many people use bittorrent softwares that enforce verification requirements. But yes, they have alot to lose, because 1. they're microsoft and 2. they cost money to get their software. Don't take it as a surprise. Linux is probibillly just as vulnerable. Its just that people haven't been able to find those vulnerabilities. But mark my words, they are there.

  31. Re:Windows, vs. LINUX, vs. MacOS X (security vulns by WrongSizeGlass · · Score: 1

    There's huge difference between the number of Windows 7 installs and total Windows systems installed. The security issues with XP are a bigger concern (there are a sh!tload of XP machines in the world), a good chuck of which are still on SP 2 and/or IE6. MS's current offerings are in pretty good shape but their install base is not. The responsibility of prior security weaknesses is still MS's no matter how hard they try to get people to upgrade out of XP (and earlier) deployments.

    BTW, hell of a post.

  32. I tried the "shaming approach", no dice thusfar by Anonymous Coward · · Score: 0

    "Maybe Microsoft will be shamed enough to take action and improve their products." - by StuartHankins (1020819) on Thursday June 10, @11:16AM (#32523878)

    On top of the security vulnerabilities stats from SECUNIA.COM I noted here in another reply to you Stu -> http://it.slashdot.org/comments.pl?sid=1681772&cid=32524188

    This time, in regards to this quote from you above? Well - Please take a peek @ this posting, where I did try to do that "approach" with one of MS' mgt. who posts here (Foredecker):

    http://slashdot.org/comments.pl?sid=1630116&cid=31975424

    It didn't work, so far @ least!

    E.G.-> It's been over 6 months THIS YEAR, and some from last year as well, where I brought this to light for he to look over & get answers on it for myself & others (such as mvps.org as one of the more notable ones) to get an improvement on HOSTS files usage BACK INTO A WINDOWS SYSTEM, that still works on Windows 2000/XP/Server 2003 & had its start in Windows 2000 in a service pack, not the oem original release of Win2k (as it used to be faster & more efficient using 0 as a "blocking IP address", vs. the larger & slower 0.0.0.0 or worse still, the 127.0.0.1 "loopback adapter" also).

    I get the STRONG impression (as do others I know who read that exchange) that he's "dodging me", because his posting rate here slowed down, TREMENDOUSLY... & he has not gotten back to me on issues regarding the HOSTS file, DNS ClientSide caching service, & yes more (A/B drive hardcodes + more).

    APK

    P.S.=> I don't LIKE doing it that way in trying to "pressure others" via 'embarassment', but others have tried to do things "the nice way", as regards PC & Server level security + vulnerabilities in them, & it rarely works out WITHOUT "applying some pressure" (& usually via the means & methods you extoll here Stu but as you can see above? Even THAT doesn't work out @ times apparently - as many folks in the media know 1 thing: People forget, & move on to the "latest/greatest 'LOOK HERE, DON'T PAY ATTENTION TO THAT ANYMORE'" type of media 'sleight-of-hand' trickery)... apk

  33. Apologist much? by HiggsBison · · Score: 3, Insightful

    That's horseshit. When someone makes a better OS than MS, I'll start believing these stories. ... while windows will run on pretty much any hardware.

    Set the koolade down and step back. Microsoft Windows works on a much wider range of hardware than OSX, but it's still quite limited. I will concede that only Microsoft Windows excels at making use of a proprietary piece of crap like a Win-modem or a Win-printer.

    Linux may have some technical merit, but is a mess where people without advanced computer skills are left in the dark.

    My experience is that the average XP user is more baffled by Windows 7 than by Ubuntu. And don't even think of suggesting that Ubuntu can't be set up by someone knowledgeable.

    Sure windows had bugs, but many of those aren't MS's fault, but rather vendors that write crap drivers.

    Microsoft provides an ever-changing foundation of thick muck. And like you, they are quick to blame others for any problems.

    --
    My other car is a 1984 Nark Avenger.
    1. Re:Apologist much? by Anonymous Coward · · Score: 0

      "My experience is that the average XP user is more baffled by Windows 7 than by Ubuntu."

      Bullshit.

    2. Re:Apologist much? by t0rkm3 · · Score: 1

      A well thought out response.

      The reason that most of family has migrated away from Windows has to do with the XP to Vista/7 disease.

      That would include BrotherA (2 PCs, 1 laptop, 1 Netbook), BrotherB (1 PC, 1 Netbook), Father (2PCs, 1 laptop), StepSis (1PC, 1Laptop), and WifeA (2Laptops).

      They (the group above) often asked about the various things that I had going on on my machines, and I would explain how it works, and why Windows could not do it, but blah blah blah. Despite having AV/Malware detection installed and a local proxy service (BlueCoat K9) the machines would need to be scrubbed down and/or have crapware uninstalled semi-annually. So far, we at nearly a year, and no problem calls. The users above use the following functions of their PC's:

      1. Wifi connectivity (out of the box)
      2. Photo editing
      3. Video editing
      4. Internet usage including Flash games
      5. Office applications (Word processing, spreadsheets, small databases)
      6. Various small end CAD systems used in CodeWeavers (AutoDesk Lite if I remember correctly)
      7. Cell Modem/AirCard connectivity
      8. Media consumption (DVD, AVI, MP3 etc)

      The one common usage that they don't do is PC Gaming for WoW, EverCrack or anything else...

  34. Re:Windows, vs. LINUX, vs. MacOS X (security vulns by AthleteMusicianNerd · · Score: 0

    Most intelligent and objective post I've ever seen on Slashdot about Windows.

  35. Oh really???? by NetNed · · Score: 0, Troll

    Seriously, I think my 12 year old nephew has a greater handle of the computer software industry the DICK Clarke. For that matter I think Dick Clark has a better grasp of the computer industry then some trumpeting idiot who has no computer background other then what positions he was "appointed" to.

  36. Re:The weak link is old^H^H^H NEW Software by petes_PoV · · Score: 3, Insightful
    The other weak link is new software that is rushed to market without being tested properly Adobe Since the market pressures require as short a development time (and preferably no testing - since yo might find bugs that have to be fixed: more delays) in order to keep the cash-flow flowing.

    Only government agencies can afford to spend a year designing a bullet-proof system, then another year writing the software and a year or two more making sure that no-one can ever break in to it. Are yo prepared to slow down software development by a factor of 8, from 6-monthly release cycles to a new version every 4 years? It would be commercial suicide and far too expensive.

    --
    politicians are like babies' nappies: they should both be changed regularly and for the same reasons
  37. Potential problems by Anonymous Coward · · Score: 0

    Microsoft has proven in the past that it was insecure.

    When the source code to XP leaked, there soon were all kinds of worms and trojans. Microsoft relies on security through obscurity, which for some people isn't obscure at all.

    If you have the reverse engineering tools, probably custom made, by some foreign investor, you could peak through the security measures. Also microsoft relies on fast patching for problems that are often circumvented sooner or later, because of security vulnerabilities in the patches. I don't need to say, that a patch is easier to reverse than an OS, and presumably quite revealing.

    1. Re:Potential problems by mesanchez · · Score: 0

      Microsoft has proven in the past that it was insecure.

      When the source code to XP leaked, there soon were all kinds of worms and trojans. Microsoft relies on security through obscurity, which for some people isn't obscure at all.

      If you have the reverse engineering tools, probably custom made, by some foreign investor, you could peak through the security measures. Also microsoft relies on fast patching for problems that are often circumvented sooner or later, because of security vulnerabilities in the patches. I don't need to say, that a patch is easier to reverse than an OS, and presumably quite revealing.

      foreing? only foreing people are hackers? what the fuck is wrong with you?

    2. Re:Potential problems by Arimus · · Score: 1

      "Microsoft relies on security through obscurity, which for some people isn't obscure at all."

      Security through obscurity is no kind of security at all...

      "...some foreign investor..."

      So only foreign hackers hack MS products? What ever pair of rose tinted glasses you are wearing when you view your own countrymen (I'd guess American) I'd remove.

      --
      --- Users are like bacteria -> Each one causing a thousand tiny crises until the host finally gives up and dies.
  38. Re:Windows, vs. LINUX, vs. MacOS X (security vulns by oakgrove · · Score: 4, Insightful

    Linux 2.6x KERNEL SECURITY VULNERABILITIES

    It doesn't make sense to compare a line of kernels dating back to 2003 to an operating system that came out last year. The 7 kernel is just a derivative of the Vista kernel, for example. And in '03, XP was still going strong. Furthermore, 2.6 or whatever is just a name. I am running 2.6.32. How does the NT 6.1 you are presumably running compare to that?

    --
    The soylentnews experiment has been a dismal failure.
  39. WSG, it's WHY I did the security guide in my post by Anonymous Coward · · Score: 0

    "The security issues with XP are a bigger concern (there are a sh!tload of XP machines in the world), a good chuck of which are still on SP 2 and/or IE6." - by WrongSizeGlass (838941) on Thursday June 10, @12:06PM (#32524406)

    Agreed, which is WHY I did the security guide posting in that same reply of mine you replied to... because it works (especially for Windows 2000/XP/Server 2003) on that shortcoming/issue, which I agree IS VALID in fact now.

    (Especially in regards to IE, & not just IE6, but also IE7/8 in general - the thing's BAD on the public internet as far as security vulnerabilities issues, but it's great inside an INTRANET (I develop on it using ASP.NET is why & that's why I state that), & imo @ least? NOTHING touches it in the way of webbrowsers, especially for internal corporate network usage)).

    Thank goodness we have alternatives to IE, & even to older Windows versions (which CAN be secured FAR BETTER than the default, but the same is true for MacOS X, & yes, LINUX too)... Windows 7's security track record so far has been pretty good (after all, see my last post for stats on that again).

    ---

    "There's huge difference between the number of Windows 7 installs and total Windows systems installed." - by WrongSizeGlass (838941) on Thursday June 10, @12:06PM (#32524406)

    Agree, & again: See my last reply above... again, it's the "why" of WHY I did the security guide I did (& you can see a TINY SAMPLING of the results users who used it, ranging from expert level techs to total NON techs (last one)) which is in my last post with testimonials of its efficacy for they thusfar to date (almost 3 yrs. now in fact).

    ---

    "MS's current offerings are in pretty good shape but their install base is not." - by WrongSizeGlass (838941) on Thursday June 10, @12:06PM (#32524406)

    Yes, I am using Windows 7 64-bit, fully hotfix patched as of yesterday (MS "patch tuesday" & all), & so far? It's been pretty good to me!

    HOWEVER:

    I have SOME 'reservations' on some things in it (new firewall design being said to be more easily "unhooked" than older builds in Windows XP/Server 2003 for example (rootkit.com is all over this in fact), HOSTS files issues (see url below), DNS clientside cache service, & more...). For more?

    See here:

    http://it.slashdot.org/comments.pl?sid=1681772&cid=32524432

    (It's another reply here in this exchange to Stuart Hankins in fact... I was SO SURE that Foredecker (an MS senior level mgr. who posts here) was doing the right thing looking into that, but, to date (6 mo. to 1 yr.++ now in fact)? He has NOT!)

    ---

    "The responsibility of prior security weaknesses is still MS's no matter how hard they try to get people to upgrade out of XP (and earlier) deployments." - by WrongSizeGlass (838941) on Thursday June 10, @12:06PM (#32524406)

    WELL, imo @ least, on THIS part?

    I feel that's a matter of "hard times in the land o' plenty" (U.S. economy is doing badly the past year or two now, & I don't think it's getting much better to be blunt about it), & of course, stockholders "screaming to mgt." MAKE ME MORE COINS/DEADPRESIDENTS OR YOU ARE GONE, etc./et al... pinching pennies is what's going on in businesses is why/in other words, imo @ least.

    The ONLY way they fix things, security-wise, is if someone practically "busts the door down" in their company & then, they have to assume the liability and do something about it or get the life sued out of them in some "class action" lawsuit or the like...

    APK

    P.S.=>

    "BTW, hell of a post." - by WrongSizeGlass (838941) on Thursday June 10, @12:06PM (#32524406)

    Well, we "do aim to please" (most of the time here @ least)... glad you liked it! apk

  40. Re:Windows, vs. LINUX, vs. MacOS X (security vulns by miknix · · Score: 1

    Man, I know we all spend quite some time reading /. and replying. But dude! Your post goes beyond crazy!

    Were you paid to write it at least?

  41. Re:Windows, vs. LINUX, vs. MacOS X (security vulns by Simmeh · · Score: 1

    Thats some great spiel, but I think the point is Windows has a much bigger marketshare and a greater percentage of unpatched machines, particularly in regards to 3rd party apps. Hence, the security record for Microsoft portraying itself as a greater danger in this so called "cyber war". As an aside, 2.6 came out in 2003 wheras Windows 7 came out in 2009. By comparing "latest/greatest" your misrepresenting the userbase pool in the real world, which is what counts. Also, by implying the number would be greater once you include KDE/FF etc. you must concede that if you were to do the same for Windows and include all popular apps the number would be substantial.

  42. Re:Windows, vs. LINUX, vs. MacOS X (security vulns by jedidiah · · Score: 1

    ...yes, because we all know some buffer overflow is the same as worms that repeatedly bring down the internet or people's individual machines.

    Cherry picked statistics can't quite compare to how systems actually behave in the wild.

    This is why Lemmings cling to them so much.

    --
    A Pirate and a Puritan look the same on a balance sheet.
  43. Do you have any support facts? by Anonymous Coward · · Score: 2, Insightful

    And Apache is the most widely used Web Server but its security record is far better than IIS. So what does that say. Also Unix/Linux far outnumber Windows Server in terms of presence on the Internet; however, they are more on the yet their track record is far better than Windows server.

    I often see this wives tale but have yet to see any supporting data.

  44. Re:one sided by Anonymous Coward · · Score: 0

    Yes, but wasn't Unix originally a word processor?

  45. Re:Windows, vs. LINUX, vs. MacOS X (security vulns by quickOnTheUptake · · Score: 2, Informative

    Right. Let's feed the troll, and spin it another way:
    Look at the severity of the advisories (They are rated from 1-5). Neither windows nor Linux has any unpatched vulnerability rated higher than "less critical" (i.e., neither has anything unpatched that is 3 or higher). So for vulnerabilities >2/5, they both have a 100% patch rate. The difference is in "less critical" advisories, (1 or 2).
    Window's 7, in its short life, has had 8 advisories rated "less critical" or lower. Of these 2 are unpatched. That means the patch rate for less pressing vulnerabilities is 75% (a full 25% are unpatched).
    Linux (if I counted right) has had 191 advisories that were rated 1 or 2, since 2003, of these 11 remain unpatched, or ~5.8%.
    The difference in the overall patch rate is due to the fact that far more of Window's vulnerabilities have been critical, >3/5, (specifically 12 of the 20) than linux's (26 of 217).
    Also note that linux has never had a vulnerability rated 4 or 5, it's highest vulnerability has been a 3. But eight of Window's 20 advisories have been 4's and one was a 5.

    --
    Mod points: Guaranteed to remove your sense of humor.
    Side effects may include gullibility and temporary retardation
  46. Difficult to assess impact of the strategy by daboochmeister · · Score: 2, Interesting

    Not sure I agree their attempts via lobbying were unsuccessful. Linux is used in a significant way in government/DoD systems, as noted in the article, Mr. Clarke surprised many by insisting on an evaluation of Linux in 2004 - and I remember how that study and its results ran into resistance across the boards, before the electronic ink was dry. Without lobbying efforts having tipped the playing field, Linux could very well have significantly more penetration in government infrastructure than it does today.

    And note that on the desktop front, Microsoft's strategy arguably has worked bizarrely well ... the irrational resistance in federal circles to Linux desktops that prevails to this day is amazing.

    --
    "Ahh! I see you're in that indeterminate Schrodinger state where - oh, uh ... never mind." Dave Bucci
  47. Re:Windows, vs. LINUX, vs. MacOS X (security vulns by erroneus · · Score: 4, Informative

    It's a frequently used troll post. It has been completely debunked in the past several times. All of the critical bugs listed for the Linux kernel, for example, were local exploits only -- NONE were remote. In contrast, Microsoft's exploitable bugs are famously remote exploits meaning they can be done over a network connection. Mac OS X is another bag of worms... but thankfully, Apple controls and limits its users such that it will never be big or ubiquitous enough for large scale general use like Windows and will never likely get used in critical government or business operations.

  48. Re:Low quality products? by Anonymous Coward · · Score: 0

    They are low quality products. Microsoft owns the market share it does because business-wise, they entered a growing market at the right time, with the right sort of software that your average business needs. The operating system and software didn't have to work perfectly. It just has to work most of the time. That is good enough for most businesses ( and government ). It became so widely adopted early on that to change now becomes a matter of better the devil you know than the devil you don't in the eyes of many budget reviews. You don't have to make great software to be good at business.

  49. That's LINUX 2.6x current info. @ SECUNIA... apk by Anonymous Coward · · Score: 0

    "It doesn't make sense to compare a line of kernels dating back to 2003 to an operating system that came out last year." - by oakgrove (845019) on Thursday June 10, @12:24PM (#32524662)

    I was comparing the "latest/greatest" from Apple, Microsoft, & the LINUX camp is all (& using SECUNIA.COM's data to do so).

    Fact is? That's the latest that SECUNIA.COM has for LINUX (unless you can find me a more current one there) is all.

    ---

    "And in '03, XP was still going strong." - by oakgrove (845019) on Thursday June 10, @12:24PM (#32524662)

    Windows 7 is based off VISTA, which in turn, is based off Windows Server 2003 code, from the year 2003 (which is based off Windows XP code which is based off Windows 2000 code)).

    Isn't LINUX the same? Doesn't it have its foundations on the preceeding members of its OS family before it? After all, the thing that really "Strikes this home" is that LINUX has been classified formally as a FORM OF UNIX (as is MacOS X, based off its BSD underpinnings).

    (I am merely simply comparing known security vulnerabilties counts from what SHOULD BE THE "BEST" from ALL OS VENDORS in the "big 3" here is all, not older stuff they were based off of, nor the older stuff, period)(

    APK

    P.S.=>

    "Furthermore, 2.6 or whatever is just a name. I am running 2.6.32. How does the NT 6.1 you are presumably running compare to that?" - by oakgrove (845019) on Thursday June 10, @12:24PM (#32524662)

    See the above: It should answer that for you... apk

  50. I went out to buy this by Hognoxious · · Score: 1

    I went straight to the bookstore to buy it. I asked the lady where it was and she said "it's filed over there under F for fucking obvious".

    --
    Confucius say, "Find worm in apple - bad. Find half a worm - worse."
  51. Re:Windows, vs. LINUX, vs. MacOS X (security vulns by DocHoncho · · Score: 1

    I doubt it. APK has a long history of posting this kind of crazy shit. Frankly I'm surprised he wasn't going on about HOSTS files like he normally does.

    --
    Celebrity worship is a poor substitute for Deity worship and costs more to boot.
  52. Re:Low quality products? by LBArrettAnderson · · Score: 1

    Tell me... What's so low quality about Microsoft's products these days? I'd love to hear it. This anti-MS fap fest is one of the worst I've seen in quite some time, and that's saying a lot for slashdot.

  53. Re:Windows, vs. LINUX, vs. MacOS X (security vulns by AthleteMusicianNerd · · Score: 0, Flamebait

    That's not a troll post. Slashdot users are just biased.

    Even if his post is false, Windows is the most used operating system, therefore it's likely you will find the most vulnerabilities. The other OS's are niche markets, so clearly you will have less people attacking them.

  54. war = killing by h00manist · · Score: 1

    I'd say cyber war means the making of human-killing machines, and that I have no plans to design or buy game machines with approval from the war dept, thank you very much. I'm not into being fooled, my money isn't going to DOD research and equipment, and if you want safety, security, you just don't go around showing off how well your "toys" kill, looking for enemies, then worry about how secure your gates are, that always works temporarily, not forever. See Rome, Greece, Spain, USSR, England, Germany, Japan, etc.

    --
    Build your own energy sources from scratch. http://otherpower.com/
  55. Re:That's LINUX 2.6x current info. @ SECUNIA... ap by oakgrove · · Score: 2, Interesting

    I was comparing the "latest/greatest" from Apple, Microsoft, & the LINUX camp

    If you're including linux from 2003, you have an odd and erroneous definition of "latest/greatest". Not only that, Windows 7 is an OS, Linux is not. And, furthermore, if you are comparing kernels, you have to include the Vista kernel to the 7 kernel which you did not.

    I'm not going to bother refuting the rest of your drivel since it all rests on this one blatant fabrication. If you want to attack Linux's security record, at least do it in good faith then people might be willing to listen to your arguments. Your original post is little more than noise and it just sets you up for ad hominems and derision as no one can really take you seriously.

    --
    The soylentnews experiment has been a dismal failure.
  56. No... by OopsIDied · · Score: 1

    Microsoft's actually been pretty useful. The blame is on the people who have installed it in critical systems. Ever since I've read anything about medical systems and the like ,something they always repeat is not to install Windows or a similar desktop OS on the systems because it makes unauthorized access easier and the OS wasn't designed for such critical systems, so it might crash every now and then. Designers of critical systems know this, and if they are negligent and use Windows, then the blame for the consequences should fall on them.

  57. Re:Windows, vs. LINUX, vs. MacOS X (security vulns by oakgrove · · Score: 2, Informative

    That's not a troll post.

    Even if his post is false,

    It's a troll for one very simple reason. He's including 2.6 kernels from 2003 and comparing them to Windows 7 which uses the NT 6.1 kernel which is a derivative of the NT 6 kernel used in Vista. Intentionally distorting facts to support your argument is trolling. Furthermore, he's bringing up secunia stats as if that is the whole story without mentioning the relative severities. Of course, it's a red herring anyway as I've already pointed out.

    --
    The soylentnews experiment has been a dismal failure.
  58. Re:Windows, vs. LINUX, vs. MacOS X (security vulns by h4rr4r · · Score: 1

    Considering you can't see the source I would say that it seems like remote vulns would be less easy to find.

    While your statements are true for desktops you're completely wrong in the server space and those machines are far more valuable to own.

  59. "Work harder"? by zooblethorpe · · Score: 1

    What is this "work" you speak of? We just want to sit on our bums and rake in the cash as it comes floating by. Just think of us as tunicates or sea anemones who have secured a really rich position in this market environment. We're permanently attached; it's why we don't need chairs to sit on, and can instead use them for projectile weaponry...

    [/cynicism]

    Cheers,

    --
    "What in the name of Fats Waller is that?"
    "A four-foot prune."
  60. Your "data"? STALE & OUT OF DATE, & a ques by Anonymous Coward · · Score: 0

    "The difference in the overall patch rate is due to the fact that far more of Window's vulnerabilities have been critical" - by quickOnTheUptake (1450889) on Thursday June 10, @01:02PM (#32525122)

    Past stale data on your part? Please... what I want to know is, is IF the 11 security vulnerabilities on LINUX 2.6x (the "latest/greatest" shown on LINUX @ SECUNIA.COM, a respected site that acts as a clearing house for this type of data) are as EASILY WORKED-AROUND to secure them again, as are the 2 remaining (rated @ 2 each mind you, not severe @ all because of workarounds) on Windows 7?

    (That's my MAIN question, per my subject-line above in fact...)

    ---

    "But eight of Window's 20 advisories have been 4's and one was a 5." - by quickOnTheUptake (1450889) on Thursday June 10, @01:02PM (#32525122)

    Your information is STALE, because that's currently not the case for Windows 7 (all it has is 2 rated @ "2" only, plus, they're EASILY "worked-around", see below)... & to this next quote of yours below?

    ---

    "Also note that linux has never had a vulnerability rated 4 or 5, it's highest vulnerability has been a 3. - by quickOnTheUptake (1450889) on Thursday June 10, @01:02PM (#32525122)

    That doesn't take away from the fact that LINUX 2.6x STILL has outstanding errors though (and, are they as EASILY WORKED-AROUND as the 2 remaining on Windows 7 are I wonder, & in ALL CASES for the 11 outstanding security issues in Linux's latest (kernel only again, I must STRESS that, as it's only really PART of the entirety of Linux that folks really use?))...

    (That's 11 still security vulnerabilities present in the "latest/greatest" LINUX based OS and that? That's for the core ONLY, MIND YOU (which equates to NOT COUNTING ERRORS IN SECURITY THAT PROBABLY STILL EXIST TO COMPOUND THAT FURTHER in KDE or Gnome, BA$H or other tty terminal console shells & more that LINUX users have), and THAT'S NOT the "entirety of LINUX" either mind you (THAT'S IMPORTANT, because MacOS X &/or Windows 7 ARE JUDGED IN THEIR ENTIRETY, unlike Linux!)

    APK

    P.S.=> BOTTOM-LINE: So, again, I wonder: Can the same be said of LINUX 2.6x's outstanding security vulnerabilities I wonder? The 2 small ones Windows 7 has are EASILY worked around too, I wonder if the same can be said of the 11 outstanding issues on LINUX 2.6x??

    E.G. #1 of 2:

    AERO GLASS interface issue is simple to counter - don't use it, by selecting a "Windows Classic" desktop style theme (OR just turning off the "Themes" service)

    E.G. #2 of 2:

    The IIS 6/7 issues are easily enough to work around as well, as I don't have IIS installed here & I certainly do NOT see/have its services active either in services.msc (as most users won't typically, since it's a workstation class OS, not server class)...

    So, it appears that NO AMOUNT of "spin" on your part is very effective vs. the above really, especially the STALE data you used... better luck next time! apk

  61. Re:Windows, vs. LINUX, vs. MacOS X (security vulns by Anonymous Coward · · Score: 0

    OpenBSD 4.4 (they are up to 4.7 now)

    http://secunia.com/advisories/product/19640/

    Subject: OpenBSD 4.4
    No posts yet

  62. NYPA by Anonymous Coward · · Score: 0

    See subject.

  63. i am internet final boss by circletimessquare · · Score: 2, Funny

    if you defeat me, you get a live-action cutscene of me doing your mom

    unless you won teh internets by traversing the far more difficult /b/tard PvP realm in the Retards and Trolls Comment Board (tm) expansion pack (beta)

    in which case you get a hentai animated cutscene of rule 34 THAT NEVER ENDS AN ETERNAL HELL OF FURRIES GROUP SEX OH MY GOD MY EYES

    --
    intellectual property law is philosophically incoherent. it is your moral duty to ignore it or sabotage it
  64. Thanks, & about "the CULT OF /.", from INFOWOR by Anonymous Coward · · Score: 0

    FIRST: Per my subject line above? See this & the "#1 entry" (which is clearly about the /. trolls (usually fanboys of Linux, Open SORES (lol), & Firefox typically):

    ---

    Six More Tech Cults:

    http://hardware.slashdot.org/story/10/06/07/1518216/Six-More-Tech-Cults

    "Pity the fool who wanders blithely into a discussion and says, "What's the big deal with Linux? Windows works just fine." His online remains will later be hauled away in Chinese takeout boxes."

    Tech cult No. 1: The Slashdot Samurai
    Established: 1997
    Gathering of the tribes: /. (Where else?)
    Major deities: Linus Torvalds, Neil Gaiman

    ---

    Trouble is, as you can see with my post going from +1 INFORMATIVE, to +2 INTERESTING, & now down to 0 (but with the "good ratings upwards" still in place in INFORMATIVE for now @ least while I post this?) Those same "/. samurai" have to resort to what I call their "last weapon" in the effete & unjustified "mod down" (as usual with my posts like these)... they only prove this point for me, everytime, lol!

    SECONDLY: Thank you for this:

    "Most intelligent and objective post I've ever seen on Slashdot about Windows." - by AthleteMusicianNerd (1633805) on Thursday June 10, @12:18PM (#32524584)

    Sincerest thanks,

    APK

    P.S.=> As per usual, however?

    Well, you can see the ratings on my initial posting "WILDLY FLUCTUATING" because of the "cult of slashdot", which I noted from an INFOWORLD ARTICLE THIS WEEK no less (lol, they remind me of Dr. Who's DALEK "Cult of SKARO" in fact, as a sort of analogy here)?? They're going "wild" trying to "downmod" it, as per usual... to no avail, facts ARE FACTS, & that's that (they can't STAND that much, & all they have left as usual, is their "effete mod downs" & attempts @ putting "spins" on facts from a reputable security site in SECUNIA.COM's data)... apk

  65. Re:one sided by Stupendoussteve · · Score: 1

    No. It was created to replace Multics. From the very foundation it was made to be portable, multi-user and multi-tasking. I think you're thinking of emacs... or possibly Linux, which was originally to be a terminal emulator.

  66. Well, find us more current SECUNIA data then! by Anonymous Coward · · Score: 0

    "If you're including linux from 2003, you have an odd and erroneous definition of "latest/greatest". " - by oakgrove (845019) on Thursday June 10, @01:35PM (#32525512)

    Like I said in my post you replied to? FIND US MORE CURRENT DATA ON WHATEVER BUILD OF LINUX YOU CAN FIND THERE... ok?? I'll be GLAD to see it in fact!

    (You've still NOT ANSWERED MY QUESTION THOUGH: Can the 11 remaining security VULNERABILITIES PRESENT IN LINUX (core only, not counting security vulnerabilities in KDE or GNOME, BA$H, or other commonly used parts of LINUX that would make it "more on par" with what's being checked on in BOTH Windows 7 &/or MacOS X?) BE AS EASILY "WORKED-AROUND" as the 2 remaining security vulnerablities in Windows 7 (both rated 2 or less mind you, in terms of threat levels)?

    Please answer that...

    ---

    "Not only that, Windows 7 is an OS, Linux is not" - by oakgrove (845019) on Thursday June 10, @01:35PM (#32525512)

    LOL, "ok"... funny, but I said that LINUX is ONLY BEING ANALYZED IN PART, per my question above no less, unlike Windows 7 &/or MacOS X in THEIR ENTIRETY (E.G./I.E.-> Window mgt. subsystems, shells, & more) whereas LINUX is ONLY THE CORE/KERNEL being reported on, NOT ITS ENTIRETY (with the bugs that would add to the 11 already present in Linux mind you, compounding that further).

    ---

    "If you want to attack Linux's security record, at least do it in good faith then people might be willing to listen to your arguments." - by oakgrove (845019) on Thursday June 10, @01:35PM (#32525512)

    I did so, by merely citing reported facts from a respected & noted security vulnerabilities tracking clearinghouse in SECUNIA.COM, with the "latest/greatest" versions of each OS I could find for Linux, Windows, & MacOS X! What more do you want?

    ---

    "Your original post is little more than noise and it just sets you up for ad hominems and derision as no one can really take you seriously." - by oakgrove (845019) on Thursday June 10, @01:35PM (#32525512)

    Ad hominem attacks are a logical fallacy & only show that when one has to use that? They are on "the ropes", losing badly... pretty simple!

    APK

    P.S.=>

    "I'm not going to bother refuting the rest of your drivel since it all rests on this one blatant fabrication." - by oakgrove (845019) on Thursday June 10, @01:35PM (#32525512)

    No, you're outright RUNNING from answering a simple question I asked before, in my last post which you replied to again, AND, here once more above... & as far as "fabrication"?

    I merely reported facts & cited the workarounds possible for the 2 remaining security vulnerabilities in Windows 7 (vs. the "latest/greatest" from *NIX variants, in MacOS X &/or Linux kernel 2.6x)...

    So, "do the math, & argue with the numbers" & facts (11 sec vulns on LINUX, 8 sec vulns on MacOS X, & only 2 on Windows 7), & SECUNIA.COM... apk

    1. Re:Well, find us more current SECUNIA data then! by oakgrove · · Score: 1

      Ad hominem attacks are a logical fallacy & only show that when one has to use that? They are on "the ropes", losing badly... pretty simple!

      Ad hominems are also useful when your opponent's arguments are so utterly ridiculous and unconvincing to the audience that it is utterly pointless to refute them point by point...

      To whit, you have no idea what you are talking about and I'm not going to even bother wasting time arguing with you anymore.

      --
      The soylentnews experiment has been a dismal failure.
    2. Re:Well, find us more current SECUNIA data then! by Lundse · · Score: 1

      Like I said in my post you replied to? FIND US MORE CURRENT DATA ON WHATEVER BUILD OF LINUX YOU CAN FIND THERE... ok?? I'll be GLAD to see it in fact!

      The absence of better evidence does not make your "evidence" better. Or less skewed. And does not excuse comparing a 2003 kernel to a 2009 OS and going "I bet there are even more stuff wrong with all the 1000+ distros running the kernel".

      Also, the shouting is becoming rather shrill...

      --
      IAIFARSIJDPOOTV - I Am In Fact A Reality Star; I Just Don't Play One On TV
  67. Japanese engineering by zooblethorpe · · Score: 1

    This is how the Japanese got a foothold in the American auto industry, (but not in Europe) with cheap, crap automobiles.

    They might have broken into the US automobile (and motorcycle) market by selling at low prices, but quality was indeed part of their leverage. My dad remembers when Yamaha first started making motorcycle sales in Minnesota -- people actually started buying them instead of Vulcans or Indians because 1) they didn't shake themselves apart, and 2) they would actually start in the winter. And I can easily recall how crap the US cars were in the late 70s through the 80s, when Toyota and Honda really started eating Detroit's lunch. My folks went in for a Saab and a Honda. My first two cars were a Honda Civic and a Toyota Corolla. Ford stood for "fix or repair daily", something the Japanese automakers wouldn't stand for -- or more accurately, couldn't afford. Ford et al couldn't afford it either, in the long run, but too few people were looking at the long run.

    So no, I don't think market share alone determines success or market control, not long-term. A monopolist or consortium can control a market to some degree, but if things get too far out of balance, if they stray out of bounds (set prices too high, allow quality to degrade too far, try to lead their customer base in a very different unliked direction, etc etc), the time is ripe for outsiders to bring in new products and new brands and dethrone the controlling interests. Detroit got cocky, and was undone by its own hubris; it kinda looks like Microsoft is heading down that same road.

    Cheers,

    --
    "What in the name of Fats Waller is that?"
    "A four-foot prune."
    1. Re:Japanese engineering by slick7 · · Score: 1

      What bout Walmart?

      --
      The mind conceives, the body achieves, the spirit manifests.
    2. Re:Japanese engineering by zooblethorpe · · Score: 1

      Yes, Walmart is a good example of scale and market dominance, but there you also have a key difference -- Walmart is in the business of selling cheap goods, and everyone knows it: it's how Walmart bills itself. I would still posit that Walmart similarly walks a line in terms of striking the right pricing balance, but I also think the dynamics make this line much thicker for Walmart than for Microsoft of the automakers, in that cars and motorcycles, and even to some extent software, are durable goods, and are expected to last for longer with a minimum of maintenance, whereas Walmart's products are widely regarded as disposable.

      If memory serves, the basic "value" equation comprises the three components of time, money, and quality -- Walmart's products excel in terms of money (low price), but kinda suck on the other two counts (minimal feature sets and shorter useful lifetimes). Partly because "cheap" is part of Walmart's public identity, if the company were to raise prices much, they would open themselves to competition. Meanwhile, cars and business software are more complex, generally offering longer product lifetimes, with companies competing more in terms of price and quality.

      That's a bit rambling (Friday AM before my coffee), but I think that covers the points I'm trying to make. I hope it makes sense?

      Cheers,

      --
      "What in the name of Fats Waller is that?"
      "A four-foot prune."
  68. Post data isn't false, it's SECUNIA.COM data, and by Anonymous Coward · · Score: 0

    http://it.slashdot.org/comments.pl?sid=1681772&cid=32525870

    "It's a troll for one very simple reason. He's including 2.6 kernels from 2003 and comparing them to Windows 7 which uses the NT 6.1 kernel which is a derivative of the NT 6 kernel used in Vista." - by oakgrove (845019) on Thursday June 10, @01:42PM (#32525588)

    Argue with SECUNIA.COM then, because all I did, per the URL above (where you avoided a SIMPLE QUESTION from me, 2nd time in our exchange there no less), was report on facts from secunia, which is a respected & noted security vulnerabilities reporting clearinghouse... that's all!

    ---

    "Intentionally distorting facts to support your argument is trolling." - by oakgrove (845019) on Thursday June 10, @01:42PM (#32525588)

    LOL, ok... "sure"... then again, even the folks @ INFOWORLD THIS WEEK NO LESS, KNOW ABOUT THE "LINUX/OPENSORES/FIREFOX" fanboy fanatics & zealots around here too:

    ---

    Six More Tech Cults:

    http://hardware.slashdot.org/story/10/06/07/1518216/Six-More-Tech-Cults [slashdot.org]

    "Pity the fool who wanders blithely into a discussion and says, "What's the big deal with Linux? Windows works just fine." His online remains will later be hauled away in Chinese takeout boxes."

    Tech cult No. 1: The Slashdot Samurai
    Established: 1997
    Gathering of the tribes: /. (Where else?)
    Major deities: Linus Torvalds, Neil Gaiman

    ---

    Trouble is, as you can see with my post going from +1 INFORMATIVE, to +2 INTERESTING, & now down to 0 (but with the "good ratings upwards" still in place in INFORMATIVE for now @ least while I post this?) Those same "/. samurai" have to resort to what I call their "last weapon" in the effete & unjustified "mod down" (as usual with my posts like these)... they only prove this point for me, everytime, lol!

    So, as far as "trolling" & trying to put a "spin on things"?

    Well... it seems others are disagreeing with you, such as those you replied to now here (and please - don't avoid that question in the URL above... thanks!)

    ---

    "Furthermore, he's bringing up secunia stats as if that is the whole story without mentioning the relative severities." - by oakgrove (845019) on Thursday June 10, @01:42PM (#32525588)

    You're RIGHT - so, IF I was to add on the KNOWN SECURITY VULNERABILITIES in the remaining parts of LINUX not noted (such as KDE or GNOME, or even BA$H, to name only a FEW parts omitted in my fair analysis of the LINUX KERNEL/CORE ONLY mind you, vs. the rest of it that folks use regularly/usually, which DO GET ANALYZED IN WINDOWS 7 &/or MacOS X?)?

    You'd see more than the 11 security vulnerabilities in Linux... my guess? Far more.

    ---

    "Of course, it's a red herring anyway as I've already pointed out." - by oakgrove (845019) on Thursday June 10, @01:42PM (#32525588)

    Well, seeing as how others here are disagreeing with you? I'd take a look at the paragraph above I just put up, and the facts therein, as well as you PLEASE answering the questions I asked you, here -> http://it.slashdot.org/comments.pl?sid=1681772&cid=32525870 also... thanks!

    (Especially since it seems you are AVOIDING what I asked you there in that URL just above...)

    APK

  69. Re:Post data isn't false, it's SECUNIA.COM data, a by oakgrove · · Score: 1

    You're RIGHT - so, IF I was to add on the KNOWN SECURITY VULNERABILITIES in the remaining parts of LINUX not noted (such as KDE or GNOME, or even BA$H, to name only a FEW parts omitted in my fair analysis of the LINUX KERNEL/CORE ONLY mind you, vs. the rest of it that folks use regularly/usually, which DO GET ANALYZED IN WINDOWS 7 &/or MacOS X?)?

    Why don't we just compare apples to apples and see what the results are when Windows goes head to head against the most popular Linux distro with some of the best hackers in the world trying to break in.

    Damn.

    --
    The soylentnews experiment has been a dismal failure.
  70. Ridiculous? Like AVOIDING ANSWERING QUESTIONS ARE? by Anonymous Coward · · Score: 0

    http://it.slashdot.org/comments.pl?sid=1681772&cid=32525656

    See that post, & answer the questions there (mainly the one regarding IF Linux's only PARTIAL LIST of kernel/core level errors only, 11 left (not counting ones probably present in LINUX 2.6x's Window managers, KDE/GNOME shells, &/or BA$H + other tty terminal consoles too possibly & more) are as easily "worked around" as those in Windows 7 are?)

    APK

    P.S.=>

    "To whit, you have no idea what you are talking about and I'm not going to even bother wasting time arguing with you anymore." - by oakgrove (845019) on Thursday June 10, @02:16PM (#32525934)

    Yea, ok... by the way, & I ORDINARILY WON'T/DON'T DO THIS? The correct phrase is "to wit" (not "to whit")!

    Plus, you've already said that 2-3x or so, by now (that you were leaving & not responding here anymore, gee I wonder why (NOT)), while you avoid a SIMPLE QUESTION I ASKED OF YOU HERE 2-3x now too, see above...

    LMAO, man... "too, Too, TOO EASY!"... just too easy! apk

  71. Only part of the problem by Anonymous Coward · · Score: 0

    The fact that microsoft makes poor quality goods is only a portion of the problem. Installing these poor quality goods in mission critical areas contributes to the problem. Microsofts growth has partly come from its market position, and many quality technology products have lost in the market because of microsofts abuse of its position, and probably the worst part of this problem is the role of illiterate pundits who don't even know what a quality product is (or anything about anyone elses products). Illiterate astroturfers pollute intellectual discussion. A quick summary of the statements they make indicate that they have no clue how computing technology works (often they have a superficial knowledge, and claim full knowledge, when in fact, they read a little, can't tell if the design of the product is good or not, can't compare one product with other vendor's products because they don't know about other vendors products, but still feel the urge to pollute the internet with their opinions, to the detriment of us all. Go ahead, softies, get all excited and upset, but I can I have administered operating systems in a professional manner for six different vendors (and with some vendors, multiple operating systems). Microsoft is one vendor. Have any of the softies administered a Sun operating system (sunos/solaris)? How about a DEC operating system (vms/ultrix). How about IBM (VM/CMS, System36, MVS/XA, OS400, OS/2). How about any of the BSD operating systems? FreeBSD, OpenBSD. How about Plan9? How do you know your are "better" if you have never looked at anything else? Are you all just the great unwashed without any real ability to compare and contrast because you only know one thing? I have also administered microsoft operating systems (and no, they are not as good, and when I say 'well you know how MVS (IBM's Multiple Virtual Storage operating system) handles print operations' people give me a blank stare, because they don't know any better. They can't compare because they don't know. Yet they rant and spew but have no clue.

  72. since Robling caissons also require ... by crovira · · Score: 1

    the use of decompression chambers. Then again its because he DIED from caisson disease (decompression.)

    But MANDATING the use of decompression chambers, just like the use of collapsible steering columns in cars which would stop you from resembling a bug in a Victorian collection, (pinned through the chest,) had to be enacted by someone who wasn't in it just for the money.

    The accountants told GM, Ford and Chrysler: "This will cost share holders $ and upset the P&L Statements".

    The government and a whole bunch of the American public read "Unsafe At Any Speed" and said "Screw YOU GM, Ford and Chrysler! I'll pay the extra $300 to not get skewered..."

    SOMEBODY has to take the reins from "Laisser Faire" at some point because businesses are too short sighted to look up from the balance sheet.

    (I'm convinced that HELL has a special section for accountants where balance sheets DON'T, nobody gives a shit about P&L Statements and Journals are maintained up to the microsecond...)

    --
    MSBPodcast.com The opinions expressed here are my own. If you don't like 'em... Think up your own stuff.
  73. This is News? by schutzhund · · Score: 1

    So a political figure has had the epiphany that many figured out by common sense and experience a decade ago.... *sigh*

  74. Same thing always results though by Anonymous Coward · · Score: 0

    "I doubt it. APK has a long history of posting this kind of crazy shit. Frankly I'm surprised he wasn't going on about HOSTS files like he normally does." - by DocHoncho (1198543) * on Thursday June 10, @01:25PM (#32525394) Homepage

    Sure, sure... The "cult of slashdot" (noted by INFOWORLD here no less this week, lol!):

    Six More Tech Cults:

    http://hardware.slashdot.org/story/10/06/07/1518216/Six-More-Tech-Cults

    "Pity the fool who wanders blithely into a discussion and says, "What's the big deal with Linux? Windows works just fine." His online remains will later be hauled away in Chinese takeout boxes."

    Tech cult No. 1: The Slashdot Samurai
    Established: 1997
    Gathering of the tribes: /. (Where else?)
    Major deities: Linus Torvalds, Neil Gaiman

    ---

    Everyone KNOWS THE SCORE HERE (rabid name calling & such is the responses of these zealots here, everytime in the end, once you put up data they have NO "spin" for... everytime! It's hilarious, and sad!)

    Trouble is, as you can see with my post going from +1 INFORMATIVE, to +2 INTERESTING, & now down to 0 (but with the "good ratings upwards" still in place in INFORMATIVE for now @ least while I post this?) Those same "/. samurai" have to resort to what I call their "last weapon" in the effete & unjustified "mod down"And, the inevitable name tossing & other forms of ad hominem illogical attacks... they only prove this point for me, everytime, lol!

    So, back on track here?

    Well, when these "wannabe /. samurai" (lol, yea right, I'd like to see how many of my detractors here actually have CSC, CIS/MIS degrees, or even certifications like an MCSE or equivalent to their name, much less 16++ yrs. or better of well noted & published works in noted & respected books, magazines, newspapers, & more to their name/credit... so much for them being "CORRECT AUTHORITIES" (per LOGIC))?

    When faced with data & facts they cannot overcome with facts & solid data, always resorts to 3 things:

    ---

    1.) Ad hominem attacks (which you trolling post obviously is such an example thereof)

    2.) Unjustified mod downs (or other technically erroneous FUD & what not put up in reply, along with name tossing ad hominem attacks)

    3.) Taking things off topic (which you are also trying, lol, to no avail (as far as HOSTS files go? I'd debate their effectiveness vs. anyone on the PLANET, & as usual? I'd win... especially vs. fans of DNS servers, or AdBlock alone, for example)

    ---

    Just as they have here, in addition to they avoiding SIMPLE QUESITONS I asked of they many times in this exchange already (such as oakgrove here -> http://it.slashdot.org/comments.pl?sid=1681772&cid=32526288 )

    APK

    P.S.=> Zealots/fanboys ("CULT OF /.", LOL): GIVE US A BREAK ALREADY, PLEASE... LOL! apk

    1. Re:Same thing always results though by DocHoncho · · Score: 1

      Well thanks for proving my point anyways. I call you a lunatic, you respond with yet another tangled mess of rambling nonsense.

      Oh, and I wasn't trying to argue your point or anything like that, I was just informing a neophyte about one of the famous Slashdot crackpots.

      --
      Celebrity worship is a poor substitute for Deity worship and costs more to boot.
  75. Re:Debunked? Then do so now... lol, good luck! by erroneus · · Score: 2, Informative

    I have checked various registries of accreditation and do not find Anonymous Coward in any of them. Perhaps you should start by revealing your identity and proving your assertions of credentials. Next, don't assume I have less experience and no accreditation. I have a degree. I have certifications and I have been in the industry since I was 16... I am 42 now. I have experience with everything from mainframes to the most obscure PCs and just about everything in between. I know the lay of the land. I know it too well. I was there for the birth of Unix (sort of... it coincides with my own birthday) and have followed the tech since then. It has been my life and obsession. Do not begin to believe that degrees and certifications even BEGIN to make someone qualified to understand what is really going on.

    What you have is "product training" and little more.

  76. Better than a LACK OF STATISTICS (your post) by Anonymous Coward · · Score: 0

    "...yes, because we all know some buffer overflow is the same as worms that repeatedly bring down the internet or people's individual machines." - by jedidiah (1196) on Thursday June 10, @12:45PM (#32524926) Homepage

    Show us that currently in Windows 7, won't you? The OS itself mind you... thanks!

    (Linux, iirc, is largely written in C @ it's Core/Kernel... I wonder IF Linux uses sscanf in its sourcecode there?? If so, that's a problem of the nature you speak of in fact, in that the sscanf instruction for years has been known to be buffer overflowable!)

    ---

    "Cherry picked statistics can't quite compare to how systems actually behave in the wild." - by jedidiah (1196) on Thursday June 10, @12:45PM (#32524926) Homepage

    Well, as I noted to others here? Windows Server seems to be doing QUITE WELL "in the wild" (in actual REAL WORLD USE) per its having less security vulnerabilities than Linux does in its latest/greatest 2.6x core-kernel only @ SECUNIA (per the stats in my 1st post) & also for NASDAQ, where Windows Server is the OS for its "OFFICIAL TRADE DATA DISSEMINATION SYSTEM" & has run there without a hitch, 24x7, for years now no less, in a high tpm environs!

    ---

    "This is why Lemmings cling to them so much." - by jedidiah (1196) on Thursday June 10, @12:45PM (#32524926) Homepage

    I take it you're calling ME a "lemming"... ok, tell you what: When you can show you've done MORE THAN THIS, and from as long ago & up to presently today in respected publications (Windows IT Pro being my fav of the lot below no less), which I have & you were probably still in diapers I wager?

    "My Name is Ozymandias: King of Kings - Look upon my works, ye mighty, & DESPAIR..."

    ----

    Windows NT Magazine (now Windows IT Pro) April 1997 "BACK OFFICE PERFORMANCE" issue, page 61

    (&, for work done for EEC Systems/SuperSpeed.com on PAID CONTRACT (writing portions of their SuperCache program increasing its performance by up to 40% via my work) albeit, for their SuperDisk & HOW TO APPLY IT, took them to a finalist position @ MS Tech Ed, two years in a row 2000-2002, in its HARDEST CATEGORY: SQLServer Performance Enhancement).

    WINDOWS MAGAZINE, 1997, "Top Freeware & Shareware of the Year" issue page 210, #1/first entry in fact (my work is there)

    PC-WELT FEB 1998 - page 84, again, my work is featured there

    WINDOWS MAGAZINE, WINTER 1998 - page 92, insert section, MUST HAVE WARES, my work is again, there

    PC-WELT FEB 1999 - page 83, again, my work is featured there

    CHIP Magazine 7/99 - page 100, my work is there

    GERMAN PC BOOK, Data Becker publisher "PC Aufrusten und Repairen" 2000, where my work is contained in it

    HOT SHAREWARE Numero 46 issue, pg. 54 (PC ware mag from Spain), 2001 my work is there, first one featured, yet again!

    Also, a British PC Mag in 2002 for many utilities I wrote, saw it @ BORDERS BOOKS but didn't buy it... by that point, I had moved onto other areas in this field besides coding only...

    Lastly, being paid for an article that made me money over @ PCPitstop in 2008 for writing up a guide that has people showing NO VIRUSES/SPYWARES & other screwups, via following its point, such as THRONKA sees here -> http://www.xtremepccentral.com/forums/showthread.php?s=ee926d913b81bf6d63c3c7372fd2a24c&t=28430&page=3

    ----

    What do I have to say about that much above? I can't say it any better, than this was stated already (from the greatest book of all time, the "tech manual for life" imo):

    "But by the grace of God I am what I am: and his grace which was bestowed upon me was not in vain; but I labored more abundantly than they all: yet not I, but the grace of God

  77. Re:Low quality products? by mesanchez · · Score: 0

    They are low quality products [1]. Microsoft owns the market share it does because business-wise, they entered a growing market at the right time, with the right sort of software that your average business needs[2]. The operating system and software didn't have to work perfectly. It just has to work most of the time. That is good enough for most businesses ( and government ). It became so widely adopted early on that to change now becomes a matter of better the devil you know than the devil you don't in the eyes of many budget reviews. You don't have to make great software to be good at business.[3]

    [1]: you've just convince me, GREAT argumentation!!!. [2]: "right software" for me means giving people what they want, which is good, and if they sucked, why everybody used them?. [3]: so, everybody bought their software, i imagine that they bought it because it sucks!!!. Maybe next time you should think before you post, or at least justify your opinion, "because i say so" is not valid.

  78. flawed argument by pikine · · Score: 1

    Your assumption is that publicly acknowledged vulnerability count is an accurate indication of software quality, but this assumption is flawed. First, the software could have bug, but nobody knows about it because nobody looked for it nor observed it. You always have bugs that are unobserved. Even when the vendor has perfect knowledge of how many bugs they have in the software, their willingness to disclose it for public acknowledgement determines how many vulnerabilities are counted on Secunia.

    Secunia shows bugs that are reported to the public, and by definition, all bugs in open source software are public information. The vulnerability count for Linux enjoys the most accurate disclosure. Mac OS X is partly closed source and partly open source. Even so, Apple voluntarily acknowledges the presence of vulnerabilities whenever it publishes software update. The unfixed vulnerabilities reported to the public all belong to the open sourced part of Mac OS X, which is public knowledge. If Apple decides to stop acknowledging vulnerabilities, at least the vulnerabilities in the open sourced part of Mac OS X is still public information, and they can be found through careful code review.

    Last, we have Microsoft Windows, which is a closed source software, so nobody can see how the software is written except by reverse engineering the machine instructions, which violates the EULA. Any end user who purchased a version of Windows are automatically disqualified to find bugs, except when they stumble upon it by accident (software crash). Even so, the information you gain from a crash report is extremely limited. It doesn't even tell you how severe the bug is.

    How then, do Windows vulnerabilities get published on Secunia? They're mostly found by independent third-party who stumbled upon a bug and decided to break the EULA to investigate the crash. Studying how the software works by reverse engineering is excruciating and time consuming. Unless you have an ulterior motive, you will not be doing that. If you are in the business to create 0-day exploit, you won't want to disclose the bug either.

    So I argue that the reason Windows has lowest vulnerability count on Secunia is because of the near zero disclosure from Microsoft as well as third-parties, not because the software is well-written.

    --
    I once had a signature.
  79. Re:Ridiculous? Like AVOIDING ANSWERING QUESTIONS A by oakgrove · · Score: 1

    Plus, you've already said that 2-3x or so, by now (that you were leaving & not responding here anymore, gee I wonder why (NOT)), while you avoid a SIMPLE QUESTION I ASKED OF YOU HERE 2-3x now too, see above...

    What can I say? I'm a sucker for a troll.

    See that post, & answer the questions there (mainly the one regarding IF Linux's only PARTIAL LIST of kernel/core level errors only, 11 left (not counting ones probably present in LINUX 2.6x's Window managers, KDE/GNOME shells, &/or BA$H + other tty terminal consoles too possibly & more) are as easily "worked around" as those in Windows 7 are?)

    I've already told you why your argument is too stupid to even respond to but, here. Now scurry back under your little bridge, little troll and chew on that for a while as that's about the best actual apples to apples comparison that I could find where Windows and Linux were in the same room.

    --
    The soylentnews experiment has been a dismal failure.
  80. Re:Low quality products? by xororand · · Score: 1

    Windows is missing an integrated centralized package manager. This results in programs with redundant update mechanisms, often implemented in a poor or annoying way. Many programs seem to update themselves during startup, the most inconvenient time because that's when you actually want to use them. Or they annoy the user with popups in the system tray.

    A centralized package management would instead rely on a list of package repositories to which vendors could add their own URLs. Of course packages would be secured with public key cryptography infrastructure to prevent man-in-the-middle attacks and ensure integrity, much like it is implemented in Debian GNU/{Linux|kFreeBSD}.

    The package manager keeps track of all packages' files. That allows the administrator to clean up a system very easily, by listing all files that weren't installed intentionally and deciding what to keep & delete. How many programs leave crap in the Windows directories?

    Packages could, optionally, share dependencies instead of using a dozen copies of the same DLLs. Shared dependencies save disk space, eventually RAM and can increase security. When a security problem emerges in a library, the system only needs to update that one package instead of every program that ships with a redundant copy.

    These are the some of the problems that keep Windows away from my systems.

  81. LOL, ok: Proofs inside, & more (do you have sa by Anonymous Coward · · Score: 0

    "I have checked various registries of accreditation and do not find Anonymous Coward in any of them. Perhaps you should start by revealing your identity and proving your assertions of credentials." - by erroneus (253617) on Thursday June 10, @02:59PM (#32526486) Homepage

    Ok then, here we go (I expect the SAME from you though, and I would like the questions I asked of you answered as well here -> http://it.slashdot.org/comments.pl?sid=1681772&cid=32526288 which you repeatedly have avoided no less)

    ---

    "Next, don't assume I have less experience and no accreditation. I have a degree. I have certifications and I have been in the industry since I was 16... I am 42 now." - by erroneus (253617) on Thursday June 10, @02:59PM (#32526486) Homepage

    Oh, I assume NOTHING... & for another thing? I am YOUR SENIOR.

    Ah, anyhow/anyways: Here are some things I have done in this art & science that are easily verified (partial small list only mind you, only my favs):

    "My Name is Ozymandias: King of Kings - Look upon my works, ye mighty, & DESPAIR..."

    ----

    Windows NT Magazine (now Windows IT Pro) April 1997 "BACK OFFICE PERFORMANCE" issue, page 61

    (&, for work done for EEC Systems/SuperSpeed.com on PAID CONTRACT (writing portions of their SuperCache program increasing its performance by up to 40% via my work) albeit, for their SuperDisk & HOW TO APPLY IT, took them to a finalist position @ MS Tech Ed, two years in a row 2000-2002, in its HARDEST CATEGORY: SQLServer Performance Enhancement).

    WINDOWS MAGAZINE, 1997, "Top Freeware & Shareware of the Year" issue page 210, #1/first entry in fact (my work is there)

    PC-WELT FEB 1998 - page 84, again, my work is featured there

    WINDOWS MAGAZINE, WINTER 1998 - page 92, insert section, MUST HAVE WARES, my work is again, there

    PC-WELT FEB 1999 - page 83, again, my work is featured there

    CHIP Magazine 7/99 - page 100, my work is there

    GERMAN PC BOOK, Data Becker publisher "PC Aufrusten und Repairen" 2000, where my work is contained in it

    HOT SHAREWARE Numero 46 issue, pg. 54 (PC ware mag from Spain), 2001 my work is there, first one featured, yet again!

    Also, a British PC Mag in 2002 for many utilities I wrote, saw it @ BORDERS BOOKS but didn't buy it... by that point, I had moved onto other areas in this field besides coding only...

    Lastly, being paid for an article that made me money over @ PCPitstop in 2008 for writing up a guide that has people showing NO VIRUSES/SPYWARES & other screwups, via following its point, such as THRONKA sees here -> http://www.xtremepccentral.com/forums/showthread.php?s=ee926d913b81bf6d63c3c7372fd2a24c&t=28430&page=3

    ----

    What do I have to say about that much above? I can't say it any better, than this was stated already (from the greatest book of all time, the "tech manual for life" imo):

    "But by the grace of God I am what I am: and his grace which was bestowed upon me was not in vain; but I labored more abundantly than they all: yet not I, but the grace of God which was with me." - Corinthians Chapter 10, Verse 10

    (And, because I got LUCKY to have been exposed to some really GREAT classmates, professors, & colleagues on the job over time as well)

    NOW, as to education? Ok, proof of that here (where I was also a lettering NCAA starter for a many time NATIONAL CHAMPION in Div II no less, even runner up this & last year):

    (See "K" section, & see my initials, & 1985)

    http://www.lemoynedolphins.com/sports/mlax/history/mlaxletterwin

  82. Richard clarke is an idiot by Anonymous Coward · · Score: 0

    I know its popular to bash MS on product quality and security. In fact holding any other position besides MS sucks is foolish because it does not lead to improvement. Sucking is a realitive term and so when you say MS sucks the question becomes realitive to what? If you need high security for godsake don't use a general purpose operating system. If you need critical availability for godsake don't use a general purpose operating system or consumer grade hardware.

    Richard clarke is an idiot. He blaims the use of Microsoft windows on the USS Yorktown incident as the reason for the problem. This is absurd. To date noone has provided any evidence of a defect in Windows being the root cause of the problem in this case. The problem was a classic divide by zero issue in the ships control software (NOT WRITTEN BY MICROSOFT) what difference would it have made if it had run on Linux, BSD, AIX or whatever? How do these platforms prevent divide by zero in userland code in a way that MS has failed to do in NT4? What kind of idiot would allow this sort of failure mode to even be possible in the first place?

    Why is what happened in an ancient version of Windows more than a decade ago still realevent? I understand Richard clarke is pissed about MS of years ago and their in-your-face lobbying efforts to keep unfavorable legislation out of the picture. I do not accept the citation of ancient history as evidence of todays reality althought I agree with the sentiment that Microsoft sucks. But then again Linux sucks and MACs suck too.

    Adobe sucks, firefox sucks... Every month I see Cert advisories for security hole after security hole. Its an endless cycle of nonsense. The number of security updates pushed out from various mainstream Linux package systems on a constant basis is nothing short of breathtaking.

    To top it all off we have millions of gullable users who actually believe what they read on the computer screen and activly get suckered into joining massive botnets or sending their life savings to a Nigeran princess.

    We have millions of "web developers" who couldn't write secure code if their life depended on it and it shows.

    At some point even if it were possible to wave a magic wand and say Linux or Windows or whatever is 100% secure its not going to do much good.

  83. President Obama, Hire Him Back! ...Please? by LifesABeach · · Score: 1

    Richard Clarke gets it.

  84. Typical /. "samurai" (lmao) ad hominem attack! by Anonymous Coward · · Score: 0

    See subject line above... lmao!

    "Now scurry back under your little bridge, little troll and chew on that for a while" - by oakgrove (845019) on Thursday June 10, @03:16PM (#32526710)

    Yea, "ok", sure... lol, see my P.S. below, and note you are reduced to an ad hominem attack... lol, as your "best reply"!

    ("too, Too, TOO EASY", as per usual)

    APK

    P.S.=> INFOWORLD IS RIGHT:

    ---

    Six More Tech Cults:

    http://hardware.slashdot.org/story/10/06/07/1518216/Six-More-Tech-Cults

    "Pity the fool who wanders blithely into a discussion and says, "What's the big deal with Linux? Windows works just fine." His online remains will later be hauled away in Chinese takeout boxes."

    Tech cult No. 1: The Slashdot Samurai
    Established: 1997
    Gathering of the tribes: /. (Where else?)
    Major deities: Linus Torvalds, Neil Gaiman

    ---

    Trouble is, as you can see with my post going from +1 INFORMATIVE, to +2 INTERESTING, & now down to 0 (but with the "good ratings upwards" still in place in INFORMATIVE for now @ least while I post this?) Those same "/. samurai" have to resort to what I call their "last weapon" in the effete & unjustified "mod down" (as usual with my posts like these)... they only prove this point for me, everytime, lol... apk

    1. Re:Typical /. "samurai" (lmao) ad hominem attack! by oakgrove · · Score: 1

      Trouble is, as you can see with my post going from +1 INFORMATIVE, to +2 INTERESTING, & now down to 0 (but with the "good ratings upwards" still in place in INFORMATIVE for now @ least while I post this?) Those same "/. samurai" have to resort to what I call their "last weapon" in the effete & unjustified "mod down" (as usual with my posts like these)... they only prove this point for me, everytime, lol... apk

      Yeeeah, it's just a big old conspiracy against apk. I mean, surely it doesn't have anything to do with his flawed arguments that have been thoroughly debunked and dismissed by myself and others. It's just the "slashdot samurai" (lol) out to get you.

      --
      The soylentnews experiment has been a dismal failure.
  85. Re:Low quality products? by LifesABeach · · Score: 1
  86. Re:Your "data"? STALE & OUT OF DATE, & a q by quickOnTheUptake · · Score: 1
    My data came from the links AC posted, not sure how that is stale and out of date.

    Your information is STALE, because that's currently not the case for Windows 7

    No, it isn't STALE. What I said was that "eight of Window's 20 advisories have been 4's and one was a 5", this is not stale. It's true, per the links above.
    BTW, the verb I used, 'have been', has what's called "perfect aspect". In context it means that MS shipped Windows 7 with serious problems and patched them later.

    The 2 small ones Windows 7 has are EASILY worked around too, I wonder if the same can be said of the 11 outstanding issues on LINUX 2.6x??

    Yes, for the most part the same can be said:

    • The most serious (allowing local privilege escalation), can be worked around by not using the firewire driver (which I would bet most Linux installs don't anyway), or by only allowing trusted users access to the system.
    • The second most serious (local network DoS via kNFSd) can be worked around by using "the user space NFS daemon instead", as the page itself says. Of course once again, I would bet most linux installs don't use knfsd anyway, and thus are already not affected.
    • The third most serious, can only be avoided by restricting local access to the system, but it is almost entirely theoretical for most setups: it allows a user with local access to read to random memory address, thus theoretically giving access to whatever sensitive information might be stored there. (It also includes a warning about a potential local DoS, again not really a high level concern.)
    • The fourth most serious involves crashing the local system or reading environment variables. So if you store your bank account info in your environment variables and give an evil person local access to your machine you might be affected.
    • Finally we come to the vulnerability whereby a user can gain write permission to a cd-rw drive that he is only supposed to have read permissions for. I bet most sysadmins lost a lot of sleep over that one.

    The rest are classified as "not critical" because they only involve a local DoS.
    Anyway, enough troll-feeding for me.

    --
    Mod points: Guaranteed to remove your sense of humor.
    Side effects may include gullibility and temporary retardation
  87. Re:Windows, vs. LINUX, vs. MacOS X (security vulns by Idbar · · Score: 1

    To my understanding, the argument of the "ex-white house" official only demonstrates that the government has been spending money in "poor quality goods". If microsoft got its money for its low quality software, then someone was not doing its homework.

    Why blaming MS now, when their massive adoption and lack of alternatives boosted their millions? Why the government never supported linux or other systems?

  88. INFOWORLD says otherwise by Anonymous Coward · · Score: 0

    I have been reading this exchange and all you have done so far is call others names and to make false implications, both of which have been directed against apk by yourself, indicative of your ad hominem attack illogical so called arguments here. You also have avoided his questions as to how many of Linux's 11 known security errors can be worked around as easily as the 2 that Windows 7 has. You, sir, have far from disproven and "debunked" apk's points. In fact while I have read through this here, it appeasr that all you have done is prove his points on the Linux zealots and fanboys around here that infoworld noted and apk put out as evidence thereof to that effect. Ordinarily I'd post under my registered account here, but as the infoworld article basically implied, you'd probably troll me that way until the end of time. No, you have failed here badly on all accounts.

    1. Re:INFOWORLD says otherwise by oakgrove · · Score: 1

      Dude, if you're taking this message board so seriously that you are going to "defend" yourself by posting more ac comments and pretending to be somebody else, you need psychiatric help.

      --
      The soylentnews experiment has been a dismal failure.
  89. Re:Windows, vs. LINUX, vs. MacOS X (security vulns by dropadrop · · Score: 1

    So what, you are seriously comparing kernel 2.6 (released December 2003), all versions of Os X (server released in 99, desktop 2001) with Windows 7? I guess that could be a fair comparison in some dimension.

  90. 2 remaining unpatched Win7 errs are 2 rated by Anonymous Coward · · Score: 0

    No, it isn't STALE. What I said was that "eight of Window's 20 advisories have been 4's and one was a 5", this is not stale by quickOnTheUptake (1450889) writes:
                    on Thursday June 10, @03:53PM (#32527180)

    Beg to differ (learn to read please because he noted you are referring to long ago patched issues, thus, they are non sequitur).

    Windows 7 currently only has 2 remaining known security vulnerabilities, and they are rated 2 (little threat) and they have easy work-arounds. Do the 11 remaining known security issues on Linux latest 2.6x kernel only have such easy work arounds for all of them?

    I would have to say no, because of your avoiding that question here constantly along with others of your nature (the slashdot samurais referred to by infoworld this week as "tech cult #1", hilariously in fact).

    Thus, so much for your information being current, because you are citing no longer exploitable security vulnerablities on Windows 7.

    I also wonder why it is that everytime apk has asked others here if the remaining 11 known security problems on Linux can be as easily worked around as the 2 single ones on Windows 7 are?

    I don't really have to ask, because it's obvious they must not have possible workarounds for each of them, as Windows 7 does.

  91. Re:That's LINUX 2.6x current info. @ SECUNIA... ap by Just+Some+Guy · · Score: 1

    Dude, don't argue with the apk. It just makes it stick around longer.

    --
    Dewey, what part of this looks like authorities should be involved?
  92. I'm not apk as you seem to imply by Anonymous Coward · · Score: 0

    So go on and ask your moderators if I am posting from the same ip addresses as apk is. As I stated here already I would post under my registered account here but I do not need the likes of yourself trolling me. Infoworld even alludes to that going on here, so that is good enough for me. Besides, I have been around here long enough to know that so far you and yours have done a very poor job of things in your ad hominem attacks on the ac apk and in your avoiding his simple questions also. Whenever he gets you to all start name calling or making other silly insinuations he has truly out thought and out smarted you all apparently. Once more, I'm not apk so get that out of your head. I just read and saw how poorly you and yours are doing here and decided to comment on it as is my right to do so. I will however ask if you have your PHD in Psychiatry (which I have seen apk ask of your kind here when they try to say someone needs mental help and what not no less and it's effective as I haven't seen anyone around here with a PHD posting in years), as is another standard tactic your kind resorts to along with name calling. Ha, I bet next thing will be is writing style critiques as your last resorts when you cannot disprove and debunk facts that apk and others like he use against your propoganda.

    1. Re:I'm not apk as you seem to imply by oakgrove · · Score: 1

      So go on and ask your moderators if I am posting from the same ip addresses as apk is.

      If you don't know what a proxy server is, you aren't qualified to even be in this conversation. But, what the hell...

      Infoworld even alludes to that going on here, so that is good enough for me.

      So, uh, some people started a web site and said some stuff. Welcome to the internet, Mr. not-apk *wink wink*.

      So no one reading this gets duped by your feigned ignorance, I'll summarize the situation for you. Apk brought up the secunia statistics for every linux kernel since 2003 and compared them to Windows 7. This is fallacious for several reasons, among them, 7 uses virtually the same kernel as Vista so why didn't he include the Vista number? Also, nobody is using a kernel from 2003 so it's irrelevant anyway. Also, the severity of the security advisories between Linux and Windows don't even compare so the raw numbers are useless for a real comparison between the two.

      This, of course, was all brought up in subsequent posts so apk just moved on to the red herring of Linux+KDE/Gnome/Bash/thekitchensink as if that wasn't an even worse argument. First of all, it depends on the validity of the first argument which has been debunked here and elsewhere ad nauseum. But, for arguments sake, it was examined anyway. As there are practically no reliable comparisons, it was brought up that the last pwn2own competition that included osx, windows, and linux, only Linux was left standing at the end.

      So, he was answered and debunked repeatedly but like the typically incessant crank he has proved to be over the years, he just kept repeating the same crap. He's like the little kid that says why everytime you answer him. Eventually you get sick of it just stop answering.

      --
      The soylentnews experiment has been a dismal failure.
  93. That was tried... by shis-ka-bob · · Score: 1

    There was some government money (DARPA, I think) was was used to fund some development of OpenBSD. But then Theo, a Canadian, expressed his feelings about the invasion of Iraq. The money disappeared suddenly. (See http://en.wikipedia.org/wiki/Theo_de_Raadt and find the "DARPA funding cancellation' section.) The JASONs, it seems, have to answer to politicians. If you are more kind to the JASONs, you could note that the funding was yanked in April, 2003. The JASONs traditionally work in July, August, September, October and November so they only have to miss one semester. So in April, DARPA has all the bureaucrats and fewer JASONs.

    --
    Think global, act loco
    1. Re:That was tried... by DaMattster · · Score: 1

      I know. Theo de Raadt is principled and the demands DARPA placed on Theo ran counter to his more democratic principles. The crux of the argument was over encryption - Theo felt that encryption belongs in the public domain as a checks and balances against government "mission creep."

  94. That is current data at secunia on Linux by Anonymous Coward · · Score: 0

    That's the most current version of linux that secunia.com has data on, which is only part of linux in its entirety as to what composes what people really use in Linux since it is a GUI world really for most users of any Operating System. Since version 2.6xxx kernel is the most current shown at secunia as far as major builds it is obvious why the ac apk used it. He fairly compared both macos x and windows in their current builds and in their entirety inclusive of gui shells, command interpreters, and more (unlike linux only being shown with its kernel errors, not the rest of the ones in kde, gnome or bash as he noted here). So unless you can show us more current ones over at secunia.com for us to look at. I cannot find any but perhaps you can. Mind also what's been noted here and that's also only the Linux kernel-core only, again, which is not the entirety of what people use in Linux such as KDE or Gnome for example (or more in window manager subsystems or character mode terminals like BASH as well). By way of comparison though, windows 7 and macos X are analysed in their entirety and show less security vulnerability than does Linux's latest kernel-core in version 2.6xxx per what apk noted. Is this the best you people who champion Linux around here have in your rather flawed replies? This only further makes what infoworld said of your kind here all the more true, in that you are the fanboy fanatic and zealot Linux club and nothing more.

  95. Re:Windows, vs. LINUX, vs. MacOS X (security vulns by gmuslera · · Score: 1
    If the source is available it is for the good and the bad guys. It the source isnt available and is protected by licenses, patents and so on, debugging, analyzing, reverse engineering,getting in black market portions and so on is not available for the good guys... but still is for the bad ones.

    That could make the problem far worse... could be a lot of exploits to vulnerabilities that could not be announced nor reported as doing so would put in legal troubles.

    And the desktop is a big trouble. I think it was desktop what was used in Google intrusion, same for this bank intrusion. The biggest vulnerabilty of any system is the people that works on it.

  96. Badmins by Anonymous Coward · · Score: 0

    Microsoft isn't the weak link, bad admins are the weak link.

  97. Re:That's LINUX 2.6x current info. @ SECUNIA... ap by oakgrove · · Score: 1

    I know I shouldn't but it's so much fun watching him squirm.

    --
    The soylentnews experiment has been a dismal failure.
  98. Good article by clustro · · Score: 1

    I like the article.

    I agree that Windows is a major security problem, not just for end-users but the United States as a whole. Having a single dominant platform makes life much easier for hackers, since it allows them to focus their efforts much more narrowly. Switching completely over to Linux however, is not a panacea, since well just have the same problem - a single platform (yeah yeah, there are lots of distributions of Linux, but its Linux ffs). I completely disagree with Clarke's call for monitoring of net traffic for "malware", since I don't trust the federal government to define "malware" in the way a normal person would. Even if he is sincere in his claim that this monitoring would help, it would eventually devolve into an end-run around the 4th Amendment.

    A better plan is to let the free market take its course, allowing a spectrum of operating systems to appear. Obviously, it will take a while since MS is so dominant, and people are generally scared of trying new things (like Linux), but eventually consumers will figure out that Microsoft's stuff is lower in quality-per-cost compared to other alternatives, and switch over.

    As an aside, has anyone seen the prices on Microsoft's Office 2007 stuff? They were selling it for like, $400 at Office Depot a few days ago. And OpenOffice is free and has ~95% of the functionality o_O. I can only imagine how much money my local government (school board, etc.) would save by switching over to open-source programs.

  99. News at 11 by omni123 · · Score: 1

    White House advisor states a piece of software installed on almost every government desktop is a possible target for cyber war.

    Can we start moderating submissions as flamebait?

  100. Re:Windows, vs. LINUX, vs. MacOS X (security vulns by fishexe · · Score: 1

    Your post may be completely right, but your haphazard punctuation and aggressive boldfacing and capitalization have dissuaded me from actually reading it.

    --
    "I don't care about the Constitution!" --Bill O'Reilly, November 17, 2009
  101. wince! by fishexe · · Score: 1

    WinCE that is used for the XBox is PPC

    That is the most aptly name Windows version ever.

    --
    "I don't care about the Constitution!" --Bill O'Reilly, November 17, 2009
  102. Re:Windows, vs. LINUX, vs. MacOS X (security vulns by rtb61 · · Score: 1

    You kind of ignore the fact that the best security exploits are the ones that have not been publicly declared. From any government's point of view when foreign powers have access to windows source and can search for exploitable faults and not declare the ones found but simply use them, it has to be a worry.

    Whilst the same can be said of Linux source code, there is nothing stopping governments from securing Linux code for the own use whilst windows is being used by other governments in an unfixable state.

    From a Linux point of view it is fairly difficult for someone to fix undeclared bugs and distribute the fixes without everyone else finding out about it and also making use of that fix. There is also nothing stopping them from finding all the bugs in windows and then using Linux to secure their own system. Especially non-US governments, as everyone knows due to lobbyists corruption and the M$ bank balance the US will continue to be forced to use it out into the foreseeable future.

    Hell, the Republicans were even going to put Steve "Uncle Fester" Ballmer in charge of US government IT and let's guess what software he would have chosen and what price the US would have paid for it, how about the pharmaceuticals no discount for the feds option full tote retail (those guys don't even try to pretend about corrupt corporate political placements).

    --
    Chaos - everything, everywhere, everywhen
  103. You're "projecting" & giving away YOUR methods by Anonymous Coward · · Score: 0

    "If you don't know what a proxy server is, you aren't qualified to even be in this conversation." - by oakgrove (845019) on Thursday June 10, @05:27PM (#32528534)

    You STILL here? Now, If you think that's some "special know-how"?? Please - all you're doing, is giving away how you yourself attempt to deceive others, and a NEWSFLASH FOR YOU:

    In fact, I'll show others how outright lame you are in this which anyone here is FREE to try (it's NOT how I "beat" the unfair "10 posts per 24 hour limit" imposed on us AC's either so you know - I have a FAR faster & more efficient way of doing it in fact, only takes me 5-7 seconds in fact)... but, anyhow?

    Well - Try to use a proxy here, especially a HIGHLY ANONYMOUS one... lol, see how far that gets you!

    (As an aside: I'll give the /. people 1 thing: They've "countered" for that PUNY TRICK, years ago...)

    So, please - Give us ALL a HUGE break, because I'm going to be as forthcoming as I can here: ALL YOU ARE, IS A USER (not a designer)... you're a TAKER (not a builder).

    All guys like you do, is use what people like ME, create for those like YOU, to USE... & that's that!

    (I am a multiply degreed (CSC & MIS) and many years programmer/analyst & later software engineer as to titles I hold (from roots in being a tech & later a network admin, so I KNOW that of which I speak, first hand in fact, because I was at "your level" many MANY years ago - it was the main "WHY" of why I moved onto the "ultimate evolution" of the computer person as a programmer - we create, others use... it was put that way to ME years ago by a then superior of mine is why, & it made sense and I took it to heart... albeit, I did something about it, & became a creator & designer, instead of a merely a "user"...)).

    ---

    "So, uh, some people started a web site and said some stuff." - by oakgrove (845019) on Thursday June 10, @05:27PM (#32528534)

    Yea, they did, & they're pretty known + respected... but, I'll let YOU take a read about it:

    ---

    Six More Tech Cults:

    http://hardware.slashdot.org/story/10/06/07/1518216/Six-More-Tech-Cults

    "Pity the fool who wanders blithely into a discussion and says, "What's the big deal with Linux? Windows works just fine." His online remains will later be hauled away in Chinese takeout boxes."

    Tech cult No. 1: The Slashdot Samurai
    Established: 1997
    Gathering of the tribes: /. (Where else?)
    Major deities: Linus Torvalds, Neil Gaiman

    ---

    Trouble is, as you can see with my post going from +1 INFORMATIVE, to +2 INTERESTING, & now down to 0 (but with the "good ratings upwards" still in place in INFORMATIVE for now @ least while I post this?) Those same "/. samurai" have to resort to what I call their "last weapon" in the effete & unjustified "mod down" (as usual with my posts like these)... they only prove this point for me, everytime, lol!

    In fact? I've yet to have one of you "wannabe slashdot samurai" ever get the better of me on technical issues here... but, then again?? The BULK of you are nothing more than users as I stated above... period!

    (I.E.? You're NOT EVEN REMOTELY IN THE SAME LEAGUE! People like you, are like musicians that use TABLETURE... & that's about it, but you certainly do NOT "read music"... you only play "by rote" @ most/best!)

    You may not LIKE that, but when it was put MY WAY, back in 1991 or so? I took it to heart & did something about it (it's called education).

    ---

    "This is fallacious for several reasons, among them, 7 uses virtually the same kernel as Vista so why didn't he include the Vista number?" - by oakgrove (845019) on Thursday June 10, @05:27PM (#32528534)

    How WEAK: The SAME CAN BE SAID FOR LINUX KERNELS... & your LAT

  104. You avoid answering a question (U.R. Squirming) by Anonymous Coward · · Score: 0

    "I know I shouldn't but it's so much fun watching him squirm" - by oakgrove (845019) on Thursday June 10, @06:09PM (#32529070)

    LMAO: You avoided my question on Linux's security vulnerabilities, all 11 of them, & in the LINUX kernel/core ONLY... not even counting those present in KDE or Gnome which would COMPOUND and escalate that number no less (whereas both Windows 7 &/or MacOS X are judged, in their ENTIRETY, not just their kernels & they have less security vulnerabilities than LINUX does mind you)...

    So, in regards to the 11 sec vulns in Linux, again a question:

    Are they as easily worked around & as effectively as the 2 low threat rated sec vulns on Windows 7 are?

    (You'll avoid answering that, yet again, as per usual... In doing so? Well, you've shown us ALL, that if ANYONE here is "squirming"boy? LMAO - it's QUITE CLEARLY YOU!)

    APK

    P.S.=> Yes, as per usual for me? Well, so much for these "wannabe /. 'samurai'" lol... It's just "too, Too, TOO EASY" for me, too easy... apk

  105. Ah yes, the "inevitable writing critique" by Anonymous Coward · · Score: 0

    "Your post may be completely right, but your haphazard punctuation and aggressive boldfacing and capitalization have dissuaded me from actually reading it." - by fishexe (168879) on Thursday June 10, @08:10PM (#32530348) Homepage

    Oh, I am on the technicals of this... & as to your "reading issues"? Others don't have them - see below (a quoted testimonial to that effect no less by others here, so "opinions vary").

    So, as to your reading hassles? Well - I suppose I should suggest "hooked on phonics" or remedial reading classes for you, because others here made statements of this nature regarding my original posting, which I will requote for you here now:

    ---

    "Most intelligent and objective post I've ever seen on Slashdot about Windows." - by AthleteMusicianNerd (1633805) on Thursday June 10, @12:18PM (#32524584)

    ---

    Again - clearly vs. your opinion? Well, opinions here vary!

    However, you're obviously another "troll", and before you try that on me? Is there a "grammar/spelling/writing style section" of this forums? Is this it?? No to both, and thus, you are BLATANTLY OFF TOPIC... for starters!

    However, my fav. reply to those like you is this:

    Is this my last will & testament or other form of legal documentation? No. Is this a paper in an english class for a grade?? No. Do you possess a PHD in English to your name that establishes YOU as some "authority" on how to write even (not that it matters here, it's only a tech forums)?? No I wager.

    So much for that "trollish tactic"... it's worthless, & easy to blow away, everytime (w/ my "std. reply" above to you writing critique slinging trolls who obviously cannot read, nor are you PHD's in English either, lol!)

    APK

    P.S.=> I gotta say it, as usual: "too, Too, TOO EASY"... (just too easy)... apk

  106. Re:Post data isn't false, it's SECUNIA.COM data, a by Anonymous Coward · · Score: 0

    Shut the fuck up, you stupid nigger.

  107. Boy, you got "shot down", lol... apk by Anonymous Coward · · Score: 0

    http://it.slashdot.org/comments.pl?sid=1681772&cid=32527684

    LOL, hilarious... he took you to "the cleaners", with ease!

    APK

    P.S.=> This is "classic":

    "Yes, for the most part the same can be said" - by quickOnTheUptake (1450889) on Thursday June 10, @03:53PM (#32527180)

    LOL, but "ALL != FOR THE MOST PART", now does it? No, it does not... especially this "closing note" (of your doom):

    "The rest are classified as "not critical" because they only involve a local DoS" - by quickOnTheUptake (1450889) on Thursday June 10, @03:53PM (#32527180)

    Yup, they're STILL THERE, and unpatched and not work-around'able either... &, if you *THINK* that a local DOS is not serious? Then I suggest you look at what happened with GOOGLE and how they suspected what "went down" in CHINA was partially an "inside job"... because an attack IS AN ATTACK and a security vuln is a security vuln (period), end of story! As usual? Too easy... apk

  108. Weak link? Maybe it's a LINCHPIN. by Anonymous Coward · · Score: 0

    I personally feel that this kind of information is a smokescreen for the fact that part of the reason why Microsoft isn't being just pushed around by the government to improve its product and that they are also avoiding it at the same time when they can is because they have enough people there who can at the ping of some bits, turn every MS-equipped computer in the world into their hostages. It's entirely plausible that they're using MS-based PCs used by foreign governments for SIGINT.

  109. You obviously do NOT code (Open SORES, vs. closed) by Anonymous Coward · · Score: 0

    "You kind of ignore the fact that the best security exploits are the ones that have not been publicly declared." - by rtb61 (674572) on Thursday June 10, @10:57PM (#32531330) Homepage

    You mean like the ones I could have gathered & put up about Linux that are in KDE or Gnome (or even tty terms like BA$H) that would have made the 11 kernel/core levels security vulnerabilities only go up even more (even though BOTH Windows 7 &/or MacOS X are judged with their window managers, GUI shells, & commandline charactermode tty term consoles also & more)b>?

    I felt I was UNFAIR to both Windows 7 &/or MacOS X in that regards actually, & cutting Linux a "break" in fact, by my omitting what would have made those security vulnerabilities numbers go UP on Linux!

    (However, you are correct: The MOST dangerous ones are the ones NOT known publicly... but, how am I supposed to know what those are? How are YOU supposed to know what those are as well?? Therein "lies the rub"...)

    ---

    "Whilst the same can be said of Linux source code, there is nothing stopping governments from securing Linux code for the own use whilst windows is being used by other governments in an unfixable state." - by rtb61 (674572) on Thursday June 10, @10:57PM (#32531330) Homepage

    This is how I know I am only speaking, @ best/most, to "techies" only here, because IF you were a coder (especially one that KNOWS how to ID bad coding practices like SQL parms in URLs during queries, vs. using stored procs, OR, sscanf (C instruction that's HUGELY faulty & "buffer overflowable", & what's LINUX largely written in @ THE CORE/KERNEL? Ah, yes... C!))?

    You'd realize that FINDING SECURITY HOLES IN "OPEN SORES" CODE IS FAR, FAR SIMPLER & FASTER TO DO ON OPEN SOURCE CODE, THAN IT IS TRYING TO FIND THE SAME ON CLOSED SOURCE CODE USING A DEBUGGER/DISASSEMBLER or FUZZERS!

    (By far)

    APK

  110. And by mahadiga · · Score: 1

    Impose tax on 'idle' cash reserves.

    --
    I'd like to buy homeland for our 10 million people. http://twitter.com/mahadiga
  111. Slashdot math, lol, & more... by Anonymous Coward · · Score: 0

    "Thats some great spiel" - by Simmeh (1320813) on Thursday June 10, @12:30PM (#32524734)

    Thanks, & you'll love the "/. math" now too, lmao... they seem to think that Linux having 11 known unpatched security vulnerabilities is BETTER THAN MacOS X with only 8, & Windows 7 with only 2 (easily patched by a user too with decent directions on how to if need be @ MS no less)... lmao!

    (Mathematics: The "Strong Suit" of the "/. samurai", lol... NOT!)

    See, last time I CHECKED? Well... 11 known vulnerabilities that aren't patched > 8 known vulnerabilities that aren't patched > 2 known vulnerabilities that ARE PATCHED no less... !

    (By the way, I really AM laughing as I do the "lol's" above - because the math & others as well here seem to go "my way" on this... alas, lmao, "much to the dismay" of "/. samurai" all over... lmao!)

    ---

    "I think the point is Windows has a much bigger marketshare and a greater percentage of unpatched machines, particularly in regards to 3rd party apps." - by Simmeh (1320813) on Thursday June 10, @12:30PM (#32524734)

    Hence why I wrote the security guide for Windows I was paid for no less (won a contest I had NO IDEA was going on in fact, was hilarious...), it's noted in that post, and I hope others use its points (in FULL if possible, because it actually works (you have to do more than patch though. "Perfection is not a road, it's a desintation" & part of its "user behavior modification" really...)).

    Beem doing them since 1997-1998 in fact, all over forums, because it's the right thing to do & it's not hard to do either once you are turned on to a few tricks really... A "system of thought" & really, tricks & easy ones (really is ALL THEY ARE, because MS was smart enough to make their OS & other wares flexible & range reparameterizable).

    ----

    "Hence, the security record for Microsoft portraying itself as a greater danger in this so called "cyber war"." - by Simmeh (1320813) on Thursday June 10, @12:30PM (#32524734)

    Heh, actually, it's ANYONE"S FAULT that doesn't look into securing their OWN systems/networks I feel...

    I.E.-> The users, in my estimation.

    However, were I M$?

    I'd ship systems such as those the US Military receives from MS (2004 & another later one, iirc, circa 2007?) that IS "security-hardened" with all "risky business" turned off... then, if the user/licensor of said OS or ware wants to do the "risky behavior"? Then, the liability is on them, but they CAN turn on, whatever it is they need to turn on (risky or not, let's use JAVASCRIPT as an example I suppose, then, you get my point!)

    ----

    "As an aside, 2.6 came out in 2003 wheras Windows 7 came out in 2009. By comparing "latest/greatest" your misrepresenting the userbase pool in the real world, which is what counts. Also, by implying the number would be greater once you include KDE/FF etc. you must concede that if you were to do the same for Windows and include all popular apps the number would be substantial." - by Simmeh (1320813) on Thursday June 10, @12:30PM (#32524734)

    The latest LINUX core is that though, 2.6x version based... yes? Answer = yes! Plus, that's the data I used from SECUNIA.COM, a respected site for security vulnerabilities oriented information, & quite respected & it's valid (AND, only LINUX in its kernel is being shown with 11 holes, again, which mind you is NOT "the OS entire" (KDE &/or Gnome would make that 11 grow more, as some examples thereof), and it still shows more unpatched issues than both MacOS X &/or Win7)...

    Windows 7? Hey - come right down to it?? It's only really Windows 2000 codebased mostly, which grew into XP, then Server 2003 (& it's 2 descendants in the workstation/pro class, VISTA + Win7). There's new API calls (lots actually) in the "latest/greatest" that have a lot of security-oriented tokens based

  112. You've been "aTtAcKeD" by the /. samurai by Anonymous Coward · · Score: 0

    LMAO, and do you want to know @ least, why? Well, because you TOLD THE TRUTH & HOW IT REALLY IS man...

    (Are you laughing as hard as I am now? LOL! I hope so...)

    APK

    P.S.=> I mean, anyone is free to verify the #'s I used from a respected security vulnerabilities clearinghouse data in SECUNIA.COM, & on OS' in their MOST CURRENT VERSIONS BUILDS (not betas, solid cores) & what did the #'s say? Well, last time I checked @ least?? LOL, "read 'em & weep" to your naysayers, because 11 unpatched known security vulnerabilities on LINUX (kernel/core ONLY, not the rest of it that both MacOS X &/or Windows 7 do mind you)??? Man, last time I checked 11 > 8 on MacOS X > 2 on Windows 7 (which might as well be ZERO/0, because their workarounds which are easy, DO work!)... nuff said! I am laughing as I go to sleep while posting this, I hope you are also!

    Personally, I look @ it this way: The /. editors/owners probably LOVE me, lol, because I just "stir up the sauce" with my formerly "Secret Ingredient" TRUTH (Which the "/. samurai" here, per INFOWORLD this week calling them somekind of cult, lol? They can't take it... now you too know the "secret ingredient" here and when you use it? Frying up some "/. samurai" (lol) here is just "too, Too, TOO EASY" (especially when you get them foaming @ the mouth rabid dog like and tossing names... hilarious!))... apk

  113. Ah... another ad hominem attack, lmao... by Anonymous Coward · · Score: 0

    "Shut the fuck up, you stupid nigger." - by Anonymous Coward on Friday June 11, @12:30AM (#32531822)

    There you have it folks (per my subject-line above): /. samurai LIVE... absolutely live!

    LMAO... you've set a NEW ALL_TIME "LOW", in your now being reduced to well, let's see:

    ---

    1.) Profanities

    2.) Racial slurs

    3.) Ad hominem attacks

    ---

    (Keep it up: You can't PAY for this kind of entertainment (& yes, "THAT'S RIGHT FOLKS" as again: It's "LIVE" on "/. T.V.", absolutely "live" (... lol!))

    APK

    P.S.=> Do us a favor though first, please (out of respect for your fellow trolls @ least): Wipe the foam & spittle off your lips before spraying us again, ok? How's that treatin' you so far?? LOL, "inquiring minds want to know"... (NOT)... apk

  114. STALE DATA & WRONG OS BY YOU? LMAO! by Anonymous Coward · · Score: 0

    "as Flash vuln fells Vista "? Posted in Operating Systems, 29th March 2008 21:27 GMT??

    A little old, and in case you hadn't noticed? We're talking STRICTLY about current builds of Windows 7 (not VISTA), MacOS X, & yes, LINUX (only it's core, & it shows more security vulnerabilities than both MacOS X &/or Win7 do in their current builds, period - do the math, 2 patched via workarounds FULLY no less & easily in Win7 we're talking about Windows 7 here (NOT VISTA), and FLASH? No thanks!

    I recommend against using it in the guides I wrote to secure Windows (in all of its 32-bit forms in fact, since 64 bit for FLASH doesn't work anyhow in Windows 7 in IE, FireFox, Opera etc. afaik either (which is part of why I use Win7, plus ASRL & more that is better than all of its forebears, especially in 64 bit for security mostly)).

    "Why don't we just compare apples to apples and see what the results are when Windows goes head to head against the most popular Linux distro with some of the best hackers in the world trying to break in.by oakgrove (845019) on Thursday June 10, @02:43PM (#32526252)

    LMAO: Well, when you can realize that VISTA is NOT Windows 7? Yea, ok, "sure"... lol, see the above (rinse, lather, & repeat)... drink it in, & digest it! Consider it "food for thought", lol!

    APK

    P.S.=> THis guy can't even get the version of Windows I used right, & is telling ME to "compare apples to apples"?

    (Please!)

    Now - Were I to do that?

    LINUX would have all the KDE &/or Gnome issues added to its already greater security vulnerabilities counts, since both Win7 &/or MacOS X are judged on their GUI shells, commandline interpreter tty terminal consoles in character mode and more? I am also being MORE THAN FAIR to Linux actually...

    (& last time I checked? 2 solid effectively worked around essentially patched errors in Windows 7 is less than 11 unpatched in an OS core alone (minus other componentry others use while they utilize LINUX which I cover above which Win7 + MacOS X are judged upon & still show less problems in security than LINUX does))... apk

  115. Re:Post data isn't false, it's SECUNIA.COM data, a by Lundse · · Score: 1

    You're RIGHT - so, IF I was to add on the KNOWN SECURITY VULNERABILITIES in the remaining parts of LINUX not noted (such as KDE or GNOME, or even BA$H, to name only a FEW parts omitted in my fair analysis of the LINUX KERNEL/CORE ONLY mind you, vs. the rest of it that folks use regularly/usually, which DO GET ANALYZED IN WINDOWS 7 &/or MacOS X?)?

    You'd see more than the 11 security vulnerabilities in Linux... my guess? Far more.

    So all the stats you quoted do not really matter, and we are down to your guesswork...

    Not impressive.

    --
    IAIFARSIJDPOOTV - I Am In Fact A Reality Star; I Just Don't Play One On TV
  116. I made that SAME point here on "Open Sores" by Anonymous Coward · · Score: 0

    "If the source is available it is for the good and the bad guys. It the source isnt available and is protected by licenses, patents and so on, debugging, analyzing, reverse engineering,getting in black market portions and so on is not available for the good guys... but still is for the bad ones. That could make the problem far worse... could be a lot of exploits to vulnerabilities that could not be announced nor reported as doing so would put in legal troubles." - by gmuslera (3436) on Thursday June 10, @05:48PM (#32528792) Homepage

    http://slashdot.org/comments.pl?sid=1681772&cid=32531912

    See there, and you'll see that you see "Open Sores" as I do (even though I help projects of that nature, as I did others in the "freeware/shareware" circuit before that, such as UltraDefrag 64 here lately, here with ideas/approaches -> http://sourceforge.net/projects/ultradefrag/forums/forum/709672/topic/3369133 and here with code before that -> http://sourceforge.net/projects/ultradefrag/forums/forum/709672/topic/3690136 & more there (when I have FREE time that is, usually I don't or at least as much as I'd like perhaps)).

    APK

    P.S.=>

    "And the desktop is a big trouble. I think it was desktop what was used in Google intrusion, same for this bank intrusion. The biggest vulnerabilty of any system is the people that works on it." - by gmuslera (3436) on Thursday June 10, @05:48PM (#32528792) Homepage

    Right, & iirc, GOOGLE also suspected it was an "inside job", @ least in PART, also... and there's NO BIGGER "inside job" imo as a developer, than having open sores code, in actual code, because it's FAR EASIER to exploit (e.g.-> it's much easier & faster to look for things like, say, the sscanf instruction in C code (known to be buffer overflowable) using an editor like notepad.exe even, so you can exploit it, than it is going after closed source code using debuggers/disassemblers OR fuzzers to do the same thing (look for exploits to take advantage of))... apk

  117. You're covered what I did here last week (see URL) by Anonymous Coward · · Score: 0

    "Your assumption is that publicly acknowledged vulnerability count is an accurate indication of software quality" - by pikine (771084) on Thursday June 10, @03:15PM (#32526702)

    No, that's not what I said... I only pointed out that there are MORE KNOWN security vulnerabilities in Linux (and even MacOS X, though not as many as LINUX has in its CORE/KERNEL ONLY (which is unfair to MacOS X &/or Windows, because they are judged in their entirety/all their parts people use, not just a kernel only)) is all.

    IF the bug is known that is, because that's all that is shown @ SECUNIA.COM, my source, that's all... and besides: How on earth would one know of an UNKNOWN error, unless you discover it yourself first?

    ---

    "but this assumption is flawed." - by pikine (771084) on Thursday June 10, @03:15PM (#32526702)

    Is it? Secondly, You're only covering ground here that I did here last week (and MANY times before it, regarding Open SORES vs. closed source code... see below in fact for proof thereof).

    ---

    "First, the software could have bug, but nobody knows about it because nobody looked for it nor observed it. You always have bugs that are unobserved.

    Again, tell me something I don't know or that I have not noted here before you have, again, see below...

    ---

    "Even when the vendor has perfect knowledge of how many bugs they have in the software, their willingness to disclose it for public acknowledgement determines how many vulnerabilities are counted on Secunia." - by pikine (771084) on Thursday June 10, @03:15PM (#32526702)

    Uhm, WHY do you think I used the EXPLICIT TERM "KNOWN VULNERABLITIES" all throughout this exchange?

    (It was because I am FULLY AWARE that there are more expoits possible (such as those that actually ADD TO LINUX 2.6x's CORE/KERNEL ONLY LIST OF 11 KNOWN ONES, which adding on the security vulnerablities in KDE or Gnome (or BA$H even) would add to & compound even more... my not adding those essentially also makes them "unknown" here, but they DO exist nevertheless))

    Problem is, it's FAR EASIER to find them in "Open Sores" code than it is in a closed source system, because it's more time consuming and yes, difficult, to look for such exploits in closed source code like Windows or MacOS X using debuggers/disassemblers &/or fuzzers than it is with actual sourcecode which Open SORES gives the "bad guys" (because finding a potentially faulty instruction in C, which LINUX is largely written in (especially at kernel levels) such as sscanf which is buffer overflow exploitable no less, is much simpler & faster to do, when someone knows what to look for and they can actually code (hopefully well too))

    Fact is, I went over this VERY POINT, with SanityInAnarchy last week & the week before it as well (on how it is easier to spot bugs in "Open Sores" code than it is using disassemblers & debuggers -> http://news.slashdot.org/comments.pl?sid=1670694&cid=32416552 )

    ---

    "Secunia shows bugs that are reported to the public, and by definition, all bugs in open source software are public information." - by pikine (771084) on Thursday June 10, @03:15PM (#32526702)

    This might help explain WHY Linux has the MOST KNOWN security vulnerabilities, per what I noted above (see last paragraph of this reply, because that "open sores sword", cuts BOTH ways)...

    ---

    "The vulnerability count for Linux enjoys the most accurate disclosure." - by pikine (771084) on Thursday June 10, @03:15PM (#32526702)

    Not really. If you look at HOW & WHAT is being checked on @ SECUNIA? It's ONLY the "Linux core" (kernel only with 11 known security vulnerabilities). Now, most anyone I know that uses LINUX for a desktop also uses either (u

  118. Putting words in my mouth I never said? Please by Anonymous Coward · · Score: 0

    "So all the stats you quoted do not really matter, and we are down to your guesswork..." - by Lundse (1036754)
    on Friday June 11, @04:02AM (#32532690)

    WTF? No, I merely showed that if one was to analyze LINUX, say any distro, with ALL OF ITS "moving parts included" such as desktop environs like KDE or Gnome? You'd see MORE than 11 security vulnerabilities in LINUX in its entirety (not just its kernel), which mind you, both MacOS X &/or Windows 7 DO HAVE THEIR ENTIRETY EXAMINED & exposed in vulnerabilities counts at SECUNIA.COM (my source I used).

    Fact is, I am actually being UNFAIR to both Windows 7 &/or MacOS X, by citing ALL of their errors really, because all you have for the 11 security vulnerabilities in LINUX is ones from its kernel/core ONLY being shown from secunia by myself... which is still more than Windows 7 &/or MacOS X PUT TOGETHER no less & they again, are judged in their entirety (whereas LINUX 2.6x is only showing the parts that are erroneous from its core/kernel only (and a kernel alone, "doth not an OS make", especially as far as users are concerned usually))

    ---

    "Not impressive." - by Lundse (1036754) on Friday June 11, @04:02AM (#32532690)

    No... what's "not impressive" is you trying to "put words in my mouth" I never said...

    APK

  119. you missed the point by pikine · · Score: 1

    Two points to be made, one towards the original article, and one towards you and open source in general.

    First point, the bad guys know more about Windows vulnerabilities than you and Secunia, possibly even more than Microsoft if they already found a way into their corporate repository and stole the source code. After all, Google is fairly security conscious, and even they suffered a breach. You don't know if Microsoft is similarly breached because they wouldn't admit it. You and everyone else lose if you use Windows, both short run and long run. If anyone gains, it is either Microsoft in the short run, or the bad guys in the long run.

    Second point, in the case of open sources (e.g. Linux, *BSD, parts of Mac OS X, which you unkindly call open sores for no conceivable reason except to provoke nuisance), everyone has an equal opportunity to audit the code to find bugs and discover vulnerabilities. If you have the skill and the will of charity, your effort can benefit everyone. Linux users may appear to suffer more bugs right now, but as bugs get fixed, everyone wins in the long run—even you if at some point you decide that Linux suits your needs—all but except the bad guys. It looks like there is enough people to improve Linux right now, so that when the rainy day comes, you'll get an umbrella despite your antagonist attitude all along.

    If I were the bad guys, I'd steal Windows source code and build up a list of exploitable vulnerabilities in secret. Then on the day I want to cause cyber warfare, I would unleash one exploit every month since I know Microsoft can't release patch faster than a monthly cycle. If I were to continue devastating the economy for 2 years, which is a long time for an economy to suffer permanent damage, I only need 24 exploits, which is not that many.

    --
    I once had a signature.
  120. Habeas Corpus anyone? by Anonymous Coward · · Score: 0

    "The absence of better evidence does not make your "evidence" better" - by Lundse (1036754) on Friday June 11, @04:05AM (#32532708)

    Ever heard the term above? It seems to work in courts of law or any efforts where proofs & having them is better than NONE AT ALL (any science demands it in fact). You have none.

    APK

    P.S.=>

    "Or less skewed. And does not excuse comparing a 2003 kernel to a 2009 OS and going "I bet there are even more stuff wrong with all the 1000+ distros running the kernel"." - by Lundse (1036754) on Friday June 11, @04:05AM (#32532708)

    Ah, once more, so it HOPEFULLY "sinks in" to you:

    Show me more current data on Linux's 2.6xx series FINAL BUILD kernels/cores then!

    I'd like to see them!

    (Additionally, then also toss on the security vulnerabilities present in Linux's GUI shells like KDE/Gnome or even tty terms like BA$H too (watch those 11 known security vulnerabilities go "up, Up, UP & AWAY" lol, even more, on LINUX)

    Heh, especially vs. both MacOS X &/or Windows 7 (which has solid effective & EASY workarounds to its 2 last known vulns shown @ SECUNIA, a respected site for that kind of data no less, & those workarounds work... are all the 11 in LINUX's core alone patchable thus?)!

    MacOS X & Windows 7? Mind you, again, they ARE judged @ SECUNIA, in their entirety (not just core/kernel as Linux is) and they have less known problems than LINUX does, period (show us different in a finalized build of Linux, I'd actually like to see it from a valid & respected source actually)

    Additionally?? Windows 7 &/or MacOS X? Those are CURRENT BUILDS (& finals of BOTH OS!)...

    As to "shouting"? I am not shouting, I am writing & I use caps to emphasize points is all... is this what you are left with? Off topic trollish "writing style critiques"?? Apparently so.

    QUESTION: Is this a forums on writing style? Does such as section exist here?? No, you are off topic now also because of that "tactic" being the "best you have @ this point" apparently... apk

  121. 11 vuln on LINUX 8 on MacOS X 2 on Win7 by Anonymous Coward · · Score: 0

    See subject line above, and do the math... & then? Then tell us I "missed the point here"... lol, especially considering that's only LINUX's CORE/KERNEL with 11 known security vulnerabities that are unpatched (and that's ONLY its core, not the desktop shells like KDE or Gnome or even tty terms shells like BA$H too, ... whereas Windows 7 & MacOS X are judged with those things in place and counted!)

    Plus, Windows 7? It only has 2 sec vulns and they have easy to implement effective workarounds until a final patch is issued!

    Give us a break already - show us more current pertinent data on a FINAL core kernel build of linux then, and also show it can be as effectively and easily end user patched (work arounds) as Windows 7 is then... ok?

    (Why do I get the feeling I will be waiting for THAT much, until "the 12th of never"? Perhaps because if you could have done so with that data, and yes I WOULD like to see it actually?? You'd have done so by now, and you have not!)

    ---

    "Second point, in the case of open sources (e.g. Linux, *BSD, parts of Mac OS X, which you unkindly call open sores for no conceivable reason except to provoke nuisance), everyone has an equal opportunity to audit the code to find bugs and discover vulnerabilities" - by pikine (771084) on Friday June 11, @12:02PM (#32536578)

    Which again for the 10th time here this week, can WORK AGAINST OPEN SORES TOO, because (& I know this from extensive professional experience here) using a debugger/disassembler or fuzzer vs. closed source code is a PAIN and time consuming as hell... wherease by way of conmparison? A malware maker/hacker-cracker with Open SORES code can look for things like SQL paramters passing in URL's (vs. using stored procs the safer way) or sscanf type buffer overflowable C instructions (and what's Linux's core written in? C largely!)...

    ---

    "First point, the bad guys know more about Windows vulnerabilities than you and Secunia, possibly even more than Microsoft if they already found a way into their corporate repository and stole the source code." - by pikine (771084) on Friday June 11, @12:02PM (#32536578)

    Do they? I don't think you know what levels of things I have accomplished over time in this field in the way of professional experience, degrees, & accomplishments... don't make that kind of jump until you are SURE of whom you are speaking with. Here is a SMALL sampling of that, a very partial list only, to my credit there in the art & sciences of computing:

    "My Name is Ozymandias: King of Kings - Look upon my works, ye mighty, & DESPAIR..."

    ----

    Windows NT Magazine (now Windows IT Pro) April 1997 "BACK OFFICE PERFORMANCE" issue, page 61

    (&, for work done for EEC Systems/SuperSpeed.com on PAID CONTRACT (writing portions of their SuperCache program increasing its performance by up to 40% via my work) albeit, for their SuperDisk & HOW TO APPLY IT, took them to a finalist position @ MS Tech Ed, two years in a row 2000-2002, in its HARDEST CATEGORY: SQLServer Performance Enhancement).

    WINDOWS MAGAZINE, 1997, "Top Freeware & Shareware of the Year" issue page 210, #1/first entry in fact (my work is there)

    PC-WELT FEB 1998 - page 84, again, my work is featured there

    WINDOWS MAGAZINE, WINTER 1998 - page 92, insert section, MUST HAVE WARES, my work is again, there

    PC-WELT FEB 1999 - page 83, again, my work is featured there

    CHIP Magazine 7/99 - page 100, my work is there

    GERMAN PC BOOK, Data Becker publisher "PC Aufrusten und Repairen" 2000, where my work is contained in it

    HOT SHAREWARE Numero 46 issue, pg. 54 (PC ware mag from Spain), 2001 my work is there, first one featured, yet again!

    Also, a British PC Mag in 2002 for many utilities I wrote, saw it @ BORDERS BOOKS but didn't buy it... by that point, I had moved onto other areas in thi

  122. Why are you avoiding his question? by Anonymous Coward · · Score: 0

    See the start of his last posting and answer his question and show you can work around secure the 11 issues in Linux as he can with the 2 remaining low threat level rating in 2 security vulnerabilities Windows 7 has. He's stated what are effective and known work arounds that actually do work for a user of Windows 7. Can't you do the same on Linux 2.6xxx (core only, not the entire OS as he noted, which with KDE or Gnome security vulnerabilities would go up past 11 in the kernel alone which he is correct about as well I feel) and its 11 known kernel security issues? He puts up his answers in seconds. His detractpors here take days to do so and I, along with others here, are gravitating his direction rather than yours and your fellow registered penguins with your name calling and more but not answering questions on your part is poor.

  123. ad hominem there doc? by Anonymous Coward · · Score: 0

    Is that the best you can do doc, calling others names? Apparently so.That's what is called an ad hominem attack and quite invalid in debate. You've proven yourself to be nothing more than a name calling stooge. How do you like it being done to you? It's no one's fault but your own because you only provide the ammo to call you nothing more than the name calling online useless trash you are.

    1. Re:ad hominem there doc? by Anonymous Coward · · Score: 0

      get a real life

  124. Others here disagree by Anonymous Coward · · Score: 0

    http://slashdot.org/comments.pl?sid=1681772&cid=32524584 ,versus your obvious and poorly veiled trolling.

  125. erroneus the big mouth ran? by Anonymous Coward · · Score: 0

    http://slashdot.org/comments.pl?sid=1681772&cid=32526814 and you're running and unable to back up your bluster erroneus whereas your opponent here didn't and can back up what he stated. You chose your name well, it fits you and your erroneous bullshit. Why'd you run from answering the questions that made you look like the under qualified loud mouth and numb skull you are erroneus? Maybe because you have not done 1 tenth of what he had and you shot your big mouth off without being able to back up your crap with proofs of your statements? Obviously that's the case here. It is funny as anything seeing your mouth shut so easily.

    1. Re:erroneus the big mouth ran? by erroneus · · Score: 1

      Who ran anywhere? I don't and can't spend all day reading and writing slashdot. I have a life and a job. And it's a private life and a private job. I'm not stupid enough to reveal myself to others... how many slashdot stories have there been posted about lives and careers screwed up because their online activities were connected with their work and private lives? I don't play that -- I know better.

      The previous responder reveals himself as an accredited Windows person. I haven't checked all of the references, but it is easy to see that there's not much knowledge outside of the environment that Microsoft has provided. So yeah, if the only tools you have are Microsoft, then everything is solved with Microsoft tools and they are the best tools for the job. People with a much more rounded range of experience, however see things differently.

      Still, impressive list of references. It'd be interesting to see what would happen if he did something other than Microsoft. Most people like him are just a bit weary and afraid to go back to ground zero to learn something else. But this guy claiming to be my senior? His first published work is in the late 90's. By that time I was programming in BASIC of nearly all varieties from Microsoft's to Commodore's to Apple's to Microware's Basic09. I was programming in C for all of those environments. I was programming in Assembly language for a few of them. (well, those that were Motorola processor based which at the time was most of those on the list.) I have had experience with DEC, VAX, and AS/400 by that time and actual credentials to back up my knowledge of COBOL among other things. I was there for Windows 1.0 and above. I loved Windows95 and 98 because they were huge improvements in the way computing was done on PCs. I learned to hate Windows because of what became of it over time.

      He might be my senior in age but I seriously doubt that in experience. He's a one-trick show horse and can't speak about things that are not DOS/Windows. He's just not qualified. And if he's not qualified to speak on things non-Windows, then he's not qualified to say what is best.

  126. Ready to "eat your words"? Here we go by Anonymous Coward · · Score: 0

    "Still, impressive list of references." - by erroneus (253617) on Friday June 11, @06:46PM (#32543522) Homepage

    Thank you, for once, but that? LOL, man... that's a VERY TINY PORTION of what I have done over time in the "art & science of computing"... very partial & small actually!

    --

    "The previous responder reveals himself as an accredited Windows person." - by erroneus (253617) on Friday June 11, @06:46PM (#32543522) Homepage

    You had better learn to READ, because I have as much on the other environs as you do, but they're a waste of time imo & fading in many environs vs. client-server!

    (Especially since client server arrangements do the job as well (or BETTER really as they can support decent GUI front ends instead of greenscreens only (which yes, IBM stuff has a FANTASTIC "console mode" in greenscreen, but that's not what users want today and for decades now, but you can build PC gui fronts to that easily enough using middlewares) as midranges do on many things and for less cash outlay)

    Batch processing's where the "relative strengths" of MOST midranges like IBM System 34/36/38 (overpowered calculators imo), & their "child" in OS400 on AS400 rigs DID make an improvement, especially in batch jobs in businesses - I will give it that, but they are JUST NOT AS VERSATILE AS THE PC IS, period... (and, you KNOW it too!)

    Well, that's also assuming you're telling the truth from your end... Still a "wee bit strange" how you aren't willing to backup your mouth though, eh? Anyone can "talk a good game" though.

    --

    "I haven't checked all of the references, but it is easy to see that there's not much knowledge outside of the environment that Microsoft has provided." - by erroneus (253617) on Friday June 11, @06:46PM (#32543522) Homepage

    There is IF you read the entire thing. I didn't "get good" at this stuff on midranges/mainframes. They were what I initially learned on 1982-1987 in highschool (DEC stuff via "wargames style" modems & boot jacks) & later in College (VAX 1180, doing COBOL) & RPG know-how came later circa 1988-1991 on IBM midrange stuff (System 34/36/38 & later As400 (OS400 OS)).

    Before you MAKE ASSUMPTIONS (which you yourself gave me guff on no less)? You had best mellow out before you open your mouth man... because you're eating your words on this account now as well!

    --

    "People with a much more rounded range of experience, however see things differently." - by erroneus (253617) on Friday June 11, @06:46PM (#32543522) Homepage

    What "differently" is this? LOL, man I have literally been on EVERY type of system you noted, and then some... and I can show I did VERY WELL AT THEM ALL, & with more than MS stuff only (Borland being "big in my book" as well as IBM tools also, not just MS stuff). I'm also not "limited" as you are, apparently, to programming alone... I'm also & have been a pretty fairly "proficient" network administrator over time (you have to be as a dev too largely many times, as I am sure you know (or, do you?)).

    --

    "It'd be interesting to see what would happen if he did something other than Microsoft." - by erroneus (253617) on Friday June 11, @06:46PM (#32543522) Homepage

    I generally don't waste time with "less than the 'top dog'" anymore... I had a LOT of faith in BORLAND for instance, especially Delphi... MS did their usual, brain-drained them of talent like the likes of Delphi's maker in Mr. Anders Heijelsberg, for example & has drained the life & future out of Borland in dev. tools strength... too bad though!

    --

    "Most people like him are just a bit weary and afraid to go back to ground zero to learn something else." - by erroneus (253617) on Friday June 11, @06:46PM (#32543522) Homepage

    What "something else" would that be I wonder? I have b

    1. Re:Ready to "eat your words"? Here we go by erroneus · · Score: 1

      BTW, here's a hint -- if you want someone to know you replied to their posting, use an account and not AC. I don't get email notifications of a reply when it is from AC responders. Just get an account already.

      Also, it's clear you have a particular style and manner that involves excessive length. All of my college writing courses taught me the same thing -- if it can be said completely and accurately while also being short, that's the best way to write. You are excessively wordy and tend to lose the interest of your readers pretty early on.

      Knowing what you purport to know about Windows, how is it you manage to ignore the operational standards used by Windows versus every other advanced operating system? Frequent crashes are barely acceptable for a desktop. Not for a server and yet Microsoft saw fit to port a desktop OS into the server sphere. Now everything requires reboots for a wide variety of reasons and Microsoft technet recommends rebooting periodically "just because." I have *nix servers with uptimes measured in years of reliable service. Not saying it "can't" be done with Windows, but it is most certainly not recommended. That places Windows servers below par for quite a few operations. And of course the security model is entirely too weak... you're either administrator or your not. Most of the permissions are associated with the file system. And since device drivers are placed at the same level as the kernel, device drivers enjoy infinite freedom of infiltration and the ability to crash the entire OS. When Linux video drivers crash (and they do!) they don't take the whole machine with them. I had an NVidia proprietary driver failing on me and I had no access to video at all. I had to "ssh" into the machine to get in and fix it... the machine wasn't killed, just the display. I was able to fix the problem without rebooting. Can you say the same for Windows? Why would that be? Oh yeah... ring-0.

      We get it. You're a Windows fan... a professional even. But if you KNOW Windows, then you know its weaknesses and how it doesn't compare with other operating systems whose authors wouldn't even dream of designing an OS the way Microsoft has.

  127. Re:11 vuln on LINUX 8 on MacOS X 2 on Win7 by pikine · · Score: 1

    "But by the grace of God I am what I am: and his grace which was bestowed upon me was not in vain; but I labored more abundantly than they all: yet not I, but the grace of God which was with me."——1 Corinthians 15:10

    So you used to prosecute Christians, like apostle Paul?

    You are Alexander Peter Kowalski. You wrote a couple of niche Windows freeware using Delphi, but you have a tendency to optimize code that doesn't benefit from optimization. You also like to post the same stuff over and over again to different people you run into online. You're an interesting character, but unfortunately I can't seem to find many positive things to say about you. Sorry.

    --
    I once had a signature.
  128. Hilarious: Telling ME how to code? Please... by Anonymous Coward · · Score: 0

    "So you used to prosecute Christians, like apostle Paul?" - by pikine (771084) on Friday June 11, @09:22PM (#32545212)

    WTF? LOL, what on earth is THAT supposed to mean??

    ---

    "You are Alexander Peter Kowalski." - by pikine (771084) on Friday June 11, @09:22PM (#32545212)

    That'd be me!

    ---

    "You wrote a couple of niche Windows freeware using Delphi," - by pikine (771084) on Friday June 11, @09:22PM (#32545212)

    LOL, try like around, oh 50 or so over time since 1994 actually, in total, & iirc (been many of them now that I THINK about it, lol!)

    See - I really USED TO like doing freeware/shareware because there used to be a bit of money in the shareware end!

    (AND, it helps "keep the saw sharp" too, in practice PLUS it may or can take you to "diff. areas" of coding than say, what I usually do for a living (INFORMATION SYSTEMS CODING PRIMARILY - the "steady eddy" end where there is ALWAYS work, because no 2 corporate entities manage their info. absolutely the same, SO, it needs "custom programming" (reports, GUI fronts, entire client-server systems & FAR MORE)).

    ("Hard work is NEVER a complete waste" in other words/as the saying goes!)

    Heck - since you seem to be trying to "lessen" that small partial list of mine in my earlier posts here in response to you?

    One of those "niche Windows freewares" even led to my getting my code in a COMMERCIAL PRODUCT of "Enterprise Class" that's still sold by an MS partner in SuperSpeed.com no less, & made a nice buck off that & some measure of "notoriety"...

    So, again: Have YOU done the same, & do you possess multiple degrees around CSC, CIS, or MIS??

    (That small PARTIAL LIST OF MINE only, again? Hey - it's apparently more than YOU can show us you've done, eh??)

    ---

    "but you have a tendency to optimize code that doesn't benefit from optimization" - by pikine (771084) on Friday June 11, @09:22PM (#32545212)

    This is funny: Coming from the guy that cannot show us he's done any coding of any note @ all? Yea, "ok" (

    "You also like to post the same stuff over and over again to different people you run into online." - by pikine (771084) on Friday June 11, @09:22PM (#32545212)

    I write what works & has proven to do so for myself in debates @ least, and often I use the same tactics because they work, and they also tend to 'sieve out' the wannabes & trolls that try to attack me & such, vs. actual peers (very few of these I have met in forums over time to be blunt about it) in terms of coding or even the simpler task, network admin/tech work!

    ---

    "You're an interesting character" - by pikine (771084) on Friday June 11, @09:22PM (#32545212)

    I am just an ordinary working stiff that likes computing is all... nothing more (but I do work hard as possible, and even do "side stuff" like you noted on top of jobs (well, that is, IF the job is not "too big" & time consuming (as in "what's a 40 hour workweek?" etc.))

    ---

    "but unfortunately I can't seem to find many positive things to say about you. Sorry." - by pikine (771084) on Friday June 11, @09:22PM (#32545212)

    Likewise, especially after your & other folks' "attacks" on myself, rather than SOLELY my points (which are, of course, evidences of ad hominem attacks, which is of course, the "last resort of the fallen troll", so-to-speak!)

    APK

    P.S.=> I've noticed something in my debates with trolls here today: Most of them here? Like 99%?? Lots of talk, nothing they've ever done of note and yet they have the gall to tell ME how to code (as shown above), and yet they cannot show anything of the sort as the lists I put up to THEIR credit/name (much less degrees in this science as well, which is another thing you've avoided here, lol, also)...

    Lots of takers (but no builders). Lots of USERS (but rarely any designers). This? THIS IS SLASHDOT! apk

    1. Re:Hilarious: Telling ME how to code? Please... by pikine · · Score: 1

      You are the person who started using your credential to justify your argument, i.e. Argument from authority, therefore Argumentum Ad Hominem is all you're going to get. I, on the other hand, speak of objective arguments that don't depend on who says it. That's why I can afford to be an anonymous person, but you can't.

      Who in their right mind is going to write hand-optimized inline assembly for a CD alarm clock program that spends 99.999% the time idling, waiting for the timer to go off? You did. I think you're crazy.

      And finally, you read the bible (good for you), but you don't understand what it says.

      --
      I once had a signature.
  129. Kudos to Mr. Theo DeRaadt & crew then! by Anonymous Coward · · Score: 0

    "OpenBSD 4.4 (they are up to 4.7 now)

    http://secunia.com/advisories/product/19640/ - by Anonymous Coward on Thursday June 10, @01:50PM (#32525672)

    Per my subject-line above: Kudos/congrats to Mr. Theo DeRaadt (a man after my own heart - as he takes NO CRAP from anyone online, does a good job of things, & knows his stuff too - today's RADICALLY OVERLY "Politically Correct" world needs more folks like him online, imo @ least) & the OpenBSD dev. teams!

    (Yes - their crew over there for OpenBSD are generally "ontop of things" & BSD variants are WIDELY recognized for having the fastest & most efficient IP stack there is out there, bar none (so much so, MS "bit off their style", well, that of the BSD *NIX tree actually, & used their freely available IP stack code for Microsoft's IP stack in fact (probably same with the rest of them, but I am not 110% sure on THIS account though))).

    APK

    P.S.=> However, for the MOST part here, on the topic of security? Microsoft Windows 7 has consistently held a 0 threats rating for MOST OF THE TIME since it's been out (sure, it's had security vulnerabilities in that timeframe thusfar, but MS has been "ontop of it", issuing their monthly MS "patch tuesday" hotfixes on the 2nd Tues. of each month, and additionally doing "out-of-band" earlier updates than that, especially for IE issues, when needed (when the threat level is large enough & known exploits of said sec. vuln. are already "in-the-wild")...

    AND?

    Well, again: The 2 "remote security vulnerabilities" in Windows 7, which are BOTH rated VERY LOW THREAT LEVELS too mind you? They have valid, easily implemented, & effective work-arounds that secure them BOTH, so... essentially? Microsoft Windows 7 really IS already @ a "0 unpatched" level now, just like OpenBSD is! apk

  130. You SURE you want to take this 'train" in logic? by Anonymous Coward · · Score: 0

    "You are the person who started using your credential to justify your argument, i.e. Argument from authority, therefore Argumentum Ad Hominem is all you're going to get." - by pikine (771084)on Saturday June 12, @11:21PM (#32554306)

    You sure you want to "take this train"? Because LOGIC is something I am pretty "proficient in", & it's quite likely I will run RINGS around you in it, especially in debate... I mean, have you even TAKEN & PASSED a formally administered LOGIC course in collegiate academia? I say no, based on your argument below (because you're what I call a "forums logic" user, and using this one in "appeal to authority" as I see fools on forums twist it to their needs?? Is WRONG on your end, as you don't really understand what it means, OR how it works & what it demands). Let's follow up on that now:

    First of all, for that to be true in LOGIC??

    You have to have an INCORRECT AUTHORITY being cited... that's what "Appeal to Authority" is about in LOGIC!

    (E.G.-> Citing someone that isn't in fact, an expert, in a given area... since this one's computing? My possession of multiple degrees around it in fact DO ESTABLISH myself as "expert" in this arena... do you possess the same?? Evidently not)

    Now, by way of comparison - Do you have to your name/credit:

    **

    1.) Over 16++ yrs. of professional experience on multiple grounds (e.g.-> programming &/or network administration) as I do in this area???

    Evidently not.

    2.) Have you done work of the nature I provided in my tiny partial list only that did as well & became commercial products that are still doing well over 14++ yrs. later????

    Evidently not.

    3.) Do you in fact possess degrees in CSC &/or CIS-MIS to your name/credit????

    **

    Evidently not.

    I do, to ALL 3... & years of them.

    (Thus, I have to wonder: Who is the "correct authority" here - myself in possession of all 3 areas above, or yourself, minus them?????)

    --

    "I, on the other hand, speak of objective arguments that don't depend on who says it. That's why I can afford to be an anonymous person, but you can't." - by pikine (771084)on Saturday June 12, @11:21PM (#32554306)

    No, you just blow off my questions 1 by 1 & evade them... please note #1 thru #3 above, answer them please...

    The citing of my credentials (in part only, a small fraction of what I COULD have put up) in CSC/CIS (in part only) is merely to establish the fact that I am the "correct authority" required in a LOGICALLY BASED DEBATE, & to show (because you evade proofs of the above constantly no less to your discredit mind you) I am a "correct authority" & you are showing via your evasions of answering my simple questions here, that you are NOT a 'correct authority' apparently on the subject material @ hand here (CSC related forums section AND post topic).

    --

    "Who in their right mind is going to write hand-optimized inline assembly for a CD alarm clock program that spends 99.999% the time idling, waiting for the timer to go off? You did. I think you're crazy." - by pikine (771084)on Saturday June 12, @11:21PM (#32554306)

    I do, when it's required or makes things better, & mainly because it's mine and I want it to be done as well as is possible is all... it's called "hand craftsmenship".

    --

    "And finally, you read the bible (good for you), but you don't understand what it says." - by pikine (771084)on Saturday June 12, @11:21PM (#32554306)

    Oh, really? Do you mean the quote I cited from Corinthians?? My interpretation of that is this:

    Whatever we do in this life that is an 'achievement', we don't do "all by ourselves"... I do honestly feel that there IS a God, and he does "inspire us to greatness" @ times, & it's not just "us alone" doing it is all... which is largely what that quote from Corinthians is after all, ALL about.

    APK

  131. Re:You SURE you want to take this 'train" in logic by pikine · · Score: 1

    Evidently not.

    You have to admit, you actually have no evidence one way or another. I don't have to tell you anything about myself to win an argument.

    Whatever we do in this life that is an 'achievement', we don't do "all by ourselves"... I do honestly feel that there IS a God, and he does "inspire us to greatness" @ times, & it's not just "us alone" doing it is all... which is largely what that quote from Corinthians is after all, ALL about.

    I'm glad you at least humble yourself before God. I have the impression that you don't humble yourself before other men, so no matter what I say you won't listen. That's okay. Why don't you do a little research on your own about who wrote the books of Corinthians, and read at least Luke and Acts in entirety? That would give you enough context to understand where Paul was coming from. Then, go back to 1 Corinthians 15:9, the verse before the one you quoted. You really shouldn't take the bible out of its context. A lot of harm has been done that way.

    --
    I once had a signature.
  132. I have evidence for MYSELF, but for you? ZERO! by Anonymous Coward · · Score: 0

    "You have to admit, you actually have no evidence one way or another." - by pikine (771084) on Sunday June 13, @04:54PM (#32558774)

    For myself as to evidences of decent accomplishments, professional experience, & academic degrees over time to my name/credit? I have it by the score...

    (And, you don't, period!)

    ---

    "I don't have to tell you anything about myself to win an argument." - by pikine (771084) on Sunday June 13, @04:54PM (#32558774)

    You should provide it IF/WHEN asked (provided you have such academic degrees and years to decades of professional experience as well as decent accomplishments in them)... and, no:

    You don't have remotely anywhere NEAR the same as I do per my last statement above, apparently, & that's WHY you failed to note them (to establish yourself as my peer here and as a "correct authority", per "Appeal to Authority" in LOGIC)...

    (At this point? Hey - I'll go so far as to say you don't have any in fact, because you failed to provide a single evidence of any of the above, and you know it, and now?? So do we all reading!).

    APK

    P.S.=> As to "winning an argument"? Well...

    You still haven't shown that all of the last remaining 11 security vulnerabiilties in Linux 2.6x (kernel ONLY, mind you) are as easily patched via work arounds or full blown patches as Windows 7 is on its 2 remaining LOW "2" RATED and fully "work-around'able" effectively sec. vulns are (and Windows 7 is an ENTIRE OS, not just the core/kernel part being judged on security vulnerabilities present, as LINUX 2.6x is shown here as ONLY (core/kernel only, not also counting the sec. vulns in KDE/Gnome, BA$H, or other "moving parts" typically used in a LINUX distro by users))... apk

  133. Re:Your information is stale &/or ERRONEOUS by Anonymous Coward · · Score: 0

    Tl;DR

    Ah good old APK, spamming his incredibly long boring posts again.

    Shouldnt you be off hassling clone something or other as usual?

  134. ERRONEOUS avoiding disproving MY points? by Anonymous Coward · · Score: 0

    Avoiding disproving what was written here erroneus -> http://slashdot.org/comments.pl?sid=1681772&cid=32556164 vs. your ERRONEOUS data, & that URL completely disproves what YOU yourself wrote, erroneus?

    (Apparently so, because what you wrote IS truly ERRONEOUS, and out-of-date/stale, per the latest OS' from MS (Windows 7 being the one noted here no less), and it is, just as I said it was... stale/out-of-date & thus ERRONEOUS, on your part!)

    APK

    P.S.=> You can request others "down rate" my post, but the fact remains that what you wrote ERRONEUS, is out of date & stale, and yes, ERRONEOUS... anyone can read the URL above in this reply of mine and see that much with ease... apk

  135. Ah, yes: The std. "effete mod down" by Anonymous Coward · · Score: 0

    See subject-line above, & whoever modded my post down (this one that blew away erroneus totally on the technical points here which he royally showed his inexperience on -> http://slashdot.org/comments.pl?sid=1681772&cid=32556164 ) to try to "bury it" from the view of others?

    Heh, that mod down has only helped prove my point further... & that point?

    That point is that erroneus is indeed, ERRONEOUS, & hugely so, see the URL above (as you don't see him replying to + his outright disproving said points beyond the shadow of a doubt (for all HIS "alleged experience" which is chock full of technical errors no less) in the post parent to this one I am making).

    APK

    P.S.=> Nuff said on MY part, & erroneus' lack of reply? Says the rest & says it ALL... & as per usual for myself vs. the "cult of /." (INFOWORLD) & it's trolls here? Ah, yes -> "too, Too, TOO EASY!" (just too easy)... because if ALL YOU HAVE is "mod downs", vs. the ability to disprove the technical points I used that threw Erroneus' ERRONEOUS comments into the recycle-bin? Well... you know! apk