Slashdot Mirror


ZDNet Writer Downplays Windows 10's Phoning-Home Habits

jones_supa writes: Gordon F. Kelly of Forbes whipped up a frenzy over Windows 10 when a Voat user found out in a little experiment that the operating system phones home thousands of times a day. ZDNet's Ed Bott has written a follow-up where he points out how the experiment should not be taken too dramatically. 602 connection attempts were to 192.168.1.255 using UDP port 137, which means local NetBIOS broadcasts. Another 630 were DNS requests. Next up was 1,619 dropped connection attempts to address 94.245.121.253, which is a Microsoft Teredo server. The list goes on with NTP, random HTTP requests, and various cloud hosts which probably are reached by UWP apps. He summarizes by saying that a lot of connections are not at all about telemetry. However, what kind of telemetry and data-mined information Windows specifically sends still remains largely a mystery; hopefully curious people will do analysis on the operating system and network traffic sent by it.

264 comments

  1. Microsoft apps it! by Anonymous Coward · · Score: 1, Insightful

    The list goes on with NTP, random HTTP requests, and various cloud hosts which probably are reached by UWP apps.

    See? Microsoft knows that ONLY apps can app apps, which is why these apps are apping other apps while apping apps!

    Apps!

    1. Re:Microsoft apps it! by Killall+-9+Bash · · Score: 1

      See? ZDnet knows that only HTTP uses port 80, and HTTP traffic only flows one way.

      --
      "Prediction: within 10 years, Windows will be a Linux distribution." Me, 7-6-2016
    2. Re:Microsoft apps it! by Anonymous Coward · · Score: 0

      The TCP connection was dropped before a request body could be sent. So in this case, it flowed only one way.

  2. What about by NotInHere · · Score: 5, Informative

    Adding [forbes.com] to forbes links on the front page?

    1. Re:What about by Anonymous Coward · · Score: 1

      Comments do it. Stories should too. That's a good idea.

    2. Re: What about by jxander · · Score: 3, Funny

      Have you been to that sure recently? Conveniently forgetting to link it is an act if kindness.

      --
      This signature is false.
    3. Re: What about by jxander · · Score: 1

      Site*

      Hey new ownership ... How about a preview function for mobile.

      --
      This signature is false.
    4. Re:What about by BitZtream · · Score: 1

      Thats probably a violation of the slashdot contract with Forbes.

      Also amusing is that this article doesn't show the link next to the headline ...

      I'd blame the new owners, but this is another timothy story, so you just have to assume its because he's a fucking idiot.

      --
      Persistent Volume manager for Kubernetes - https://github.com/dwimsey/openshift-pvmanager
    5. Re: What about by Anonymous Coward · · Score: 0

      SEO purposes of course. Gotta have SEO, marketing department markets to the market.

      MARKETING!

  3. Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 4, Insightful

    I am bothered by the explicit policy of tracking everything I do within my OS. That is the real issue. That is why I am leaving Windows forever.

    1. Re:Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 2, Funny

      Bye.

    2. Re:Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      Eeh. Let's not overblow this once again. It does not track everything that you do. The telemetry means only basic things like how many times you have started specific UWP apps and so on.

    3. Re:Not only am I bothred by the phone-home, by BarbaraHudson · · Score: 5, Insightful

      And what business is of theirs what software I'm running and how often I'm using it? It's not their computer. Also, the article writer attempted to minimize the consequences by saying that you can greatly limit the amount of requests in Windows Enterprise. The majority of users are not using the Enterprise edition.

      What an obvious apologist/shill.

      --
      "Transparent" is a shit show that trades on every stereotype going. A man in drag is NOT a transsexual.
    4. Re: Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      So where is the checkbox to turn ALL telemetry OFF?

    5. Re: Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      Unfortunately, the "checkbox" is a PFSense appliance...

    6. Re:Not only am I bothred by the phone-home, by Austerity+Empowers · · Score: 2, Interesting

      Let's even assume these are benign and not conveying any big brother information at all (which I doubt). What are these things doing and why? Don't spin it, explain it.

      DNS - Well understood network fundamental (for most of us, anyway)
      NetBIOS - Well understood network fundamental (mostly)
      NTP - Well understood, totally optional

      Spurious HTTP accesses by "probably UWP apps"? That's probably not ok, more info required.
      Attempts to access a Microsoft Teredo server (and sometimes failing)? That sounds broken, turn it off.
      Various cloud hosts? That's probably not ok, more info required.

      That the machine is making unbidden accesses to the network at large without asking me is wrong (and OS X and most Linux distros do some of this too, although in the latter cast it is USUALLY to an update server, which I would approve but should have been asked first).

    7. Re:Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      And what business is of theirs what software I'm running and how often I'm using it? It's not their computer.

      You're right. It's not their computer.

      However, that "computer" doesn't compute much when it's sitting devoid of an OS, which they do own.

      Make no mistake about that pathetic license you think grants you control and ownership over your own OS. You don't own it any more than you own the software running in a car you hold the title to.

      Microsoft OS is now a piece of software sold at a price point that is heavily subsidized, which you no longer control or have a say in the pricing or licensing. That's the new law and the way of the land from now on.

    8. Re:Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      I was going to ask what you meant about linux distros doing it, but then I remembered Linux Mint and Ubuntu do that. I wasn't aware that Red Hat derivs did that, and I'm pretty sure Arch based ones don't.

    9. Re:Not only am I bothred by the phone-home, by Lunix+Nutcase · · Score: 1

      Attempts to access a Microsoft Teredo server (and sometimes failing)? That sounds broken, turn it off.

      They were failing because the person doing this test made it impossible for Windows 10 to reach it.

    10. Re:Not only am I bothred by the phone-home, by Alumoi · · Score: 1, Insightful

      Gotcha!
      The telemetry means only basic things like how many times you have started specific UWP apps, visited a specific site, emailed a specific person, listened to a specific melody, watched a specific movie and so on.
      Hey, if you've got nothing to fear you've got nothing to hide, rigt?

    11. Re:Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      You.....you...didn't read the article at all, did you.

      So disappointed...again..../sigh

    12. Re:Not only am I bothred by the phone-home, by F.Ultra · · Score: 5, Informative

      True that Ubuntu did it by default before (they have since disabled it) but you could easily disable it via the GUI settings. I disabled it and unless I actively do something with the network like surf the web with Firefox or stream music then a "sudo tcpdump -nvpi eth0" on my Ubuntu shows absolutely no connection attemps from my machine what so ever, all that I see is some other machine on the network sending broadcast ARP requests for the MAC of the defautl gateway.

      f.ultra@ubuntu:~$ sudo tcpdump -nvpi eth0
      tcpdump: listening on eth0, link-type EN10MB (Ethernet), capture size 262144 bytes
      19:49:51.946496 ARP, Ethernet (len 6), IPv4 (len 4), Request who-has 192.168.0.1 tell 192.168.0.249, length 46
      19:49:53.996275 ARP, Ethernet (len 6), IPv4 (len 4), Request who-has 192.168.0.1 tell 192.168.0.249, length 46
      19:49:56.054219 ARP, Ethernet (len 6), IPv4 (len 4), Request who-has 192.168.0.1 tell 192.168.0.249, length 46
      19:49:58.136104 ARP, Ethernet (len 6), IPv4 (len 4), Request who-has 192.168.0.1 tell 192.168.0.249, length 46
      19:50:00.221756 ARP, Ethernet (len 6), IPv4 (len 4), Request who-has 192.168.0.1 tell 192.168.0.249, length 46
      19:50:02.276667 ARP, Ethernet (len 6), IPv4 (len 4), Request who-has 192.168.0.1 tell 192.168.0.249, length 46
      19:50:04.353056 ARP, Ethernet (len 6), IPv4 (len 4), Request who-has 192.168.0.1 tell 192.168.0.249, length 46
      19:50:06.431986 ARP, Ethernet (len 6), IPv4 (len 4), Request who-has 192.168.0.1 tell 192.168.0.249, length 46
      19:50:08.520302 ARP, Ethernet (len 6), IPv4 (len 4), Request who-has 192.168.0.1 tell 192.168.0.249, length 46
      19:50:10.584220 ARP, Ethernet (len 6), IPv4 (len 4), Request who-has 192.168.0.1 tell 192.168.0.249, length 46
      19:50:12.625328 ARP, Ethernet (len 6), IPv4 (len 4), Request who-has 192.168.0.1 tell 192.168.0.249, length 46
      19:50:14.712258 ARP, Ethernet (len 6), IPv4 (len 4), Request who-has 192.168.0.1 tell 192.168.0.249, length 46
      19:50:16.782389 ARP, Ethernet (len 6), IPv4 (len 4), Request who-has 192.168.0.1 tell 192.168.0.249, length 46
      19:50:18.856272 ARP, Ethernet (len 6), IPv4 (len 4), Request who-has 192.168.0.1 tell 192.168.0.249, length 46

      And it goes on and on like that for hours, so no most Linux distros does not do some of this too.

    13. Re:Not only am I bothred by the phone-home, by bfpierce · · Score: 1

      It's their business for as long as you use the software I suppose. It's free so you're not out of any money by rolling it back.

    14. Re:Not only am I bothred by the phone-home, by Anon-Admin · · Score: 1

      Ok, so Windows == Microsoft owns the OS and can collect anything they want about you and your computer.

      Linux == Free and no one gives a shit what you run on it. It is your computer and your OS to do with as YOU see fit.

      Got it!

    15. Re:Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      Well, i am bothered by the fact that you apparently don't know the meaning of the word "explicit".

      Please, provide the "explicit" evidence that Microsoft is tracking everything every Windows 10 user does.

      The original article was a brilliant example of a little knowledge can generate a lot of FUD.

    16. Re:Not only am I bothred by the phone-home, by The-Ixian · · Score: 4, Insightful

      Yeah, and when I read about this test for the first time this was my criticism exactly.

      If you have a machine that is phoning home, you are only going to generate more connections as the software re-queues and retries the failed connections.

      If you want to do a real analysis, you would allow all the connections and count/trace those.

      To block everything and then count/trace, you are being inaccurate at best and disingenuous at worst.

      --
      My eyes reflect the stars and a smile lights up my face.
    17. Re:Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0, Troll

      You're just adding more FUD. There's no proof that Windows sends info about visiting websites, persons e-mailed, listened songs or watched movies.

    18. Re:Not only am I bothred by the phone-home, by Ravaldy · · Score: 3, Interesting

      And what business is of theirs what software I'm running and how often I'm using it?

      It is their business when their business depends on it. The common complaints users have with Windows have led them there. The large amount of hardware, software variations coupled with the different user types makes it difficult to have something universal that just works 100% of the time.

      My only beef with them is that they won't tell us what they collect and what are the triggers. I'm all for letting them grab data on my usage and the condition of my system. After all, it's in my best interest to help them improve the OS.

      MS in has recently shown interest in listening to the community and it's important we keep prying them for that information so that we can eventually feel at ease about what's happening.

    19. Re:Not only am I bothred by the phone-home, by nairnr · · Score: 2
      No only that, some requests are "Am I connected to the Internet" types which are all about determining the status of your machine rather than calling big brother to report something.

      The true measure would be to allow it and packet dump/trace it.

    20. Re: Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      There is the problem. They need to prove that they don't do things like that. I feel sorry for people who just trust them.

    21. Re:Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 1

      Since it would be different for every system, it's not as easy to just "explain it". MS has been pretty clear about their intentions and they have specifically stated they aren't collecting user data for any purpose other than to provide functionality to the user (for example, Cortana parsing email to notify user's of flight info or packages), but the conspiracy theorists can simply post a long list of IP addresses from their system and claim it as proof of spying if each individual connection isn't explained by an MS representative (in some random forum or article comments section). If there is any spin taking place, it's from all the people that claim that if a conspiracy theory can't be disproven then it must be true. It's basically the same tactic that is used to claim the Lizard people are running the earth via chemtrail mind control.

      Something as simple as clicking on a single webpage can cause a system (any system) to talk to dozens of different servers in order to resolve and download the full contents of that webpage and all of it's ads (which are probably Google ads, a company that really is trying to track everything you do as their actual business model).

      "Spurious HTTP access by UWP apps" can be fixed by uninstalling those default apps (god forbid that app downloads the latest weather data).
      The Teredo server is related to IP4/IP6 compatibility. I doubt it's "broken", but regardless it falls under basic network functionality.
      "Various cloud hosts" is basically the same as the spurious HTTP access by first party or third party apps. Those would have to be evaluated on a cases by case basis for each system which is not really feasible and opens the door for the conspiracy theorists.

      It's getting kind of old hearing people say, "I opted out of all of those 'spying' options and Windows still connected to some IP address somewhere." It's especially annoying when those IP addresses end up being DNS, NTP, Windows Update, local network traffic, or just some server that is being accessed by the user or by a program installed by the user.

    22. Re:Not only am I bothred by the phone-home, by Raenex · · Score: 1

      MS in has recently shown interest in listening to the community

      They've been paying lip service to the community for years, have taken half-hearted steps to open source, etc, but at the end of the day they always act like corporate assholes.

      it's important we keep prying them for that information so that we can eventually feel at ease about what's happening

      Or you can just not run their shit since they are such aggressive assholes.

    23. Re:Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 1

      Fair enough, but most Linux distros out of the box don't do much of anything (which is fine) and most aren't very user friendly either (relatively speaking). Linux is a fine OS for computer enthusiast that are willing to go through every configuration detail manually, but it's generally not well received by the typical user. Therefore, it makes sense that most Linux distros don't make a lot of background network connections out of the box, while more consumer oriented OSes like Windows, OSX, iOS, and Android would be more likely to have "automagic" maintenance and user features enabled. System time sync, OS updates, app updates, synching browser favorites across devices, "am I connected to the internet?" checks, error reporting, etc.

    24. Re:Not only am I bothred by the phone-home, by Alumoi · · Score: 1

      You're just adding more FUD. There's no proof that Windows sends info about visiting websites, persons e-mailed, listened songs or watched movies.

      Have you ever bother to read Microsoft privacy statement? Especially regarding Cortana or input personalization?
      Let me give you some quotes:

      "For example, to provide personalized speech recognition, we collect your voice input, as well your name and nickname, your recent calendar events and the names of the people in your appointments, and information about your contacts including names and nicknames. This additional data enables us to better recognize people and events when you dictate messages or documents.

      Additionally, your typed and handwritten words are collected to provide you a personalized user dictionary, help you type and write on your device with better character recognition, and provide you with text suggestions as you type or write. Typing data includes a sample of characters and words you type, which we scrub to remove IDs, IP addresses, and other potential identifiers. It also includes associated performance data, such as changes you manually make to text as well as words you've added to the dictionary."

      Care to provide solid evidence that when you turn this off they stop collectiing AND transmitting them?

    25. Re:Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      What color is the sky in this land of yours that you are trying to push on us?

    26. Re:Not only am I bothred by the phone-home, by WaffleMonster · · Score: 3, Insightful

      Eeh. Let's not overblow this once again. It does not track everything that you do. The telemetry means only basic things like how many times you have started specific UWP apps and so on.

      The following statement cannot be overblown: None of Microsoft's business what I do with my computer. If they refuse to respect their customers it won't be long before they have none.

    27. Re:Not only am I bothred by the phone-home, by F.Ultra · · Score: 1

      Of course you will have time syncs and os updates, but those things can hardly bee seen as unsolicited traffic like the telemetry that people are discussing. If the Windows 10 users are complaining about time syncs and os updates then they are completely crazy.

    28. Re:Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      I can't say the name here (and posting anon as some people might know), but my company (worth about 1bn USD) forbids Win10 on company-owned equipment (and non-company owned equipment on the network).

      Just sent an official memo on it earlier this week.

    29. Re:Not only am I bothred by the phone-home, by HideyoshiJP · · Score: 1

      It's free*, not free. Every new Windows PC (with some exceptions) still pays for a license. On point, it's only their business if an end-user lets it be their business. Many will; I won't.

    30. Re:Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 1

      You would think logically that it would work that way but it doesn't. Most people think "Linux is a pain in the ass, and I'm not doing anything wrong so let Microsoft collect all my data. Why should I care?"

      Honestly, we're in the minority. Look how many people give up their privacy to indulge their narcissistic tendencies on Facebook.

    31. Re:Not only am I bothred by the phone-home, by Ol+Olsoc · · Score: 3, Insightful

      It is their business when their business depends on it. The common complaints users have with Windows have led them there.

      Bullshit. Microsoft's wholesale spying, backdoors and keylogging sure as Jerry Sandusky boinks little boys is just wrong. It's no solution, as witnessed by the wonderful breakage that W10 has inflicted upon users. All the phoning home hasn't changed that a bit.

      Since I have exactly one program that I need Windows for, I have a Windows 10 machine. The machine sits by itself, with only that program running, and nothing else. No email, no browser, only that program. It wouldn't even be connected to a network if it didn't have to use IP to a piece of hardware. So it can phone home that boring shit all it wants.

      If the price of using Microsoft is them having every bit of data they want on all user's computers, screw 'em, along with the websites that insist I have to allow them to install maladware on my computer.

      But tell me. Since I have isolated my W10 computer form the others, does Microsoft need to know what is on my other computers as well? Do I need to install a phonehome program for OSX and Linux to report to Redmond and anyone else they and you demand?

      --
      The shepherds did so well protecting the flock that the sheep no longer believed that wolves existed.
    32. Re:Not only am I bothred by the phone-home, by Ol+Olsoc · · Score: 1

      You're just adding more FUD. There's no proof that Windows sends info about visiting websites, persons e-mailed, listened songs or watched movies.

      Have you ever bother to read Microsoft privacy statement? Especially regarding Cortana or input personalization?

      No they don't. They are living in a bubble, and cannot accept the truth.

      A couple key points:

      As you note, Microsoft upfront tells you that they are performing surveillance on you.

      furthermore, does it make any sens at all to reject what Microsoft is telling you they do, or if accepting that they do, insisting its just unimportant stuff? They installed the surveillance to collect useless information?

      I always wondered who does the "scrubbing" they do to the personally identifiable information your computer sends them. Hint, Microsoft bubbleshills they have to have your personal info to remove it.

      --
      The shepherds did so well protecting the flock that the sheep no longer believed that wolves existed.
    33. Re:Not only am I bothred by the phone-home, by Tharkkun · · Score: 1

      And what business is of theirs what software I'm running and how often I'm using it?

      It is their business when their business depends on it. The common complaints users have with Windows have led them there. The large amount of hardware, software variations coupled with the different user types makes it difficult to have something universal that just works 100% of the time.

      My only beef with them is that they won't tell us what they collect and what are the triggers. I'm all for letting them grab data on my usage and the condition of my system. After all, it's in my best interest to help them improve the OS.

      MS in has recently shown interest in listening to the community and it's important we keep prying them for that information so that we can eventually feel at ease about what's happening.

      If you don't like it then disable the services that use those ports. I'm sure these ZDNET writer is on a domain so that 100% explains the port 135 requests. The others are probably applications that are installed. Turn them off.

    34. Re:Not only am I bothred by the phone-home, by Ol+Olsoc · · Score: 1

      Fair enough, but most Linux distros out of the box don't do much of anything (which is fine) and most aren't very user friendly either (relatively speaking). Linux is a fine OS for computer enthusiast that are willing to go through every configuration detail manually, but it's generally not well received by the typical user.

      Christ AC, 1999 was over a long time ago. Especially for typical users it is install and go. Immensely easier than installing Windows, and the only tweaking is the same thing you have to do with any install.

      Software repositories are in the web, you Choose what you want, and it asks you if you want to install the dependencies, you click yes, and it installs it. About as seamless as you can get.

      Heck, even if you compile your programs yourself, it has come a long way from the cursesware Linux used to be.

      You might give it a try sometime. Linux Mint is preferred by Grandmas everywhere.

      Therefore, it makes sense that most Linux distros don't make a lot of background network connections out of the box, while more consumer oriented OSes like Windows, OSX, iOS, and Android would be more likely to have "automagic" maintenance and user features enabled. System time sync, OS updates, app updates, synching browser favorites across devices, "am I connected to the internet?" checks, error reporting, etc.

      Good heavens - you know very little about modern Linux.

      --
      The shepherds did so well protecting the flock that the sheep no longer believed that wolves existed.
    35. Re: Not only am I bothred by the phone-home, by kuzb · · Score: 1

      Last I checked, the burden of proof was on the accuser not the accusee. If you're going to run around making grand claims, you should be prepared to back it up with grand evidence.

      --
      BeauHD. Worst editor since kdawson.
    36. Re:Not only am I bothred by the phone-home, by thegarbz · · Score: 1

      No what this specific user was complaining about was his own lack of knowledge. He dropped all requests to Microsoft IPs. ALL of them and logged them.

      I'm pretty sure if I boot up a Windows XP machine and did the same thing I'd get the same log results he did. That's expected behaviour for a system which has an unknown fault to retry. I just booted up. Let me check if updates are available. Hmmm can't get to the server. But my eth0 link is up and I can see the internet. Retry server. Nope? Try next pool IP. Nope? Try next pool IP, rinse repeat until either the internet is confirmed as down or till I eventually reach my server.

      NTP is much the same, I'm sure he blocked blocked the windows time servers too which would have resulted in endless requests to check the time.

    37. Re:Not only am I bothred by the phone-home, by Ol+Olsoc · · Score: 2, Insightful

      The true measure would be to allow it and packet dump/trace it.

      That might not give the results the ZDnet writer was told to get.

      --
      The shepherds did so well protecting the flock that the sheep no longer believed that wolves existed.
    38. Re:Not only am I bothred by the phone-home, by kuzb · · Score: 1

      How exactly to you envision a personal digital assistant working without looking at the information you'd want it to act on? Are you really that stupid?

      If you don't want to use Cortana, just turn it off. Problem solved.

      --
      BeauHD. Worst editor since kdawson.
    39. Re:Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      You have to have enabled Cortana for any of these examples to be true. If you choose to enable Cortana, a digital personal assistant, (it's not enabled by default) then wouldn't you expect that Cortana would need to access some of your basic personal details? After all, it wouldn't be a very good personal assistant without knowing anything about you. How is that any different than Siri or Google Now?

      How can someone provide proof of a negative? It's up to you to prove that MS collects this data even when Cortana is disabled.

    40. Re:Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      *disables usage telemetry that tells MS how the OS is being used*
      *complains that MS changes the OS so it doesn't match his usage pattern*

    41. Re:Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      How the fuck do you know what it does?

      The EULA says they get your keystrokes, man. It generates activity when you open notepad.

      NOTE
      PAD

    42. Re:Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      It's not a completely useless test though. If you do a non-blocking test you'll never capture all the fallback domains and IPs that Microsoft uses.

    43. Re:Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      So inaccurate alarmist hysteria is truthful reporting, but the healthily sceptical follow-up is part of a conspiracy to hide the truth?

      Right.

    44. Re:Not only am I bothred by the phone-home, by Calydor · · Score: 2

      So if I buy a TV made by, say, Samsung or Philips, that gives them carte blanche to record and store everything I say or do in my living room?

      --
      -=This sig has nothing to do with my comment. Move along now=-
    45. Re:Not only am I bothred by the phone-home, by Ol+Olsoc · · Score: 1

      So inaccurate alarmist hysteria is truthful reporting, but the healthily sceptical follow-up is part of a conspiracy to hide the truth?

      Right.

      So everyone is wrong but this guy?

      In the end, I am comfortable to take Microsoft at their word regarding the telemetry. That is enough. In addition, Microsoft has already ignored my requests to delay updates, and reset my privacy settings in several updates, downloaded Windows 10 without permission on a imac I have control of that is running Windows 7, but won't even run the Bootcamp version needed for W10.

      Yes, no FUD at all. Merely a users opinion that I believe them when they say they are watching that Windows ten machine, and since they already do things they were not given permission to to, It's not outlandish to decide they are are doing it all.

      --
      The shepherds did so well protecting the flock that the sheep no longer believed that wolves existed.
    46. Re:Not only am I bothred by the phone-home, by BarbaraHudson · · Score: 1

      Microsoft Windows is not sold at a heavily subsidized price point. The cost of each additional copy after the first is almost nothing. They only had to resort to the free-to-tablets oem pricing for 10, and free-for-7-8.x to get it accepted because they know the lock-in will continue to generate revenue. Otherwise people would have just stuck it out with 7, same as many did with xp.

      --
      "Transparent" is a shit show that trades on every stereotype going. A man in drag is NOT a transsexual.
    47. Re:Not only am I bothred by the phone-home, by rtb61 · · Score: 1

      Yeah bye, snigger, snigger because an internet where you only communicate with yourself is not internet at all. So if you communicate with a windows 10 computer, well guess what both sides of the not so private chat are still up for grabs. All that data on your computer had to come from somewhere, so their idea, no matter what the fuck you do they are planning to track and record as much as they possibly can do why, because they are pervs http://www.urbandictionary.com... , that's why (plus of course insider business knowledge is monumentally profitable, can't hack the business, then hack all and I mean all of the employees when they get home). Overall pretty naught stuff and the reason why they are able to get away with it without the government (except Russia) complaining (super wide open gaping great back doors, except Russia ;D ). Warrant, pashaw you don't even need a letter, just the cheque will be fine, made out to the Ireland or the Bahamas or the Switzerland office, you know the game.

      --
      Chaos - everything, everywhere, everywhen
    48. Re:Not only am I bothred by the phone-home, by BarbaraHudson · · Score: 1

      8.1 was not *free* on this laptop (which will, of course, get wiped in due course). The whole bit about microsoft forcing manufacturers to include windows was to make sure that people thought like you - "why should I pay to switch to another OS when this one is free?" If they had gotten bitch-slapped for that the first time, we would have plenty more OSes (paid and free) than we do today.

      Also, there are plenty of users who are reporting that they tried the update, went to revert back to their old version within the 30-day period, and *poof*.

      --
      "Transparent" is a shit show that trades on every stereotype going. A man in drag is NOT a transsexual.
    49. Re:Not only am I bothred by the phone-home, by BarbaraHudson · · Score: 1

      Most versions of 10 won't let you turn everything off - and that's being backported to previous versions as well. Additionally, people are reporting that stuff they turned off gets turned back on in the next update. Facebook's mobile app does the same thing if you restrict background data - when it updates, it's back on. Kind of annoying if you don't even use the app.

      --
      "Transparent" is a shit show that trades on every stereotype going. A man in drag is NOT a transsexual.
    50. Re: Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 1

      No, the burden of proof lies with the accuser only in a court of law. In the court of public opinion, quite the opposite is true. Fair or not, Microsoft (and Apple, Adobe, Facebook and Google) should consider this fact as public opinion, as far as I've noticed, has been swinging away from their favor.

      Perhaps there should be a backdoor so the public can decrypt all that traffic. Currently, it is not possible to actually obtain evidence beyond metadata. Corporations are just like people and law enforcement is hard you know.

      Congress should be all for it - they all seem to drool over the idea of a backdoor when other 'people' encrypt their data.

    51. Re:Not only am I bothred by the phone-home, by HiThere · · Score: 1

      How about "both guys are basically right, but only telling a part of the story"?

      Similarly for linux, some window managers (I think it's the window managers) seem to check for updates. I may have told them to, since if I were asked I would have asked that they do so. Others don't (or didn't a year ago). And I've never had a linux machine fail when disconnected from the desktop, but you could certainly state that "some of the functionality was broken". Guess what I mean. Then read the next paragraph.

      .

      .

      When disconnected from the internet NTP doesn't properly reset the system clock for drifting. But if I didn't mention WHAT functionality was broken, you might fill in something rather different.

      --

      I think we've pushed this "anyone can grow up to be president" thing too far.
    52. Re:Not only am I bothred by the phone-home, by HiThere · · Score: 1

      MS may have been explicity about their purposes, but saying that they've been clear about their intentions requires that you believe them. And even if that's true, what their intentions are this week doesn't speak to what their intentions will be next year.

      So the question is "What personal information could the current system by coerced to reveal (without additional software 'upgrades')?". I must admit that I don't find the answer clear. The ZDNet article wasn't all that reassuring.

      OTOH, as I do not have or use any MSWind installs, this is sort of academic. Many third parties are already so lax about their security that I should presume that any information about me they hold will be clandestinely copied. Just consider the recent story about pins being "stolen" from the IRS.

      P.S.: Stolen is a very poor term for the process, as the original is (presumably) left in place. OTOH, "clandestinely copied" is too long and clumsy. What's needed is something short and pithy that falls easily off the tongue like, e.g., "snarfed". You are free to use my suggestion if you want to, but you'll need to use context to make your meaning clear until it enters common usage.

      --

      I think we've pushed this "anyone can grow up to be president" thing too far.
    53. Re:Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      This.

      Microsoft can have data that I determine is in my best interest for them to have. Therefore I want to know:
      1.) Exactly what they are collecting
      2.) That is is sanitized before is it uploaded not after and this should be verifiable without Microsoft's assistance and without having to take their word for it
      3.) That I can turn it all off if I want and that I can select which things to enable

      Based on how hard they keep pushing 10 - disabled updated being re-issued to nag again, LARGE forced downloads to prepare for an update you may never voluntarily do, changing categories of update from optional to recommended, absolutely current on all bulk updates rather than the option to be selective (can't install this patch - it breaks this vital thing, must install same patch because it fixes this other, unrelated vital thing), etc... I don't trust that Microsoft is honoring the telemetry settings users choose. What update will re-enable telemetry?

      I understand they want this data for product reliability reasons which does benefit all of us. However, I don't want to be forced into things that might indirectly benefit me later - I want only telemetry that benefits me directly in the here and now. Sooner or later, something like Windows NT 4 SP 6 will happen on a massive scale and nobody will have the opportunity to avoid being a beta tester... unless you are a business equipped to handle a botched update much easier than a normal end user.

      I do not exist to serve Microsoft's bottom line. This is why seller's market's suck holy hell.

      However, if they are willing to pay what it takes, out of their own pocket ALL costs associated with this forced upgrade (paid upfront not after being sued for damages) globally so they can get everyone on the same page, then sure, I guess I can go for it. These costs include but are not limited to:
      hardware
      applications (including a fully compatible replacement even if it has to be written from scratch even for a single customer)
      drivers
      downtime
      lost revenue
      wasted man-hours
      lost opportunity costs
      reputation damage
      liability costs (not their own but those of their customers and not limited to what the customer paid for the software but what the liability actually cost the customer)
      legal fees related to any lawsuits against their customers based on data retention/confidentiality/integrity
      data cap overages
      training
      psychological trauma therapy sessions
      depression/anxiety/anger management therapy
      electron microscope data recovery
      etc.,...

      The things I list are all losses to the end user even if gains for Microsoft. If they are not willing to pay for the potential end user cost of their forced upgrade, then this is just like the wall street bailout - privatize the profits and socialize the losses. Fuck that.

      (FWIW, I'm not an Apple or Linux zealot - I have primarily used Microsoft products since DOS was released. Generally speaking, I hate the way the industry is going in general - I don't want the god damned cloud unless I manually choose it (dropbox). I hate simplified GUIs when that doesn't have to be the only GUI option. I don't like, in Microsoft's case trying to be UNIX at the CL but Apple in the GUI. I don't like it when my choices are 'Stick' or 'Stick disguised as Carrot')

    54. Re:Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      Eeh. Let's not overblow this once again. It does not track everything that you do. The telemetry means only basic things like how many times you have started specific UWP apps and so on.

      How do you know that? Because Microsoft said so? Or some reporter said so?

      There is a concept known as trust but verify. Microsoft is asking us to trust it while at the same time put great effort in to preventing any verification. I don't want to trust Microsoft or anyone else for that matter - I want to be able to verify it myself.

      Don't mind the man behind the curtain and all that.

    55. Re:Not only am I bothred by the phone-home, by barc0001 · · Score: 1

      Yeah well, some people thing Wireshark is crazy scary to use so they prefer the simple (incorrect) approach.

    56. Re:Not only am I bothred by the phone-home, by ngc5194 · · Score: 1

      MS in has recently shown interest in listening to the community and it's important we keep prying them for that information so that we can eventually feel at ease about what's happening.

      I approve of modding this to +5, but only in the category "Funny".

    57. Re: Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      The above post nails it, and the past actions of the reprehensible corporate whore has made most of us with functioning brains unwilling to trust them again.

      Ever.

      THAT IS MY GODDAMN MACHINE. I WILL DO WITH IT WHAT I PLEASE, AND IT WILL ONLY ALLOW IN OR OUT DATA I AUTHORIZE AND AM AWARE OF.

      Get it?

    58. Re:Not only am I bothred by the phone-home, by gl4ss · · Score: 1

      actually with windows 10 you would need to start blocking them one by one and first block at hosts/dns resolve level and then ip..

      because it tries, oh it tries so much. it has backup connections on backup connections to make it happen and it just needs one, really.

      not to mention that they change when it gets updated.

      the zdnet writer should be ashamed though. "various cloud hosts". if he can't tell which addresses to block to shut down telemetry then he shouldn't be fucking writing about not to be worried about the telemetry!

      --
      world was created 5 seconds before this post as it is.
    59. Re:Not only am I bothred by the phone-home, by clancey · · Score: 1

      The fact that my computer is trying desperately to contact anyone, without my knowledge or authorization, is a definite problem.

      --
      clancey
    60. Re:Not only am I bothred by the phone-home, by epyT-R · · Score: 1

      It should still be optional.

    61. Re: Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      Well, I'd say it IS their business. Literally! If you didn't run Windows or any of their other services, they'd be OUT of business. I am pretty sure, btw. that both Apple and Google know what version of their OS people are running, which hardware they are running it on, how many apps they have, how much space is free on people's devices and thing of that nature. I think we should call on all of them to disclose what data they gather.

    62. Re: Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      may be if they owned up to exactly what they are getting sent we might believe them but MS haven't and the amount of connections is ridiculous!

      (do some searching on ed bott, ask him about the "loaned" laptop from MS?)
       

    63. Re:Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      I was coming here to say that. Thanks.

      People should really try linux before talking about it. And they also should try reinstalling a windows and a linux and compare which one was easier, and on which one they had fun manually hunting for and installing all the drivers.

    64. Re: Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      Quite simple.

      On my win 10 test box, Cortana is off by default. It's not running therefore sends no data. QED.

      Also, you should read the EULAs for other assistants and OS and even websites. They're the same. Did you read all 54 pages of an i thing EULA?

    65. Re: Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      I uninstalled gwx, then hid the update on a w7 box that couldn't update because of super old hardware.

      It hasn't come back, just as it how you're suppose to prevent updates from installing.

    66. Re:Not only am I bothred by the phone-home, by Jack+Griffin · · Score: 1

      Ok, so Windows == Microsoft owns the OS and can collect anything they want about you and your computer.

      Linux == Free and no one gives a shit what you run on it. It is your computer and your OS to do with as YOU see fit.

      Got it!

      Unless you want some sort of standardisation, then good luck.

    67. Re:Not only am I bothred by the phone-home, by Jack+Griffin · · Score: 1

      The following statement cannot be overblown: None of Microsoft's business what I do with my computer. If they refuse to respect their customers it won't be long before they have none.

      Well you say that, but the Facebook example says otherwise...

    68. Re:Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      Yip, in modern tvs it is in the license of the tv. It will probably not even work as a tv without being able to connect to all their servers.

    69. Re:Not only am I bothred by the phone-home, by wootcat · · Score: 1

      It gives me pause to see "for example" in a privacy statement. They should be explicitly stating every piece of information they collect and what it will be used for. It makes me think they are collecting much more than their "example".

      --
      I'm really a low 5-digit Slashdotter, but this ID is where I am now.
    70. Re: Not only am I bothred by the phone-home, by BarbaraHudson · · Score: 1

      Apple is a walled garden, and Microsoft is trying to turn Windows, as much as possible, into the same thing.

      Google has no information on an android phone if you disable data, since it will never talk to the network. It also tells you what each app is asking to share if you do. And you can always side-load.

      --
      "Transparent" is a shit show that trades on every stereotype going. A man in drag is NOT a transsexual.
    71. Re:Not only am I bothred by the phone-home, by iampiti · · Score: 1

      It's fine if that were optional. It's not fine that I'm not allowed to disable all data connections with Microsoft.
      Firefox also collects telemetry data but informs you upon installation and allows you to disable it. That's the way
      Also, they pretend they listen. They've made a few changes requested by people but nothing that clashes with their goals of trying to turn Windows into a data-gathering system similar to what Android does.

    72. Re:Not only am I bothred by the phone-home, by Insanity+Defense · · Score: 1

      However, that "computer" doesn't compute much when it's sitting devoid of an OS, which they do own.

      NO THEY FUCKING DON'T!. They SOLD THAT COPY. They own only the COPYRIGHT. Every copy of Windows I ever bought I got a BILL OF SALE not a license agreement. They try and impose the license nonsense retroactively. Just as the copyright holders on the book you bough don't own that copy.

    73. Re:Not only am I bothred by the phone-home, by doccus · · Score: 1

      Eeh. Let's not overblow this once again. It does not track everything that you do. ...

      That's right... The webcam was unable to track your morning pee... AFAIK.. that's the only thing it missed...

    74. Re:Not only am I bothred by the phone-home, by Ol+Olsoc · · Score: 1

      I was coming here to say that. Thanks.

      People should really try linux before talking about it. And they also should try reinstalling a windows and a linux and compare which one was easier, and on which one they had fun manually hunting for and installing all the drivers.

      My next comment for the Linux haters, is that if they insist on comparing contemporary versions of Linux to those of 15 -20 years ago, we need to define Windows by the capabilities of Windows 1, so whne they talk about how hard it is to install and use, I get to complain about Windows 1 not actually working.

      I'll be the first to note that years ago, it was kinda a nuisance, and compiling programs isn't for grannmy unless she's into geek

      And the peripheral/driver support on Linux is actually better than Windows, because they don't abandon perfectly good equipment just because of - hell I don't know. My favorite example of that is I was setting up a dual boot Vista and Mint machine a few years ago that used a USB-RS232 adapter on both sides. Setting up Linux first, everything worked fine. Move to the Vista side - adapter didn't work. Research showed that it was an older driver, and no support was availble, and none would be. Turned out that the freaking adapter was for a Palm Pilot! But worked 100 percent on the Linux side.

      Oh, and one more for the Winders boyz and girlz, when you install windows and spend days getting it updated? Certainly the versions of Linux I''ve installed in the last few years install the latest software the first time I install it.

      I do think that in today's world, if a person has trouble with Linux, it's because they try to force Windows on a Unix system. Either that, or they are just regurgitating ancient memes from the 90's.

      --
      The shepherds did so well protecting the flock that the sheep no longer believed that wolves existed.
    75. Re:Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      Speak for yourself. Privacy is only obsolete if you are a lazy and uneducated individual.

      I have a computer, I use the internet, I buy stuff and I still have a large measure of privacy.

    76. Re: Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      You cannot turn it off. No matter what I've got disabled, there's a cortana process running in ram. Shill harder.

    77. Re: Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      Linux IS a pain in the ass. It rarely just works, drivers are hard to find, and coders still won't write any software for it that's worth a fuck. If you want to change anything from the default, you're in a goddamned text editor changing a conf file cause it's still 1991. If you Linux nuts want adoption, fix your damned software to just work, add GUI frames to fix configurations, and don't ever tell me the end user that I'll need to recompile the fucking kernel to get my Wi-Fi driver loaded.

    78. Re: Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      FUCK FACEBOOK

    79. Re:Not only am I bothred by the phone-home, by Anonymous Coward · · Score: 0

      I was coming here to say that. Thanks.

      People should really try linux before talking about it. And they also should try reinstalling a windows and a linux and compare which one was easier, and on which one they had fun manually hunting for and installing all the drivers.

      My next comment for the Linux haters, is that if they insist on comparing contemporary versions of Linux to those of 15 -20 years ago, we need to define Windows by the capabilities of Windows 1, so whne they talk about how hard it is to install and use, I get to complain about Windows 1 not actually working.

      I'll be the first to note that years ago, it was kinda a nuisance, and compiling programs isn't for grannmy unless she's into geek

      And the peripheral/driver support on Linux is actually better than Windows, because they don't abandon perfectly good equipment just because of - hell I don't know. My favorite example of that is I was setting up a dual boot Vista and Mint machine a few years ago that used a USB-RS232 adapter on both sides. Setting up Linux first, everything worked fine. Move to the Vista side - adapter didn't work. Research showed that it was an older driver, and no support was availble, and none would be. Turned out that the freaking adapter was for a Palm Pilot! But worked 100 percent on the Linux side.

      Oh, and one more for the Winders boyz and girlz, when you install windows and spend days getting it updated? Certainly the versions of Linux I''ve installed in the last few years install the latest software the first time I install it.

      I do think that in today's world, if a person has trouble with Linux, it's because they try to force Windows on a Unix system. Either that, or they are just regurgitating ancient memes from the 90's.

      I agree again. Every time I hear a windows user talking about linux, it seems they are talking about how it was 15 years ago. They stupidly repeat the "it isn't ready for the desktop", that it doesn't work and that you need to be a command line guru to use it.

      And on the drivers point, we should remember that while linux support peripherals and hardware by providing drivers, windows support nearly nothing, it expects hardware and peripheral manufacturers to support windows.

      If manufacturers started treating windows as they treat linux (ie. don't make windows drivers), windows would be screwed, not being able to correctly use USB ports or network cards. Windows doesn't support anything, it is supported by everything.

      The only advantage window has is its market share on the desktop, that forces third parties to support windows.

    80. Re:Not only am I bothred by the phone-home, by beastofburdon · · Score: 1

      We need a "sad, but true" tag badly for things like this.

    81. Re: Not only am I bothred by the phone-home, by beastofburdon · · Score: 1

      The power button.

    82. Re:Not only am I bothred by the phone-home, by Ravaldy · · Score: 1

      Also, they pretend they listen.

      Agree to disagree. When a company is showing signs of wanting to improve I can but give them a chance.

      They've made a few changes requested by people but nothing that clashes with their goals of trying to turn Windows into a data-gathering system similar to what Android does.

      Who's fault is this really? I say the consumer. Advertisement backed products is where we sit right now. People are willing to deal with the nonsense so they don't have to pay. I blame Google for forcing everyone in that direction by leveraging their large share of online advertising. Don't take me wrong, if not Google, it would have been someone else.

      People have to understand that FREE is not FREE.

    83. Re:Not only am I bothred by the phone-home, by Ravaldy · · Score: 1

      I agree.

      Option 1: Deal with our data collection
      Option 2: Pay up

  4. "No big deal" by Anonymous Coward · · Score: 0

    "Here are thousands of examples of Windows transmitting network traffic unbidden"

    1. Re:"No big deal" by Anonymous Coward · · Score: 2, Insightful

      It looks more like thousands of examples of DNS, NTP, NetBIOS and other perfectly normal and required traffic for any system that is connected to a network or the internet. I mean nearly all of these examples are basic network functionality. Most of the rest are things like OS updates, application updates, applications downloading scheduled data (weather, news, etc.). I know this is /. and we are all supposed to hate MS and Winblow$ like it's still 1999, but can we at least TRY to apply some logic and reasoning to our hating?

    2. Re:"No big deal" by F.Ultra · · Score: 1

      Why are a Windows 10 box in 2016 actually sending out freaking NetBIOS broadcasts for? That shit should be dead and buried decades ago.

    3. Re:"No big deal" by bruce_the_loon · · Score: 3, Informative

      NetBIOS over TCP is still a core part of Microsoft networking and the broadcasts allow the various machines running Windows or SAMBA to discover each other without needing a central directory server. It is still implemented because it is a useful API with decent backward compatibility with everything back to 95/98.

      This isn't the old NetBIOS Frames line protocol from the extremely old days, rather the service layer protocol that handles the discovery, negotiation and authentication parts of peer-to-peer file and printer sharing in Windows.

      --
      Trying to become famous by taking photos. Visit my homepage please.
    4. Re:"No big deal" by Anonymous Coward · · Score: 0

      You mean NetBEUI. Common mistake among the demi-technical.

    5. Re:"No big deal" by Anonymous Coward · · Score: 0

      Windows peer-to-peer file and printer sharing should be dead and buried decades ago.

    6. Re:"No big deal" by Anonymous Coward · · Score: 0

      Windows peer-to-peer file and printer sharing should be dead and buried decades ago.

      Uh, no.
      What would you replace it with?

  5. Why not capture with wireshark and analyze? by ArmoredDragon · · Score: 1

    Sure, traffic is probably encrypted, but since your system is encrypting it, surely there's a way to discover the keys and find out exactly what data is being sent.

    I personally don't have either the time nor the kernel hacking skills to pull it off, but I'm sure somebody could.

    1. Re:Why not capture with wireshark and analyze? by LichtSpektren · · Score: 2

      Sure, traffic is probably encrypted, but since your system is encrypting it, surely there's a way to discover the keys and find out exactly what data is being sent.

      I personally don't have either the time nor the kernel hacking skills to pull it off, but I'm sure somebody could.

      Your system encrypts it with Microsoft's public key before it is send out. Microsoft accepts the information and decrypts it with their private key.

      If you could know what the OS was doing with the info before it is encrypted, you could find out what's being sent out; but (to my knowledge) that's impossible to know.

    2. Re:Why not capture with wireshark and analyze? by icebike · · Score: 0

      Sure, traffic is probably encrypted, but since your system is encrypting it, surely there's a way to discover the keys and find out exactly what data is being sent.

      I personally don't have either the time nor the kernel hacking skills to pull it off, but I'm sure somebody could.

      Son, take a few minutes to learn how encryption actually works so you don't embarrass yourself on the internet, mkay?

      --
      Sig Battery depleted. Reverting to safe mode.
    3. Re:Why not capture with wireshark and analyze? by Anonymous Coward · · Score: 1

      I'm surprised that anyone hasn't done it yet.

      Providing a full analysis on what kind of data Windows sends would bring a lot of fame to a security researcher.

    4. Re: Why not capture with wireshark and analyze? by Anonymous Coward · · Score: 0

      Some code needs to be patched to write the data to a file before the encryption happens. I doubt that is impossible.

    5. Re:Why not capture with wireshark and analyze? by ArmoredDragon · · Score: 2

      Well, son, there are three possible scenarios:

      - They are using a symmetric key (doubtful)
      - They are using assymmetric keys to negotiate a symmetric key on the fly
      - They are using asymmetric keys for the whole transmission

      The first two can be figured out with some kernel patching, or even just firing up a VM and watching for the symmetric key.

      The third would involve patching the kernel to replace Microsoft's public key used for encryption with your own public key that you can then decrypt with a private key. Or just flat out disable the encryption entirely.

      Either way it's done, you'd also need to have another host emulate Microsoft's server responses to see how the exchange takes place, and simply capture what is being sent, and analyze.

    6. Re: Why not capture with wireshark and analyze? by ArmoredDragon · · Score: 1

      Some code needs to be patched to write the data to a file before the encryption happens. I doubt that is impossible.

      Precisely. If you patched it, you'd break patches and other whatnots, but that doesn't matter because this doesn't have to be a production system. Or if there are so many checks that it would take forever and a day to patch them all, then perhaps run it in a VM and poke the kernel memory from behind the hypervisor until it cooperates.

      For the latter approach, I'm not sure if any tools exist that could properly map the kernel memory in a VM due to address randomization, but that doesn't mean it can't be done.

    7. Re:Why not capture with wireshark and analyze? by Anonymous Coward · · Score: 0

      I see you have a limited understanding of how public key cryptography works.

    8. Re:Why not capture with wireshark and analyze? by Anonymous Coward · · Score: 0

      And how to you propose to get around the fact that all the code that you would need to replace won't run unless is it signed by Microsoft? At this point, the layers of verification from power on to logged in go deeper than firmware.

      There are very good reasons for this but like most things, the tool (encryption, code signing) itself is neither good nor bad. Good and bad are determined by how the tool is used and that moral/ethical judgement is a highly subjective.

    9. Re:Why not capture with wireshark and analyze? by ArmoredDragon · · Score: 1

      And how to you propose to get around the fact that all the code that you would need to replace won't run unless is it signed by Microsoft? At this point, the layers of verification from power on to logged in go deeper than firmware.

      This is a silly question to ask. I personally haven't seen or even heard of any systems that don't permit you to disable boot code signature enforcement. Hell, even the Microsoft built Surface Pro 4 does; you can go right ahead and install Linux on the damn thing. Without enforcement there's no chain of trust, so you can patch wherever the hell you want.

  6. wtf is this article by LichtSpektren · · Score: 4, Insightful

    Apparently it's some apologism for Windows 10, but an unbelievably poor one. "Oh no, no no! Please don't panic because Windows phones home to over 100 different servers even when you turn the telemetry off. It's probably, eh... nobody's quite sure, but I'm sure everything will be okay!"

    1. Re:wtf is this article by DogDude · · Score: 2

      "Panic"? Really? Why would one "panic", even if it were somehow true that MS decided to collect all of the information about everybody on the planet? That doesn't seem like a response of a mentally stable person.

      --
      I don't respond to AC's.
    2. Re:wtf is this article by LichtSpektren · · Score: 1

      Well, if I were some corporation with extremely valuable trade secrets, or some government with information that would endanger lives if leaked, and I just deployed Windows 10 and found out that it's a gigantic spying beacon for Microsoft, I would indeed panic.

      Remember, Microsoft and their shills have been crying that all of the telemetry can be turned off in Windows 10 Enterprise edition (the edition that said corporations & governments would be deploying), but that was proved completely false.

    3. Re:wtf is this article by Anonymous Coward · · Score: 0

      That ZDNet guy is a fucking moron that is only "good" at writing iPhone news and clickbait.

      I also don't remember when was the last time I saw anything decent on ZDNet.

    4. Re:wtf is this article by OzPeter · · Score: 3, Insightful

      Apparently it's some apologism for Windows 10, but an unbelievably poor one. "Oh no, no no! Please don't panic because Windows phones home to over 100 different servers even when you turn the telemetry off. It's probably, eh... nobody's quite sure, but I'm sure everything will be okay!"

      Is this another one of those quizzes where the answer is "People who did't read TFA"?

      Either you read the TFA and are totally mis-representing what was in it, or you didn't read TFA. Because in TFA it clearly identifies and describes the network traffic that was identified by the Voat user and points out 1) how innocuous it is, 2) how bad the methodology was, and 3) How Forbes sensationalized it.

      If you have counter points then make them.

      --
      I am Slashdot. Are you Slashdot as well?
    5. Re:wtf is this article by phishybongwaters · · Score: 0, Flamebait

      Except that a massive amount of these "connections" were fucking NTP and DNS. Alarmist at best. But hey, hating on MS is the hip cool thing to do, considering it's 1997. No wait it's 2016 and the linux desktop still hasn't "won" Neither did Novel, neither did apple. Who remains the king of the desktop OS for better or for worse? MS. Who are the people claiming to be leaving windows forever? People who never fucking ran it in the first place. You have full and total control over what goes out over your network, if you fail to pay attention, it's your fault. That said, I don't dig the tracking, but it's not nearly as bad as some of you seem to think it is. So lets recap, asshatA records all the connections coming from his PC and immediately exclaims "MICOCRAP IS TRAKKING UZZZZ" but fails to omit the NTP, DNS and gods knows whatever, normal, traffic from this report.

    6. Re:wtf is this article by phishybongwaters · · Score: 1

      I'm pretty sure if you recorded to connections from your MAC or Linux desktop, and didn't filter out normal expected traffic, you'd be APPALLED at the tracking taking place. connections do not equal tracking.

    7. Re:wtf is this article by LichtSpektren · · Score: 1

      I'm not quite sure why you broke out into an inane babbling rant, but the rebuttal article on ZDNet is failed apologism because even the author admits he has no idea what information Microsoft is collecting. He's assuming (because he trusts MS, you see) that the data is anonymized and only used for this or that, but notice how many times he says "possibly", "could", etc.? It's all speculation.

    8. Re:wtf is this article by Ogive17 · · Score: 3, Insightful

      So disagreeing with a conclusion is being an apologist?

      Does Win10 phone home? Yes.
      Does Win10 phone home at the rate that was originally reported? No.

      Is Win10's rate different from other OS rates?

      --
      "Action without philosophy is a lethal weapon; philosophy without action is worthless."
    9. Re:wtf is this article by LichtSpektren · · Score: 2

      I'm pretty sure if you recorded to connections from your MAC or Linux desktop, and didn't filter out normal expected traffic, you'd be APPALLED at the tracking taking place. connections do not equal tracking.

      Since my OS is open source, I can see exactly what information is being sent out. However, Microsoft does not disclose what information is being sent to 107 of the domains that Win10 contacts, nor do they explain why all of those domains are contacted even when you manually configure Win10 not to.

    10. Re:wtf is this article by Anonymous Coward · · Score: 1

      Neither did Novel

      Umm...when did Novell ever compete in the desktop OS space with an offering of their own? You might be thinking of SuSE, but that is Linux, which you already mentioned.

    11. Re:wtf is this article by icebike · · Score: 2

      Apparently it's some apologism for Windows 10, but an unbelievably poor one.

      Look, anything from Ed Bott will always be along those lines. Ed Bott doesn't actually exist. His computer is has a direct link from Microsoft's PR department which submits all his stories. Oh, sure there is this guy who shows up at the office once in a while. But his salary is mysteriously paid via an obscure credit to ZDNet bank account, he's long ago forgotten his real name, he plays Microsoft Solitaire all day, then drives home to an empty house, watches MSNBC all evening and gets up and does it all again tomorrow. One of these days he will be reprogrammed, but today is not that day, and so the story remains the same from Ed, decade after fawning decade.

      --
      Sig Battery depleted. Reverting to safe mode.
    12. Re:wtf is this article by bluefoxlucid · · Score: 1

      Debian phones home and tells them what software I have installed.

    13. Re:wtf is this article by Anonymous Coward · · Score: 0

      In this context, "please don't panic" means "please do not partake in behavior that overwhelms our ability to handle our public relations".

    14. Re: wtf is this article by Anonymous Coward · · Score: 2, Informative

      Only if you opt in during the installation

    15. Re:wtf is this article by Anonymous Coward · · Score: 0

      > 2) how bad the methodology was

      I thought that was implied by the fact that it was carried out by a voat user. probably while wearing a full hat and suit of tinfoil.

    16. Re:wtf is this article by DRJlaw · · Score: 2, Informative

      I'm not quite sure why you broke out into an inane babbling rant, but the rebuttal article on ZDNet is failed apologism because even the author admits he has no idea what information Microsoft is collecting. He's assuming (because he trusts MS, you see) that the data is anonymized and only used for this or that, but notice how many times he says "possibly", "could", etc.? It's all speculation.

      No, it is not. It is a successful critique of the claim that there were "thousands" of attempts to contact Microsoft to allegedly report nasty telemetry data, when at least 2/3rds were not telemetry data. That's a significant fact to the rest of us.

      TFA: of all, 602 connection attempts were to 192.168.1.255, using UDP port 137. That's the broadcast address where Windows computers on a local network announce their presence and look for other network computers using the NetBIOS Name Service. It's perfectly normal traffic.

      If you can't even figure out that non-routable broadcast traffic cannot report information back to Microsoft, why should we accept the Forbes speculation while rejecting the ZDnet non-speculation concerning that broadcast traffic, similar DNS lookups to a local router, etc.? If the frequency of the supposed attempts was unimportant, then why was it the focus of so much of the reporting?

      Don't accuse others of "insane babbling rants" when you not only have no idea what Microsoft is collecting, but actively refuse knowledge of what is going over the wire. The ZDnet author didn't extend much trust to Microsoft, but simply reported that the huge number reported in connection with the telemetry issue was primarily sensationalistic claptrap.

      TFA: And yes, there is certainly some telemetry data in there.
      * * *
      But we don't know, because Mr. Crust didn't actually do any traffic analysis.

      So do some, instead of engaging in your own chicken-little-like repetition of others' insane babbling rants.

    17. Re:wtf is this article by Blue+Stone · · Score: 1

      Thank you. It's very tempting to circlejerk about this. People on Slashdot are supposed to have a few more critical thinking abilities. Doesn't always work out that way.

      There are still questions about Windows 10 data transfers, but misinformation and sloppy research as found in the original Forbes article, does not help in any way.

      --
      Corporation, n. An ingenious device for obtaining individual profit without individual responsibility. - Ambrose Bierce
    18. Re:wtf is this article by Anonymous Coward · · Score: 0

      The NTP requests were 3, the DNS ~600; of 5500; not massive. The author explains away ~55% of these as not telemetry and relatively harmless, at least on the surface. The other 2100... he has no good response too.

    19. Re:wtf is this article by Anonymous Coward · · Score: 0

      Well, if I were some corporation with extremely valuable trade secrets, or some government with information that would endanger lives if leaked, and I just deployed Windows 10 and found out that it's a gigantic spying beacon for Microsoft, I would indeed panic.

      That's the same reason why Microsoft won't take the datamining too far. They have some very profilic customers that would sue and it would generate big lawsuits. Microsoft doesn't take the risk.

    20. Re:wtf is this article by canajin56 · · Score: 2

      Not only that, but asshatA called 192.168.1.1 a non-private internet address.

      --
      ASCII stupid question, get a stupid ANSI
    21. Re:wtf is this article by Anonymous Coward · · Score: 0

      So you're playing the "everyone does it" game? Try again addressing the subject.

    22. Re: wtf is this article by Anonymous Coward · · Score: 0

      Being open source is irrelevant to seeing the traffic sent.

    23. Re:wtf is this article by Anonymous Coward · · Score: 0

      ZDNet did not know what the connections were attempting to do because the test was run by someone who is incompetent, as ZDNet pointed out dropping packets is a bad idea when you are trying to do this type of analysis. The correct way to do it would be to run through an HTTPS proxy and install a root cert on the win 10 machine. Log everything and let the traffic succeed.

    24. Re:wtf is this article by Anonymous Coward · · Score: 0

      Yes he does. The packets were being dropped so:

      1) they were being contently retried, which inflates the numbers quite a bit.
      2) you could not intercept the actual traffic because you never let a session establish.

    25. Re:wtf is this article by DogDude · · Score: 0

      Your version of Linux sends stuff out unencrypted? That's scary. You really think that's a better idea than using Windows?

      --
      I don't respond to AC's.
    26. Re:wtf is this article by Anonymous Coward · · Score: 0

      No one is asserting that.

      They're saying it's noisy.

    27. Re:wtf is this article by Sax+Russell+5449D29A · · Score: 2

      That feature is not enabled by default. When you install Debian, you have to specifically select that you *want* to enable that particular functionality.

      --
      -SR
    28. Re:wtf is this article by Anonymous Coward · · Score: 0

      Why DNS information then ?

      Oh, they are not intercepting all of your traffic, they are just collecting meta data. The NSA will be proud of their efforts.

    29. Re:wtf is this article by AmiMoJo · · Score: 2

      I did this test properly last year. Didn't save results, so maybe I'll repeat it and post the results.

      Long story short, if you properly disable all the live stuff after install (live tiles, Windows Store apps, search bar, nothing tricky or requiring registry edits) the only traffic is Windows Update. Telemetry on application crash, but in Enterprise you can disable it.

      The crash telemetry is the only nasty bit, because of the potential for information leakage. I'll test Pro next time, see if it can be disabled.

      --
      const int one = 65536; (Silvermoon, Texture.cs)
      SJW, n: "Someone I don't like, and by the way I'm a fuckwit" - AC
    30. Re:wtf is this article by WaffleMonster · · Score: 1

      Except that a massive amount of these "connections" were fucking NTP and DNS. Alarmist at best.

      I have got to try this the next time I get pulled over for speeding. Hey officer most of the time I wasn't speeding... Your ticket is Alarmist at best.

      You have full and total control over what goes out over your network, if you fail to pay attention, it's your fault.

      I love these arguments requiring everyone to have expert domain knowledge in order to keep from being fucked over. I wonder how the purveyors of this concept feel about it being applied to all professions on which they rely and for which they are not domain experts? Hey you have total control over every cheerio you shove into your mouth even the deformed ones with dead bugs and toxic chemicals caked into them.

      That said, I don't dig the tracking, but it's not nearly as bad as some of you seem to think it is.

      How do you know that? How is anyone else supposed to know? Not only is there a clear lack of transparency and objective information but different people can have vastly different value judgments about the same activity.

      Personally I don't want my systems chatting away with Microsoft for reasons I don't expressly authorize. It has proven to be a vast waste of my time to achieve something for which a simple knob should have been made available.

      So lets recap, asshatA records all the connections coming from his PC and immediately exclaims "MICOCRAP IS TRAKKING UZZZZ" but fails to omit the NTP, DNS and gods knows whatever, normal, traffic from this report.

      I agree in terms of information content and execution it was pretty crappy yet I still see value in the simplicity of the question and outcome because it is more aligned with basic user expectations after having gone thru several pages and disabling all privacy features and having taken no action to cause network traffic.

      While everyone here knows you have to disable telemetry from group policy and this test clearly did not do that... end users have no idea and that is really what is important.

      What I'm most interested in learning more about is very first item on the list all those thousands of teredo connections/packets... I would very much like to know what the heck THAT is all about.

    31. Re:wtf is this article by BigBuckHunter · · Score: 1

      but notice how many times he says "possibly", "could", etc.? It's all speculation.

      Indeed! I read both of TFA's, and both were poorly researched sensationalist fluff pieces written by paid shills with agendas. We need to wait for CNET, CNN, and Fox News to chime in to see which side is going to pay the media more to represent them in a positive light.

    32. Re:wtf is this article by mattventura · · Score: 1

      The difference is that that's all stuff that I implicitly or explictly told it to do. And if I want it to stop doing those things, I can easily make it do so. Compare that to Windows, where you have to put a lot of work into eliminating its tracking, only for all your hard work to be undone come the next set of updates.

    33. Re:wtf is this article by Anonymous Coward · · Score: 0

      I don't think the guy with the Facebook icon by his name is the guy to ask about privacy.

    34. Re:wtf is this article by Anonymous Coward · · Score: 0

      point is, it does not, and only allows what you want.

      full control. something we lost when the asshats at the NSA decided that unsupervised warrant-less surveillance was necessary.

    35. Re:wtf is this article by Anonymous Coward · · Score: 0

      I don't "trust" microsoft not to steal my shit. I "Trust" microsoft not to put itself behind the litigation 8ball, AGAIN.

      90% of this "telemetry" is WMI data. the Same WMI data they have been collecting sense XP. A bunch of arm chair IT admins didn't notice any of this until they went looking for a new reason to hate on something. Doesn't mean it wasn't there before.

    36. Re:wtf is this article by Anonymous Coward · · Score: 0

      LichtSpektren is a German Nazi troll. He worships Linux and demonizes everything else. Fucking assholes like him are the cancer of Slashdot.

    37. Re:wtf is this article by thegarbz · · Score: 1

      Is Win10's rate different from other OS rates?

      Who knows. Their flawed methodology dropped packets to Microsoft IPs forcing endless attempts to reconnect to a server which should be live since Windows can see an active working network connection.

    38. Re:wtf is this article by Ol+Olsoc · · Score: 1

      "Panic"? Really? Why would one "panic", even if it were somehow true that MS decided to collect all of the information about everybody on the planet? That doesn't seem like a response of a mentally stable person.

      Never worked on COMSEC eh? If you knew windows 10 was doing this, and had your attitude, you'd probably end up working at the drivethru windows at Burger King.

      --
      The shepherds did so well protecting the flock that the sheep no longer believed that wolves existed.
    39. Re:wtf is this article by Anonymous Coward · · Score: 0

      You stupid, German cocksucker. Still pissed about WW2? Is that why you are throwing around gay terms like "apologism"? Germany is the toilet of Europe.

    40. Re:wtf is this article by Ol+Olsoc · · Score: 1

      I'm pretty sure if you recorded to connections from your MAC or Linux desktop, and didn't filter out normal expected traffic, you'd be APPALLED at the tracking taking place. connections do not equal tracking.

      Install Wireshark. and see. I have it on all my machines OSX, Linux and PC. There are connections you would expect, like update checks, connection requests, and of course data submitted that you want submitted, but no keylogging has been seen as of yet.

      And do you deny what Microsoft says they do this? Why are they telling us they are collecting all the data that they say they are connecting, but really aren't collecting that data? Given what they have done with Skype, it is not unreasonable to assume that they have done the same thing with W10.

      --
      The shepherds did so well protecting the flock that the sheep no longer believed that wolves existed.
    41. Re:wtf is this article by bluefoxlucid · · Score: 1

      That feature is called apt-get upgrade.

    42. Re:wtf is this article by Sax+Russell+5449D29A · · Score: 1

      Well, to my knowledge Debian does not collect user data regarding installed packages, upgrades or similar, unless the user gives his or her explicit approval of such data collection (popcontest).

      However, if you want to be anal about it: using apt is voluntary and you can build all the software you need by downloading them from any source you trust the most. Comparing voluntarily using apt on Debian to Windows phoning home even if you explicitly disable such features on it is fallacious.

      --
      -SR
    43. Re:wtf is this article by HiThere · · Score: 1

      At least not unless they feel extremely confident that nobody will be able to prove (in a preponderance of the evidence sense) that they are doing it. And given the uncertain nature of juries, that would be a pretty big risk.

      --

      I think we've pushed this "anyone can grow up to be president" thing too far.
    44. Re:wtf is this article by bluefoxlucid · · Score: 1

      It sends HTTP requests. You don't know that the third party mirrors don't keep apache logs, do you, Mr. Anderson?

    45. Re:wtf is this article by Sax+Russell+5449D29A · · Score: 1

      Let's put it this way: do you know that they do? If they did, why not create your own mirror?

      The difference here is, as I outlined in the earlier post, that in Windows' case we know that it's phoning home despite explicit user disapproval. You're comparing facts to subjective speculation. We can speculate about anything and everything, but it doesn't mean everything that is possible is being done. And an important point with Debian is that even if it was being done, you have a legitimate and easy way of circumventing it.

      --
      -SR
    46. Re:wtf is this article by Duggeek · · Score: 1

      Apparently it's some apologism for Windows 10...

      Really!? You're going there. That's like saying the sun is dying because it doesn't look as bright behind the tinted windows inside your car.

      But taking you at your word, let's also say that your remark is apparently apologist for the paranoia cabal that supports Mr. Crust (as the ZDNet author dubs him) and his oh-so-loosely termed "research" claims.

      A guy installs Windows 10 on a VM slice under Linux, blocks all LAN traffic and records the result. The only thing conclusive about that is the inter-dependency between modern PC platforms and the Internet... and that's all; something TFA makes incontrovertibly clear. In other news, water is wet and the sun will rise in the morning.

      For anyone who took 10 minutes to read TFA, the truth is plain to see. The claims of Mr. Crust are firstly, trumped-up, and secondly, wholly presumptuous based on highly circumstantial and incomplete data, and lastly, hyped-up pseudoscience masquerading as research. It's not being an apologist, it's being a realist. The real "test" here is done on the audience; to find those among us who would be gullible enough to believe such rabble-rousing.

      FYI: Record-low prices on hat-making material; Wal-Mart has 50 sq ft available for under four bucks.

      --
      This post © Copyrite Duggeek, all rights reversed.
  7. FTFY by Anonymous Coward · · Score: 0

    Microsoft Apologist Desperately Rationalizes Windows 10's Phoning-Home Habits

  8. Relax folks, not every Win10 packet is spying data by JoeyRox · · Score: 4, Insightful

    This is supposed to be comforting?

  9. No worse than iPhone by Anonymous Coward · · Score: 0

    You can't even listen to music on OS X or iPhone without the software contacting Apple.

    1. Re:No worse than iPhone by Penguinisto · · Score: 2

      You can't even listen to music on OS X or iPhone without the software contacting Apple.

      Actually, yes I can.

      --
      Quo usque tandem abutere, Nimbus, patientia nostra?
    2. Re:No worse than iPhone by LichtSpektren · · Score: 5, Insightful

      You can't even listen to music on OS X or iPhone without the software contacting Apple.

      I'm quite tired of this nonsense rebuttal. When you use an Apple application, it contacts Apple's servers to see if there are updates available--you can turn that off as well. In contrast, when do you even the most mundane things in Win10 (with the telemetry turned off, mind you), the OS contacts over 100 different domains: https://github.com/WindowsLies...

      Why the fuck does Win10 contact telemetry.appex.bing.net, ad.doubleclick.net, and watson.live.com whenever you open the fucking Notepad?

    3. Re:No worse than iPhone by Anonymous Coward · · Score: 1

      Even if this is true, so what? It doesn't excuse it in the slightest. Go make an article about OSX or iOS.

      The bottom line is that Windows 10 is significantly worse than Windows 7 and 8 in the privacy department. And this has to be pointed out.

    4. Re:No worse than iPhone by Anonymous Coward · · Score: 1, Informative

      with the telemetry turned off

      How? Last time I checked telemetry couldn't be disabled on 10, not even on the Enterprise version (go read the "fine print" on Microsoft's website, it's quite sneaky).

      https://technet.microsoft.com/library/mt577208%28v=vs.85%29.aspx

    5. Re:No worse than iPhone by Alumoi · · Score: 1, Informative

      Why the fuck does Win10 contact telemetry.appex.bing.net, ad.doubleclick.net, and watson.live.com whenever you open the fucking Notepad?

      Because Cortana?
      Cortana: It looks like you are trying to type some letters. Would you like help?

    6. Re:No worse than iPhone by ilsaloving · · Score: 1

      With the exception that if you disable it, it actually IS disabled. If you don't use features that specifically require online contact (eg: Siri, Genius, Apple Music, etc) then it doesn't. (AFAIK)

    7. Re:No worse than iPhone by Anonymous Coward · · Score: 0

      And Cortana needs to phone home for this why, exactly? To notice that I've run an exe?

    8. Re:No worse than iPhone by Anonymous Coward · · Score: 0

      Why the fuck does Win10 contact telemetry.appex.bing.net, ad.doubleclick.net, and watson.live.com whenever you open the fucking Notepad?

      That's not true. Opening Notepad does not open any network connection of any type.
      It's easy to check. Use TCPView and procexp to see what notepad does when it opens.

    9. Re:No worse than iPhone by Anonymous Coward · · Score: 0

      Updates to what?

      If you're playing music already on your device, it seems like a terrible idea to magically change the playlist you justlooked at.

  10. What kind of telemetry by Dunbal · · Score: 4, Insightful

    They gave away at least a few billion dollars' worth of revenue when they gave away Windows 10 for free. So the kind of telemetry they are collecting is at least worth a few billion dollars. Anyone who says different is lying. There is no free lunch.

    --
    Seven puppies were harmed during the making of this post.
    1. Re:What kind of telemetry by LichtSpektren · · Score: 4, Interesting

      They gave away at least a few billion dollars' worth of revenue when they gave away Windows 10 for free. So the kind of telemetry they are collecting is at least worth a few billion dollars. Anyone who says different is lying. There is no free lunch.

      I would like to augment your point by commenting that Microsoft isn't just *giving* Win10 away, they're *foisting* it as hard as it can, likely breaking quite a few laws in the process.

      So that means the profit they're expected to make off of people running Win10 must vastly exceed the cost of making Win10, AND the cost of fighting off all the lawsuits in the process of ramming Win10 onto peoples' computers. One could argue that perhaps they're expecting all that profit to come from people being exposed to the built-in advertisements and the Windows Store, or people so pleased with the OS that they run out and buy a Surface/Xbox/WinPhone, but does anybody really believe that?

    2. Re:What kind of telemetry by bluefoxlucid · · Score: 1

      It'd be nice to cut off support for Windows 7, 8, and 8.1 just like XP.

      Your computer is broken? Uh. You're using Windows 8.1. Get Windows 10 bye.

      There will be no more updates to Windows 8.1. Go away. Get Windows 10. We're only writing these patches once.

    3. Re:What kind of telemetry by Megol · · Score: 1

      They gave away at least a few billion dollars' worth of revenue when they gave away Windows 10 for free. So the kind of telemetry they are collecting is at least worth a few billion dollars. Anyone who says different is lying. There is no free lunch.

      I would like to augment your point by commenting that Microsoft isn't just *giving* Win10 away, they're *foisting* it as hard as it can, likely breaking quite a few laws in the process.

      In your dreams...

      So that means the profit they're expected to make off of people running Win10 must vastly exceed the cost of making Win10, AND the cost of fighting off all the lawsuits in the process of ramming Win10 onto peoples' computers. One could argue that perhaps they're expecting all that profit to come from people being exposed to the built-in advertisements and the Windows Store, or people so pleased with the OS that they run out and buy a Surface/Xbox/WinPhone, but does anybody really believe that?

      So you can't see any other advantage for Microsoft? By reducing their systems to one they cut down on overheads in development, bugfixing and support. It also improves the public image which took a beating when Windows 8 was released. And that is an important part of their whole business: if consumers begin to consider alternatives, not demanding Windows when they buy a new computer then MS would lose a lot of cash! The alternative for MS would probably be another free 8.x upgrade that took a lot of parts from the Windows 10 project - and that would most likely cost almost as much.
      The free Windows 10 upgrade was a one-off deal, if you buy a computer with Windows then you pay real money for that privilege*, it isn't paid via advertisment.
      (* or something)

    4. Re:What kind of telemetry by Anonymous Coward · · Score: 2, Insightful

      Windows isn't the Microsoft cash cow. It's the framework that Microsoft needs to keep popular to let their cash cow graze. The competition to Windows come in three different pricing options: free (Linux and others), hidden initial cost and $30 each upgrade (OSX), or roughly five billion dollars (Oracle, Sun, whoever). Since none of them are fully compliant with Microsoft's actual money making process, Microsoft needs Windows to be common. This pushes the price they can demand for Windows toward $0.

      Other side, maintenance. The cost to Microsoft to maintain 3 different generations of operating system is significantly worse than the cost to maintain one generation of operating system. Someone with the actual numbers could run the math and see what the actual cost to Microsoft is in pushing Windows 10, what the decrease in potential revenue is, and what the decrease in maintenance expenses would be. I would not be at all surprised if the decrease in maintenance cost would outweigh the loss of theoretical revenue within half a year.

      As for the telemetry and unavoidable communications, if anyone was actually concerned with learning what those contained, someone would've set up a packet sniffer just watching a single PC running 10 and announced their findings. Maybe someone is working on that, but I haven't seen anything about it.

    5. Re:What kind of telemetry by Anonymous Coward · · Score: 0

      They gave away at least a few billion dollars' worth of revenue when they gave away Windows 10 for free.

      They backported that telemetry crap to Windows 7 and 8. Some of us actually paid money for that and are actively avoiding Windows 10.

      So the kind of telemetry they are collecting is at least worth a few billion dollars.

      Spying on Win10 users "because hey, the software was free" is not OK. Spying on Win 7/8 users who were never offered the opportunity to refuse is even less OK.

    6. Re:What kind of telemetry by Anonymous Coward · · Score: 0

      Actually that was basically just announced as it relates to new hardware\chips\chipsets; no support going forward for new gear fo win7\8\8.1.

    7. Re:What kind of telemetry by Anonymous Coward · · Score: 0

      Or... Maybe... Just maybe... Microsoft is playing a longer game and looking at the potential revenue streams from UWP apps, keeping Windows as the primary PC gaming platform, not to mention reduced maintenance related costs that come with some of the changes -- like not having to test security patches against every possible combination of service pack and patch level.

      What we know is that Microsoft collects telemetry data and you can't opt out of it. We don't know what is in the telemetry data or how Microsoft is using it. So claiming that they're using it for some kind of nefarious means is pointless speculation the same as claiming that they're being used for purely beneficent reasons. The only real fact we have on what the telemetry data is being used for is Microsoft's statement that it helped them improve the detection and removal of "rogue" ActiveX controls. That doesn't preclude other uses, but the one data point we have is more on the beneficent side.

      And before someone says it: No I don't work for Microsoft, any company owned, operated or under contract by Microsoft. It's important to remember that someone not immediately agreeing with you is not the same as them taking a contrary position, being a paid shill for the "opposition" or even being an apologist for the "opposition". There's a big spectrum of possibilities between those extremes.

    8. Re:What kind of telemetry by bfpierce · · Score: 2

      Usage statistics for windows users is easily worth that much to the UI/UX and Application development people at Microsoft on it's own.

      Then you can add in all that information being rolled into Bing and the targeted advertising they can potentially do.

    9. Re:What kind of telemetry by hairyfeet · · Score: 5, Insightful

      Actually allow me to correct your correction as MSFT is giving away absolutely nothing as a full version (not the "super duper extra spyware" insider edition) of Windows 10 Requires a legal key from 7 or 8 which currently costs as of this writing between $100-$200 dollars and there are several reports of users trying to go back to Windows 7 after the 30 days to find THEIR KEYS ARE NOW INVALIDATED. I can attest to this being true as I've had to talk to more damned third world MSFT flunkies than I ever cared to thanks to this very issue.

      So the REAL cost of Windows 10 is currently between $100- $200 USD, that is the cost of the Windows 7 or 8 key you are giving up by taking this "free OS" and not going for the super duper extra spyware insider edition......sorry but that is the most fucking expensive "free OS" I've ever seen in my life and why we need to kill that "Oh its free you can't complain" bullshit because that is what it is, total bullshit!

      --
      ACs don't waste your time replying, your posts are never seen by me.
    10. Re:What kind of telemetry by The-Ixian · · Score: 1

      You are making an assumption that this is a tit-for-tat arrangement.

      Smart business moves are rarely this.

      To say that if they give up money here, they HAVE to make it up there is not necessarily true.

      We don't know exactly what MS's end game is, but this could just be a strategic move in a much larger game.

      The fact is, MS's major money makers right now are Azure (which is giving AWS a huge run for its money) and Office 365. They may be willing to take a loss in what was once a major money maker so that they can push other services (like O365).

      MS is not a one trick pony, they don't need to sell your information to advertisers to make a buck so it seems unlikely that is what they are doing. I think it is more likely that what they are doing is leveraging their cloud platform to improve the overall experience of Windows.

      Believe it or not, cloud computing is here to stay, it only makes sense that a Microsoft, a company that operates the #2 cloud platform, will take advantage of that platform and, gasp, make a lot of network connections to do it.

      You are completely within your right to not use this operating system. There are a lot more players in this arena than there used to be, however, if you look at any of them, they are all doing basically the same thing (leveraging cloud computing to enhance the customer experience).

      One of the "value added" (to Microsoft or Google or Amazon or Apple) of sending information to the cloud is they also get invaluable information on how their products are being used. Like it or not, this is the way we are headed.

      This kind of thing definitely is scary but it is not going away... as a matter of fact, I think that a lot of people find that the more their company of choice knows about them the more they like it because it becomes a more personalized experience.

      --
      My eyes reflect the stars and a smile lights up my face.
    11. Re:What kind of telemetry by AmiMoJo · · Score: 1

      They are hoping to get income from the Windows Store, like every other modern OS. The income Google and Apple get from their stores is billions a year and growing.

      --
      const int one = 65536; (Silvermoon, Texture.cs)
      SJW, n: "Someone I don't like, and by the way I'm a fuckwit" - AC
    12. Re:What kind of telemetry by Anonymous Coward · · Score: 0

      "As for the telemetry and unavoidable communications, if anyone was actually concerned with learning what those contained, someone would've set up a packet sniffer just watching a single PC running 10 and announced their findings. Maybe someone is working on that, but I haven't seen anything about it."

      Been done. It seems that the data is encrypted.

    13. Re:What kind of telemetry by Anonymous Coward · · Score: 0

      Interesting. Do you have a link to any of the packet logs?

    14. Re:What kind of telemetry by thegarbz · · Score: 0

      likely breaking quite a few laws in the process.

      [Citation Required]

      Or does "doing something I don't agree with" now always equate to "probably breaking a law somewhere"?

    15. Re:What kind of telemetry by Bite+The+Pillow · · Score: 0

      Halve that amount, since you buy one OS, get one free. Also, since most users got an OEM licence at a discount, you can take another third off. You're left with dinner for two, tops, in the countries where Microsoft makes a profit. Not where profit is counted, of course.

      Feel free to revise your rant accordingly, or at your discretion be an ignorant ass.

    16. Re:What kind of telemetry by ArylAkamov · · Score: 1

      You forgot about that whole "deactivating the product key if you install win10" part, so it's only one OS. 7 or 10.

    17. Re:What kind of telemetry by Anonymous Coward · · Score: 0

      no: only one OS, because I DON'T WANT FUCKING WINDOWS 10, OK?

      Get it now?

    18. Re:What kind of telemetry by Anonymous Coward · · Score: 0

      MS most certainly IS a one-trick pony: foist crap software on a market of unfortunate collateral damage (the users) who are forced to do the QA that MS can't be bothered to do despite the fact that THEY HAVE MORE MONEY THAN GOD.

    19. Re:What kind of telemetry by Waccoon · · Score: 1

      If you don't already have a previous versions of Windows installed and you want Windows 10, you need to buy a new copy at full price. That's $140 for the OEM "Pro" version.

      Unless MS is offering a "Windows7 mode" that I don't know about, you're not getting two for the price of one.

    20. Re:What kind of telemetry by Bite+The+Pillow · · Score: 1

      Ggp was in context of W10 being the most expensive free upgrade ever, and it presumes possession of the Windows 7 license. So your comment is bogus on its face.

      For both you and your sibling, normally W10 would have cost money as an upgrade, and it doesn't. If you had to do the math, what would it be? Not the cost of the original W7 license alone, and not the list price.

      I contend that you paid for the work done to make 7 and you don't pay for the work for 10. Using them simultaneously is NOT the same thing, so invalidating your right to use 7, when you have used it for years, does not somehow mean you paid zero dollars to not use it.

      I could go on, but the two of you seem great at choosing one thing to illogically disagree with and miss the point, so I'll give you no more rope to hang yourself with.

    21. Re:What kind of telemetry by Anonymous Coward · · Score: 0

      When everyone is locked into Windows 10 then MSFT can start raking in the money. Regular (monthly?) payments from here to infinity, going up and up. I guess they'll also try to lock down users' data so the racket might then be that if users try to cancel their subscription, well, '"Nice lot of files you have there. Shame if anything happened to them..."

      Yes, I suppose the spyw-- telemetry will be worth something too. And who knows whatever other schemes they've got to milk money out of users once the puppy dog sale part is over?

    22. Re:What kind of telemetry by hairyfeet · · Score: 1

      Are you dense, or just unable to understand basic logic? Let me break it down...you PAID for Windows 7, this is valued at say $110 for Home, following along? They offer to TRADE, not give, because if they gave you anything then you'd still have your Windows 7 (which you don't) a copy of Windows 10 in exchange for your windows 7 currently valued at $110.

      So I'm sorry but they didn't "give" you shit, they took something of value when they handed you that OS and in no universe does trading equal free, no fucking way. You can jump through all the flaming logic hoops ya want fanboy, it won't make 1+1=3.

      --
      ACs don't waste your time replying, your posts are never seen by me.
  11. TLDR by Nidi62 · · Score: 1

    "These aren't the droids you're looking for"

    Yes, they probably are

    --
    The only thing necessary for evil to triumph is for it to be pitted against a slightly greater evil
  12. Republicans like this moron... by Anonymous Coward · · Score: 0

    have always stood against the people. Stood against the people.

    They think corporations are people and have more rights than us. More rights than us.

    1. Re: Republicans like this moron... by Anonymous Coward · · Score: 0

      Spying is the way of their kind.

    2. Re: Republicans like this moron... by Anonymous Coward · · Score: 0

      I heard they like kicking puppies too.

  13. Re:Relax folks, not every Win10 packet is spying d by Overzeetop · · Score: 2, Insightful

    Well, since the article is a reaction to "Windows is sending your more personal information back to MS *thousands* of times per day," I'd say yes. It's not so much about comfort as a realistic approach to evaluating what is sent.

    My computer phones home to Google thousands of times a day, too. Of course, it's getting my mail, my calendar, and other data, along with the telemetry it's collecting. But, you know, I should be absolutely petrified that Google is spying on me with all that data going back and forth. I suppose.

    --
    Is it just my observation, or are there way too many stupid people in the world?
  14. poison the data by frovingslosh · · Score: 5, Insightful

    Some of use don't have the luxury of not using Windows, either because we need to run applications that are only on Windows or we work with or support others who cannot be forced off Windows. What we really need is a hardware firewall that blocks all access to Microsoft domain names and IP addresses. Or even better one that sends bad data to Microsoft. Maybe a nice little distributed computing project would be to know what data Microsoft is collecting and the write and distribute software that keeps feeding Microsoft bogus data to make their data collection less useful. If enough people ran such software, and I believe a lot of people would gladly do it no matter if the were Windows or Linux users, Microsoft might get the message and cut this out.

    --
    I'm an American. I love this country and the freedoms that we used to have.
    1. Re:poison the data by jenningsthecat · · Score: 4, Interesting

      ...What we really need is a hardware firewall that blocks all access to Microsoft domain names and IP addresses.

      I recall reading within the past week, (probably in connection with Office 365), that some functionality was simply broken when telemetry was disabled beyond what the OS itself allows users to disable. Perhaps that breakage only applies to Microsoft applications; but if it doesn't already apply to third party programs, and indeed to the OS proper, I'm sure Microsoft will fix that 'oversight' sooner-rather-than-later in a mandatory update.

      Or even better one that sends bad data to Microsoft. Maybe a nice little distributed computing project would be to know what data Microsoft is collecting and the write and distribute software that keeps feeding Microsoft bogus data to make their data collection less useful.

      I think with Windows 10 we're seeing the advent of a brand of distributed computing in which 'error checking' takes place between MS servers and your computer. MS gets to define what an 'error' is; if the data your computer sends back to the mothership isn't what MS is expecting, they will simply discard it. And they may disable part or all of your OS functionality as well. Coming up with an algorithm which can successfully fool Redmond while sending false information might be quite a programming exercise.

      ...Microsoft might get the message and cut this out.

      Not a chance. The only thing that will get Microsoft's attention is customers jumping ship in droves. And we all know that ain't gonna happen. Too many people don't understand where this is all going, and most of the rest simply don't care.

      --
      'The Economy' is a giant Ponzi scheme whose most pitiable suckers are the youngest among us and the yet-unborn.
    2. Re:poison the data by Anonymous Coward · · Score: 0

      Sadly, this is only the tip of the iceberg. The days of it being 'your' computer are limited. Microsoft is establishing the trend now with WinX that they can and will have oversight on everything you do with 'your' computer. Oh, you may own the physical hardware, but if you want software to do anything with it, then it becomes 'their' computer. And 'their' computer isn't allowed to block ads, download things that you didn't pay for, engage in any form of suspicious activity, etc. etc. etc.

    3. Re:poison the data by Anonymous Coward · · Score: 0

      The closest one can get to this is to install and run Windows 10, get it fully updated, then while it is still idle, run WireShark and see where it phones home to. Then, factor out the Windows Update stuff, and every other IP or domain it talks with, blacklist, both with a hosts file (or relaying DNS) and a firewall.

      As stated above, your best bet is a PFSense appliance. One nice thing about that is you can slap a Varnish or Squid cache on it, which helps web performance, especially for updates.

    4. Re:poison the data by DogDude · · Score: 1

      What we really need is a hardware firewall that blocks all access to Microsoft domain names and IP addresses

      Almost any router, personal or commercial, includes a firewall. You should look into using the one(s) you already own, if you're so afraid of Microsoft.

      --
      I don't respond to AC's.
    5. Re:poison the data by ledow · · Score: 2

      Just VM it and stop pissing about.

      Then you can run your Windows-only app, have a built-in firewall in the hypervisor that can do whatever you need, you can use your original hardware, you can run other systems that are more privacy-respecting for your day-to-day activities, your licences almost certainly already cover such use, and everything from 8 Pro upwards allows you to use Hyper-V to do just this.

    6. Re:poison the data by jabberw0k · · Score: 4, Insightful

      we work with or support others who cannot be forced off Windows

      If you help perpetuate such environments, you are being an Enabler in an abusive relationship. Stop doing that.

    7. Re:poison the data by JazzLad · · Score: 1

      ...What we really need is a hardware firewall that blocks all access to Microsoft domain names and IP addresses.

      I recall reading within the past week, (probably in connection with Office 365), that some functionality was simply broken when telemetry was disabled beyond what the OS itself allows users to disable.

      A hardware firewall would not be manipulated by the OS (or maybe I misunderstood your reply). I know I won't use 10 until I take the time to configure my router (something I am not looking forward to doing, but know I need to do eventually).

      --
      "If you have nothing to hide, you have nothing to fear." - Every fascist, ever
    8. Re:poison the data by Anonymous Coward · · Score: 0

      Blocking all outbound connections of Win10 is not a good solution, the telemetry collection on your PC still takes a lot of CPU time and could drain your battery faster.

    9. Re:poison the data by Jack+Griffin · · Score: 1

      If you help perpetuate such environments, you are being an Enabler in an abusive relationship. Stop doing that.

      Sure, as you as you front up with the millions in migrations costs we'll do just that...

    10. Re:poison the data by iampiti · · Score: 1

      Customers jumping ship in droves or heavy fines by autorities. I can't understand why the EU gave them such a hard time about Internet Explorer being bundled with Windows but they've said nothing about this abusive spying. I'm sure it breaks some EU laws. It might be time I got involved in politics.

  15. Oh dear, the blind misleading the blind... by Anonymous Coward · · Score: 0

    Anyone spot the flaw(s) in the argument in this bit of the linked article ?

    Mr. Crust's list has another 549 connection attempts on port 80, which is plain old HTTP. Windows doesn't have a web server installed by default, so those are all incoming connections, with Windows trying to retrieve data from Microsoft's servers. They're not sending it the other direction.

    the writer obviously didn't..

    1. Re:Oh dear, the blind misleading the blind... by Anonymous Coward · · Score: 0

      Yeah, that's really confusing part. :)

      Why would there need to be a local web server if those are outbound port 80 connections? How would they be incoming connections if he just talked about there being no web server? Then, why would incoming connections retrieve data from Microsoft servers?

    2. Re:Oh dear, the blind misleading the blind... by ledow · · Score: 1

      But his point about "if the guy had let the connections go out - especially HTTP which you can just sniff - we might know for certain what it was actually trying to send out" is more than spot-on enough to compensate.

      And if you're worried, block port 80 to those ranges of IPs.

  16. Acceptable Phone Home by Alain+Williams · · Score: 1

    Once every day or so: "here are the Microsoft packages installed, are there any updates ?" That does not include: non Microsoft packages, hardware info (other than needed to choose packages), disk/net/cpu/... usage, local account/user info, package usage/popularity, lists of: file names, web sites visited, ...

    1. Re:Acceptable Phone Home by Stan92057 · · Score: 2

      I agree but the people who downloaded and installed windows 10 agreed to something very different. Linux Free and Microsoft Free are 2 very different things. Personally i don't feel bad for any person who choose to install win 10 they can/could have always uninstall it. IMO the only people who have a complaint are the business/persons who bought licances/ deals they paid for win 10. They should have the say on everything the OS collects and data mines. BTW do you know what Linux any distro collects?

      --
      Jack of all trades,master of none
    2. Re:Acceptable Phone Home by Anonymous Coward · · Score: 0

      In all seriousness nobody would have agreed to this monitoring if Microsoft had actually given people the choice. As far as Microsoft is concerned you don't even get to decide whether or not to upgrade. And that is a big problem regardless of other options.

      "Allow us to opt out" is the fix users should be demanding. "Use Linux" might be good advice but it doesn't address the issue.

  17. Re:Idiot by Anonymous Coward · · Score: 0

    If it's suspicious activity that wasn't disclosed ahead of time, it should be considered nefarious until proven otherwise. Your machine is not under your control ... that's a serious problem.

    Even a Linux machine hardly is under "full control" of yours. Try sometimes monitoring the network traffic and you will find that even Linux establishes spurious connections all the time. What was that connection to "star3-44-nyc-plaza.canonical.com" or "a98d-fedora-customer.t-data.akamaitechnologies.com"...

  18. Hopefully... by Anonymous Coward · · Score: 0

    Hopefully, curious people spend their working on and improving the alternatives, instead.

  19. This is exactly what's wrong with Slashdot by Anonymous Coward · · Score: 4, Insightful

    The article claiming Windows 10 telemetry phoned home a ridiculous amount of times even when disabled was false. The user who conducted the experiment set telemetry to basic rather than turning it off. Furthermore, some of the apps that might make connections, what's known as the Windows out of the box experience, were not disabled. Furthermore, the router was configured to drop all outbound connections. As a result, the failed attempts to connect resulted in retrying or connecting to different mirrors over and over again. For some services like Windows Update this is completely reasonable behavior, otherwise they'd be vulnerable to a denial of service attack against the update server. The methodology exaggerated the amount of connections made by Windows while not even properly disabling telemetry. These are the facts. One reputable Slashdot user noted that when telemetry was disabled fully in the Enterprise version of Windows and all of the other apps were disabled, the only outbound connections were, in fact, Windows Update.

    Despite the facts, Slashdot users complain about any story that suggests that Windows 10 telemetry isn't as severe as it's made out to be and accuse the authors of being Microsoft shills. Furthermore, these Slashdot users get modded up, and the parent is at +4 insightful. It seems that facts are optional in these discussions, and that's a shame. Those who make such false claims about Linux distros such as Ubuntu are rightly accused of being trolls and modded accordingly. But doing that to Microsoft is insightful.

    Those of you who post such things and mod up such posts should be ashamed of yourselves. If privacy advocates want to be taken seriously, the discussions need to be based on facts instead of FUD. There are real issues with Windows telemetry namely that users are automatically opted in without being prompted, that Microsoft hasn't disclosed what data are sent to them, and that only the Enterprise versions of Windows 10 can fully disable the telemetry. These are real issues. But when there's so much FUD and misinformation, it damages the credibility of those who raise very legitimate objections. You should be ashamed of yourself for posting false information because it does a disservice to those with very real concerns about privacy.

    1. Re:This is exactly what's wrong with Slashdot by Anonymous Coward · · Score: 0

      Lol, and this post is score 0. it is hands down the best comment in the entire thread.

    2. Re:This is exactly what's wrong with Slashdot by Jack+Griffin · · Score: 1

      Best post of the entire thread, yet still only modded 3...

  20. Re:Idiot by Megol · · Score: 1

    Just the fact that it it phoning home is enough to reveal some information, such as that the device on the other end is running Windows 10. Looks like it's also trying to discover any other machines on the local network.

    Oh, the humanity!

    If it's suspicious activity that wasn't disclosed ahead of time, it should be considered nefarious until proven otherwise. Your machine is not under your control ... that's a serious problem.

    I'll assume you never use a smartphone, a user friendly Linux distribution (or *BSD ditto) etc.? Even browsing the web would make the machine "not under your control" so I guess you use telnet to communicate with /. servers.

    Either that or your post is essentially useless.

  21. Well, it's ZDNet by Khyber · · Score: 1

    They're one of the harder corporate shills. Microsoft or Apple, they know no bounds in selling out.

    --
    Still waiting on Serviscope_minor to wake up to fucking reality and realize that Jessica Price isn't going to fuck him.
  22. Re:Idiot by Anonymous Coward · · Score: 0

    "Looks like it's also trying to discover any other machines on the local network"

    Yeah, that's called network discovery. It's something windows has done since like...forever ago. My Linux boxes do the same thing. I don't hear you screaming about that.

  23. Ok so what about the other 2000? by Anonymous Coward · · Score: 0

    The author of that article makes some valid points for about 55% of the "traffic"; he does not however make much of a convincing case at all as too why most of the the other 2100 should be happening in an 8 or 30 hour period.

    Sensational or not, Mr. Kelly's whipping has actually provoked at least on the surface a positive result\response out of Microsoft, they claim that 'later this year' they will be providing a way to disable all telemetry\data collection, this time for realzies they claim, even though they are apparently really really going to recommend users to not actually disable the stuff. I'll believe this when I see it, but at least there may be some hope.

    1. Re:Ok so what about the other 2000? by KGIII · · Score: 2

      I don't use Windows on my computers (I do have a Windows phone) so I don't have a dog in this fight but... Err... You know what telemetry is, right? I mean, you can (and should) be able to turn it off if you want and off should mean off - no questions asked. But, umm... If they don't know how you use the OS then they won't be *likely* to consider your use-case when they make changes. They won't know that you're one of the people with that video card and having that problem so they won't fix it if you don't send crash reports. They won't be able to optimize their personal assistant thing if you don't let them have that personal data.

      Now, to be clear, I'm a firm believer in off means off. But, it's incumbent on you to know what the outcome of your choices may be. Oh, they might get enough reports about that driver and video problem but what if your peers also shut it off? This goes in both directions, actions have consequences. I don't know what the outcome will be but I'm pretty sure they're actually pretty good at collecting (and by lack of reports to the contrary) securing this telemetry data. Where I using Windows, I'd probably let them have the data - though I'd be pretty pissed if off didn't mean off. (I'm kinda big on that - off is off and on is on, it's an honesty thing.)

      One other thing to note... Since the days of 95, but more pronounced with 98, there tends to be a big swing in the direction of people who are moving to Linux. Six months or so later, they're gone from the forums and the .ISO download numbers are back to normal. In a year, they've turned into rabid supporters of the OS they were so against. I have been watching and expecting a huge swing in numbers. (I seed well over 100 distros - the last time I counted there were 144, it's not an exact metric so I also look at the sites that offer their stats like DistroWatch.)

      You know what I've seen? Not a whole hell of a big jump in numbers. Lots of noise. I see a lot of that. But the numbers don't seem to indicate any huge swings, perhaps fewer now than when 8 and 8.1 dropped. I'd not be surprised if someone could get and crunch the numbers and they turned out that this uptake isn't all that high with Linux right now. So, people don't actually seem to be pissed off about this at the level where they're jumping ship.

      I dunno... Were I still using Windows, this might have been enough to make me bail. It's not that I dislike the telemetry. It's that I want off when I say off. If I can't trust my OS to do that, what can I trust it for?

      --
      "So long and thanks for all the fish."
  24. The Reality of the Situation by Sir_Eptishous · · Score: 1

    Where I work, and at most of the companies I have worked for, the vast majority of the software used, ran on Windows.

    Whether it was servers or workstations, Windows was the choice. This was because the software used could only be ran on Windows. I suspect there are many companies/government agencies/schools, etc that are in that same situation. Sure, there may be a *nix server here, an Apple product there, etc, but Microsoft definitely has the stranglehold.

    Since Microsoft is in this position, and the software used by my workplace runs only on Windows, there will eventually come a time, when vendors have put out versions of their software that will run on WX, that all workstations in our workplace will be WX. I don't see this NOT happening.

    This means, that unless someone took the time to configure a firewall to block all of the telemetry, etc, connections going out to Microsoft's "user data and profiling aggregation infrastructure", anything someone did on one of those WX machines, while at work, would essentially be tracked and logged by Microsoft and whoever they were sharing that data with.

    I don't think people really understand what this means.

    Oh, and do me a favor. Please don't suggest I use Linux. If a workplace like mine, or the others I've been at, could have used Linux instead of Windows, that transition would have happened years ago.

    And another thing, there is a false sense of privacy among many about BYOD. As if using your iPhone or Samsung is going to leave you a trail free of crumbs. Free from every comment you make online, free of every post or update.

    --
    We play the game with the bravery of being out of range
    1. Re:The Reality of the Situation by The-Ixian · · Score: 2

      FYI, in a corporate environment, if you are running Windows 10 Enterprise, you have more control (via GP) to disable telemetry.

      In anything other than Enterprise, setting the telemetry to "0 - don't send telemetry" is equivalent to setting it to "1 - Send limited telemetry".

      But even still, in a corporate environment, there are other ways to block this kind of thing. I am thinking ACL's on the firewall or layer 7 (application) rules in the firewall. But you could also maintain internal DNS that loops back certain MS domains.

      I wouldn't be surprised if someone came up with a DNS service at some point that does this.

      --
      My eyes reflect the stars and a smile lights up my face.
  25. What the actual fuck by kuzb · · Score: 2

    Even after the moronic voat user was shown to have completely screwed up the entire test slashdot is here referencing it yet again as fact? The new editors - just as shitty as the old ones.

    --
    BeauHD. Worst editor since kdawson.
    1. Re:What the actual fuck by Anonymous Coward · · Score: 1

      The new editors - just as shitty as the old ones.

      Old Timmy = New Timmy. Same Timmy, same Timmy crap.

    2. Re:What the actual fuck by thegarbz · · Score: 4, Insightful

      Even after the moronic voat user was shown to have completely screwed up the entire test slashdot is here referencing it yet again as fact? The new editors - just as shitty as the old ones.

      a) timothy is not a new editor.
      b) this article is talking about how garbage the results are.
      c) old users still the same bitchy unappeasable old users.

    3. Re:What the actual fuck by Nothing2Chere · · Score: 1

      Are you sure you're not new here?

  26. Anal Rape Only Half As Bad As You Thought by Anonymous Coward · · Score: 0

    Anal rape is only half as bad as you thought.

    Also, Windows 10 is only half as bad as you thought.

    Just relax and take it in. Bite the pillow, if you must.

  27. NetBIOS and DNS are not telemetry by Anonymous Coward · · Score: 0

    Watch XP. You'll see the exact same traffic.

    You all just make yourselves look like idiots by pretending all of this traffic is about spying on you.

    1. Re:NetBIOS and DNS are not telemetry by Holi · · Score: 1

      I have DNS servers already, how is sending dns queries to microsoft not spying?

      --
      Sorry, teleporters just kill you and then make a copy. A perfect, soul-less copy.
    2. Re:NetBIOS and DNS are not telemetry by Anonymous Coward · · Score: 0

      The "non-private" DNS server he "blocked" was 192.168.1.1

  28. DNS queries aren't "spying."? by vvaduva · · Score: 1

    DNS queries aren't "spying."

    Yes, actually they can be. I don't want Microsoft to know that I read deepdotweb anymore than I want the government to know that. Why is microsoft resolving names for Windows 10 users? And who are they sharing the logs with?

    This Windows 10 apologist has nothing to offer as an acceptable excuse for this behavior.

    1. Re:DNS queries aren't "spying."? by Anonymous Coward · · Score: 0

      FYI the Microsoft DNS server being reported by is 192.168.1.1, so to protect yourself make sure you null route it.

  29. Ed Bott by Anonymous Coward · · Score: 0

    has been a long-time Microsoft apologist, so this isn't entirely unexpected.

  30. Desperation to get people to switch? by Anonymous Coward · · Score: 0

    It feels like there is a renewed effort at the moment by Microsoft to push people to switch to Windows 10. There's been a lot of this propaganda in the press the past week, as well as some big budget games giving windows copies away free... as long as you have Windows 10.

    In my view, ANY amount of privacy invasion is too much. Downplay it all you want, but Windows 10 connects, or sends information to Microsoft in ANY WAY and cannot be turned off, then it's too much for me. I'm an average user, and I'm specifically not switching until there's no other choice available to me because of the antics they have pulled.

  31. Telemetry & regulatory requirements by Anonymous Coward · · Score: 0

    The very last paragraph of Microsoft's technet article states:

    Retention

    Microsoft believes in and practices information minimization, so we only gather the info we need, and we only store it for as long as it’s needed to provide a service or for analysis. Much of the info about how Windows and apps are functioning is deleted within 30 days. Other info may be retained longer, particularly if there is a regulatory requirement to do so. Info is typically gathered at a fractional sampling rate, which for some client services, can be as low as 1%.

    Can someone explain what "telemetry" would fall under govt' regulation?

  32. Re:Relax folks, not every Win10 packet is spying d by thegarbz · · Score: 1

    My computer phones home to Google thousands of times a day, too.

    Funny thing is if you take an Android phone to China it'll self drain it's battery in attempts to phone home to Google. That's kind of the default action when you can see a network but didn't manage to get through to a server. Retry.

    Thousands of connection attempts may drop down to a handful if the connections actually went through.
    But then there's another question of does windows bulk store telemetry information, does it attempt to send it out blind, or did the user by dropping connections to Microsoft IPs stop windows from even attempting collect telemetry in the first place.

    There was nothing right about this test.

  33. Why would you use it if you dont know. by Anonymous Coward · · Score: 0

    Windows specifically sends still remains largely a mystery; hopefully curious people will do analysis on the operating system and network traffic sent by it.

    Especially your business.

  34. Re:Idiot by BarbaraHudson · · Score: 1

    I'm free to run a *nix box without ever connecting it to the internet. How long before Windows 10 times out and refuses to work unless it's re-validated (may be in a future update, may already exist ... but we know it's coming).

    --
    "Transparent" is a shit show that trades on every stereotype going. A man in drag is NOT a transsexual.
  35. Re:Idiot by BarbaraHudson · · Score: 1

    Those are connections *I* choose to initiate. That you don't see the difference is a bit scary.

    --
    "Transparent" is a shit show that trades on every stereotype going. A man in drag is NOT a transsexual.
  36. Re:Idiot by BarbaraHudson · · Score: 1

    When something phones home, and doesn't tell you what data it sends, why would you assume that it's not forwarding that info as well?

    --
    "Transparent" is a shit show that trades on every stereotype going. A man in drag is NOT a transsexual.
  37. Can't randomize the randomizer by Anonymous Coward · · Score: 0

    Not a problem, just patch out the ASLR support in the kernel itself during startup. (Along with any checks to make sure it's working.) After all, you can't randomize the layout without having a way to tie it all back together. So the initial randomizer can't itself be truly* randomized.

    *Note: They can partially randomize it, by making the randomization static, and then reloading the randomizer using the static randomizer to actually randomize the layout of the randomizer. (Whew...) For bonus points randomize the static layout for the initial randomizer during installation or even after so many successful startups. (Which makes it harder to decipher as it's different for each installation. So groups would need to use a VM and the same VM harddisk image to work together in it's deciphering.)

  38. Re:Relax folks, not every Win10 packet is spying d by Bite+The+Pillow · · Score: 1

    The DoD says DoD puters have to have EE and set telemetry to its lowest setting (EE only), so I am comfortable with it.

    iase.disa.mil and search under operating systems.

    Personally, I'm going to avoid win 10 until I can't, then run ReactOS. And anything that doesn't work in ReactOS will get a bug report and a simple example program. A simple main.c showing the problem gets good results, I have found.

  39. Everybody does analytics by iamacat · · Score: 1

    If you have two apps which are exactly the same to start with and only one does analytics, it would crush the competitor in a year or two after all significant crashes are fixed and user interaction is optimized by studying flow between screens. People grumble about tracking but do not reflect that in their purchasing/web browsing decisions to the extent of choosing an inferior but more anonymous product.

  40. Re:Relax folks, not every Win10 packet is spying d by Anonymous Coward · · Score: 0

    Big difference there. You keep your data on Google. But Microsoft provided an OS. besides updates, you need not having anything more to do with them. Now add the logging and privacy intrusions. Has the lightblub gone off in your head yet?

  41. Fuck Cortana by Anonymous Coward · · Score: 0

    Cortana: Clippy with boobs and a fetish for going through your drawers when your back is turned.

  42. We're not raping your daughter by Anonymous Coward · · Score: 0

    we're only finger-fucking her.

    And that makes it OK.

  43. Re:Microsoft now I know WHY Russinovich said... by Anonymous Coward · · Score: 0

    APK- Please tell me what med you started taking.

    Or is it that reading how "APK's days are numbered" concentrated your trollish mind?

    Fuck you, either way.

  44. Re:Relax folks, not every Win10 packet is spying d by Anonymous Coward · · Score: 0

    My computer phones home to Google thousands of times a day, too. Of course, it's getting my mail, my calendar, and other data, along with the telemetry it's collecting. But, you know, I should be absolutely petrified that Google is spying on me with all that data going back and forth. I suppose.

    Funny. My computer doesn't phone home to Google thousands of times a day. My tablet only infrequently phones home to Google when I use it. The former, I have a choice in a meaningful way. The latter is crap and having to root my tablet and have a firewall is an absurd provision to block the vast majority of Google's phoning home in Android. Having said that, once rooted I am reasonably confident I can actually block Google's actions; there aren't 101 other unlisted, secret components* off violating my privacy.

    Overall, it's a bit apples and oranges a comparison, anyways.

    * Sadly, too much bundling has a similar effect, though, with it being hard to give access to the few parts of one component that I want to have access to the internet and to have the rest firewalled. So, it's far from perfect and if you want to raise a complaint about THAT, I'd fully support you. In any case, I don't treat my tablet the same as my computer; the former is a toy and the latter is for serious work. So, that sways my view of things from "petrified" to merely significantly annoyed.

  45. Devils Advocate by Anonymous Coward · · Score: 0

    If the telemetry MS uses is so damn evil and worthy of as much despise as posted on /. then why don't you lazy fucks build yourself what you consider to be a malfeasant application, publish it and use the data it collects from Windows 10 users to prove your point. All the MS IS EVIL whining around here is seldom backed up by anything more than an AC sharing their intuitions. Go hold your witch hunts and Ouija board inquiries somewhere else, please and thank you.

  46. Re:Relax folks, not every Win10 packet is spying d by Waccoon · · Score: 1

    The test results don't make sense, anyway. Wouldn't it be better to collect information into a log and then send that log once a day with a scheduler?

    Who needs to worry about thousands of connections when only one is needed?

  47. [bad idea bears] count the connections! by Anonymous Coward · · Score: 0

    What is wrong with this journalist? He is making the unspoken assumption that more connections means more tracking. One connection per week, uploading an insanely-detailed log, is enough.

    The original point of highlighting the number is that tracking is out of control: they have become Google-like or worse, assuming their cloud will always be there, and when they put software out into the world they're free to rely on it whenever they like, so that user tracking is a presumed habit not a nefarious goal and they are culturally incapable of offering a meaningful "off" button.

  48. Fuck Ziff Davis by Anonymous Coward · · Score: 0

    They are a bunch of fucking crooks, and time and time again they write articles to support business decisions that screw over the little guy.

    I can't fucking wait to the day Ziff Davis goes out of business.

  49. its not a problem until by Anonymous Coward · · Score: 0

    You live in the middle of bum-fuck nowhere on a shitty DSL connection that is maybe capped at 6 mbs and you have more than 1 computer in your house running Windows 10 ... or maybe you are a small business in the middle of nowhere with 15 PCs running Windows 10 all sharing a single 10 Mbs connection. Yeah, it's not a problem right?

    Fuck off.

  50. Re: TVs by Anonymous Coward · · Score: 0

    > So if I buy a TV made by, say, Samsung or Philips, that gives them carte blanche to record and store everything I say or do in my living room?

    Actually, yes, it does. Read the terms of service and EULA when you buy one. Samsung and Vizio seem to be the most aggressive about it, but any modern TV that can (and, usually, must for activation) be connected to the Internet, and has a camera and mic (most costing more than a few hundred$$ do), should be assumed to be monitoring and recording (and uploading frequently to the mothership) at all times. Unless you figure out what IP's it's using and block them at the router, of course, and if you do that eventually the TV may stop working because it can't phone home.

    Modern TVs and similar stuff are a big problem not only because of the monitoring, but also because they routinely have p***-poor security and can be hacked in a heartbeat. Modern Windows, at least, usually is fairly secure (at least from a hacking standpoint) once properly set up.

  51. Is it a true EULA agreement if they autoinstall? by anti-disney · · Score: 1

    I woke up one morning to find my Windows 7 Laptop was attempting to run Windows 10 for the first time but crashed because my laptop wasn't compatible with Windows 10. If this installation were successful and I was upgraded without consent, how am I agreeing to their EULA? Before you could simply abort the installation and refuse to install the product if you didn't agree with the EULA. In my upgrade to Windows 10, I was never given the option to accept or decline the EULA license that came with Windows 10. I just woke up in the morning and realized while I was asleep my laptop was upgraded to Windows 10 but that the upgrade failed because my laptop wasn't compatible with Windows 10. I ended up having to wipe the entire hard drive and reinstall Windows 7 and recovered some of my previous files from backups I made. After this incident, I have chosen not to use Windows at all but still will have to use it for some tasks but the rest of my computers run Linux and I've been happy with Linux.