Slashdot Mirror


Microsoft Says Windows 10 Version 1607 is The Most Secure Windows Ever (thurrott.com)

A new white paper from Microsoft claims that "devices running Windows 10 are 58% less likely to encounter ransomware than when running Windows 7". But an anonymous reader brings more news from Windows-watcher Paul Thurrott: in a separate blog post, it also makes its case for why Windows 10 version 1607 -- that is, Windows 10 with the Anniversary Update installed -- is the most secure Windows version yet. Improvements in this release include: Microsoft Edge runs Adobe Flash Player in an isolated container, and Edge exploits cannot execute other applications... [And] the Windows Defender signature delivery channel works faster than before so that the in-box anti-virus and anti-malware solution can help block ransomware, both in the cloud and on the client. Additionally, Windows Defender responds to new threats faster using improved cloud protection and automatic sample submission features, plus improved behavioral heuristics aimed at detecting ransomware-related activities.
Interestingly, the paper also touts Microsoft's "Advancing machine-learning systems in our email services to help stop the spread of ransomware via email delivery."

194 comments

  1. Security that the USER cannot control. . . by Salgak1 · · Score: 5, Interesting

    . . . .is not what **I** would call a selling point. Sticking to Win7 on my Windoze gaming box, and Ubuntu for my main box. . .

    1. Re:Security that the USER cannot control. . . by Anonymous Coward · · Score: 0

      Same here. Win 10 just isn't worth the hassle. I've gotten as familiar as I need to for my job, and that's it.

    2. Re:Security that the USER cannot control. . . by Anonymous Coward · · Score: 0

      99.975 percent of the consumer public running Windows don't have the skill, knowledge, or inclination to make changes to security.

      The .025 percent of the consumer public with the knowledge are probably not running Windows in the first place, since they don't trust anything they don't compile.
      (Except of course gcc, which they trust, and shouldn't really, as it could have been compromised and no one could tell)

      Giving the consumer public any significant ability to alter their security is irresponsible in the same way handling firearms without training is irresponsible.

      P.S. I was hoping we would have grown past the point where "Windoze" was considered clever, at least outside lonely 12 year olds. Guess not, huh?

    3. Re:Security that the USER cannot control. . . by Anonymous Coward · · Score: 0

      what is your job? just interested in what types of jobs still force technical people onto windows.

    4. Re:Security that the USER cannot control. . . by Salgak1 · · Score: 5, Insightful

      And what of small businesses ? Medical practices ? Only the Enterprise Edition of Win10 gives any real control over security. Not controlling your own security will make things like, oh, HIPAA and PCI compliance problematical.

      Claiming security controls for the public is like handling firearms without training ? Well, there goes Linux as a replacement for Windows, by your argument. . .

    5. Re:Security that the USER cannot control. . . by Anonymous Coward · · Score: 1

      "Security that the USER cannot control..."

      As we still live in the age where the USER needs to maintain local administrative rights in order to support many 3rd party (read: corporate) applications, let me re-write your bashing title for you:

      Security that MALWARE cannot manipulate...

      And THAT is what I would call a selling point. They can tout their Defender anti-protections all day long, but when the zero day hits, reduced rights and an utter inability to fuck around with built-in security mechanisms ARE the last lines of defense.

      Catch-22? Sure. That said, I'll take a lack of options over an ignorant click-happy user any day.

    6. Re:Security that the USER cannot control. . . by fisted · · Score: 3, Insightful

      That said, MS has labeled every version of Windows as 'the most secure windows' ever since computers are regularly networked. Geez.

    7. Re:Security that the USER cannot control. . . by arbiter1 · · Score: 0

      Um i think that more applies to crApple then microsoft since they can't do barely anything without something telling you no or keeping you locked in.

    8. Re:Security that the USER cannot control. . . by Anonymous Coward · · Score: 5, Interesting

      Not the same AC but I am a scientist in a corporate environment who does electron microscopy and x-ray microanalysis. We have a lot of hardware that requires Windows. Typically the software is a minimal part of the problem. I have hardware that still only runs on Win XP and Win 7. We have one system still Win 2000 and one on NT. They are all like the Energizer Bunny - they keep on going... The hardware upgrades would cost anywhere from several thousand to over $1 million because entire instruments would need to be replaced. We are specialists at getting parts from E-bay. We preserve jobs by letting our analytical needs determine our upgrade path, not Microsoft...

    9. Re:Security that the USER cannot control. . . by temcat · · Score: 4, Informative

      Being a translator still kind of forces me onto Windows because of the lack of quality GUI OCR tools in the Linux ecosystem. (The commercial ABBYY engine does exist and is really not that expensive, but I need manual area selection and categorization, heuristics still suck big time.) That may change in the (not so distant) future but still is the case.

    10. Re:Security that the USER cannot control. . . by houghi · · Score: 5, Insightful

      I have no issue of the company doing the updates and users having no control. I do blind updates on my Debian as well. The issue is that you can't turn it off. If have not done updates because I have read there where issues, so I waited two days.

      So Windows tries to be too clever for its own good.

      --
      Don't fight for your country, if your country does not fight for you.
    11. Re:Security that the USER cannot control. . . by Ol+Olsoc · · Score: 1

      Um i think that more applies to crApple then microsoft since they can't do barely anything without something telling you no or keeping you locked in.

      Examples?

      --
      The shepherds did so well protecting the flock that the sheep no longer believed that wolves existed.
    12. Re:Security that the USER cannot control. . . by fnj · · Score: 3, Insightful

      I have no issue of the company doing the updates and users having no control ... The issue is that you can't turn it off.

      Consistency is the hobgoblin of little minds, eh?

    13. Re:Security that the USER cannot control. . . by LifesABeach · · Score: 0

      "Windows?" I had to look it up on Wikipedia. Why is a proto operating system being discussed in the present tense?

    14. Re:Security that the USER cannot control. . . by dkone · · Score: 2

      You can turn it off by setting the Windows Update service to manual and turning it off. If I had to put only on thing on my hate list for Win10 it would be the automatic updates and worse yet the automatic reboot. I constantly run with 10-15 open apps at any given time most as source references to my main app. Nothing worse then coming in in the morning, or even walking down to the kitchen to get water and finding you computer has rebooted.

      FYBG

    15. Re:Security that the USER cannot control. . . by Anonymous Coward · · Score: 0

      Sure it can be a replacement, as long as most customers leave full fledged computers for tablets and phones. Apple and Google bury BSD and Linux so deep that that same .025 percent will be the only ones knowing you are really running something thats basically Unix for the masses.

      Get all the unwashed off of Windows, on to a controllable platform like a tablet/mobile phone, and whats left are people that need a computer (developers, artists). They will be running Macs. So this whole Windows thing will correct itself soon. Microsoft is fond of say that this is the last version of Windows.

      Turns out they are gonna be right, but not in the way they think.

      Apple will own the market for quality, Google will own the market for quantity, and Microsoft will return to making Apps, where they have far more skill than in the O/S market.

      This will be especially true in the enterprise, where the goal is to give employees the minimum thing they need to accomplish their job, and an iPad certainly is that ... controllable, safe, and cheap relative to computers.

    16. Re:Security that the USER cannot control. . . by Anonymous Coward · · Score: 0

      Security that the USER cannot control is not what **i** would call a selling point

      Think about this in terms of things like cable modems and web applications.

      For example, let's say I'm using a web application that requires HTTPS, and does not give me the option of downgrading to HTTP. Is the fact that you don't have any control over this a bad thing?

      Or let's say a cable modem requires a 10-character-minimum password when configuring it as wireless access point. Is the fact that you don't have user control over this requirement something that would make the device undesirable?

    17. Re:Security that the USER cannot control. . . by drinkypoo · · Score: 2

      That said, MS has labeled every version of Windows as 'the most secure windows' ever since computers are regularly networked. Geez.

      Odds are they're correct, but it never actually seems to become functionally secure, does it?

      --
      "You're right," Fisheye says. "I should have set it on 'whip' or 'chop.'"
    18. Re: Security that the USER cannot control. . . by thundercattt · · Score: 1

      Same here. Debian since 2002 here. Win 7 (using Never10) for gaming until Linux gets their act together on gaming. I still try to crowbar my games every now and then.

    19. Re:Security that the USER cannot control. . . by The-Ixian · · Score: 1

      The issue is that you can't turn it off.

      Actually there are a couple of things I have heard (not personally tested) that you can do:

      1. Set local GP to assign your WAN connection to a metered connection - This works by telling Windows that your WAN connection is metered so that downloading anything will cost money. Updates will not be auto downloaded in this case.
      2. Set WU to profile 2 (notify before downloading and installing any updates) - This works by telling Windows not to download the updates until authorized. If the update is not downloaded, it cannot be installed.

      --
      My eyes reflect the stars and a smile lights up my face.
    20. Re:Security that the USER cannot control. . . by Anonymous Coward · · Score: 0

      Considering every single Windows 10 machine comes with malware written by Microsoft I think 'security' is already a lost cause. Let other people fight the PCI /HIPPAA fight for now there is zero reasons to upgrade and many to stay on windows 7/8.

    21. Re:Security that the USER cannot control. . . by Anonymous Coward · · Score: 0

      A brick is 100% secure. Doesn't make a good os tho.

    22. Re:Security that the USER cannot control. . . by xxxJonBoyxxx · · Score: 1

      >> Security that MALWARE cannot manipulate...And THAT is what I would call a selling point.

      ^^^ This, and Apple agrees. Anyone else remember the Mac commercials ripping Windows for asking a million indecipherable security questions (as MS phased in UAC)? The "invisible to user, hard for malware" security on a Mac was EXACTLY the selling point Jobs' team was marketing then.

    23. Re:Security that the USER cannot control. . . by chispito · · Score: 1

      . . . .is not what **I** would call a selling point. Sticking to Win7 on my Windoze gaming box, and Ubuntu for my main box. . .

      Is an iPhone secure, then?

      --
      The Daddy casts sleep on the Baby. The Baby resists!
    24. Re: Security that the USER cannot control. . . by Anonymous Coward · · Score: 0

      Enterprise was always the version to use in a business environment.

    25. Re:Security that the USER cannot control. . . by Vlad_the_Inhaler · · Score: 1

      Well - I am having a bunch of problems, both with my remaining Windows 7 install (I have some software there which does not run under later levels) and with my Windows 10 machine.

      • Windows 7 updates have been bundled together for two months now. Unfortunately there was an update two years ago which could not be applied on my machine, I had automatic updates on back then and it was forwards - backwards - forwards - backwards completely automatically until I booted up into safe mode and turned automatic updates off. The bundled updates look to be including that particular patch so my Windows 7 is in a similar state to an ancient Win XP laptop lying around somewhere: Unsupported. I think I need to work out what the legal situation is here.
      • My Windows 10 machine was dual-boot with Linux. Windows 10 broke that with the October update (or was it September?) and it is going to take a lot of time and energy to recover things, Windows 10 updates routinely and deliberately reset configuration values. Each time. Breaking things deliberately is not improved security, it is what Malware does. The only thing stopping me reverting to Windows 7 is that the machine prefers UEFI and that is a bear under Windows 7.

      Microsoft seem to think that I bought my computers so I could experience the privilege of running Windows Update, the thought that I could actually want to run anything else on it has either not reached their consciousness or it is something they are actively trying to inhibit.

      --
      Mielipiteet omiani - Opinions personal, facts suspect.
    26. Re:Security that the USER cannot control. . . by tepples · · Score: 2

      Because on desktop and laptop computers sold in the United States, Windows is used as a substitute for an operating system far more often than a real OS such as FreeBSD or GNU/Linux is. One can walk into a Staples or a Best Buy store in the United States, and virtually every desktop or conventional laptop computer for sale will come with Windows. There are three categories of exceptions:

      • Apple products, which run a GUI similar to GNUstep on top of a FreeBSD-derived operating system.
      • Devices running Android, a smartphone-derived operating environment that uses Linux as its kernel but whose GUI enforces "all maximized all the time" window management. Android 7 "Nougat" begins to fix this, but most tablets don't come with Nougat yet.
      • Chromebooks, which are designed to run a web browser and nothing else. If a more conventional GNU/Linux environment is installed, a Chromebook begs the user to wipe it and reinstall Chrome OS every time it is turned on.
    27. Re:Security that the USER cannot control. . . by The+Optimizer · · Score: 2

      > Not controlling your own security will make things like, oh, HIPAA and PCI compliance problematical.

      Add Sarbanes-Oxley (SOX) Compliance to the list as well.

      My wife just dealt with this at her Fortune 500 company. Microsoft will not disclose completely what the telemetry in SQL Server 2016 is phoning home. They have no choice with respect to compliance , and have made the decision to migrate their older reporting from SQL server (older versions) to Oracle.

      She wishes she had a recording of their MS sales rep telling her team that it doesn't matter.

    28. Re:Security that the USER cannot control. . . by Anonymous Coward · · Score: 0

      Coming from someone who maintains a whole lot of computers for a living - Taking control away from the user is the number one best security practice by a wide margin.

      Giving admin to a user who can't find their documents in "Documents" (Or My Documents) let alone figure out a flash drive is like giving a toddler a loaded handgun.

    29. Re:Security that the USER cannot control. . . by Rick+Schumann · · Score: 1

      I think everyone misunderstands the story. Win10's malware and spyware is the most secure ever -- from the end-user trying to disable or bypass it. MS has made themselves extremely clear, through their actions, that they don't give a rats' ass about the end user, other than the revenue they can squeeze from them. Therefore MS makes a priority of ensuring their revenue stream is secure, not anything the silly sheep users ever do.

    30. Re:Security that the USER cannot control. . . by Anonymous Coward · · Score: 0

      Micro$haft's claims cannot be believed, just because it is Micro$haft making the claims! This is a company that if put in a room with the truth would cause a matter/antimatter explosion!! Even if you disregard M$'s past , all you have to do is look at the underhanded, sneaky way that they used malware tactics and tricked users into installing Windows 10, and the huge numbers of forced installs that happened without user's consent.

    31. Re:Security that the USER cannot control. . . by fahrbot-bot · · Score: 2

      That said, MS has labeled every version of Windows as 'the most secure windows' ever since computers are regularly networked. Geez.

      Ya, but *this* time, the baked-in, mandatory telemetry that tracks everything confirms it's the most secure version.

      --
      It must have been something you assimilated. . . .
    32. Re:Security that the USER cannot control. . . by Anonymous Coward · · Score: 0

      No, it doesn't make compliance problematical. The rest of the industry is using Windows, therefore that is the industry practice. We are using the most current version, therefore that is best practice. It is beyond our control, therefore it is not our problem.

      See, easy!

      No, it doesn't make things any more secure in any realistic sense, it just exposes PCI, HIPAA, HITECH, and related QPP MU issues for the frauds that they are, requiring the end users to be or hire experts instead of making the system developers to be properly responsible for the security of their products (OS, Hardware, and software.)

    33. Re:Security that the USER cannot control. . . by Anonymous Coward · · Score: 0

      If only there were a way to turn it off. Perhaps they could even post this method in a relevant KB article, like this one: https://support.microsoft.com/...

      While I don't doubt that they were cagey on what telemetry is sending, it's also nonsense that you're "forced" to move to Oracle because you had no alternative. That alternative being to TURN IT OFF and be in full compliance. If she were looking for reasons to switch, this was a pretty stupid one.

    34. Re:Security that the USER cannot control. . . by Salgak1 · · Score: 1

      Let's see. . . most of Corporate America. Pretty much, every Federal, Military, and State desktop. Most small businesses. . . .

    35. Re:Security that the USER cannot control. . . by Ravaldy · · Score: 5, Insightful

      Are you new to the industry?

      If you work for a company that lives in Windows you should be living in Windows as well. It forces you to live like your users. After all, you're the technical expertise and you will see opportunities for improvement that users many not see.

      My 2 cents.

    36. Re: Security that the USER cannot control. . . by Anonymous Coward · · Score: 0

      You are moving the goal posts and you know it. These aren't small consumer devices, they are full fledged computers and should operate as such.

    37. Re: Security that the USER cannot control. . . by Anonymous Coward · · Score: 0

      Nice straw man.

    38. Re:Security that the USER cannot control. . . by The+Optimizer · · Score: 1

      I don't have the full story - there's aspects she can't share with me, but I gathered that the politics of switching that stuff to Oracle are more complicated than just the SOX issue... but SOX compliance was the nail in the coffin so to speak. And it was a departmental decision, not just her. I do know their projects involves the handling of employee data for tens of thousands of people in many countries, as well as customer data and their compliance department is rather large and scary.

    39. Re:Security that the USER cannot control. . . by davester666 · · Score: 2

      The important part of the statement is "most secure Windows ever". It's relative only to earlier versions of Windows. It doesn't mean that Windows is no longer riddled with security issues, or is not actively being exploited by zero-day hacks.

      --
      Sleep your way to a whiter smile...date a dentist!
    40. Re:Security that the USER cannot control. . . by Anonymous Coward · · Score: 0

      "Security that the USER cannot control..."

      As we still live in the age where the USER needs to maintain local administrative rights in order to support many 3rd party (read: corporate) applications, let me re-write your bashing title for you:

      Security that MALWARE cannot manipulate...

      And THAT is what I would call a selling point. They can tout their Defender anti-protections all day long, but when the zero day hits, reduced rights and an utter inability to fuck around with built-in security mechanisms ARE the last lines of defense.

      Catch-22? Sure. That said, I'll take a lack of options over an ignorant click-happy user any day.

      I've been a sysadmin since forever, and I have never met an app that could not be run without local admin rights.
      I have met vendors that don't know how their product works, vendors that lie about requirements to make their own job simpler, and admins that don't know how to do the analysis necessary for setting permissions.

    41. Re:Security that the USER cannot control. . . by edtice1559 · · Score: 1

      Well that makes sense if they are continuously improving security. What else would they do? Go backwards?

    42. Re:Security that the USER cannot control. . . by fisted · · Score: 1

      They claim to be continuously "improving security", yes. So "$latest_windows is the most secure windows ever" isn't news.
      That said, last time I checked, "writing new code" was the opposite of "improving security", and that's what seems to happen for the most part. Would be difficult to keep selling new stuff otherwise, too.

    43. Re:Security that the USER cannot control. . . by Anonymous Coward · · Score: 0

      Except, it IS SOX compliant. My point was there are a number of reasons to use Oracle over SQL (and vice versa if we're being honest), but this story is yet another reason folks don't put more stock in the arguments against using MS software. It only takes one MS admin to tell their executive who may read this story, and many others like it, "Yeah, if they'd bothered to RTFM it would have solved their compliance problem." and otherwise VALID points about telemetry and privacy are (justified or not) weakened.

    44. Re:Security that the USER cannot control. . . by Anonymous Coward · · Score: 0

      I run Win7 under a VM in Linux Mint and I recently found that after I let recent security updates install, Spybot AntiBeacon would no longer run. I even tried downloading a newer version and reinstalling, but it would never start up under win7 anymore. I ended up trashing that VM and copying over a backup. Not sure if it was a win7 "update" that killed it, but you have to wonder. I'll think twice about even installing security updates on 7 from now on.

    45. Re:Security that the USER cannot control. . . by Anonymous Coward · · Score: 0

      The most secure Windows ever. So secure, you'll never get out.

    46. Re:Security that the USER cannot control. . . by david_thornley · · Score: 1

      I spent the extra $100 to get Windows 10 Pro for my home laptop. That gives me the ability to delay, but not prevent, WIndows updates.

      --
      "When you have eliminated the unacceptable, whatever is left, however improbable, must be the truthiness" - Holmes
    47. Re:Security that the USER cannot control. . . by 0111+1110 · · Score: 1

      Upgrade to Windows 7 if you want more power over your computer.

      --
      Quite an experience to live in fear, isn't it? That's what it is to be a slave.
    48. Re:Security that the USER cannot control. . . by Anonymous Coward · · Score: 0

      Devices running Android, a smartphone-derived operating environment that uses Linux as its kernel but whose GUI enforces "all maximized all the time" window management. Android 7 "Nougat" begins to fix this, but most tablets don't come with Nougat yet.
      Chromebooks, which are designed to run a web browser and nothing else. If a more conventional GNU/Linux environment is installed, a Chromebook begs the user to wipe it and reinstall Chrome OS every time it is turned on.

      Android and Chrome OS both phone home as bad as Win10.

    49. Re:Security that the USER cannot control. . . by david_thornley · · Score: 1

      IIRC, 10 Pro did come with upgrade rights to 7. There was a typo in the official literature, where it said "downgrade".

      --
      "When you have eliminated the unacceptable, whatever is left, however improbable, must be the truthiness" - Holmes
  2. That's true! by Anonymous Coward · · Score: 0

    But only proves that all previous versions are total crap...

  3. More like Micro$haft Winblows by Anonymous Coward · · Score: 0

    Amy of right my fellow slashditters?

    1. Re:More like Micro$haft Winblows by Anonymous Coward · · Score: 0

      Insightful:+27

  4. You know... by Z80a · · Score: 1

    Just curbing the competition.

    1. Re:You know... by Anonymous Coward · · Score: 0

      Quantitatively Immeasurable Security, that could be the catch phrase of this decade.. and a funny corporate name.

    2. Re:You know... by Z80a · · Score: 1

      I mean the spyware competition.

    3. Re:You know... by Anonymous Coward · · Score: 0

      The same competition curbing could be sensed from the discontinuation announcement of their own EMET software. "Use our browser", as if no other would exist, even on Windows 10.

  5. So, if they're aware of all these flaws in Win7... by msauve · · Score: 2

    Where are the patches for Win7 which address all these known flaws? They're supposed to be providing security updates until 2020.

    --
    "National Security is the chief cause of national insecurity." - Celine's First Law
  6. the NSA was here by Anonymous Coward · · Score: 0

    ......

  7. Except by Anonymous Coward · · Score: 1

    Except for the direct pipeline to Microsoft servers that is.

  8. Win 10 security = Win7 + FF or Chrome + AV by Anonymous Coward · · Score: 0

    I gave up on updating any of my Win7 machines to anything above 7. I use FF or Chrome and Comodo for firewall /AV. Devender and MSE are disabled. I also use noScript on most sites and filter out ALL ads with a passion.

    I also disable all vendor crapware and only run the bare minimum services. The laptops are fast did not have an issue with them since I installed them a few years back.

    1. Re:Win 10 security = Win7 + FF or Chrome + AV by Anonymous Coward · · Score: 0

      oh, and I only do security updates and even those once every 6 to 8 months

  9. Infinity - 58% by Sneeka2 · · Score: 1

    ...is still infinity.

    --
    Bitten Apples are still better than dirty Windows...
  10. OK, that's funny on it's own, but... by Baloo+Uriza · · Score: 2

    ...now say it in Donald Trump's voice.

    --
    Furries make the internet go.
    1. Re:OK, that's funny on it's own, but... by Chrisq · · Score: 3, Funny

      ...now say it in Donald Trump's voice.

      We have a big beautiful firewall. That's goin to block websites. Because websites have drugs, pornography, crime ... and some I believe may be good sites.

    2. Re:OK, that's funny on it's own, but... by ausekilis · · Score: 1

      We have the best security team ever. Security, yea, Security. I know a guy, he's a genius about security. He's gonna security the hell out of that, what was it? Operating System. Yes. Security!

    3. Re:OK, that's funny on it's own, but... by omnichad · · Score: 2

      Something something about Mexico paying for our firewall.

    4. Re:OK, that's funny on it's own, but... by Anonymous Coward · · Score: 0

      Bigly.

  11. Most virtuous prostitute, then? by Anonymous Coward · · Score: 0

    "Most secure Windows ever"?!?!

    Is that even a bar to clear?

    More like clearing a wet piece of toilet paper clinging to the bottom of a sewer...

  12. That's only because by toonces33 · · Score: 5, Insightful

    That's only because it won't boot. That way, the machine can't get infected.

  13. Attack surface by Anonymous Coward · · Score: 0

    Security has quite a lot to do with attack surface. I sincerely hope that at least some versions of embedded Windows would be more secure than this one.

  14. Re:So, if they're aware of all these flaws in Win7 by Anonymous Coward · · Score: 0

    They're supposed to be providing security updates until 2020.

    They still are. These particular improvements were made to Microsoft Edge, which is not available for Windows 7.

  15. 20 teens by Anonymous Coward · · Score: 0

    Where up is down.

  16. Most secure windows ever by Anonymous Coward · · Score: 1

    I heard they accomplished this by removing the network stack.

    1. Re:Most secure windows ever by fnj · · Score: 1

      ... and the USB ports ... and ...

  17. Re:So, if they're aware of all these flaws in Win7 by msauve · · Score: 1

    Even worse. They're lying. It's not Windows 10, it's an application.

    --
    "National Security is the chief cause of national insecurity." - Celine's First Law
  18. This is like Samsung saying... by mrsam · · Score: 5, Funny

    ... that the Galaxy Note 7 is the hottest phone of the year!

    1. Re:This is like Samsung saying... by Anonymous Coward · · Score: 0

      Actually Android on the Galaxy Note 7 is the mos secure OS ever. In case of attack it self-destroys!

    2. Re:This is like Samsung saying... by MightyDrunken · · Score: 1

      Galaxy Note 7, blazing fast.

  19. Is this news? by ruir · · Score: 1

    Windows x is way better than Windows (x-1) ever was...since when? the 80s? Give us a break. https://www.youtube.com/watch?...

  20. Too bad for Windows users that... by Anonymous Coward · · Score: 0

    1. security != privacy
    2. "most secure Windows ever" doesn't say much to begin with

    1. Re: Too bad for Windows users that... by UltraZelda64 · · Score: 1

      Honestly, I wonder if a single Windows release has been made in the last two decades that Microsoft hasn't bragged about the security of the then-current release of Windows. I remember a lot of bragging, right in their advertising material, bullshit like "The most secure Windows yet!" Whatever, Microsoft... we know you're full of shit already, just shut the fuck up alredy. Repeating it for all eternit will not make it true.

  21. What? A limbo contest? by Anonymous Coward · · Score: 0

    How low can you go!

  22. It's not secure at all by RandomSurfer314 · · Score: 5, Insightful

    If it was secure, I could control which outside servers the operating system contacts and what information it sends to them. An operating system for which you cannot even control where it connects to is insecure by definition.

    It connects to more than a hundred outside servers Microsoft refuses to publish a complete list of these places and what data it exactly transmits, so it is also practically impossible for the end user to reliably distinguish Microsoft traffic from trojan horses and malware. It's ridiculous to call that secure.

    1. Re:It's not secure at all by Anonymous Coward · · Score: 0

      DING! We have a winnah!

    2. Re:It's not secure at all by Ol+Olsoc · · Score: 1

      If it was secure, I could control which outside servers the operating system contacts and what information it sends to them. An operating system for which you cannot even control where it connects to is insecure by definition.

      It connects to more than a hundred outside servers Microsoft refuses to publish a complete list of these places and what data it exactly transmits, so it is also practically impossible for the end user to reliably distinguish Microsoft traffic from trojan horses and malware. It's ridiculous to call that secure.

      Annnnd argument over! This needs to be at +5 everything moderators.

      --
      The shepherds did so well protecting the flock that the sheep no longer believed that wolves existed.
    3. Re:It's not secure at all by Anonymous Coward · · Score: 0

      Wait. Wait. It depends on what your definition of "is" is.

    4. Re:It's not secure at all by thegarbz · · Score: 1

      Yes secure is a yes no question. There's no sliding scale at all. Nosireee none what so ever.

    5. Re:It's not secure at all by Skuld-Chan · · Score: 1

      What makes you think you can't control what windows can connect to?

      I love it at work when Linux nerds get a hold of windows - they automatically assume that nothing is configurable because it's made for idiots. I don't assume things about Linux and I've got no problem moving between the two.

    6. Re:It's not secure at all by Ol+Olsoc · · Score: 1

      Wait. Wait. It depends on what your definition of "is" is.

      What is, is. What is not, is not. That which is, is, and what is not, is not. Therefore, that which is not, is not that which is, nor is that which is, that which is not.

      --
      The shepherds did so well protecting the flock that the sheep no longer believed that wolves existed.
    7. Re:It's not secure at all by Artem+S.+Tashkinov · · Score: 1

      I personally love this extract "automatic sample submission feature".

      We'll make you totally secure by downloading all your data!

  23. Re:So, if they're aware of all these flaws in Win7 by binarylarry · · Score: 1, Funny

    Edge... that's Microsoft new Chrome installer right?

    --
    Mod me down, my New Earth Global Warmingist friends!
  24. Vendor security better than mom security by sjbe · · Score: 5, Insightful

    Security that the USER cannot control is not what **i** would call a selling point

    A fine stance if you are a a technically competent IT pro or equivalent. However for the 99+% of the people out there who don't fit that description, having the security handled by the system vendor can actually be a good idea. Microsoft can do a better job of it than my mother can. (yes I know... stop snickering) The VAST majority of users don't have the foggiest idea how to properly secure their computers nor any meaningful interest in learning. Having the option of user control for those with the ability is a good idea but probably not a good default for most users. Microsoft may not do a great job but they'll probably do a better job than the majority of users (which is kind of a sad commentary but it is reality). It only is a problem if they deny competent users the ability to control security when the need arises.

    1. Re:Vendor security better than mom security by Anonymous Coward · · Score: 1

      No, it isn't.

      Proof positive of this can be seen with the incidents on Kindle wherein they took content AWAY from you that you'd purchased. Very, very stupid notion that.

      But, what do I expect out of /. right?

    2. Re:Vendor security better than mom security by fnj · · Score: 0

      Or ... maybe the idea that simpletons can effectively operate computers on their own is a fundamental mistake.

      Maybe personal computers are and SHOULD BE the province of the competent, and smartphones and tablets are about the limit of what everyone else should have.

      If I wanted to be harsher than I in fact want to be, I might say "either learn how to run and support Arch linux in its totality, or stay with your toys in the playroom".

    3. Re:Vendor security better than mom security by Ol+Olsoc · · Score: 3, Interesting

      Security that the USER cannot control is not what **i** would call a selling point

      A fine stance if you are a a technically competent IT pro or equivalent.

      Because security is soooooooo hard!

      What we have here is people trying to claim to have it both ways. The "most secure Windows ever" still requires a lot of security updates, which means it really isn't all that secure. As well, thre are two parts to any security updates. One is making the computer more secure. The second is having the computer work after the update.

      Nothing like the secure aspect of a computer in endless reboot mode. Nothing like being powerless to do anything about it

      I guess.

      Microsoft's biggest failure in W10 was the Bohica update idea. Microsoft has always had problems with updates. I made a good part of my living by figuring out and repairing what they bitched up every month.

      And W10 is no different - you just have no choice but to bend over and take it.

      And having a working computer is as important as having one that is secure.

      --
      The shepherds did so well protecting the flock that the sheep no longer believed that wolves existed.
    4. Re:Vendor security better than mom security by nine-times · · Score: 4, Interesting

      A fine stance if you are a a technically competent IT pro or equivalent. However for the 99+% of the people out there who don't fit that description, having the security handled by the system vendor can actually be a good idea.

      Let's assume that's true. It doesn't follow that 99+% of computers aren't managed by people who are competent. A lot of those users are using computers that are managed by IT departments, and Microsoft is taking control away from those IT departments.

      I would 100% endorse Microsoft trying to set sensible defaults, and hiding complex or dangerous controls in the registry where those incompetent users won't be able to find them. The controls should still exist somewhere.

    5. Re:Vendor security better than mom security by Anonymous Coward · · Score: 0

      *** Warning car analogy up ahead ***
      I don't know how to change the spark plugs on my car, luckily for me, Ford has welded them in places so I can't take them out wrong.

      Having a good default set-up doesn't preclude the option of changing things for your personal needs.

    6. Re:Vendor security better than mom security by MeNeXT · · Score: 1

      Microsoft has no interest in protecting your mother. This can be attested by their license agreement. They assume absolutely no responsibility as to anything in regards to the software's intents and purposes. They only care that it's secure enough that people buy it. Your mother would be better off, if shown a little bit of safe practices than trusting that Microsoft cares for her well being.

      If she was smart enough to raise you she can understand how to use it safely. Don't sell her short!

      --
      DRM? No thanks, I'll just get it somewhere else...
    7. Re:Vendor security better than mom security by Anonymous Coward · · Score: 0

      Or ... maybe the idea that simpletons can effectively operate computers on their own is a fundamental mistake.

      Maybe personal computers are and SHOULD BE the province of the competent, and smartphones and tablets are about the limit of what everyone else should have.

      If I wanted to be harsher than I in fact want to be, I might say "either learn how to run and support Arch linux in its totality, or stay with your toys in the playroom".

      That attitude is just not realistic. I could say to you "If you can't build a car from the ground up, you should walk." or "If you can't cook a gourmet meal, don't bother going to a restaurant." or "If you can't make your own cloth or sew, no clothes for you." or "Build your own home or stay cold."

      Grow up and realize the world is full of people with varying skills and priorities. Web browsing and email might be the extend of their interest in computing... and MS and Apple are here to provide a stop gap, for a price, to meet their needs.

    8. Re:Vendor security better than mom security by Anonymous Coward · · Score: 0

      Given the UID on that person arguing with them would be pointless. RTFM is the only thing they understand at this point in their lives.

    9. Re:Vendor security better than mom security by Archangel+Michael · · Score: 1

      Let's assume that's true. It doesn't follow that 99+% of computers aren't managed by people who are competent.

      This very well may be true. However, one thing I know to be true in life, is that One Size Fits All is a myth. Ramrodding universal "one size" to everyone without a hint of concern for those it will not work is horrible idea.

      --
      Agent K: A *person* is smart. People are dumb, stupid, panicky animals, and you know it.
    10. Re:Vendor security better than mom security by tepples · · Score: 2

      Relegating everybody other than experienced system administrators to devices running a single-window GUI with no automation would create an even bigger divide between those with the tools to create works of authorship and those who can only view works created by others. This divide chills speech.

    11. Re:Vendor security better than mom security by Rick+Schumann · · Score: 3, Insightful

      See, the problem here isn't the authoritarian dictatorship attitude of MS about updates, it's the spyware they force on users, even of older versions of Windows, and forcing Win10 on people through various ruses. You're assuming MS has the best interests of the end users at heart, when clearly, through their actions, they do not; they're more interested in ensuring their revenue stream, and what the users want is not particularly relevant to them. How can you trust a company that clearly doesn't listen and doesn't care about your rights?

    12. Re:Vendor security better than mom security by thegarbz · · Score: 1

      A lot of those users are using computers that are managed by IT departments, and Microsoft is taking control away from those IT departments.

      That is one of the few groups which still have control over their PCs.

    13. Re:Vendor security better than mom security by nine-times · · Score: 1

      This very well may be true. However, one thing I know to be true in life, is that One Size Fits All is a myth.

      I'm presenting an argument for why Microsoft shouldn't force the same settings on everyone. You also seem to be presenting an argument for why Microsoft shouldn't force the same settings on everyone. Can we agree to agree on this one?

    14. Re:Vendor security better than mom security by nine-times · · Score: 1

      No, we don't. Microsoft has been stripping administrative controls from Windows. Build 1607, for example, removes the ability for IT departments to control whether/when Windows Update runs.

    15. Re:Vendor security better than mom security by Anonymous Coward · · Score: 0

      you still need the option to disable updates completely, or to disable certain ones. microsoft's shitty track record says so. i have yet to see a windows 10 install (new install, preinstalled - signature or oem crapware edition, or upgrade) behave properly with all windows updates. and half of them require a 'reset' or reinstall at least once before the system even gets put into use because a windows update fucks something up or itself gets fucked up beyond repair.

      and if you're on a wired connection, you can't even control *when* they download (wifi you can at least set to "metered" which restricts update downloads); and on slower connections (well, really, anything slower than the update cdn can deliver.. but slower ones like 5mbit/s really feel this), even just a single windows 10 system downloading updates totally fucks your internet until its done.

      windows 10 knows jack about qos, even on the same machine the internet is totally fucked until the updates are done and quit downloading.

    16. Re:Vendor security better than mom security by thegarbz · · Score: 1

      Yes you do. As posted in another thread. Control is not a yes no question.

      Windows Updating running? Against what? Hopefully not something other than your WSUS server because it would just be silly to voluntarily give up control of your network like that.

    17. Re:Vendor security better than mom security by nine-times · · Score: 1

      Hopefully not something other than your WSUS server because it would just be silly to voluntarily give up control of your network like that.

      Oh... I get it. Wink wink, nudge nudge. Funny.

      And hopefully you aren't silly enough to assume that everyone's use case is the same as yours (wink wink, nudge nudge).

      I'm an MSP. I have an RMM that pushes out updates. My standard practice has been to turn off automated Windows updates and use the RMM's mechanism for deciding which updates to push. Unfortunately, the RMM's mechanism uses the Windows Update service, so I can't just kill it. So up until now, I had a nice little system that gave me really good control over patches across all of my clients, many of which don't have servers to install WSUS on. I could set up an internet-facing WSUS server for all of my clients, but the last I heard, that would be a violation of the licensing terms and in violation of best practices. Fuck me, right?

    18. Re:Vendor security better than mom security by rastos1 · · Score: 1

      Well, I assume that if you want to drive a car you should understand what aquaplaning is, why you should not let the engine overheat, why you need to change oil, what happens if brake pads wear out, ...

    19. Re: Vendor security better than mom security by Anonymous Coward · · Score: 0

      So why not just test the **** out of it. Patch all known bugs at every corner. Create a dynamic addressed is kernel, so that viruses don't know where to attack, reduce and remove most or all of the lesser known startup locations, reserve the registry for system apps only, and force apps to use app specific directory's for their data, give us warnings when an app uses debug api or global hooks, etc... Why can't they just work on making the os more secure, and not remove our ability to use it the way we want?

  25. Microsoft can't have malware competition by Anonymous Coward · · Score: 0

    So Windows 10 is the more secure EVAR simply because they can't have malware competing with their own spamming adware that they call Windows 10.

  26. They must igonore infosec by Anonymous Coward · · Score: 0

    The telemetry, cloud features, ads, Microsoft account, etc would substantially reduce its score in a proper security assessment.

    1. Re:They must igonore infosec by Anonymous Coward · · Score: 0

      Theres Computer Security, and then theres MS's version of "cumputor suckurty"... Machines in a never-ending bootloop are why MS claims Win10 is "the most secure Windows yet", as NOBODY can use it, with all the bent updates that are force-fed to everybody....

  27. Security is an historical function, not marketing by bguthro · · Score: 2

    How secure this version of Windows is can only be determined after-the-fact.
    Once a year goes by, and security researchers have sunk in their teeth, can we really determine how good the initial threat model was.

    "The most secure version of windows" has been claimed for every release since Windows 98... and we know how that turned out.

  28. More secure than Windows 1, 2 or 3? by grahamm · · Score: 1

    Are they really claiming that the networked Windows 10 is more secure than the non-networked versions prior to Windows 3.11 and Windows for Workgroups? In the "old" versions the only realistic attack vector was floppy disk based viruses, which only caused the systems to misbehave, not "leak" data.

    1. Re:More secure than Windows 1, 2 or 3? by Ash-Fox · · Score: 1

      Are they really claiming that the networked Windows 10 is more secure than the non-networked versions prior to Windows 3.11 and Windows for Workgroups? In the "old" versions the only realistic attack vector was floppy disk based viruses, which only caused the systems to misbehave, not "leak" data.

      Before Windows provided it's own networking functionality, that stuff was handed off to other products like Netware. I'd dare say that they were more insecure considering how once you had access to a system over it, you had complete access due to Windows' failure to implement users and permission schemes on the filesystem, unlike other operating systems available at the time.

      --
      Change is certain; progress is not obligatory.
  29. They are finally getting serious about security. by j14ast · · Score: 1

    After years of being told that the only secure windows PC is one that is turned off, they listened.

    They released a update that broke the boot system.

    --
    Damn the man!
  30. Most secure from the user? by Anonymous Coward · · Score: 0

    Most secure from the user trying to control their own computer rather than Microsoft?

    If you want to fly an attack on a U.S. battleship, you'll do it on a Patch Tuesday.

    1. Re:Most secure from the user? by Anonymous Coward · · Score: 0

      If you want to fly an attack on a U.S. battleship,

      Why exactly you'd need to fly an attack on a museum ship, I'm not sure. The U.S. has not had any battleship in its fleet since the Iowa class was retired. I think they're all stricken from the Naval Register at this point.

  31. Re:Security is an historical function, not marketi by houghi · · Score: 4, Insightful

    "Most secure since" does not mean it is secure. Just that it is more secure thann what came before.

    Say on a scale of 1-100 that Win95 was 1 secure and Win98 was 2 secure and Win8 was 15 secure and this one is 16 secure, it is indeed the most secure one. Not secure, most secure.

    And that is all without knowing how the security is measured. Is the securety level stable over the lifespan, or does it decrease with time as more faults are found, or does it stay the same?

    So even though the claim is valid, it is also meaningless. It is like saying that the birthday girl is the oldest she ever was on her birthday. True, but useless info.

    --
    Don't fight for your country, if your country does not fight for you.
  32. Only if you use Edge? by Anonymous Coward · · Score: 0

    Funny how Microsoft makes these claims based on using Edge for internet access? On a personal user level I would much rather use Windows 7 and install a decent security suite than face the privacy issues and ugly UI of Windows 10. I am certainly glad Microsoft is taking security seriously and it's fine to improve basic protection for Windows. Nothing wrong with that, but I doubt the impression of Edge with change for most users who see a browser like Chrome or Firefox and better overall choice because of their cross platform support.

  33. Re:You know what's also secure? by Anonymous Coward · · Score: 2, Insightful

    You'll be modded down, but in all honesty I get about as much useful information from your post as I get from what Microsoft says about Microsoft's Windows security.

  34. Latest version is most secure? Well duh by Anonymous Coward · · Score: 0

    It SHOULD be the most secure version.

    What is the alternative? "Hey guys, we got this new version of Windows. It is a lot less secure than previous versions, but it has so much cool useless shit to distract you, you won't care about all the new security holes." ???

  35. "Most secure Windows" by willoughby · · Score: 2

    Isn't that something like "Best Mexican wine"?

    1. Re:"Most secure Windows" by Anonymous Coward · · Score: 0

      That's an insult to Mexican wine.

  36. Kernel Security Check Failure... by MindPrison · · Score: 1

    Well, it crashes randomly a few times a week with that above error code.

    When I ran Linux (mint) on the same box, it never crashed. I have to run Windows 10 because of my HTC Vive Virtual Reality kit, otherwise I'd say bye to that flawed system by now.

    --
    What this world is coming to - is for you and me to decide.
  37. Really? by Anonymous Coward · · Score: 0

    How can an OS that collects all your data (to improve your experience) and sends it over the internet be secure?

  38. Problem with Thurott's numbers is... by Anonymous Coward · · Score: 0

    The installed base for Windows 10 is way smaller than Windows 7 so of course the ransomware infection rate on it is lower too. pff!

  39. So, not that secure? by Karl+Cocknozzle · · Score: 4, Funny

    Saying something is "the most secure Windows ever" is roughly the equivalent of being the finest outdoor ice hockey player in Ecuador. That is to say, something which is only impressive out of context.

    --
    Who did what now?
    1. Re:So, not that secure? by chispito · · Score: 1
      --
      The Daddy casts sleep on the Baby. The Baby resists!
    2. Re:So, not that secure? by hey! · · Score: 1

      There's an ice rink in Quito, if you can deal with the 2850m elevation.

      --
      Post may contain irony: discontinue use if experiencing mood swings, nausea or elevated blood pressure.
  40. Re: So, if they're aware of all these flaws in Win by Anonymous Coward · · Score: 0

    WRONG, LUDDITE! Edge isn't a LUDDITE application, it's an appy app app that apps other apps!

    Apps!

  41. our new product is better than our old product! by Idisagree · · Score: 1

    breaking news at 11...

    Microsoft announce their latest version is better than their previous version.

    Would you believe it, software 'development' appears to be a concept after all.

    1. Re:our new product is better than our old product! by Anonymous Coward · · Score: 0

      all I hear is "buy my product!" oh please, please "buy my product!", "why doncha buy my product?"

  42. Well, the general has a different opinion ... by Qbertino · · Score: 1
    --
    We suffer more in our imagination than in reality. - Seneca
  43. They may be right by OneHundredAndTen · · Score: 1

    But it is almost like saying that the Samsung Galaxy Notes 7 is the most explosive Samsung phone ever. Consider yourself middle-fingered, Microsoft.

  44. Re:They are finally getting serious about security by Ol+Olsoc · · Score: 1

    After years of being told that the only secure windows PC is one that is turned off, they listened.

    They released a update that broke the boot system.

    Wait! Is this insightful? Or funny? Or informative?

    Yes.

    --
    The shepherds did so well protecting the flock that the sheep no longer believed that wolves existed.
  45. Wow, the most secure Windows ever! by Trailer+Trash · · Score: 1

    I'll add the most secure Windows ever to my collection. Let's see:

    1. Most Secure Windows Evah!!!
    2. World's tallest midget
    3. Most pleasant smelling turd
    4. Most beautiful day for Rosie O'Donnell

  46. Re:So, if they're aware of all these flaws in Win7 by LifesABeach · · Score: 1

    Why are the Microsoft H1B Zombie Geniuses allowed to churn out this level of code? Intrusion methodologies are publicly known. Is testing for them that difficult to master?

  47. Do you remember when by Anonymous Coward · · Score: 0

    Do you remember when "Secure" used to include "Doesn't Phone Home"?

  48. Sieve by flyingfsck · · Score: 1

    So the latest sieve from MS has one less hole. Pronouncements like that, just shows how utterly craptastic the previous versions were.

    --
    Excuse me, but please get off my Pennisetum Clandestinum, eh!
  49. Domain expertise by sjbe · · Score: 1

    Because security is soooooooo hard!

    For a lot of people it is. For those who make their living doing IT it might seem rather straightforward but that's a tiny percentage of the population. Like any task that is outside your domain of expertise even easy things can seem hard if you don't know enough to ask the right questions. And frankly even most IT pros really aren't experts in security despite what they might tell you.

    The "most secure Windows ever" still requires a lot of security updates, which means it really isn't all that secure.

    Every major operating system requires security updates including Windows, linux, Android, iOS, OS X, and the rest. You will not find a non-trivial piece of operating system software that does not require security patches from time to time.

    1. Re:Domain expertise by nosfucious · · Score: 1

      For a lot of people it is. For those who make their living doing IT it might seem rather straightforward but that's a tiny percentage of the population. Like any task that is outside your domain of

      expertise even easy things can seem hard if you don't know enough to ask the right questions. And frankly even most IT pros really aren't experts in security despite what they might tell you.

      Standard programmer debug technique seems to be
      - Turn off local firewall,
      - Give everyone/world admin rights,
      - Open Windows Share to "World/Everyone" (and cat, and dog), with Full access,
      - Turn off UAC, and
      - Request Administrator/root/QSECOFR password.

      And they seem to be regarded as the security experts by non-IT. Infrastructure/Security/Compliance teams be damned!

      --
      Q:I was listening to a CD in Grip and it sounded horrible! What's up? A:Perhaps you are listening to country music
    2. Re:Domain expertise by Ol+Olsoc · · Score: 1

      Every major operating system requires security updates including Windows, linux, Android, iOS, OS X, and the rest. You will not find a non-trivial piece of operating system software that does not require security patches from time to time.

      Then they might think of not brgging about the need for monthly security updates. Reminds me of the local ads that bray about "Our biggest sale ever! Prices have never been lower!" Pointless marketing talk, and coming from marketers, almost always a lie.

      In addition the combination of needing those monthly or more often security updates, with the system screwups that Microsoft is famous for, means exactly this:

      You ar ebuying a machine that the Operating System fucks up more than the bad guys.

      If Microsoft wanted to update the OS with the latest security patches 3 times a day and you had no choice, not too bad. But since they fuck up people's computers with regularity. You are signing up for an OS that in my professional opinion, doesn't work. Once upon a time, you could do a pretty good job by turning off updates until you found out what was getting bricked, then wait for a fix, and update later. Now? Sorry, you signed up for the big dose of fail.

      For some of us, we have computers to do work with, and our tasking is not to simply get the computer to work.

      --
      The shepherds did so well protecting the flock that the sheep no longer believed that wolves existed.
    3. Re:Domain expertise by Anonymous Coward · · Score: 0

      For a lot of people it is. For those who make their living doing IT it might seem rather straightforward but that's a tiny percentage of the population. Like any task that is outside your domain of

      expertise even easy things can seem hard if you don't know enough to ask the right questions. And frankly even most IT pros really aren't experts in security despite what they might tell you.

      Standard programmer debug technique seems to be
      - Turn off local firewall,
      - Give everyone/world admin rights,
      - Open Windows Share to "World/Everyone" (and cat, and dog), with Full access,
      - Turn off UAC, and
      - Request Administrator/root/QSECOFR password.

      And they seem to be regarded as the security experts by non-IT. Infrastructure/Security/Compliance teams be damned!

      You left out the first step:
      - Ship the product

    4. Re:Domain expertise by dwywit · · Score: 2

      My CEO once asked me why he wasn't a QSECOFR. I told him politely but bluntly that it wasn't a recommended practice for people who didn't know what they were doing to have such a level of access, that I had done the IBM courses on managing an AS400, and he hadn't.

      He was a bit taken aback, but my boss backed me up.

      Unfortunately at the next job the Analyst and the Programmer were QSECOFRs, and I couldn't convince my boss that was a bad thing.

      --
      They sentenced me to twenty years of boredom
    5. Re: Domain expertise by Anonymous Coward · · Score: 0

      I wasted weeks of my life trying to get Windows 10 to work reliably. The anger and stress was no longer worth it and I resorted to buying a new hard drive and a copy of Windows 7 Enterprise. Most, but not all, problems solved AMD back to a familiar controllable (sort of) environment.

    6. Re: Domain expertise by Anonymous Coward · · Score: 0

      AMD should read "and".

    7. Re: Domain expertise by Ol+Olsoc · · Score: 1

      Most, but not all, problems solved AMD back to a familiar controllable (sort of) environment.

      You hit it. I never used the word controllable before in this context but that is the perfect word to use.

      With Windows 10, we are no longer controlling our own computers. The updates come in when they decide they come in, They tell you things work that aren't working, and have turned even administrators into plain users.

      It gets laughable some times. I've had several cases where an update bitches up a sound driver, but since the sound card troubleshooter claims the driver is okay, the person with the problem insists that the driver is okay. A few have become pretty belligerent, one telling me to fuck off and quit wasting his time.

      I was really surprised when he came back and apologized after finally trying my fix.

      My all time favorite was when an update pooched an ethernet card on my network, and gave me a message of "Ethernet driver not installed correctly - connect to internet".

      --
      The shepherds did so well protecting the flock that the sheep no longer believed that wolves existed.
  50. Really?? by Anonymous Coward · · Score: 0

    Uh .... isn't *every* version of Windows supposed to be the most secure version ever?

  51. Ransomeware Only by Thyamine · · Score: 1

    Looking at the links and white paper, this is really related to Ransomware and Defender only. In that regard, they are certainly getting better, which then makes it an easy marketing statement to make. But everyone is (generally) getting better over time. Reading between the lines, what this is really saying is that Windows Defender is most likely Good Enough for most home users, and realistically it probably is. Most signature based software is terrible and has a 40-something% efficacy rating. The free AV has been shown to be untrustworthy with adware or selling data or various unsavory activities.

    Compared to enterprise/corporate options, it's really not a worthy comparison unless you have to implement it for compliance reasons. Some corporate solutions are not considered AV in the compliance sense, even if they perform the same role. And if you really are a geek and like to have better control this won't be what you want either. There are a lot of caveats in their claim, but it makes headlines.

    --
    I will shred my adversaries. Pull their eyes out just enough to turn them towards their mewing, mutilated faces. Illyria
    1. Re:Ransomeware Only by unixisc · · Score: 1

      I agree that Defender has been good enough, although the last few times I visited the Microsoft Store, they did suggest getting a separate malware defender. I've thankfully never had to handle ransomware. But the forced updates are still something that makes me feel less secure: if Microsoft can force my system to upgrade at a certain time even if I may have overnight activities running that CAN NOT take a reboot break (been in that situation not too long ago), then anyone can hijack my system in which case, it's NOT secure

    2. Re:Ransomeware Only by tepples · · Score: 1

      Why are these overnight activities not partitioned into multiple short-running processes so that they can pick up right where they left off after a reboot?

    3. Re:Ransomeware Only by unixisc · · Score: 1

      There was one application I had that involved filling in insurance application forms for new customers. Sometimes, the customer wouldn't have their bank account details ready, and needed a day, but due to legal reasons, their info could not be saved on our computers - it had to be transmitted directly. Overnight, if the app was still running, we could recontact them, get the details and then submit. But Windows 10 updates would interfere, and since the reset time could not be set outside 24 hours, it meant losing everything. I have stopped using Windows for any serious (i.e. involving money) work, such as banking, shopping and bill payments.

  52. Go away M$ by Anonymous Coward · · Score: 0

    Close down shop please. The appeal of the M$ brand with me is of little worth. I sort of feel like a prisoner having to use Win 7.

  53. Wow. by Gr8Apes · · Score: 2

    I'm shocked that they cleared such a high hurdle!

    --
    The cesspool just got a check and balance.
  54. Most secure ever? by Anonymous Coward · · Score: 0

    Windows Defender signature... So it still has known vulnerabilities that have to be papered over...

    Still connects to unknown remote servers? yes.
    Uses stealth to hide the servers it connects to? yes.

    Obviously the vendor is still lying.

  55. Automatic sample submission? by Anonymous Coward · · Score: 0

    Microsoft will know about every program I run?

  56. just unplugg by kiviQr · · Score: 1

    ... all you have to do is unplug your network cable and all wireless devices.

  57. M$: Don't get HIGH on your own supply! by Anonymous Coward · · Score: 0

    pfoghfobijncxv vibojbf hjfo o podfjodjg soifjg f

  58. Some progress, but nothing game-changing by EndlessNameless · · Score: 1

    I like the container/sandbox work in Edge. I don't use the browser myself, but I like that there's better security in the OS default browser.

    The efforts on Windows Defender are OK. Enterprise already has its own host protection, as do expert users. Any improvement is good for the masses though.

    Overall, this doesn't really make Windows 10 much more appealing, but it's a step in the right direction.

    --

    ---
    According to the latest ruleset, this post should be modded as Vorpal Flamebait +5.
  59. Back to Windows 7.... by Anonymous Coward · · Score: 0

    Because, no telemetry spying.

    1. Re:Back to Windows 7.... by unixisc · · Score: 1

      Plan a migration to something else, like maybe MacOS, since ultimately, Windows 7 won't be supported, and it'll become as vulnerable as XP. I myself use either one of my tablets, or PC-BSD if it has to involve desktop work, like posting here.

  60. The chance of getting ransomware is really tiny by Anonymous Coward · · Score: 0

    So even reducing the change to get it by 100% really isn't that impressive.

  61. Windows 10 Security by Anonymous Coward · · Score: 0

    Yeah it's becoming so secure it's almost unusable! installing new products is a pain.

  62. It's true by penguinoid · · Score: 1

    Windows 10 is so secure that I haven't had any security problems with it and don't expect to until Windows 7 won't run.

    --
    Don't waste your vote! Vote for whoever you want, unless you live in a swing state it won't matter anyways
  63. So fucking what by JustAnotherOldGuy · · Score: 1

    "Microsoft Says Windows 10 Version 1607 is The Most Secure Windows Ever"

    Yeah, and and they should be able to say this about version 1608, and 1609, and 1610....so what? Every later version SHOULD be more secure than the previous versions.

    It's like saying that "on my next birthday I'll be older than I was on my last birthday".

    --
    Just cruising through this digital world at 33 1/3 rpm...
  64. So secure that... by Anonymous Coward · · Score: 0

    Windows 10 is so secure that it will reverse YOUR own decisions for you!

    PROGRE.. god damn notifications fuck off.
    Welp, there goes the system to driver "updates".
    PROGRESS
    We did it India! xD

      / Windows-10-in-a-nutshell

  65. How to tell if your compiler is backdoored: DDC by tepples · · Score: 1

    gcc, which they trust, and shouldn't really, as it could have been compromised and no one could tell

    If there exist multiple C compilers, one of which is available to the public as source code, one can use David A. Wheeler's diverse double-compiling procedure to make the probability of a backdoor negligible.

    1. Start with three compilers in executable form and one in source code form. We'll call the three DCC, ECC, and FCC, and the source one GCC.
    2. Compile GCC with each, producing GCC-compiled-with-DCC, GCC-compiled-with-ECC, and GCC-compiled-with-FCC. Though these binaries will all be different, having been produced by different code generators, they should have exactly the same behavior, as they are all compiled from the same source code.
    3. Compile GCC with each, producing GCC-compiled-with-GCC-compiled-with-DCC, GCC-compiled-with-GCC-compiled-with-ECC, and GCC-compiled-with-GCC-compiled-with-FCC. This second round of binaries should be identical, as they were all produced with GCC's code generator. If not, disable any timestamp feature in GCC or Binutils and try again.

    If the resulting binaries of GCC-compiled-with-GCC are identical other than internal timestamps, one of the following is true: A. either GCC as compiled by DCC, ECC, and FCC is clean, or B. DCC, ECC, and FCC all share the same backdoor. Which is more likely in practice?

  66. Re:Security is an historical function, not marketi by bguthro · · Score: 1

    But they aren't claiming "since"
    They are claiming it is the most secure version, period...which is just not possible to claim, until tested.

    The oldest, supported version of Windows is likely the most secure - due to all major, known, CVE's being patched.

    New code cannot inherently be claimed to be secure.

  67. Secure as in not counting MS spying? by Anonymous Coward · · Score: 0

    .. and the data that will make it the NSA?

  68. Thats nice by Anonymous Coward · · Score: 0

    Wake me up when MS stops having quarterly remote admin level exploits across **every** modern version of their operating system.

    eg:

    CERT - MU Security Alert

    Multiple Vulnerabilities in Microsoft Products
    Original Issue Date: 10 August, 2016
    Severity Rating: High
    Description:
    Multiple vulnerabilities have been identified in Microsoft products and they can be
    exploited by attackers to cause execution of arbitrary code, gain knowledge of sensitive
    information, take full control of the affected systems and bypass security restrictions.

    CVE-2016-3288
    CVE-2016-3289 ...

    http://cert-mu.govmu.org/English/Pages/Targeted%20Alerts/2016/Security%20Alert%20-%20Microsoft%20August%202016.pdf

  69. in other news by Anonymous Coward · · Score: 0

    Gonorrhea 1607 has the least greenish purulent discharge of all major strains of gonorrhea.

  70. MS & mom - only two choices? by John.Banister · · Score: 1

    So, what if my mom is nothing like an IT pro, but is reasonably good at shopping? There's a lot of internet security products on the market designed to protect the computers of people who are not IT pros. Are you saying that reading reviews and trusting one of these products that was liked by reviewers to be competent at providing internet security is not a successful strategy - that only the system vendor can do this job sufficiently well?

  71. My Arse is 58% cleaner this morning too. So What? by Anonymous Coward · · Score: 0

    My Arse is 58% cleaner this morning too. So What?

  72. Yeah right by JustNiz · · Score: 1

    >> "devices running Windows 10 are 58% less likely to encounter ransomware"

    In other news, 78.647% of all statistics are made-up.

  73. Windows ? Secure ? by stooo · · Score: 1

    Windows ? Secure ? lol.
    Windows 10 ? Secure ? no way.

    --
    aaaaaaa
  74. Could you have used Enterprise? by tepples · · Score: 1

    In short: Your insurance agency had long-running interactive processes because use of volatile memory was a legal requirement and overnight storage was a marketing requirement. How big was your insurance agency? Was it large enough for use of Windows Enterprise to make sense?

  75. Most secure windows version is like saying by GoodNewsJimDotCom · · Score: 1

    World's fastest Geo.
    Most water resistant screen door.
    When every version has been a sieve before, even blocking one hole in the sieve makes it the most secure version. Totally insecure, but not technically lying.

  76. Painful to watch by WaffleMonster · · Score: 1

    People in this industry never seem to learn any lessons from previous failures. It is always double down and throw resources at unwinnable problems until your blue in the face.

    Hey look this ransomware iterates sequentially through all directories reads files and writes encrypted versions of the files all we need to do is check for that heuristic and we win...

    Next week ransomware iterates randomly through all directories and overwrites portions of files randomly at a time.

    Time well spent?

    What if instead they spent this time working versioned filesystems, better application jails and systematically addressing privilege escalation?

    Detecting evil bits is a fools errand.

  77. It bloody well should be by phorm · · Score: 1

    Sorry, but if the latest patch of your most recent operating system ISN'T supposedly more secure than its predecessors, then that's a pretty bad thing.

    That said, they can claim whatever they want, but it could all be shown useless if some hacker finds a nice juicy exploits or buffer overflow, a day, hour, or even minute from now.

  78. How is it the most secure? by Anonymous Coward · · Score: 0

    When IT is malware itself?

  79. Most Secure? by hduff · · Score: 1

    Given their past security issues, Windows 10 might be insecure. It's all relative.

    --
    "I believe in Karma. That means I can do bad things to people all day long and I assume they deserve it." : Dogbert
  80. Be careful, what you say by allo · · Score: 1

    Be careful, what you say.

    MS said XP is the best windows ever. Then nobody wanted any further windows, because everyone already had the best windows ever.
    When this win 10 build is the most secure ever, you should never upgrade after you got it, if you want to be secure.

  81. too bad they cant make it work on slow internet by Anonymous Coward · · Score: 0

    see above.

  82. Most Secure Version of Windows Yet! by b783719 · · Score: 1

    That's because most of the time you will be stuck in the updating loading screen.
    .
    .
    .
    well...At least users get to see spinning dots on a 4K monitor.

  83. they are right by Anonymous Coward · · Score: 0

    when one of their untested updates breaks the installation so it no longer boots up, the computer cant connect to the internet or even boot up, so is super safe

    most secure system ever, after templeOS of course: you cant beat god

  84. Internet Access by Anonymous Coward · · Score: 0

    My Windows 10 was very secure because it was constantly disconnecting from the internet, forgetting DNS and gateway settings, and various other stuffups. Buying a new hard drive and Windows 7 solved all of the problems I was having.