Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Feast of Egos
Tim Mullen, 2004-09-07

Eager to tarnish Microsoft's shiny new Service Pack 2, the security press managed to spin the most thin and marginal issues into "gaping holes" and "security craters."

Comments Mode:
Feast of Egos 2004-09-07
Beryllium Sphere LLC (1 replies)
Feast of Egos 2004-09-13
Anonymous
Feast of Egos 2004-09-08
Todd Knarr (2 replies)
Feast of Egos 2004-09-09
Troll (2 replies)
Feast of Egos 2004-09-10
Todd Knarr (2 replies)
Feast of Egos 2004-09-13
Anonymous
Feast of Egos 2004-09-14
Angus (1 replies)
Feast of Egos 2004-09-16
Anonymous
Feast of Egos 2004-09-13
Ed
Feast of Egos 2004-09-14
Anonymous
Feast of Egos 2004-09-08
Anonymous
Feast of Egos 2004-09-08
Mat, CISSP
Feast of Egos 2004-09-08
Anonymous (1 replies)
Feast of Egos 2004-09-08
Anonymous
Feast of Egos 2004-09-08
Problem Updates (1 replies)
Feast of Egos 2004-09-14
Anonymous
I Agree 2004-09-08
Lucas
Feast of Egos 2004-09-09
Some Hacker (3 replies)
Feast of Egos 2004-09-14
Anonymous (1 replies)
Feast of Egos 2004-09-19
Anonymous
Feast of Egos 2004-09-14
Brutal Dictator
Feast of Egos 2004-09-14
Angus (1 replies)
Feast of Egos 2004-09-19
AWKz
Feast of Egos - working as administrator? 2004-09-14
Svilen
Haven't you ever thought that the greatest security hole in windows is the practice of working as an administrator (or user which is a member of the administrators group). And this is the default setting in every installation. And nobody ever urges people to work under a restricted user account. It's not only MS to blame for this though, commercial software (i.e games, communication software) is being written with the presumption of running with full privileges.

So, the above point is the key issue IMO.
Also application integration is another troublesome factor.

As for SP2, the best thing about it is not what actually does, but the fact that MS has decided to break the so far sacred application compatibilty in the name of security - finally someone senior at MS realized that security is not a matter marketing policy but it's something real which has its price.

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/columns/265/28433#28433
SP2 = MS-hyped Snake Oil 2004-09-14
Matthew Murphy
Feast of Egos 2004-09-14
Anonymous
Feast of Egos 2004-09-17
Anonymous







 

Privacy Statement
Copyright 2009, SecurityFocus