logo

NORAD Was Blind During Y2k Vigil -- Satellite Redundancy Wasn´t There


Latest News Stories:

cover-eletronicprivacy

Only $31.95

New Methodology:

shun

Product Reviews

OSAll is starting to do weekly product reviews, to be published every single Friday.  Check out software, book and hardware reviews.

 Check it out!

Front | Methods | BBS | FAQ | Adverts | Mail | Write | Link | Shop

"Y2k, all hype, all the time."

Microsoft Security: An Oxymoron

Mike Hudack
Editor

In the past month Hotmail, a part of the Microsoft Network, has experienced two major security problems.  Internet Explorer and Outlook have experienced three major security problems.  Windows 9x and Windows NT are experiencing numerous persistent major security problems.  Is Microsoft serious about security?

Give me a break!  They´ve been going at it for years.  They´ve been in the business for decades now -- you´d think they´d know how to secure a product.  Granted, when trying to make a "feature-rich" (read: bloatware-rich) product you´re more likely to have security problems.  The real issue here is not their security problems but rather their reaction to the security problems.

According to someone who helped develop the Hotmail security hole (the latest one, that is), it´s been public for about a year.  Likewise, things like Back Orifice (which is, by the way, a legitimate tool) use security problems which Microsoft refuse to admit exist. 

Most software companies hire security experts to check out their software pre-release.  Microsoft supposedly does this to some extent, but obviously not enough.  A Microsoft spokesperson contacted for the purposes of this story didn´t respond in time for publication.

Microsoft can certainly afford to hire a few more consultants to check their code and attack it... So why don´t they?

Granted, when a problem is discovered, it´s posted on Microsoft´s Security site.  The problem is that it takes SO long for them to fix these problems, sometimes weeks.

Related Links:

  • OSAll BBSystem

Don´t forget to discuss this issue on the OSAll BBSystem!

All content copyright 1998 - 99 unless book covers or otherwise noted.  Book covers copyright 1998 - 99 Amazon.com.  All OSAll-owned content may be reprinted with the following header added: "Copyright 1998 - 99 Owl Services.  Visit aviary-mag.com for computer security news and information."  Article authors retain a non-exclusive right to republish their work.   324