Microsoft to give US Gov. critical patches first

Anything technology related that does not fit in other categories
Locked
sintekk
Posts: 4994
Joined: Mon Feb 16, 2004 10:38 pm

Microsoft to give US Gov. critical patches first

Post by sintekk »

http://www.reuters.com/newsArticle.jhtml?t.../technologyNews

Microsoft Corp. (MSFT.O: Quote, Profile, Research) is to give the U.S. government priority in fixing security holes in Windows and other software, The Wall Street Journal reported on Friday.

Under a plan to take effect later this year, Microsoft will give the U.S. Air Force versions of software "patches" to fix serious security vulnerabilities up to a month before they are available to others, the paper said.

The U.S. Department of Homeland Security will give advance notice of problems to other government agencies and distribute patches to them, the Journal said, citing officials at Microsoft and the White House's Office of Management and Budget.


What the hell is THIS going to achieve?

Archived topic from Anythingforums, old topic ID:1839, old post ID:25389
User avatar
Red Squirrel
Posts: 29209
Joined: Wed Dec 18, 2002 12:14 am
Location: Northern Ontario
Contact:

Microsoft to give US Gov. critical patches first

Post by Red Squirrel »

What's the point of that? If they know about the security hole and patch it, why only make it available to a certain party?! Bandwidth? I doubt that's the problem.

Archived topic from Anythingforums, old topic ID:1839, old post ID:25394
Honk if you love Jesus, text if you want to meet Him!
User avatar
MrSelf
Posts: 2882
Joined: Fri Jun 25, 2004 8:01 pm

Microsoft to give US Gov. critical patches first

Post by MrSelf »

Often, when they release a patch, virus writers analyse the patch to see what loop-hole it fixed, and write a virus that targets specifically machines that haven't yet updated the flaw. At this point they have the unique insight into the exact explotations of the flaw, where as before, they typically know only parts of the flaw to exploit. This allows the government to safeguard it's machines before this flood happens.

Archived topic from Anythingforums, old topic ID:1839, old post ID:25822
User avatar
Red Squirrel
Posts: 29209
Joined: Wed Dec 18, 2002 12:14 am
Location: Northern Ontario
Contact:

Microsoft to give US Gov. critical patches first

Post by Red Squirrel »

Makes sense I guess, but I think the biggest issue with flaws is how they're on every single news site. If the media would shut up about flaws (in any software, not just MS) it would help allot and minimize the viruses.

For example look at that phpbb flaw. The only reason that worm was successfull is because of all the media coverage that flaw had, so even though virus authors did not know what the flaw was, they knew there was a big one so they looked further into it.

I guess the media coverage is needed to ensure people get patched so it's a double standard I guess.

Archived topic from Anythingforums, old topic ID:1839, old post ID:25824
Honk if you love Jesus, text if you want to meet Him!
sintekk
Posts: 4994
Joined: Mon Feb 16, 2004 10:38 pm

Microsoft to give US Gov. critical patches first

Post by sintekk »

Red Squirrel wrote: Makes sense I guess, but I think the biggest issue with flaws is how they're on every single news site.  If the media would shut up about flaws (in any software, not just MS) it would help allot and minimize the viruses. 
If people didn't know about the exploit, how can they protect themselves? Many times, microsoft has already released a patch to fix a exploit before it becomes common. This puts pressure on people to use Windows Update.

Archived topic from Anythingforums, old topic ID:1839, old post ID:25825
Locked