RE: [Full-Disclosure] lame bitching about xpsp2

From: Dinis Cruz (dinis_at_ddplus.net)
Date: 08/14/04

  • Next message: Valdis.Kletnieks_at_vt.edu: "Re: [Full-Disclosure] (no subject)"
    To: "'Todd Towles'" <toddtowles@brookshires.com>, "'devis'" <devis@easynix.net>, "'Full-disclosure'" <full-disclosure@lists.netsys.com>
    Date: Sat, 14 Aug 2004 01:13:07 +0100
    
    

    I'm interested about this comment of yours (which I see repeated in a lot of
    places):

    "...They need to forget DOS (which they can't)..."

    What do you mean by DOS?

    Are you talking about "cmd.exe" or are you talking about the current:

            - design of the windows Kernel?
            - way the user-mode APIs work?
            - way the device drivers operate?
            - use of interrupts?

    Also, please expand on what you mean by "...get really permission security
    ..."

    Best regards

    Dinis
    > -----Original Message-----
    > From: full-disclosure-admin@lists.netsys.com [mailto:full-disclosure-
    > admin@lists.netsys.com] On Behalf Of Todd Towles
    > Sent: 13 August 2004 18:31
    > To: devis; Full-disclosure
    > Subject: RE: [Full-Disclosure] lame bitching about xpsp2
    >
    > I agree that Windows would improve from a core OS rewrite. They need to
    > forget DOS (which the can't) and get really permission security. I
    > agree. But to blame MS for the current lot of malware still on the
    > internet isn't fair. I run Windows XP (along with Linux boxes) at the
    > house and I don't pollute the internet with that junk. But of course we
    > are computer people and we can't turn that off, we can't think like
    > normal people anymore. We are fully aware of the dangers of online
    > banking at home directly connected to the internet thru a cable modem
    > and no router.
    >
    > But sad to say, normal people are not..and will not understand. To quote
    > a movie, they are the cattle and we are the cowboys of the new digital
    > wild west.
    >
    > -----Original Message-----
    > From: devis [mailto:devis@easynix.net]
    > Sent: Friday, August 13, 2004 1:02 PM
    > To: Todd Towles; Full-disclosure
    > Subject: Re: [Full-Disclosure] lame bitching about xpsp2
    >
    > I am getting nimda probes because nimda from a start was made possible
    > by MS designing a web server full of damn holes ( read not tested,
    > deadlines, time is money ). Do not blame the people not patching their
    > boxes, as it is the problem today, but not the problem that caused it.
    > That is what i am talking about short term memory. Track problem at
    > their source instead of fixing now whats leaking., and will releak soon
    > another way. Aren't we likely to see a new worm attacking MS systems in
    > the next future ? Of course we will. Time to stop pretending computing
    > is easy just to sell their damn sofware, and educate people about
    > computer security, which is the reverse of what they have been doing,
    > for all these years. Applauding the change of direction ? I don't cause
    > it is higly hypocrit, otherwise the new pop up blocker of Internet
    > Explorer will block ALL popups.
    >
    > Beside, the unix based permissions system has proven far superior, ask
    > apple. Still shameful that the default XP install, in 2004, at these
    > malware times, still logs you as an administrator . Would you feel safe
    > using ur *nix box as root everyday ? I wouldn't.
    >
    > If Ms is really serious, they wouldn't design lame things from a start.
    > They do want you to have to patch. They do want you to consume and buy
    > plenty anti virus, personnal firewall etc etc. Don't beleive me ? Take a
    > look at the svchost.exe and how it werks.
    > So i hope SP2 will reduce these bogus traffic everyone sees.
    >
    > Wake UP before its too LATE.
    > My 2 cents.
    >
    > _______________________________________________
    > Full-Disclosure - We believe in it.
    > Charter: http://lists.netsys.com/full-disclosure-charter.html

    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html


  • Next message: Valdis.Kletnieks_at_vt.edu: "Re: [Full-Disclosure] (no subject)"

    Relevant Pages

    • Cisco CSS 11000 Series DoS
      ... Cisco CSS 11000 Series DoS ... Platforms: All/Chassis CS800. ... system controller module (SCM) sends ONDM ... cable/ADSL internet ...
      (Bugtraq)
    • [VulnWatch] Cisco CSS 11000 Series DoS
      ... Cisco CSS 11000 Series DoS ... Platforms: All/Chassis CS800. ... system controller module (SCM) sends ONDM ... cable/ADSL internet ...
      (VulnWatch)
    • As programmers...have we come a long way since 1993?
      ... Just thinking on the DOS thread... ... Typical PC programmers 10 years ago were focussed on DOS, interrupts, ... 'New' things, were event driven GUI apps, Win16API, OOP and C++, the ... all and heaps of Internet - even a simple calculator has be internet ...
      (comp.programming)
    • Re: looking for answers about detecting and deleting rootkits on windows XP OS, and getting really a
      ... out on the internet. ... I am not saying that I am not computer illiterate, ... use DOS and you needed to know dos commands to exicute programs or ... how to list a folder of file in dos, which is now called command prompt ...
      (microsoft.public.security.virus)
    • RE: [Full-Disclosure] lame bitching about xpsp2
      ... I agree that Windows would improve from a core OS rewrite. ... forget DOS and get really permission security. ... house and I don't pollute the internet with that junk. ... Beside, the unix based permissions system has proven far superior, ask ...
      (Full-Disclosure)