RE: Bypassing Personal Firewalls

From: John Howie (JHowie@securitytoolkit.com)
Date: 02/24/03

  • Next message: Thamer Al-Harbash: "Re: buffer overrun in zlib 1.1.4"
    Date: Mon, 24 Feb 2003 12:11:05 -0800
    From: "John Howie" <JHowie@securitytoolkit.com>
    To: Torbjörn Hovmark <torbjorn.hovmark@abtrusion.com>, <bugtraq@securityfocus.com>
    

    Torbjörn,

    > ... There are just too
    > many holes in Windows for it to be feasible to plug them all. The focus
    > ought to be on preventing the code execution in the first place, not on
    > trying to contain it.
    >

    I think it unfair to paint Windows with such a broad brush, especially as most other OSes had just as many, if not more, security problems in the last year. The reality is that most vulnerabilities are in applications (and usually third-party ones, at that) that run on the OS, and not in the OS itself. Your point about preventing code execution is right on the mark. Most attacks can be prevented through user education and methodical, secure, application development.

    Regards,

    John



    Relevant Pages

    • Re: Is Windows 98 SE More Secure Than OS X?
      ... Apple then patches what is ... point out a vulnerability in a specific software. ... security holes that are marked "Extreme Criticality" by Secunia. ... in Windows even if it was NEVER exploited. ...
      (comp.sys.mac.advocacy)
    • Re: Im back, with more senseless ramble on engine building!!
      ... diagonal braces in the form of struts. ... As for positioning the cutter on the case... ... case ALREADY has some holes for pistons? ... CIRCULAR plug, it's rectangular, having one dimension narrow enough to ...
      (rec.autos.makers.vw.aircooled)
    • Re: HP Pavilion entertainment Edition is dead, xp, core duo
      ... were the plug inserts. ... Using Windows XP. ... My outlook keeps telling me that I have closed it incorrectly whether I ... web design, ad design, internet research and so much more. ...
      (microsoft.public.dotnet.general)
    • Re: Is Windows 98 SE More Secure Than OS X?
      ... Apple then patches what is exploited. ... I'll do you one better I'll actually show you the particular security holes that are marked "Extreme Criticality" by Secunia. ... BING BING BING There goes my COQA detector again. ... Shit this OS X with all those "highly critical" vulnerablities in just one patch seems to speak of a very unsecure OS according to Mac people who parrot every exploit found in Windows even if it was NEVER exploited. ...
      (comp.sys.mac.advocacy)
    • Re: no device manager
      ... Start the Plug and Play service. ... No Items Appear in the Device Manager List When You Open It ... [[After you install Microsoft Windows XP Service Pack 2 on a Windows ... Disable the Plug and Play service. ...
      (microsoft.public.windowsxp.hardware)