SiNXation - www.sinxation.com  

Go Back   SiNXation - www.sinxation.com > News
Videos ISDB Horoscopes MP3s Arcade RATED Activity Statistics Tags

Notices

Reply
 
Thread Tools
Old 05-31-2007   #1 (permalink)
Windows Vista no more secure than XP: report
 
Raven's Avatar
Raven
SiN's Lil Slave
Sins: 2,117
Xations: 20%
Raven Raven is online now 05-31-2007

Click the image to open in full size.

he strength of Windows Vista's security model is easily the biggest question facing the nascent operating system. While sales will be strong simply on account of the way OEMs have adopted Vista on their midrange and high-end offerings, the place of Vista in the enterprise is not yet clear. Microsoft must demonstrate that its approach to security with Vista is indeed effective; otherwise, IT managers will see little benefit to moving to the new OS anytime soon.

Windows Vista only offers "marginal security advantages over XP" according to tests completed by CRN. "Vista remains riddled with holes, despite its multilayer security architecture and embedded security tools." The report's findings are mixed and at times a little unfair, but it does demonstrate the problems that Microsoft has to face—technical and otherwise.

The report faults Vista for "providing no improvement in virus protection vs. XP," but of course Windows Vista does not ship with antivirus software—something the reviewer fails to mention. Faulting an AV-less Vista for not stopping viruses is a bit like faulting a door without a lock for opening when the handle is twisted. Any business that is deploying Vista (or XP) without an antivirus solution is, of course, out of its mind.

What Vista does have built in is Windows Defender and User Account Control, which should both help stop forms of malware other than viruses. And CRN found that Vista does have an "edge" over XP when detecting spyware and adware. It wasn't perfect though: some malware slipped though. Here, though, we run into the issue of deciding what counts as "stopping" malware. For instance, CRN says that Vista "missed" Trojan-Spy.Win32.Goldun.ms, when in fact UAC warns a user when it is accessed (I can confirm that). CRN faults Windows Defender for not identifying and blocking the Trojan outright (it did block others), while Microsoft will tell you that UAC did its job by throwing up a warning and asking for user intervention.

In testing some remote data exploits, the reviewers were unable to determine if all of the exploits they tested actually target Vista, making their findings rather questionable. IE7 did stop one RDS exploit while missing four others that may have been only targeted at XP. Notably, XP did not stop any of the RDS exploits. Vista is better here, but the jury is out on how well it did or did not do since the reviewers were unable to determine the full threat of the exploits they were using.

Vista and XP both failed miserably at finding scripting exploits in the HTTP stream, and this remains a big problem for both operating systems. Vista failed to flag the exploits as they came down the pipe, though the firewall did detect when the exploits attempted to communicate over the 'net. This is what we've found in our testing as well (the results of which we hope to publish next month).
Views: 152
Reply With Quote
Old 05-31-2007   #2 (permalink)
Paradox
Hsoolien's Avatar
Sins: 3,847
Xations: 14%
Hsoolien will become famous soon enough
Anyone that wants rock solid security agaisnt hacks/viruse etc is going to use a secure *nix variant anyways.

Vista and XP both suffer one major design flaw
The user
Hsoolien is offline  
Tetris Champion!
  Reply With Quote
Old 05-31-2007   #3 (permalink)
OWNAGE
Trolas's Avatar
Sins: 423
Xations: 38%
Trolas is on a distinguished road
Update

Quote:
One of Vista's big selling points is security, but a report from CRN concludes that Vista offers little in the way of security advancements over Windows XP. Ars Technica analyzed the report and found some methodological problems. 'The report faults Vista for "providing no improvement in virus protection vs. XP," but of course Windows Vista does not ship with antivirus software — something the reviewer fails to mention. Faulting an AV-less Vista for not stopping viruses is a bit like faulting a door without a lock for opening when the handle is twisted.' That's not all: 'It was also disappointing to see CRN completely ignore the issue of buffer overflows, which has been addressed well in Vista by most accounts. This was a major weak spot with XP, and so far, Vista looks strong in this area, strong enough that Vista may never get its own "SQL Slammer." Why CRN didn't address this is a mystery, as it is no minor matter.
Trolas is offline  
  Reply With Quote
Old 05-31-2007   #4 (permalink)
SiN-X Admin
Dream's Avatar
Sins: 2,320
Xations: 9%
Dream will become famous soon enough
This is pretty funny. Everyone going to vista and its less secure then XP. Maybe I should hack into someone's computer running vista and see what I can see.
Dream is offline  
Cybernoid Champion!
  Reply With Quote
Old 06-01-2007   #5 (permalink)
SiN's Lil Slave
Raven's Avatar
Sins: 2,117
Xations: 20%
Raven will become famous soon enough
You couldn't be more right I don't think. People are so dumb when it comes to computers its halarious. I say dumb becuase they want to use the thing but not learn enough to protect themselves. If you couldn't use a computer unless you had a license like for driving a car do you kow how many dumb ass people wouldn't be online. Myspace would proably be a good site.
Raven is online now  
Cell-Out Champion! Hand of God Champion! Jungle Kid Champion! Dangerous Fishing Champion! AssHunter Champion!
  Reply With Quote
Old 06-01-2007   #6 (permalink)
Silver Champion
Chello's Avatar
Sins: 1,625
Xations: 0%
Chello is on a distinguished road
Ain't that the truth. I used to think I knew something about computers but I found out how much shit I was either being told wrong. I can't belive that shit. I musta looked like a fuccin stupid ass broad when I said things about computers. Sin thought me alot. Now instead of breaking a computer when it dies I know I can change something like a power supply and have it working again.
Chello is offline  
  Reply With Quote
Old 06-03-2007   #7 (permalink)
Gold Infantryman
snakeyez85's Avatar
Sins: 375
Xations: 0%
snakeyez85 is on a distinguished road
It would help if Microsoft programmed their applications at least in a way similar to Unix. For example, the Administrator account should be locked by default and the only way a person can makechanges to the system is through "sudo"
In unix we use sudo to execute commands as the root ("Administrator") user and it asks for a password each time.
Even the registry hash is not the most secure, if anyone has been doing any searching, it's fairly easy to boot from an offline medium and connect to the registry hive to decrypt and extract password information from the harddrive. --i have not been successful at viewing, but I can replicate and replace with new passwords

Windows security is definitely an issue, but I think Microsoft should really step up and admit that they are not in the business of enterprise computing, rather they are in the business of personal computing and they need to draw on this concept a little more to build a more secure Personal operating system. ---of course, none of this goes with their business plan, and i'm sure most of you have figured out by now that every security exploit nets Microsoft a certain amount of money.
snakeyez85 is offline  
Simon Champion! Harry Potter`s Ghoul Attic Champion! Mario Video Poker Champion!
  Reply With Quote
Old 06-04-2007   #8 (permalink)
Sin's Playtoy
Nina's Avatar
Sins: 2,608
Xations: 18%
Nina is on a distinguished road
I think you can do that with Windows but the problem is that settings when most people make accounts on windows, they start bitching about can't instll things. Then when they can too much shit get messed up. Basically people want a computer but don't want to learn how to use it, if even just basics.
Nina is offline  
Chaos Theory Champion!
  Reply With Quote
Reply

Tags
security, vista, windows


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off

Similar Threads
Thread Thread Starter Forum Replies Last Post
Microsoft Offers Free Windows Vista Ultimate if you Surrender Privacy SiNXation SiNXation 17 03-17-2008 10:35 AM
Microsoft finally confirms Windows 7 for 2010 launch Passion News 4 03-15-2008 12:52 AM
Windows Vista: more than just a pretty face Raven News 1 03-20-2007 02:01 PM
Microsoft Reveals Live For Windows Pricing Raven News 2 03-08-2007 10:08 AM


All times are GMT -6. The time now is 07:26 PM.


Page generated in 0.14114 seconds with 25 queries

1 2 3 4 5