On GameSpot: Get ready for the Best of 2009 Awards!
BNET Business Network:
BNET
TechRepublic
ZDNet
TalkBack 11 of 44:
Next »
« Previous
Oops, someone has lousy reading comprehension!
You pork IIS, you own the whole box.

Again, I have to wonder what IIS security has to do with Windows security? I won't pretend to know everything about IIS deployment but if it turns out that there is absolutely no way to run IIS in a restricted account then that is a weakness in IIS, not Windows.

breaching the application is only the first hurdle

Considering there are many services available for Windows that can and do run perfectly well under restricted accounts, the assertion that IIS can't only suggests that IIS sucks, not Windows.

You've had a naked Windows box connected directly to the internet with no NAT'ing, no proxy, firewall or boundry router and you're telling us it's never been penetrated?

Where did I say that I didn't have perimeter defenses? Even if you didn't want to buy a NAT router/firewall, there are plenty of free software firewalls available if the one that comes with XP doesn't suite your needs. Using some sort of perimeter defense is absolutely essential, free, and quick, no matter what OS you use. My response was to this original statement:
Put a patched Windows box on the 'net and you're cooked within 30 mins. Even with the latest patches.

Since "patched" suggests SP2 which suggests "firewall", my response is completely accurate. Unless you take great comfort in the fact that your unpatched Linux machine WILL be compromised in 30 days, why wouldn't you patch and defend your Linux system too? If I had been running Linux without a firewall for the last 3 years, I would have been compromised 36 times. This is a good thing?

The actual documented average time is 23 minutes. I think he was just rounding up to the even half-hour and it's being generous.

That was for an unpatched machines, not patched ones. Considering the latest patch (available for some time now) defaults the firewall to "On", a patched XP box could stay "naked" on the internet for a very long time without being comprimised.

Besides, who cares how dangerous it is to network without protection when protection is SO easy and free? It would be like speculating how dangerous it would be to stick a knife into a plugged in toaster. The answer might be "very dangerous" but who cares when it is so easy to unplug a toaster?
Posted by: NonZealot   Posted on: 02/02/05 You are currently: a Guest | Members login | Terms of Use

Alert moderator to an offensive message

Subscribe to this discussion via Email or RSS

Sometimes all you have to read is the headline...  nucrash | 02/02/05
Took the words straight outta my mouth!  Jeff Spicoli | 02/02/05
HEY!! Who else has such extensive knowledge of  Laff | 02/02/05
They are going to show them to OSX or Linux?  ITGuy04 | 02/02/05
Nice FUD!  NonZealot | 02/02/05
Re: Nice FUD  Mack DaNife | 02/02/05
I agree  NonZealot | 02/02/05
No FUD, just FACTS.  ITGuy04 | 02/02/05
Home users run IIS?  NonZealot | 02/02/05
*cough* bulls--- *cough*  Chad_z | 02/02/05
Oops, someone has lousy reading comprehension!  NonZealot | 02/02/05
Good Advice - wrong conclusions  Roger Ramjet | 02/02/05
We'll agree to disagree  NonZealot | 02/02/05
Ah...but what are your computer using habits? And  Laff | 02/02/05
Good questions  NonZealot | 02/02/05
I think you missed one point I was trying to make.  Laff | 02/02/05
Laff: I think I understand now, thank you  NonZealot | 02/02/05
You are correct. However we probably both can agree  Laff | 02/02/05
It is to laff.......:)  Laff | 02/02/05
But the headline has very little relevance to the article  nucrash | 02/02/05
Security  TTGIT Guy | 02/02/05
Actually...  nucrash | 02/02/05
If they do they are keep quiet (NT)  voska | 02/02/05
Another head line reads...  Nullifidian | 02/02/05
Gee...  BitTwiddler | 02/02/05
To difficult and expensive...Much easier to trash talk  Laff | 02/02/05
It worked in the past  nucrash | 02/02/05
Well to be fair ...  Laff | 02/02/05
Who are you talking about?  NonZealot | 02/02/05
A matter of perspective  Mack DaNife | 02/02/05
In all fairness  DemonX | 02/02/05
Agreement factor, 99.999%  Mack DaNife | 02/02/05
The real problem is...  rapson | 02/02/05
rapson: Very nice point!  NonZealot | 02/02/05
Now be fair dude! MS has been doing the FUD thing  Laff | 02/02/05
And that makes it okay?  NonZealot | 02/02/05
Nope..just human nature.  Laff | 02/02/05
Actually...  Mack DaNife | 02/02/05
There are idiots on both sides for sure  NonZealot | 02/02/05
Non?Zealot  Mack DaNife | 02/02/05
Yeah Knife Man!  Jeff Spicoli | 02/02/05
Q: Has IE ever been sucessfully attacked on OSX?  Roger Ramjet | 02/02/05
Different programs  NonZealot | 02/02/05
Why don't they just fix their trash.  bjbrock | 02/02/05

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement
advertisement

SmartPlanet

Click Here