On CBS MoneyWatch: The Dumbest Generation: Who Is It?
BNET Business Network:
BNET
TechRepublic
ZDNet
TalkBack 46 of 136:
Next »
« Previous
And the security pundit was wrong, big time
a security pundit was publicly advising microsoft not to allow user-level access to priveledged ports.
They chose to ignore him.


I suspect you are talking about Steve Gibson's little rant about "raw sockets". A quick visit to his rant shows that the "Latest News" was last updated Aug 14, 2001. Something tells me that if he had been right, he would have proclaimed it loud and clear.
http://www.grc.com/dos/intro.htm

I also did a Google search for "raw sockets" xp attack and all I found was loads and loads of articles, written in the summer of 2001, saying that the Internet was about to be brought down because XP had raw socket support. The fact that I am writing this today means that the Internet somehow survived this massive security hole.

Finally, if you are really concerned about raw sockets, XPSP2 restricted their use.
http://blogs.msdn.com/michael_howard/archive/2004/08/12/213611.aspx

That whole "raw socket" thing was undeniable FUD in the very classic sense of the acronym.
Posted by: NonZealot   Posted on: 04/08/05 You are currently: a Guest | Members login | Terms of Use

Alert moderator to an offensive message

Subscribe to this discussion via Email or RSS

I got mine today  Squawkbox | 04/08/05
No, just give me a couple seconds here, Squawker ...  Judas I. | 04/08/05
Since you own3d my peeceee  Squawkbox | 04/08/05
Do we get..  Jeff Spicoli | 04/08/05
So much fun ... Gawd, it MUST be Friday!  Judas I. | 04/08/05
Hey OB see post below concerning Friday  Squawkbox | 04/08/05
Sure!!!! Why not?  Squawkbox | 04/08/05
That is a great wife deterring mechanism  Jeff Spicoli | 04/08/05
You should INCORPORATE, Squawker, ...  Judas I. | 04/08/05
Here's what it looks like  brian@... | 04/08/05
That is a good thing to know  Squawkbox | 04/08/05
Squawk...  SysAn63 | 04/08/05
I actually don't blame Microsoft for this one..  Xunil_Sierutuf | 04/08/05
You can move your logic further ? ...  Vily Clay | 04/08/05
Aw man!  taliesinangelus | 04/08/05
Haha... ummmm... cheese...  Xunil_Sierutuf | 04/08/05
Smart-ass remarks  tedhall | 04/08/05
ZDNet has a huge capacity...  Anton Philidor | 04/08/05
Anton, where is your 'constructive comment'? (NT)  Vily Clay | 04/08/05
Vily, I was talking about ZDNet in that post.  Anton Philidor | 04/08/05
Thus, you preferred to be destructive on the ZDNet. Let it be. (NT)  Vily Clay | 04/08/05
Guys, if you have nothing to say - what?s the point to write? (NT)  Vily Clay | 04/08/05
BS by Tedhall on the money  chimpenstein | 04/27/05
If they had had dummy-proof updates to begin with  Michael Kelly | 04/08/05
Fool Proof?  UncleBubba | 04/08/05
That is GREAT!  Jeff Spicoli | 04/08/05
You can lead a horse to water...  clifflee | 04/08/05
...but if you can make him float. Then you've got something.  UncleBubba | 04/08/05
Dorothy Parker was once asked...  Anton Philidor | 04/08/05
You can lead a horse to water, but you can't make a pig dance???  chimpenstein | 04/27/05
Severe Penalties Is The Answer  chimpenstein | 04/27/05
effect of trojans could be lessened  hipparchus2000 | 04/08/05
Re: effect of trojans could be lessened  alterego_z | 04/08/05
clarification  hipparchus2000 | 04/08/05
In this case  j.m.galvin | 04/08/05
RE: Re: effect of trojans could be lessened  nightshade0143 | 04/08/05
Original Microsoft Kernal  awhite@... | 04/10/05
and the reason... consumers.  net2dave | 04/08/05
maybe a lot of people could do with a thin client instead  hipparchus2000 | 04/08/05
or better identity verification  hipparchus2000 | 04/08/05
Re: and the reason... consumers.  nightshade0143 | 04/08/05
Running with admin priviledges - BAD  I_am_hellion_z | 04/08/05
Bad Design Choices  Rodney Davis | 04/08/05
maybe this is the case  hipparchus2000 | 04/08/05
Arrogance  Rodney Davis | 04/08/05
And the security pundit was wrong, big time  NonZealot | 04/08/05
I thought I said in a lot of places that SP2 had closed this issue  hipparchus2000 | 04/08/05
Steve was wrong  NonZealot | 04/08/05
really not clear what you're saying here  hipparchus2001 | 04/10/05
The basic home user  Squawkbox | 04/08/05
No we don't.  Anton Philidor | 04/08/05
It is all in the way you "train em"  Squawkbox | 04/08/05
agreed  Power User | 04/12/05
False security notices  Virupa | 04/08/05
a fool and his money are soon parted  Valis Keogh | 04/08/05
.. or by Microsoft..  Xunil_Sierutuf | 04/08/05
Fake update  MCTJim | 04/08/05
Good Spoof  lcates@... | 04/11/05
An e-mail with fake updates? I'm shocked!  Crash2100 | 04/08/05
This isn't about viruses that are sent through E-Mail  Grook | 04/08/05
I think it can be solved in almost the same way  Crash2100 | 04/08/05
true (almost)  Power User | 04/12/05
EXACTLY  Valis Keogh | 04/08/05
- NOT -  I_am_hellion_z | 04/08/05
Never try to teach a pig to dance.  awhite@... | 04/10/05
yep  Power User | 04/12/05
Trojans and Social Engineering  papatator | 04/08/05
social engineering  hipparchus2000 | 04/08/05
Interesting you say this  NonZealot | 04/08/05
Oops, typo!  NonZealot | 04/08/05
but when it runs, it has access to your outlook.pst file  hipparchus2000 | 04/08/05
Ahh, I understand  NonZealot | 04/08/05
"non .NET programs completely ignore CAS settings"  hipparchus2000 | 04/09/05
Re: Interesting you say this  none none | 04/09/05
Yes, the idea is that  Hugh Jass | 04/10/05
Another oft-repeated truth:  Anton Philidor | 04/08/05
use firefox and only use webmail  hipparchus2000 | 04/08/05
Webmail accounts are considered less formal...  Anton Philidor | 04/09/05
Webmail vs POP3  awhite@... | 04/10/05
why versus? Do you guys know -ANYTHING- about mail?  hipparchus2000 | 04/10/05
HUH? You can make any email system into webmail  hipparchus2000 | 04/10/05
Interesting E-Mails?  mikez@... | 04/08/05
Advertising and public relations...  Anton Philidor | 04/09/05
I'm not sure I understand what you mean  native alien | 04/11/05
Clarifying  Anton Philidor | 04/11/05
Excellent Point... but  awhite@... | 04/10/05
Bummer, Indeed  OpaLocka90 | 04/08/05
Perception is Reality  awhite@... | 04/10/05
Fake update...  viper953@... | 04/08/05
Simple Solution  VisualDave | 04/08/05
Re: Simple Solution  alterego_z | 04/08/05
Simple Solution  VisualDave | 04/08/05
I have XP but haven't registered  NonZealot | 04/08/05
Registration vs Activation  nucrash | 04/08/05
Won't work  Squawkbox | 04/08/05
Hahaha.  nucrash | 04/08/05
Repetition for emphasis  awhite@... | 04/10/05
This is not new, you do realize that, right?  mikez@... | 04/08/05
Hotmail  zigmund | 04/08/05
What's the cure if I already was taken in  johnnyclock | 04/08/05
the cure  Jeff Spicoli | 04/08/05
First - Ask Yourself "What was I thinking"  Poser | 04/08/05
Here is your solution  Squawkbox | 04/08/05
Thanks ZDNET Dumb Smiley face showed up in the instructions  Squawkbox | 04/08/05
Oops. Fixed.  S.Howard-Sarin ZDNet Moderator | 04/08/05
Mucho Gracias Senior  Squawkbox | 04/09/05
Maybe it was just a bad dream  johnnyclock | 04/08/05
... ahm... Jonathan? That part about...  Anton Philidor | 04/08/05
Take off all you clothes and  j.m.galvin | 04/08/05
So you're the Trojan.  Anton Philidor | 04/08/05
Two step process  mikez@... | 04/08/05
Simple solution  CobraA1 | 04/08/05
Not e to Self:  nucrash | 04/08/05
Fake update from Phishers  MCTJim | 04/08/05
Here is your solution  30bob1 | 04/08/05
Sometimes it's tough to gain control of the device.  Anton Philidor | 04/08/05
Gawrsh awww shucks (blush)  Squawkbox | 04/08/05
Microsoft/Period  cynfoxxx | 04/08/05
Should know better  ghostpsychlops | 04/08/05
I'm pretty sure I got a fake webpage for CIA in 2001  Qass | 04/08/05
This is good news if you look at it differently.  osreinstall | 04/08/05
Hey, Anybody Can Get Caught!  joereloj | 04/09/05
Legit business never solicit you for personal info or security updates!  osreinstall | 04/09/05
That's a BINGO!  native alien | 04/11/05
Huh!?! Social Engeneering has been around forever  Squawkbox | 04/09/05
Yes I know that  osreinstall | 04/09/05
Oh!!!! OK I sit corrected  Squawkbox | 04/09/05
And you replied to my counter reply Squawk  osreinstall | 04/09/05
Vicious, Vicious  miwi98 | 04/09/05
ms started releasing older os patches seperate from windows update  JasonL31 | 04/10/05
In related news  michael-t | 04/10/05
shame on me for clicking suspicious link. shame on you for not creating an  wessonjoe | 04/11/05
The Solution In Five Words  native alien | 04/11/05
Yet another attack at windows I see  crashoverride | 04/11/05
Dumb?  Bkiser_z | 04/12/05
Fake e-mails  Frag_z | 04/14/05

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement
advertisement