Return to the Cloudy Nights Telescope Reviews home page


Speciality Forums >> Astronomy Software & Computers

BlueMoon
super member


Reged: 06/14/07
Posts: 192
Loc: Idaho, USA
Re: Vista - Uh-Oh...
      08/10/08 12:48 PM

Quote:

I think you have given yourself a false sense of security.



Hi Marcus,
Assuming your comment was directed to me, no, I haven't really. After 20 years of IT work, both as an Administrator, network engineer and programmer, and having suffering through numerous security "flaws and fixes" in a number of operating systems during those years, I have no delusions concerning security.

There is no security. There will always be exploitable code because there will never be a "perfect" OS. The more society integrates digital technologies into its fabric, the greater the consequences and risks IMO. The comment I made earlier; "This was Microsoft's way of "protecting us from ourselves." was intended to reflect this personal belief. DEP and ASLR are certainly worthy security technologies but IMO, integrating them in to the Vista core was (in retrospect certainly) a serious mistake. ASLR is not unique to Windows, having also been weakly supported in Linux and OpenBSD...

My choice of using Firefox and Thunderbird is predicated partially on their lack of dependence on ActiveX controls and .NET technologies, both fairly exploitable.

Quote:

In some instances, Data Execution Prevention can have the unintended consequence of preventing legitimate software from executing. In these cases, the affected software needs to be flagged as being allowed to execute code in those parts of memory, but this itself leads to a possible attack if the application isn't rigorous in validating data that is passed into a region of memory that is marked as being executable.



Hence the need to become "Admin" on Vista systems either to install software or assign "executable" status to the affected executable(s).

Is this good security? Not in my book! Anytime you force a user to assume "Admin" rights, it represents a potential security compromising situation. Pretty dumb IMO for an OS that touts its "enhanced security" model.

Back before wireless, we used to say "the best security is a one inch air gap". All one can realistically do these days is try and minimize the risk exposure and damage when compromised.

Cheers!

--------------------
Jeff

Antares 1529 152mm f/6.5 Achromat Refractor
EQ5/ST-2 mount
1984 Tasco 19ER 20X-60X50 Refractor
Oberwerks 15x70 Binoculars

Herrett Observatory, Twin Falls, Idaho.


Edited by BlueMoon (08/10/08 01:30 PM)

Post Extras Print Post   Remind Me!     Notify Moderator

Entire thread
Subject Posted by Posted on
* Vista - Uh-Oh... Rusty 08/09/08 01:07 AM
. * Re: Vista - Uh-Oh... Scott K   08/12/08 12:09 AM
. * Re: Vista - Uh-Oh... Rusty   08/12/08 11:48 PM
. * Re: Vista - Uh-Oh... Scott K   08/13/08 12:31 AM
. * Re: Vista - Uh-Oh... BlueMoon   08/13/08 09:20 AM
. * Re: Vista - Uh-Oh... bicparker   08/13/08 10:55 AM
. * Re: Vista - Uh-Oh... rboeAdministrator   08/13/08 04:19 PM
. * Re: Vista - Uh-Oh... Rusty   08/14/08 12:30 AM
. * Re: Vista - Uh-Oh... rboeAdministrator   08/14/08 09:53 AM
. * Re: Vista - Uh-Oh... Lamb0   08/14/08 08:22 PM
. * Re: Vista - Uh-Oh... Rusty   08/14/08 11:33 PM
. * Re: Vista - Uh-Oh... Markovich   08/15/08 09:09 AM
. * Re: Vista - Uh-Oh... NeoDinian   08/13/08 06:37 PM
. * Re: Vista - Uh-Oh... Tom L   08/13/08 07:28 PM
. * Re: Vista - Uh-Oh... NeoDinian   08/13/08 10:45 PM
. * Re: Vista - Uh-Oh... bicparker   08/13/08 11:27 PM
. * Re: Vista - Uh-Oh... rboeAdministrator   08/13/08 11:43 PM
. * Re: Vista - Uh-Oh... Paul Romero   08/13/08 12:09 AM
. * Re: Vista - Uh-Oh... Rusty   08/13/08 12:12 AM
. * Re: Vista - Uh-Oh... basel10   08/12/08 09:55 PM
. * Re: Vista - Uh-Oh... groz   08/17/08 02:39 PM
. * Re: Vista - Uh-Oh... daev   08/17/08 07:27 PM
. * Re: Vista - Uh-Oh... BlueMoon   08/17/08 10:12 PM
. * Re: Vista - Uh-Oh... daev   08/12/08 11:13 PM
. * Re: Vista - Uh-Oh... bicparker   08/09/08 02:01 AM
. * Re: Vista - Uh-Oh... Tom L   08/09/08 11:07 AM
. * Re: Vista - Uh-Oh... BlueMoon   08/09/08 05:11 PM
. * Re: Vista - Uh-Oh... astrotrf   08/09/08 11:57 PM
. * Re: Vista - Uh-Oh... Mattbtn   08/10/08 08:02 AM
. * Re: Vista - Uh-Oh... Rusty   08/10/08 11:18 PM
. * Re: Vista - Uh-Oh... bicparker   08/11/08 01:17 PM
. * Re: Vista - Uh-Oh... BlueMoon   08/11/08 04:09 PM
. * Re: Vista - Uh-Oh... Mike Casey   08/11/08 11:38 PM
. * Re: Vista - Uh-Oh... Rusty   08/11/08 11:29 PM
. * Re: Vista - Uh-Oh... sang33ta   08/11/08 12:38 PM
. * Re: Vista - Uh-Oh... BlueMoon   08/10/08 12:12 PM
. * Re: Vista - Uh-Oh... JAT Observatory   08/10/08 12:34 PM
. * Re: Vista - Uh-Oh... BlueMoon   08/10/08 12:48 PM
. * Re: Vista - Uh-Oh... astrotrf   08/10/08 04:46 PM
. * Re: Vista - Uh-Oh... BlueMoon   08/10/08 06:13 PM
. * Re: Vista - Uh-Oh... Tom L   08/10/08 09:19 PM
. * Re: Vista - Uh-Oh... Lamb0   08/09/08 11:05 PM

Extra information
3 registered and 9 anonymous users are browsing this forum.

Moderator:  desertstars 



Forum Permissions
      You cannot start new topics
      You cannot reply to topics
      HTML is disabled
      UBBCode is enabled

Rating:
Thread views: 1292


Jump to

CN Forums Home



Cloudy Nights Sponsor: Astronomics