Industry


Ads by TechWords

See your link here


It's time to get rid of Windows

I thought that the massive DDoS (Distributed Denial of Service) attacks that knocked Twitter and other social networks out was because of Iran's government trying to shut down its protesters. I was wrong. Hundreds of millions of Internet users were annoyed because of Windows botnet-based DDoS aimed at one (1) person.

According to security company McAfee's director of security research Dave Marcus, "This was a very targeted attack, and what the research shows is that it was aimed at one particular person, and that person's accounts on Twitter, Facebook, YouTube and LiveJournal." The target is a pro-Georgian blogger, but he's still just one man.

Let me spell this out for you. Some people out there used no fewer than six Windows botnets to go after this one guy. And, in the process, they knocked out, for hours at a time, most of the major social networks.

How did this happen? It happened because Windows is an insecure piece of junk. Anyone who knows anything about security knows that this kind of disaster was only a matter of time. Windows botnets are responsible for DDoS attacks and most of e-mail spam.

You cannot secure Windows. Microsoft keeps saying that they will, and they always fail. Period. Windows has been insecure since day one and it's still going to be insecure when Windows 7 shows up.

Perhaps it's time to start blocking Windows PCs from the Internet. Sound crazy? Yes, I agree.

But, I'll tell you something else that's crazy. It's crazy that whole sections of the Internet can be shut down by a few people controlling huge Windows botnets for petty, personal reasons.

We have the technology to start locking Windows out of the Internet. You can tell when a Windows PC is trying to connect to a Web site.

OK, so we can't block them all, but perhaps we can start checking Windows PCs for up-to-date patches and minimum security settings before allowing them Internet access.

After all, some Web designers are already presenting Internet Explorer 6 users with a notice encouraging them to dump their out-of-date browser. We can use the same approach to encourage people to switch from Windows to Linux or Mac OS. Or, perhaps more to the point, shove Windows security uploads down their throats or refuse to let them connect.

We depend on the Internet. We play on it, we work on it, we live on it. If attacks like this become commonplace, and, after this foul-up I don't see any reason why they won't, we'll need to pro-actively protect it from Windows' botnets. And, if that means blocking out out-of-date Windows PCs with inadequate security settings before they can be used in an attack, then so be it.

What People Are Saying

I agree with just about

I agree with just about everything you have to say about Windows, however I strongly disagree with your draconian suggestions of blocking Windows from the Internet. Who is qualified to make such (likely biased or monetarily coerced) decisions? Whose to say they won't turn and want to block you out someday, or just block content in general. You are treading on a slippery slope away from informational freedom with that sort if ideal, just like Windows 7 is with its TCPA supported architecture.

similiarity between window, plastic and styrofoam

yeah there some similarity between windows, plastic bag and styrofoam....

1. they were good only when new,
2. they might become poisonous when aged.
3. too many ways to misuse them
4. they become no. 1 pollutant in our environment
5. there is viable substitutes available...

the only difference is that substitutes for plastic and styrofoam cost more (while substitutes for windows cost less:).

yeah I'm using ms.office from wine in linux(not because they were good, but because i was not ready to relearn how to do everything in open-office), it's 99% work (i haven't found anything which is "not working" but i reserved 1% just in case)

You are an idiot, if it was

You are an idiot, if it was not for Windows being the most popular OS out there. Your Linux and Mac OS would be the
target. Where ever they can get the most bang for the buck is where they are going to strike. Biased Fool

with online OS such as these

with online OS such as these --- > http://g.ho.st/main.jsp

who need window ? all you need is firefox, flash and java !

the os could be linux, bsd, solaris, mac... this is 2009, Year of "OS on desktop doesn't matter anymore".

Wow, so many ABMers. Marketshare is a myth eh?

You mean you haven't noticed the mighty and impenetrable OS X (Unix based) has been gaining in malware and worms just because they picked up 5 or 6% share domestically? They are still only around 3% globally so let's not let the Mac diciples get too excited.
You don't seem to understand that Vista and Windows 7 are now considered by many to be more secure than Linux. IE8 has active filtering that blows away all other browsers against phishing and other browser based malware attacks. It will block you from compromised sites at a rate that is triple firefox and well beyond that for any other browser.
But the point is, Linux has several gaping security holes. I could post several links here where Ubuntu servers were hacked to attack other servers, and they were maintained by the Ubuntu group itself! They were simply behind in patching.

It IS marketshare, as the increased Mac worms has shows us clearly. There are Linux botnets out there as well. Only the Linux machines that get compromised are typically servers and they become herders, botnet masters and their owners never have a clue.
Ebay was compromised with a phishing scheme that led to many root-kitted machines in 2007. Much to Ebay's surprise, they were almost all Linux boxes.

Google, or better yet, Bing "Linux vulnerabilities". Then once you've digested the fact that Linux has several gaping holes itself, which are normally blocked because Linux users are still all computer techs and geeks. Now imagine those linux boxes in the hands of over a BILLION people around the world. Some patched, some not. And the social engineering attacks, which make up 99% of windows attacks, esp. on Vista and win7 since protected mode is better than apparmor, but let all of those current Windows users out there that are *not* computer techies and geeks get their hands on Linux and see how long it takes for there to be a huge number of Linux botnets. There already are linux botnets and there are absolutely *no* Joe sixpack non techie users using linux.
You don't get that? You don't think if they are going to click on a link in their email on their windows box, they wouldn't do the same on a Linux box? Why? Does linux automatically make the user smarter by virtue of using it?
Man, please stop this fallacy that marketshare has nothing to do wtih it. It has everything to do with it cause the heart of that marketshare has all of the computer illiterate folks who just want to browse the internet and go places they have no clue are trouble. Why can't you ABMers see the truth as it stares you in the face.
Again, if the fine folks that manage the servers at Ubuntu.org were careless enough to let Ubuntu servers get severely hacked, what do you think is going to happen in the hands of a Billion non techie users.

Wake up and smell the Linux botnets. What is amazing is there are as many Linux botnets as there are now! If Windows were at the linux marketshare level and all windows users were techies, there would be very few windows exploits too. There are ways to totally secure Windows. The guy that wrote this blog is totally ignorant. Get Vista or Windows 7, use IE in protected mode with smart filter on and activeX scripting Off or set to prompt. With Vista's several layers of defense, the OS is as rigid as Linux. In fact Charlie Miller at Pwn2Own used an OS X box to win because he knew it was easier to own than Vista. He himself owned OS X in seconds. He himself said OS X doesn't have any built in security that Vista has, which is hard to defeat even with local access, that is why he chose not to try Windows. he wanted to WIN. So with the winner hacking OS X because it was easier than Vista, what does that tell you people?
I know i've repeated myself a dozen times here but I'm sick of hearing this same old crap by now. Has anyone proved there are any Vista or win7 machines involved in botnets?
And Vista has a much lower marketshare than XP. So why aren't vista boxes compromised at the same rate as XP boxes? hmmm? It can't be marketshare related as you have stated, so what is it?
My goodness, I don't know how the ABM army can sleep at night....well I guess having no conscience helps considerabl in that regard.

"Vista and Windows 7 are now

"Vista and Windows 7 are now considered by many to be more secure than Linux."

"Only the Linux machines that get compromised are typically servers and they become herders, botnet masters and their owners never have a clue."

let me guess... bill gates is santa ?
LOL...

Hmmm

Here's an analogy that might be funny. In support of the market share theory. It's just like contracting HIV, the more people you sleep with the more likely you are to get HIV. So let's just say that Windows is a whore who sleeps around a lot, therefore more chances of getting infected. Okay, so maybe it wasn't a good analogy but I thought it was kind of amusing.

Okay, I'm ready for my mac fanboy bashing. =)

Me again! I thought of

Me again! I thought of something else, maybe if Windows had worn a condom (aka security) it wouldn't have become infected. =)

Okay I'll stop now.

Linux is the piece of junk

Uneducated comments from trolls always make for entertaining reading, but I wonder what such drivel is doing as an *article* in Computerworld?

Before blaming Windows, THINK. Which piece of junk OS was hosting Twitter when it crashed?

Anyway, we all know Computerworld keeps Nichols around because sub-moronic writing attracts comments and visitors like flies and they earn from the page views.

"Linux is the piece of junk"

"Before blaming Windows, THINK. Which piece of junk OS was hosting Twitter when it crashed?"

Really, THIS is your defence? It wouldn't matter what OS Twitter was being run on, when the Botnet was put into effect it was sheer force of numbers that caused it to slow / fail.