Tuesday 21 August 2007

Maybe Microsoft Should Just Give Up

…and simply remove Internet Explorer from its operating systems. It continues to be a vulnerability point, which Microsoft cannot seem to adequately patch for very long.

A security researcher has already published a way to render useless the code that was released last (Patch) Tuesday by Microsoft. The critical bug, addressed by MS07-042, and causing Internet Explorer 6 to crash on Windows 2000 and XP with Service Pack 2. The MS07-042 bug is one that is problematic for every versions of Windows that is currently supported, including Vista.

The hacking of newly patched code is happening so quickly these days that along with Patch Tuesday, a new euphemism has popped up. It’s called Exploit Wednesday, a reference to the speed with which ways around all of Microsoft’s efforts to repair leaks happen.

Like the little Dutch boy, Microsoft is running out of fingers, and the fingers cannot grow any fatter, so the holes are opening.

Perhaps, back in the days of Windows 95, when it was suggested by the DOJ that Internet Explorer should be removed from its entanglement with the rest of the operating system, Microsoft should have listened. Firefox, Opera, and several other browsers allow all the functionality of Internet Explorer, yet remain free from the attacks that expose the whole operating system as a house of cards.

No comments: