Microsoft's security meeting causes unease

Daily Newsletters

Sign up to ZDNet UK's daily newsletter.

…but it wants to partner with them at the same time, because it wants third-party products to work well with Microsoft products.

"The fact that we now offer security products does not change our commitment to work collaboratively with all of our security partners," Griesi said. "It's also important to note that while we encourage members to engage, all feedback is voluntary and does not impact the extent of information that Microsoft provides to partners."

Just last week, Microsoft said it was going to play nice and would abide by self-imposed rules aimed at bolstering choice and competition. The voluntary principles will come into play after court requirements related to the US antitrust case against Microsoft expire next year.

The new Microsoft Security Response and Safety Summit is part of the Microsoft Security Response Alliance, an effort announced in June that aims to pull together various collaborative security initiatives at the company. It is also preparing to launch a response portal this week for its partners, Griesi said.

The software giant has been holding annual meetings with antivirus researchers since 1997. Initially, the confab was called Microsoft Macro Virus Initiative and later, the Microsoft Virus Initiative. On top of that, Microsoft has held twice-yearly get-togethers with Internet service providers since 2004, as part of its Global Infrastructure Alliance for Internet Safety. The Microsoft Security Response and Safety Summit brought together the antivirus and the ISP strands for the first time.

"We had separate events, but actually 80 percent of what we talked about was the same, so we decided to have one summit with different tracks," Griesi said. "We really wanted to give our various partners a chance to meet each other... The problems that ISPs and consumers face are the ones that the anti-malware makers are trying to address."

The merger was a good step, McAfee's Kuo said. "For us to attack some of these problems in a timely manner, we need to have close relationships with some of the ISPs," he said.

Security, response, safety
The Microsoft event had three tracks: security, response and safety. The first included sessions on secure software development at Microsoft; the Windows Security Centre (which tells users whether their security software is up to date); and Vista features such as User Account Control (which enables restrictions on different users’ rights to prevent malicious software from installing).

The response section included sessions on Vista networking security; trends in malicious software; and security in Internet Explorer 7, the next update to the Web browser. The safety track gave an overview of new safety features in Vista and the Windows Live family. These features included parental control and Vista extensibility, as well as Microsoft's phishing- and spam-fighting strategy.

One of the sessions was supposed to discuss WinFS, a new storage system for Vista. "We got in and sat down," Dang said. "The talk was over in five minutes, because Vista will be completely without WinFS." That same day Microsoft officially announced that WinFS will become part of the SQL Server database and will no longer be part of Windows.

Another session discussed how malicious software could leave traces on Vista PCs even after it is removed, McAfee's Kuo said. The trace is in the form of a so-called symbolic link, a technology introduced in Vista. These are designed to make it easier to locate items on a computer, and are somewhat similar to current shortcuts in Windows XP and aliases in Mac OS systems.

"Symbolic links can clutter up your machine with lots and lots of links that point nowhere" after the malicious software is removed, Kuo said. Protective tools will probably end up doing the clean-up, he said. It's a sign that on Vista systems, security software has more work to do than on earlier versions of the operating system.

The goal of Microsoft's alliance programme is to share information like this and to protect customers at large, Griesi said. Likewise, security companies such as Aluria say they want to work with Microsoft for the same reason. But some note that the software giant has a history of pulverising rivals. "Netscape is the renowned story," Dang said.

He did point out, though, that Microsoft hasn't always succeeded in imposing itself on the markets it enters. One example, he said, is Intuit, which is still a leader in accounting software, despite Microsoft's attempts to take it on.

"I commend Microsoft for listening to security vendors," Dang added. "Ultimately, we are all on the same side, which is the good guys versus the bad guys, and we're here to protect our customers. Microsoft playing in this is good for all parties — it keeps us on our toes and makes our products a lot better."

Kuo gives Microsoft the benefit of the doubt as to why it may be sharing fewer technical details than in previous years. It depends on the development lifecycle, he said. Vista is almost fully baked, so Microsoft doesn’t have anything new to share. Two years ago, attendees did get a significant amount of technical information, he added.

"At this point, there is really nothing for them to tell us that we don't know," Kuo said. "The question will be what happens next year. How much discussion happens then? That will be how we measure the significance of Microsoft entering the market and how that affects these relationships."

Post your comment

In order to post a comment you need to be registered and logged in.

You can also log in with Facebook. Log in or create your ZDNet UK account below

  • Login

Will not be displayed with your comment

By signing up for this service, you indicate that you agree to our Terms and Conditions and have read and understood our Privacy Policy. Questions about membership? Find the answers in the Community FAQ

Get ZDNet UK's daily newsletter

Enter your email address to sign up

ZDNet UK Live

Freebies202

Duplicate comments are not made intentionally. Its very good to know that now you are keeping check on this problem because sometimes a commenter...

9 hours ago by Freebies202 on Microsoft fixes blog comments, speeds up blogs with open source
kevinmchapman

"the very significant number of users" and "many (most) of us" - you have no evidence for these statements. It is a fact that most users are saying...

17 hours ago by kevinmchapman on A tale of two distros: Ubuntu and Linux Mint
Marg Menzies Harrison

Another grammar faux pas is the improper use of "you". When sitting down down in a restaurant, for example, I get cringe when the waitress...

19 hours ago by Marg Menzies Harrison via Facebook on 10 flagrant grammar mistakes that make you look stupid
zdnetukuser

And NOW, folks, for Canonical's next trick... Kubuntu is late. Here's a pencil. Draw your own conclusions. cf.:...

19 hours ago by zdnetukuser on Linux Minterface
Moley

@kevinmchapman. The discussion here reflects the very significant number of users who really do like the traditional menu system and who wish to...

21 hours ago by Moley on A tale of two distros: Ubuntu and Linux Mint
kevinmchapman

Er, no... It is an efficient means of finding the application/file/setting you need in one place. The icons are a simply a fallback for when you...

23 hours ago by kevinmchapman on A tale of two distros: Ubuntu and Linux Mint
TerryRK

Isn't the provision of a text based search an admission by the developers that the mass of icons approach does not work? I don't need to use a...

24 hours ago by TerryRK on A tale of two distros: Ubuntu and Linux Mint
kevinmchapman

"Unity and GNOME 3 both abandon the old text-based cascading menus in favour of a graphical icon-driven system." Point truly missed. Both use a...

1 day ago by kevinmchapman on A tale of two distros: Ubuntu and Linux Mint
TerryRK

whs001 - Thank you, I'm glad you liked the article. I absolutely agree with you on your first point. I should perhaps have made it clearer that...

1 day ago by TerryRK on A tale of two distros: Ubuntu and Linux Mint
Dennis Nilsson

If we allow corporate interest to dictate the way our government circumvents due process against foreign entities then we should accept the same...

1 day ago by Dennis Nilsson via Facebook on ACTA stumbles in Germany
GHar123

I totally dislike pirating of works, I fear that artists will be deterred from creating works if they think that they are going to get ripped off....

1 day ago by GHar123 on ACTA stumbles in Germany
JCB33

How dare film makers, artists or anybody that invests in creativity stop us pirating their works for free. I want to be able to walk into my local...

1 day ago by JCB33 on ACTA stumbles in Germany
Moley

@GrueMaster. I prefer horses for courses rather than one size fits all. I, and I suspect most other computer users, do not really wish to have...

1 day ago by Moley on A tale of two distros: Ubuntu and Linux Mint
greycynic

The product that scares me every time I have to use it is the Office 2007 version of Excel. The first bug that I found was applying the median...

1 day ago by greycynic on Ten flawed products that derail productivity
GrueMaster

Nice review and very informative. One thing I'd like to add (in reply to whs001's 1st question), the main reason to have the same interface from...

2 days ago by GrueMaster on A tale of two distros: Ubuntu and Linux Mint
Frederick Wrigley

I'be been using Mint 12 since the RC came out, and I am far more happy with the Cinnamon, the Mate, and, yes (with extensions), theGnome 3...

2 days ago by Frederick Wrigley via Facebook on A tale of two distros: Ubuntu and Linux Mint
bdantas

Excellent article. One small correction, though--although a fresh installation of Linux Mint 12 will, indeed, provide the user with a version of...

2 days ago by bdantas on A tale of two distros: Ubuntu and Linux Mint
Alan Ralph

In related news, the ISPs club together to get the members of the Home Affairs Select Committee (ya goofed on that part, ZDNet UK) copies of "The...

2 days ago by Alan Ralph via Facebook on MPs urge ISPs to take down terrorist material
Alan Ralph

In related news, the ISPs club together to get the members of the Home Affairs Select Committee (ya goofed on that part, ZDNet UK) copies of "The...

2 days ago by Alan Ralph via Facebook on MPs urge ISPs to take down terrorist material
Moley

For Gnome 2 die-hards, it is possible to add icons to the bottom panel (or top top panel, if you prefer) which provide the exact Gnome 2...

2 days ago by Moley on A tale of two distros: Ubuntu and Linux Mint