Advertisement
Promo

Security threats Toolkit

Story: Microsoft 'frightened' by police XP hack

  • Previous comment

Posted by: Xwindowsjunkie (Wednesday 14 November 2007, 2:16 AM)

  • Reply

Sometimes it takes a crowbar to convince the Microsofties

I guess the MS salesman hasn't a clue that he's peddling damaged goods. If Microsoft was really serious about security, they'd offer for a small fee to people running only SP1, illegal or not, to upgrade to SP2. Call it an amnesty program for the illegals. Even though the boxes are running SP1, they still call home. Send a packet back to the transmitter and offer the amnesty or the link to the SP2 feed. Get them clean.

When the deadline passes, send the "packet of death" to kill the IP stack and the networking software on the pirate computer when it comes up on the Internet if it hasn't updated its security. The existence of the "stealth" updates and the WGA crap tells me contrary to the PR, Microsoft CAN kill the box remotely if they want. I know using XP Embedded I can do it to our licensed XPE machines if necessary when they get stolen and no I won't tell you how to do it.

The reality is that if Microsoft wanted to they could kill the pirates stolen boxes each time one of them decided to call home. If the hackers figure out how to protect their boxes from being hijacked and zombied then the problem has fixed itself. If they haven't and they won't upgrade to SP2, the "packet of death" can stop the botnets, box by box.

To enforce it, use WGA in a way that makes sense. Have it respond to an encrypted string with yet another so that a "MS certified" seal or token can be stored on the system that shows the packet of death to pass by. Kind of like sheep's blood on the door lintel. They could call it Microsoft Operating System Encrypted Security, or MOSES. BillyBoy could have a Charleton Heston moment. Sorry I couldn't resist.

Seriously, the token can use enough bits and a tight enough means of encryption to make the token reasonably secure. Enough so it will cost more to break it than its worth to the botnet master.

Xwindowsjunkie

Xwindowsjunkie
Hardware Design/Engineering, Houston, Republica de Tejas
Member since: May 2007

Site Activity Rating:

4

This member is ranked #28 in our top 100


  • Previous comment

  • Reply to this comment
  • Return to story
  • Report this as offensive


Full Talkback thread

Sentry Posts Blog

McKinnon lawyers seek judicial review

Lawyers seeking a judicial review for Nasa hacker Gary McKinnon lodged fresh evidence of his psychiatric state at the High Court on Thursday. Karen Todner, McKinnon's solicitor,... More

1 comment

Beware of keeping your head in the clo...

Information security professionals can look forward to a deepening appreciation for their skills as security continues to be recognised as an essential element for doing business in... More

1 comment

Civil liberties groups attack file-sha...

Civil liberties and digital rights organisations have strongly criticised Lord Mandelson's Digital Economy Bill. Liberty said in a position paper on Tuesday that the bill, part of... More

Post a comment


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters