ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

Trust no one, especially Microsoft

Leader ZDNet.co.uk

Published: 14 Jun 2006 17:00 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Microsoft is on shaky ground when it comes to trust. United States and European legislators have already hung the software giant by its heels for practices that are conspicuously "antitrust". So the news this week that Microsoft has once again tap-danced on the face of dependability by pushing out unfinished code to customers isn't exactly surprising.

The already controversial Windows Genuine Advantage (WGA) programme — where users authenticate their copy of Windows in order to receive the latest patches and software add-ons — has repeatedly shown itself to be more insidious than previously thought.

Launched in September 2004, WGA asks people to validate their Windows installation when they download additional Microsoft software online. The system checks to see if your version of Windows is activated properly. If not, it assumes that you could be using a pirated version of the OS and blocks you from accessing certain Microsoft services.

The accuracy of this system has already come under fire for limiting access to key updates for those users who don't want the hassle of complying with WGA. Microsoft insists that this is not the case, and that all customers will continue to have access to critical updates. However, this is where semantics comes in — it seems the software giant has a different take on "critical" to the rest of the industry.

It has emerged that a key part of a new addition to the WGA programme — WGA Notifications, which validates the authenticity of Windows software installed on a PC — is not finished code. What is more, WGA Notifications is being punted out as a "high priority" update, effectively forcing users to install on their machines code that is still being developed.

Complexities aside, the bottom line is that Microsoft is messing with the two things it cannot afford to mess with — security and trust. It has an implicit duty to make patching and software updates as easy and obvious as possible for users, but has instead opted to subvert a fundamental process in its quest to bolster licensing revenues.

At the company's annual Tech Ed conference this week, the company was keen to bang the drum about bringing more third-party developers on board and developing community around its products. But the attitude displayed over the WGA programme shows that Redmond needs an urgent information update of its own when it comes to engendering trust in its user base.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with HP

Did you find this article useful?
22 out of 41 people found this useful


Company/Topic Alerts

Create a new alert from the list below:




Related Jobs

S&P (Security) IT Specialist

Non Technical skills - Security methods and practices - Data encryption technologies and products - Operational security and trust models - Physical ...

IT Sales - Sales Consultant, South East

You will be responsible for securing new business whilst increasing revenues in line with set targets. ESSENTIAL SKILLS/EXPERIENCE: - New Business ...

NHS Trust East Midlands Data Analyst 23,000 - 31,000

They are looking for a Senior Data Analyst who would have had experience in the Public Sector, Ideally the NHS, Police or Fire service. NHS Trust in ...

Sentry Posts Blog

How many headshots does one chairperso...

We got a strange request last week from the head of PR from Russian security experts Kaspersky. It seems although the company was very happy with the interview we recently carried with... More

Post a comment

Google sponsors open source security p...

Google has announced it is to sponsor oCERT, an open source computer emergency response team. In a blog post on Monday, Google security engineer Will Drewry said that one of the... More

Post a comment

Indian officials accuse China of cyber...

China is actively engaged in mapping India's computer networks, according to the Times of India. China is mounting "almost daily" attacks against Indian Government computer systems,... More

Post a comment

Featured Talkback

On the contrary, if vendors were forced to stand behind their products it should increase innovation. It would force more, and better , testing before hitting the sales floor, resulting in fewer updates and less downtime for the consumer. At present the EULA removes responsibility from the vendor, and moves it to the user, which is a step backward. Make the vendor responsibility for their code.

By: ator1940

Read full story:
RSA: Vendor liability may stifle innovation