Advertisement
Promo

Security threats Toolkit

Microsoft prepares to kill Windows Messenger

Published: 29 Oct 2003 08:30 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Spam attacks and security vulnerabilities will prompt Microsoft to turn off its troublesome Windows Messenger service in the next Windows XP update, a company representative said on Tuesday.

The Messenger service is a data-exchange mechanism for networked computers that shouldn't be confused with Microsoft's instant-messaging software. Spammers have taken advantage of the service, which is typically only used to manage networks in businesses, to send advertisements that pop up in grey boxes on people's desktops. Microsoft also announced earlier in October that the technology has a flaw that could be used by attackers to bypass a computer's security.

Switching Messenger off "is the current plan of record," said Neil Charney, director of product management in Microsoft's Windows client group. The company made the announcement at its Professional Developers Conference in Los Angeles. "What we are doing at this point is running through the plan with developers," Charney said.

The next update, Windows XP Service Pack 2, is due in the first half of 2004. Microsoft also plans in Service Pack 2 to turn on the Internet Connection Firewall, which is a basic form of protection built into Windows that is currently off by default.

The decision comes as other companies have attacked Microsoft for including a feature that home PC owners largely don't use and that has been the source of security problems. Network administrators worry that the vulnerability in Messenger could be exploited by an online vandal to create a fast-spreading worm similar to MSBlast or Slammer.

Last week, America Online revealed that it automatically turned off the feature on nearly 15 million of its customers' computer systems. The drastic step was the latest move to quash the effects of the flaw for AOL, which first started filtering out Messenger data nearly a year ago.

The plan to modify the default setting of Windows XP is part of Microsoft's search for ways to better secure its besieged operating system. At the beginning of October, the software giant said it would educate customers and improve its default configurations and its system for patching software.

In many ways, turning off the Messenger feature is an easy decision, because most consumers never used it, Charney said, and companies have the expertise to turn it back on.

"From a consumer end user point of view, I think it is something that will be left off," he said.

  • Email
  • Trackback
  • Clip Link
  • Print friendlyPrint with EPSON

Did you find this article useful?
56 out of 96 people found this useful



Company/Topic Alerts

Create a new alert from the list below:




Video icon

Video

Sentry Posts Blog

McKinnon lawyers seek judicial review

Lawyers seeking a judicial review for Nasa hacker Gary McKinnon lodged fresh evidence of his psychiatric state at the High Court on Thursday. Karen Todner, McKinnon's solicitor,... More

1 comment

Beware of keeping your head in the clo...

Information security professionals can look forward to a deepening appreciation for their skills as security continues to be recognised as an essential element for doing business in... More

1 comment

Civil liberties groups attack file-sha...

Civil liberties and digital rights organisations have strongly criticised Lord Mandelson's Digital Economy Bill. Liberty said in a position paper on Tuesday that the bill, part of... More

Post a comment


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters