A good read.
He makes some excellent points, especially regarding the MS-HP-IBM alliance to create secure systems. They are geared more towards kickbacks from content distributors than it is to creating a more secure system for the PC. If you want security, redesign and reimplement TCP/IP as well as all Server software. THAT will create secure PCs.
I also agree with the author of the article's stance on Allchin's statement:
This is an absurd statement, because if written properly, code can't be exploited. It's not possible to exploit bugs on a properly written application, because ideally any bugs will be non-exploitable, or there won't be any bugs at all(highly unlikely)."The more creators of viruses know about how anti-virus mechanisms in Windows operating systems work, the easier it will be to create viruses or disable or destroy those mechanisms,"
Microsoft is terribly amusing. They keep trying to perpetuate the myth that it's not possible to create secure software, simply because they can't write it well in the first place.





Reply With Quote