Skip to main content

Top Microsoft lawyer slams government for ‘stockpiling’ vulnerabilities

Microsoft
Image used with permission by copyright holder
As IT departments around the world are still reeling from the weekend’s spate of ransomware attacks, Microsoft’s head legal counsel has slammed the United States government for “stockpiling” vulnerabilities.

In a blog post, Microsoft president and chief legal officer Brad Smith criticized the NSA for collecting and storing zero-days that it could lose control of. That appears to be exactly what happened this past weekend when the WannaCry ransomware was unleashed on companies like FedEx, NHS hospitals in the United Kingdom, car manufacturers, and telcos. The malware is believed to have been stolen by a mysterious hacker group called the Shadow Brokers and leaked online.

Smith said this case and the recent case around WikiLeaks publishing details of hacking tools and vulnerabilities used by the CIA are causing “widespread damage”.

“An equivalent scenario with conventional weapons would be the U.S. military having some of its Tomahawk missiles stolen,” he said. “And this most recent attack represents a completely unintended but disconcerting link between the two most serious forms of cybersecurity threats in the world today — nation-state action and organized criminal action.”

The culprits behind the attacks remain unknown. On Monday morning, businesses returned to work with apprehension as their IT departments were still assessing the damage. Staff in NHS hospitals in the U.K. were advised to not log in to their computers this morning as it was still awaiting a new antivirus installation.

The global incident should be a “wake-up call” to governments, Smith said in the blog post, which pulled no punches. Smith suggested that governments need to treat malware with the same rules as physical weapons and the effect they can have on ordinary people. In the case of hospitals attacked by WannaCry, there were reports of some important patients’ procedures being postponed.

Smith went on to reiterate Microsoft’s call for a “Digital Geneva Convention” to regulate how governments handle zero-days, requiring them to disclose these vulnerabilities to vendors so they can be patched promptly.

“We should take from this recent attack a renewed determination for more urgent collective action. We need the tech sector, customers, and governments to work together to protect against cybersecurity attacks.”

Editors' Recommendations

Jonathan Keane
Former Digital Trends Contributor
Jonathan is a freelance technology journalist living in Dublin, Ireland. He's previously written for publications and sites…
LG just knocked $300 off this 16-inch lightweight laptop
lg ultrapc 17 review front angled

For those people who are constantly on the go, grabbing a thin and light laptop makes life a lot easier, especially since they tend to weigh a lot less while also having very capable performance. Unfortunately, that does come at a bit of an extra cost, so we're happy to see this deal from LG on the UltraPC laptop that knocks it down to just $700 from its usual price of $1,000. That's an excellent price for a laptop that can outperform competitors at the same price range, even with the discounted price.

Why you should buy the LG UltraPC laptop
This new version of the Ultra PC is a big upgrade on the previous LG UltraPC laptop and follows the same lineup of LG's very thin laptops like the LG Gram 17, so LG has quite a lot of experience in this market. That's pretty obvious by the fact that the UltraPC has a tiny 0.64-inch thickness, making it thinner than many books. It doesn't lose out on other features, though, and it still comes with a pretty substantial 16-inch screen that runs a modified FHD resolution of 1920 x 1200, which may be a bit low for such a nice laptop, but it's not a dealbreaker if it helps keep the price down. The keyboard is also great to use, and while the previous version of the UltraPC had a comically small touchpad, this new one is a lot more substantial and useful.

Read more
How to do hanging indent on Google Docs
Google Docs in Firefox on a MacBook.

The hanging indent is a classic staple of word processing software. One such platform is Google Docs, which is completely free to start using. Google Docs is packed with all kinds of features and settings, to the point where some of its more basic capabilities are overlooked. Sure, there are plenty of interface elements you may never use, but something as useful as the hanging indent option should receive some kind of limelight.

Read more
How to disable VBS in Windows 11 to improve gaming
Highlighting VBS is disabled in Windows 11.

Windows 11's Virtualization Based Security features have been shown to have some impact on gaming performance — even if it isn't drastic. While you will be putting your system more at risk, if you're looking to min-max your gaming PC's performance, you can always disable it. Just follow the steps below to disable VBS in a few quick clicks.

Plus, later in this guide, we discuss if disabling VBS is really worth it, what you'd be losing if you choose to disable it, and other options for boosting your PCs gaming performance that don't necessarily involve messing with VBS.

Read more