Skip to main content

Security Experts Rally…Against Microsoft

Image used with permission by copyright holder

In the world of computer security, the industry standard best practice is a process called “responsible disclosure:” when a security issue is discovered with a software product, the discoverer reports to the problem to the software vendor and gives them time to develop a patch or workaround. Once a fix is available, then the bug’s discoverer (or the affected software company) can make information about the bug public. The idea is to reduce (or eliminate) the amount of time knowledge about the problem is floating around the Internet with no fix available.

Now, an anonymous group of security researchers has become frustrated with the “hostility” displayed by software giant Microsoft to outside security researchers, and has decided to throw responsible disclosure to the wind. Naming themselves the Microsoft-Spurned Researchers Collective—MSRC, a play on Microsoft’s own Microsoft Security Response Center—they have pledged to full disclose any vulnerabilities they uncover, without first reporting the problems to Microsoft so the company can evaluate them and develop a fix. To make good on their charter, the group disclosed a vulnerability in Windows Vista and Server 2008 that could be used to crash systems and, potentially, execute malicious code.

The anonymous group cites Microsoft’s recent treatment of Tavis Ormandy as the inventive for their action; Ormandy found the 17-year-old security problem in WIndows’ Virtual DOS Machine and more recently reported a significant security issue with Windows XP’s Help Center. Microsoft identified Ormandy as a Google employee; Ormandy maintains his reports to Microsoft were independent of Google and the company’s name should not have been used.

If the Microsoft-Spurned Researcher Collective gains momentum—and is able to deliver up significant security vulnerabilities to the general public—the group could be a boon to attackers and malware developers always looking for new ways to break into Windows systems. However, the group’s existence highlights the often contentious relations between software vendors and security researchers: while the vast majority of security issues are reported and patched without public drama, software makers do need to be mindful of how they interact with broader computer security communities.

Editors' Recommendations

Geoff Duncan
Former Digital Trends Contributor
Geoff Duncan writes, programs, edits, plays music, and delights in making software misbehave. He's probably the only member…
Microsoft just discovered the next big evolution in displays
Resident Evil 4 running on the LG UltraGear 45 gaming monitor.

Microsoft is working on a new patent that aims to bring unprecedented levels of control to displays. The new tech, dubbed Pixel Luminesce for Digital Display, allows you to micromanage every single pixel of your display, adjusting the brightness as needed. If and when this makes it out of the development stage, it could end up being huge for all sorts of use cases, and could bring major improvements to some of the best gaming monitors.

The patent application describing the tech, first shared by Windows Report, describes the new technology as something that would enable selective dimming. With Microsoft's new tech, you could decide that one part of the display stays brighter while the rest of it remains unaffected, and this would happen dynamically.

Read more
Microsoft Surface Laptop 5, Surface Pro 9 heavily discounted today
The Surface Pro 9 in laptop mode on a table.

Microsoft's Surface devices are well known for their versatility and performance, but they command premium prices. That's why there's always high demand for Surface Laptop and Surface Pro deals, as who doesn't want to enjoy a discount when making a huge investment? If you're interested, Best Buy is offering the Microsoft Surface Laptop 5 at $300 off, which brings its price down to $1,000 from $1,300, and the Microsoft Surface Pro 9 at $540 off, which lowers its price also to $1,000 from $1,540, ahead of the arrival of the consumer versions of the Surface Laptop 6 and Surface Pro 10. You need to push through with your transaction as soon as possible if either of these bargains caught your attention, as we're not sure how much time is remaining before they disappear.
Microsoft Surface Laptop 5 -- $1,000, was $1,300

The Microsoft Surface Laptop 5 is a traditional Windows 11 laptop that's powered by the 12th-generation Intel Core i5 Evo processor, Intel Iris Xe Graphics, and 8GB of RAM. It won't match up to the performance of the best laptops, but it's going to be more than enough to handle daily tasks for work or school. The laptop features a 13.5-inch PixelSense touchscreen with vibrant colors and sharp details, a battery that can last up to 18 hours on a single charge, and a 512GB SSD that provides ample storage space for your files. The Microsoft Surface Laptop 5 also comes with a 720p webcam and dual far-field Studio Mics for clear video calls.

Read more
Google Sheets vs. Microsoft Excel: Which is better?
Microsoft's PowerPoint on the Vision Pro.

Workplace visualization tools make the world go round, and will definitely liven up your before-lunch presentation. If you’ve got hard numbers to display to the masses, or graph-scribed projections you’re eager to get onscreen, you’ll need a powerful spreadsheet tool like Google Sheets or Excel to get the job done. But which of these two platforms is truly the best option? That depends on a number of things, and we’re not here to dissuade or encourage, but merely to inform.

We actually love Google Sheets and Excel, but for different reasons. One software may not be ideal for A, B, and C, although it may be really good at D, E, and F. Whatever the case may be, we put together this comparison of Google Sheets and Excel, with focus paid to essential categories like application access, data analysis, and charts and graphs. 
The basics
It’s worth stating from the start that both Sheets and Excel are excellent spreadsheet applications. So if you have the opportunity to try them both out, you may have a clear preference from the start. But if you’re doing your research first, just know that you can’t go wrong with either.

Read more