In yesterday’s Windows Security blog post Browser security beyond sandboxing, Microsoft’s Jordan Rabet (part of the “Microsoft Offensive Security Rese
[See the full post at: Microsoft security’s unseemly jab at Google]
![]() |
There are isolated problems with current patches, but they are well-known and documented on this site. |
SIGN IN | Not a member? | REGISTER | PLUS MEMBERSHIP |
-
Microsoft security’s unseemly jab at Google
Home » Forums » Newsletter and Homepage topics » Microsoft security’s unseemly jab at Google
- This topic has 10 replies, 7 voices, and was last updated 5 years, 7 months ago by
anonymous.
AuthorTopicViewing 5 reply threadsAuthorReplies-
MrJimPhelps
AskWoody MVPGoogle might actually appreciate the jab – now they know a few things they need to fix. Of course, as Cimpanu points out, Google was the one who started it.
That is a pretty funny name: “Microsoft Offensive Security Research team”. Amazing how Microsoft is making misstep after misstep these days, and losing their dominant position in the process. Just like they did to so many other companies in days gone by.
Group "L" (Linux Mint)
with Windows 8.1 running in a VM -
anonymous
Guest@ MrJimPhelps
Of course, as Cimpanu points out, Google was the one who started it.
People often criticize others and each other, eg you, me, etc. I like to criticize over-greedy M$ for making Win 10 unpalatable.
… The point here is, whose criticism is constructive, has basis and whose intentions are for good, ie Google’s or M$’s.?
… Seems, M$ are hitting back at Google like an angry sore loser. Google then “hit back” at M$ with a bug bounty of about US$45,000.“Microsoft Offensive Security Research team” says a lot about M$’s intentions = ie, to offend others ?
-
Noel Carboni
AskWoody_MVPOffensive security indeed!
Microsoft does not have any business writing about security, when they could (but DON’T) build decent managed blacklist-based security into their systems (and yes, I know about SmartScreen, which IMO is ineffective AND intrusive).
It could be something like UBlock Origin – or an even better, more integrated solution that runs at the OS level and keeps the entire system away from the bad parts of the web. These things ALREADY EXIST and do wonders for security. Little guys like me and others have such things working – and they ARE effective! Ask yourself why they’re just not provided as a cornerstone of managed security by the browser/OS makers.
No, they deliver software to you TODAY that freely downloads malware, that snoops on you, removes user control, that allows outgoing connections by default, and that carries a constant string of vulnerabilities – old and NEW – that constantly NEED to be patched.
When have we ever known a software package that’s had SO many terrible bugs for SO many years? When would such poor software have ever been acceptable for sale?
They have the cloud infrastructure, the auto-update process, and knowledge of what’s bad out there (besides the fact that anyone can download lists that others have compiled)… Imagine how good such a subsystem could be if a company with real funding backed it.
Also imagine how careful web operators would become if hosting malware would just cause their sites to stop being visited by giant numbers of people running Windows.
My suggestion: Ignore Microsoft’s talk about sandbox this and vulnerability that and what Google does here or there and use common sense. What these big companies keep shoveling on us is quite offensive.
-Noel
5 users thanked author for this post.
-
MrJimPhelps
AskWoody MVPNoel:
I actually first came to realize this in the Windows 3.1 days. I noticed that Windows was constructed in such a way as to make it very easy for malicious people to do their mischief. The thing that caught my attention was all of the different “temp” folders everywhere. Only one of these folders was actually called “temp”; but all of them were places that websites, software, etc., could tuck things away, making them hard to find for all but the most expert of Windows techs.
I often wondered if Windows was purposely constructed in that way. Maybe Microsoft had secret deals with software companies?
I agree with you — why does Microsoft leave these vulnerabilities in place?
Jim
Group "L" (Linux Mint)
with Windows 8.1 running in a VM
EyesOnWindows
AskWoody LoungerThis is bit like “the pot calling the kettle black“. People who live in glass houses shouldn’t throw stones.
HP Compaq 6000 Pro SFF PC / Windows 10 Pro / 22H2
Intel®Core™2 “Wolfdale” E8400 3.0 GHz / 8.00 GBlurks about
AskWoody Loungeranonymous
Guest-
lurks about
AskWoody Lounger
b
ManagerThurrott misquotes the Microsoft blog (by conflating two different bugs/fixes).
Woody fails to notice that Bleepingcomputer says the fix for the bug discovered by Microsoft was made public by Google three days before being pushed to Chrome but Thurrott says a month.
Microsoft: “to Google’s credit, their turnaround was impressive”
Thurrott: “Calling Google out like that seems petty to me.”Bleepingcomputer: “Microsoft had no reason to detail a bug in a Chrome version that’s not even current.”
This was a research project; should its security recommendations have been kept secret?
What’s wrong with discussing the nature of a flaw after it’s been fixed? It happens all the time.Windows 11 Pro version 22H2 build 22621.1778 + Microsoft 365 + Edge
-
anonymous
Guestb said, … What’s wrong with discussing the nature of a flaw after it’s been fixed? It happens all the time.
Fyi, Win 7/8.1/10 have 23 critical bugs/flaws that were fixed by M$ in October 2017. Is there a point in discussing those 23 flaws?
https://www.ghacks.net/2017/10/10/microsoft-security-updates-october-2017-release/
Viewing 5 reply threads - This topic has 10 replies, 7 voices, and was last updated 5 years, 7 months ago by
-

Plus Membership
Donations from Plus members keep this site going. You can identify the people who support AskWoody by the Plus badge on their avatars.
AskWoody Plus members not only get access to all of the contents of this site -- including Susan Bradley's frequently updated Patch Watch listing -- they also receive weekly AskWoody Plus Newsletters (formerly Windows Secrets Newsletter) and AskWoody Plus Alerts, emails when there are important breaking developments.
Get Plus!
Welcome to our unique respite from the madness.
It's easy to post questions about Windows 11, Windows 10, Win8.1, Win7, Surface, Office, or browse through our Forums. Post anonymously or register for greater privileges. Keep it civil, please: Decorous Lounge rules strictly enforced. Questions? Contact Customer Support.
Search Newsletters
Search Forums
View the Forum
Search for Topics
Recent Topics
-
macOS 14 Sonoma
by
Alex5723
5 hours, 15 minutes ago -
Just a fyi – I think I’ll skip on an Apple Vision Pro hardware section
by
Susan Bradley
17 hours, 53 minutes ago -
What’s wrong with Windows 11?
by
Ascaris
16 minutes ago -
Streaming an iPad to a standard TV
by
MrJimPhelps
11 hours, 55 minutes ago -
clone to make backup laptop
by
greenbergman
22 hours, 34 minutes ago -
Problems with sound and USB ports
by
StavRoss
4 hours, 49 minutes ago -
Can you use WUShowHide on Windows 11 version 21H2?
by
southieguy
11 hours, 50 minutes ago -
Can we control the changes to our operating systems?
by
Susan Bradley
2 hours, 2 minutes ago -
Watch out for fake ‘Windows Defender’ scare
by
B. Livingston
47 minutes ago -
Diagnostics and testing? Get it all done in a flash.
by
Ben Myers
5 hours, 48 minutes ago -
Dip your toe into Visio Online
by
Peter Deegan
22 hours, 9 minutes ago -
Updating Win 10 Pro 21H2 to 22H2
by
bsqrd
20 hours, 10 minutes ago -
Changing mouse pointer options.
by
Artie
23 hours, 27 minutes ago -
Desktop or Laptop? What’s your choice?
by
Susan Bradley
14 hours, 10 minutes ago -
Anyone use Auslogics Bitreplica
by
WSjcgc50
2 days, 9 hours ago -
Unleashing the Gaming Revolution: CrossOver Mac’s DirectX 12 Support Update!
by
Alex5723
2 days, 22 hours ago -
Defender’s Offline Scan Fails to Run
by
E Pericoloso Sporgersi
2 days, 4 hours ago -
Mouse problem : cannot grab a window without maximizing it
by
Andy M
9 hours, 50 minutes ago -
End of support for Cortana in Windows
by
Alex5723
1 day, 21 hours ago -
Microsoft is really missing an advertising trick
by
Sky
2 days, 21 hours ago -
New MOVEit Transfer zero-day mass-exploited in data theft attacks
by
Alex5723
3 days, 21 hours ago -
Windows 11 Insider Preview build 25381 released to Canary
by
joep517
3 days, 21 hours ago -
Authenticating Email Address
by
IreneLinda
51 minutes ago -
Confusion about password protecting a folder in W10
by
Cthru
4 days ago -
I broke my right arm yesterday
by
Alex5723
2 days ago -
Kaspersky : iOS devices targeted with previously unknown malware
by
Alex5723
3 days, 20 hours ago -
Which Updates From Each List Are Safe to Install ?
by
TheFamilyIT
1 day, 12 hours ago -
AOL changes its web based email
by
Charlie
3 days, 19 hours ago -
Windows 11 Insider Preview build 23471 released to DEV
by
joep517
4 days, 21 hours ago -
Windows 11 Insider Preview Build 22621.1830 and 22624.1830 released to BETA
by
joep517
4 days, 21 hours ago
Recent blog posts
- Can we control the changes to our operating systems?
- Watch out for fake ‘Windows Defender’ scare
- Diagnostics and testing? Get it all done in a flash.
- Dip your toe into Visio Online
- Desktop or Laptop? What’s your choice?
- Beware of Google’s .ZIP domain and password-embedded URLs
- Longstanding feature requests, and their status
- Three typing tutors — no more “hunt and peck”
Key Links
Want to Advertise in the free newsletter? How about a gift subscription in honor of a birthday? Send an email to sb@askwoody.com to ask how.
Mastodon profile for DefConPatch
Mastodon profile for AskWoody
Home • About • FAQ • Posts & Privacy • Forums • My Account
Register • Free Newsletter • Plus Membership • Gift Certificates • MS-DEFCON Alerts
Copyright ©2004-2023 by AskWoody Tech LLC. All Rights Reserved.