Bonum Certa Men Certa

Internet Explorer Still Not Secure, Still Standards-hostile, and Still Giving the NHS a Headache


Yorkshire air ambulance (NHS)



Summary: Internet Explorer mayday is still here, SVG is still not supported, and British taxpayers pay the price (or pay with their lives)

GOOGLE has issued a challenge to China, removing some censorship in the process (and getting some praise or flak for it). Totalitarians' sympathiser, Microsoft, says it will carry on censoring results for the suppressive regime, which it later denies because it does not want the public to know (bad for PR). We wrote about this before and provided extensive evidence.



Using a new product, Microsoft helps manipulate search engines like Google and it is curious because Google's China attacks were caused by Internet Explorer [1, 2, 3, 4, 5, 6, 7, 8, 9, 10] (and more specifically, Microsoft's negligence [1, 2, 3]). Internet Explorer is still not secure. From the news:



A renowned security research company has revealed that it has managed to discover yet another set to vulnerabilities in Internet Explorer, Microsoft's web browser, a mere day after the company patched the browser after a high-profile and highly-publicized attack on Google in China.


There was also a vulnerability disclosed a day after Microsoft had released patches. How about the vulnerability that's 17 years old? Among the news coverage we have:



  1. Microsoft investigates 17-year-old Windows flaw


  2. Microsoft warns of flaw in 32-bit Windows kernel


  3. Microsoft confirms 17-year-old Windows vulnerability


  4. Microsoft confirms low-risk zero-day in Windows kernel


  5. Microsoft: Identifies 17-Year-Old Bug in Windows – It’s about time


  6. 17-year-old Microsoft flaw affects Windows 7


  7. Microsoft Warns About 17-Year-Old Windows Bug


  8. Microsoft investigating ZeroDay impacting Windows NT Kernel


On the heels of Microsoft announcing an out-of-cycle patch for the ZeroDay vulnerability in Internet Explorer, researcher Travis Ormandy has released details on another ZeroDay that exists in the Windows NT Kernel on every system version from Windows NT 3.1 to Windows 7.


This is confirmed by Microsoft itself by the way.

The NHS, which is a Windows shop for the most part [1, 2, 3, 4, 5], should already abandon Windows or at least abandon Internet Explorer.

Why the NHS can't get its browser act together



[...]

Don't worry, said Microsoft a few days ago: the zero-day vulnerability that Chinese hackers exploited to infiltrate Google's network only affects Internet Explorer 6 (released in 2000) running on Windows XP (released in 2001).

The implication being that nobody uses that still, do they? Ed Bott, who has forgotten more about Microsoft than many people know, says in a vehement blogpost at ZDNet that:
"Any IT professional who is still allowing IE6 to be used in a corporate setting is guilty of malpractice. Think that judgment is too harsh? Ask the security experts at Google, Adobe, and dozens of other large corporations that are cleaning up the mess from a wave of targeted attacks that allowed source code and confidential data to fall into the hands of well-organized intruders. The entry point? According to Microsoft, it's IE6."


Ed Bott is a Microsoft-bribed mouthpiece, so it hardly matters what he says about Microsoft products. He lied about rivals of Internet Explorer a few days ago (by repeating the Microsoft talking points). He is almost ZDNet's way of advertising Microsoft under the more trustworthy guise of "blogs".

As an aside, Internet Explorer still does not support SVG, which has been around for ages. There is no reason to believe that this will change, according to this new analysis which says:

As usual, Microsoft's action drew considerable scrutiny and even skepticism. It's not hard to find commenters who write about "false marriage", "damage" and lock-out. The major market reality that has impacted SVG for years is that all major Web browsers support it--except for Microsoft's Internet Explorer. Numerous projects have decided against SVG in their designs precisely because of this lack.

Initial reaction to Microsoft's decision has been, in my paraphrase: "Finally! Soon IE will support SVG, and we can get back to our programming." I'm unconvinced -- but also unsure that it matters.

There's no guarantee that Microsoft will ever upgrade IE again, let alone that it'll include SVG. Even if it does, it'll be many years before use of earlier versions (IE 5, 6, 7, and 8, for example) falls below whatever threshold decision-makers decide should apply.


We wrote about this in:



Internet Explorer should just be removed from the Internet. It was only put on the Internet in order to sell Windows, Office and along with them substitutes to standards like SVG, so it's not just simply a Web browser.

"In one piece of mail people were suggesting that Office had to work equally well with all browsers and that we shouldn’t force Office users to use our browser. This Is wrong and I wanted to correct this.

"Another suggestion In this mail was that we can’t make our own unilateral extensions to HTML I was going to say this was wrong and correct this also."

--Bill Gates [PDF]

Comments

Recent Techrights' Posts

GNU/Linux up to 5% in Ireland, Not Counting Chromebooks
statCounter is an Irish
The War on Free Software Reporters - Part III - Doxing and LARPing
LARPing is an issue I've had to deal with for nearly 20 years
The Media Finally Admits (on a Regular Basis) That LLMs Suck
They could not replace medical doctors, teachers, lawyers etc.
 
In the Month of May 2024 the OSI's Blog Was Almost 100% Microsoft Lobbying, Microsoft Staff, Microsoft Proprietary Software, and Microsoft Events
Entryism complete. RIP, OSI.
An Important Goal Has Been Accomplished Already
Stubborn activists need to insist on a future where computer users actually control the computers they own
Gemini Links 02/06/2024: Delayed Disappointment
Links for the day
statCounter: GNU/Linux on More Than 1 in 5 Desktops/Laptops
Desktop Operating System Market Share Norway
Reminder: The First CEO of IBM (Owner of Red Hat) Was "Convicted on Extortion" (According to Edwin Black, Author of "IBM and the Holocaust")
Red Hat is not a liberal company
GNU/Linux Market Share in Turkey Now Exceeds 10%, According to StatCounter
StatCounter (or statCounter) shows considerable increases
GNU/Linux in Germany: The Seven Percent
The historical data shows that it wasn't always like this
Slovenia: Windows Becomes Minority Market Share This Month
It finally happened. Android is now measured as bigger than Windows.
statCounter: Bing Has Lost Market Share Since the Chatbot Hype, in Europe Yandex Nearly Exceeds Bing Now
Bing also had many layoffs (not that the media bothered covering that); we must debunk Microsoft's baseless claims and deliberate lies/hype
Microsoft Windows Falls Below 10% in Africa, Down to About 20% in Asia
The future isn't Windows
Taiwan Can Defend Its Autonomy Better by Avoiding Microsoft (Back Doors)
Maybe it's just a coincidence that GNU/Linux "took off" when Hong Kong lost its perceived independence from China
The War on Free Software Reporters - Part IV - Impersonation and Menacing Behaviour, Defamation Under One's Own Name
Such serial defamation (that went on for a very long time) is coordinated and relentless
Links 02/06/2024: Workers' Strikes and a Warming World
Links for the day
Microsoft Falls to All-Time Low of 25% in Operating Systems
If Android is counted, Windows is in trouble as it's down to all-time low of 25%
Steam Survey: GNU/Linux Up, But Canonical's Ubuntu Declining
big increases for GNU/Linux, Arch Linux gaining at Ubuntu's expense
Guardian Digital, Inc (linuxsecurity.com) Leveraging Microsoft Chatbots to SPAM for Microsoft (Googlebombing "Linux")?
Welcome to the Web in 2024. Search for "Linux" news, get Windows garbage.
Smallest Number of New Debian Developers in More Than 2 Years
Maybe Debian should recognise there's a problem instead of trying to censor - at humongous expense - those who speak about the problem
Slashdot's "Linux" Section is Reposting Press Releases for Red Hat
Is this being paid for?
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Saturday, June 01, 2024
IRC logs for Saturday, June 01, 2024
Links 01/06/2024: Microsoft Chaffbot Broken Out of Control
Links for the day
Why We're Taking Things Up a Notch
Expect about 20 articles a day this year
Sites That Cover WSL Are Helping Microsoft's Attack on GNU/Linux
Calling out the typical culprits
Plans for June
We'll try to publish Daily Links every time we have enough of these
Links 01/06/2024: Ukraine Updates, MongoDB Collapses
Links for the day
Gemini Links 01/06/2024: MNT Pocket Reform, Gemini and Content Length
Links for the day
Links 01/06/2024: WeblogPoMo2024, Pentagon’s Increasing Reliance on (i.e. Bailouts to) Microsoft
Links for the day
Twitter is (in Many Ways) Already Dead
Put an 'X' on it
Posts About Free Software, BSD, and GNU/Linux
Focus shifts have occasionally been discussed here over the years
After Softpedia Pushed Out Its Linux News Editor - and Effectively Killed the Linux Section - it Killed the Whole News Section (Altogether)
So they've killed Linux coverage, then their whole "news" section died
Their Goal is Control, Not Security (and Their Staff Advocates Fake Security or Pricey Gimmicks That Disempower the Users)
Those companies just want control, or simply domination over users (and their computers)
[Meme] The Lowest Standards of Security
No need for any qualifications
IRC Proceedings: Friday, May 31, 2024
IRC logs for Friday, May 31, 2024
Over at Tux Machines...
GNU/Linux news for the past day
Cybersecurity is a structural not behavioural problem.
Reprinted with permission from Cyber|Show
Free Software is the Future, Open Source is Just Openwashing (Proprietary With a False Marketing Twist)
Also see postopen.org
Society Has Been Destabilised by Social Control Networks
Is it time to get rid of them, if not by sanctions/bans then simply by popular boycotts?
Gemini Turns 5 This Month
As long as Geminispace exists and is accessed by enough people, Gemini Protocol will continue to matter
Links 01/06/2024: More Crackdowns in Hong Kong, Street Named After Navalny
Links for the day
The War on Free Software Reporters - Part II - Antisocial Mobs
how various GNU/Linux bloggers got "canceled" over the years
Microsoft's Share of Physical Web Servers Fell From 9.14% to 9.04% in One Month
What's interesting to us is how Microsoft continues moving down in everything measured
Links 31/05/2024: Escalations in Ukraine and Russia, National Reporter's Shield Law in US
Links for the day
Links 31/05/2024: Generating and Using Identifiers, Why Unicode
Links for the day
A 3-Year Campaign to Coerce/Intimidate Us Into Censorship: In Summary
Some high-profile examples of defamation include Linus Torvalds, Richard Stallman...
[Meme] Never "Missing Out" in FOSS Conferences
The sexists who objectify women and bully women are going to FOSS events in pursuit of sex, according to themselves
Racism, Ageism, and Ableism at IBM/Red Hat and Kyndryl
IBM's Kyndryl is now accused of "racial, age, disability discrimination"
The War on Free Software Reporters - Part I - Why Techrights Cannot be Censored (and Won't be Censored)
Microsoft remains by far the biggest culprit
In Spite of Boot-locking (Trying to Make It Hard If Not Impossible to Install BSDs and GNU/Linux on New PCs) Microsoft's Grip is Rapidly Slipping
Escaping the Microsoft prison
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, May 30, 2024
IRC logs for Thursday, May 30, 2024
Microsoft's Problem in Puerto Rico
Notice how much Windows has fallen
Gemini Links 31/05/2024: MNT Pocket Reform and Benben v0.5.0
Links for the day
"I once preached peaceful coexistence with Windows. You may laugh at my expense -- I deserve it." -Be's CEO Jean-Louis Gassée
Execution of Red Hat: But I helped promote Azure and .NET
In Many Countries Vista 11's Market Share Goes Down, Not Up (Even Microsoft-Funded Mainstream Media Admits This)
More people are moving to GNU/Linux