Issue allows nefarious users to change file extensions unknown to user
Computer users and IT administrators around the globe are waiting for Windows 7. Many companies have still not upgraded from Windows XP due to the backlash against Windows Vista and a myriad of bugs and issues the operating system had upon its release.
The next operating system from Microsoft, Windows 7, is expected to debut in October and the latest Windows 7 RC is available to download now. The demand for the latest RC was so high that the number of requests for the operating system crashed the servers at Microsoft.
One of the things expected from Windows 7 is improved security. Despite that expectation, Mikko H. Hypponen, chief research officer at F-Secure, says that Windows 7 still suffers from a security hole that has plagued Windows Explorer since the days of NT.
The security issue, according to Hypponen, is a flaw in the way that Windows Explorer allows users to hide file extensions. This flaw allows a malicious user to write a virus, worm, or hack and rename the .exe file to something more innocent sounding like a .txt file that the user is more likely to click on.
InformationWeek reports that this security issue might not be so newsworthy if it weren't for the End-to-End Trust Vision that Microsoft is promoting to enhance computer security. One of the basic aspects of computer security is being able to correctly identify the type of files on a user's computer. Microsoft's Craig Mundie said at a conference in 2008, "[It is] important that we give people the tools to empower them to make good trust choices."
Microsoft has made some important security improvements in Windows 7 reports InformationWeek. One of the big improvements is stopping an attack initiated by the automatic execution of applications on flash drives when the flash drive is connected to the PC. This was one of the methods that allowed the Conficker worm to propagate rapidly from flash drives.
"Spreading the rumors, it's very easy because the people who write about Apple want that story, and you can claim its credible because you spoke to someone at Apple." -- Investment guru Jim Cramer
|
Most Popular ArticlesReport: Apple to Debut iPad 3 During First Week of March February 10, 2012, 9:36 AM Nikon Announces 36.3MP D800, D800E D-SLRs February 7, 2012, 10:11 AM Quick Note: Acura Unveils Production Version of ILX Hybrid Sedan February 8, 2012, 9:10 AM Google's Motorola Mobility Purchase Approval Expected Next Week February 9, 2012, 3:02 PM AMD Concedes Die-Shrink Race to Intel, Considers ARM Cores February 6, 2012, 11:45 AM
|