Russinovich in retreat over Windows Vista security claims
Despite the fact we were told that Windows Vista would be much more secure than Windows XP, Microsoft technical fellow Mark Russinovich is lowering the security expectations built into Vista, particularly User Account Control (UAC).
Russinovich, in a talk at last week’s CanSecWest security conference, made predictions for the future of malware and anti-malware developments. He said that in time hackers will become familiar with Vista, and will develop new exploits, so that viruses, password-stealing Trojans, and rootkits will continue to thrive and be a menace to Windows users.
Russinovich’s talk was intended to give professionals an idea on the implementation of UAC in Windows Vista and made it clear that the feature will stop malware from making changes to the operating system but it’s not a security boundary.
However, there is no guarantee that malware can’t hijack the elevation process or compromise an elevated application.
He predicted that malware would find ways of elevating its privileges, through social engineering or by compromising applications that run with higher privileges.
With the above disclosure, I believe it is only a matter of time before malware authors gain access to administrators’ data.
It seems all this is some kind of a joke. We all remember Microsoft’s statements about how serious Microsoft is about Vista security and how all those new cool security features like UAC would improve security.
Just learn to forget all the sugar coated statements about Vista security because Microsoft is in retreat over Windows Vista security claims.
Related Posts:

April 28th, 2007
[...] Just after I posted that Microsoft is in retreat over Windows Vista security claims comes the $10K hack challenge winner, says Vista security code is much better than Mac. [...]
April 28th, 2007
[...] VISTA.BLORGE.com Print This Post Del.icio.us Your Blogmaster is Lee Other Blog posts by Lee Leave aReply [...]
April 28th, 2007
[...] Full article here: Source [...]
April 29th, 2007
[...] Time and again we were told by Microsoft that Vista is the most secure operating system the company has ever produce. But just recently, Microsoft technical fellow Mark Russinovich is lowering the security expectations built into Vista. So, what’s the truth about Vista security? [...]
July 16th, 2007
[...] VISTA.BLORGE.com » Blog Archive » Russinovich in retreat over … … Faulty Microsoft Xbox 360s flood UK market; PHOTO.BLORGE.com. Canon follows up digital Elph SD800IS with SD850IS; Shooting in available light; New HP digital camera line … Russinovich is lowering the security … http://vista.blorge.com/2007/04/27/russinovich-in-retreat-over-windows-vista-security-claims/ [...]