<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://blogs.technet.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Russian Roulette with your Network</title><link>http://blogs.technet.com/b/rhalbheer/archive/2009/01/04/russian-roulette-with-your-network.aspx</link><description>First of all, before I really start, I hope that you all had a great start in 2009. Mine was actually pretty mixed. The good side was, how my year really started and what I saw when I looked out the window at January 1st (yes, I was on vacation skiing</description><dc:language>en-US</dc:language><generator>Telligent Evolution Platform Developer Build (Build: 5.6.50428.7875)</generator><item><title>re: Russian Roulette with your Network</title><link>http://blogs.technet.com/b/rhalbheer/archive/2009/01/04/russian-roulette-with-your-network.aspx#3210904</link><pubDate>Mon, 09 Mar 2009 20:47:28 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3210904</guid><dc:creator>Swiss Consultant</dc:creator><description>&lt;p&gt;Stop complaining&lt;/p&gt;
&lt;p&gt;Server 2008 is more secure. But i hate adding each feature i need afterwards like in stupid Tux. The Concept of MS and succcess was always 1) you install the software, 2) it runs and then you 3) modify to your need.&lt;/p&gt;
&lt;p&gt;If people miss out Step 3) because they are too &lt;/p&gt;
&lt;p&gt;- lousy, &lt;/p&gt;
&lt;p&gt;- have no knowledge &lt;/p&gt;
&lt;p&gt;- or some shitty manager want's to cut cost and personal &lt;/p&gt;
&lt;p&gt;then well is it MS or the IT-managers?&lt;/p&gt;
&lt;p&gt;If MS sells there products if they would need no step 3 (Which costs a lot of money and time) then that's just how it works. The customer wants to be fooled. If you tell them the truth he will buy somewhere else. That's just our stupid society.&lt;/p&gt;
&lt;p&gt;Fact was always you run setup.exe and the system runs. You CAN modify it afterwards. That was the key point which made MS so big.&lt;/p&gt;
&lt;p&gt;Patching:&lt;/p&gt;
&lt;p&gt;Use Windows Update Server 3.0 (Forget SMS/ENTEO/ALTIRIS/Wininstall for Patch managment). The only company who understands how to chain Hotfixes is MS. Windows Update Server is Free and perfect to 2000+ clients (So thats 80% of you). You need IQ to analyse and chain hotfixes otherwise you unpatch systems by patching them. (All you Logonscript patchers ;-)&lt;/p&gt;
&lt;p&gt;Mca** did lousy work on Conficker&lt;/p&gt;
&lt;p&gt;February Malware Hotfix from MS and Symant** &amp;nbsp;free .EXE File where the only two products who could remove a Conficker variant end of Febraury 2009. Mcaf** 8.5/8.7 VSE could NOT remove the Virus NORE trace it coming to a client in realtime.&lt;/p&gt;
&lt;p&gt;All you (I take a shower once a week) Linux Admins and black glasses MAC Designers:&lt;/p&gt;
&lt;p&gt;Mac &amp;amp; Linux, take a look at Secunia at total Leaks per Year or per product and just silence please. If every destop OS would be TUX it would be just the same way. &lt;/p&gt;
&lt;p&gt;Oh my Amiga was safe, yes there was a virus from SCA (Swiss cracking As. from Weber/ZH) for it. Oh we will use C64+Speedos in all offices. But every manager want's to use Poewerpoint so? &lt;/p&gt;
&lt;p&gt;;-)&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3210904" width="1" height="1"&gt;</description></item><item><title>re: Russian Roulette with your Network</title><link>http://blogs.technet.com/b/rhalbheer/archive/2009/01/04/russian-roulette-with-your-network.aspx#3204112</link><pubDate>Wed, 18 Feb 2009 19:00:47 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3204112</guid><dc:creator>Dravion Smith</dc:creator><description>&lt;p&gt;The potential risk of Securitycritical Softwareupdate &lt;/p&gt;
&lt;p&gt;on Mission Critical Systems is only a Question about how&lt;/p&gt;
&lt;p&gt;carefully a Programmer has done its Job.&lt;/p&gt;
&lt;p&gt;Honestly, Microsoft Developers are not intrested producing&lt;/p&gt;
&lt;p&gt;robust Software, they are allways intrested to get the Job done,&lt;/p&gt;
&lt;p&gt;verry quick, verry diry.&lt;/p&gt;
&lt;p&gt;Use FreeBSD or Solaris if you want a solid and proven&lt;/p&gt;
&lt;p&gt;Enterprise OS and you wil have seriously &amp;nbsp;less Stress. &lt;/p&gt;
&lt;p&gt;If you install Windows on your Hardware, then you playing Football with your Network Security!&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3204112" width="1" height="1"&gt;</description></item><item><title>re: Russian Roulette with your Network</title><link>http://blogs.technet.com/b/rhalbheer/archive/2009/01/04/russian-roulette-with-your-network.aspx#3200430</link><pubDate>Wed, 11 Feb 2009 00:40:39 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3200430</guid><dc:creator>Sektek</dc:creator><description>&lt;p&gt;Andy, you must realize that Microsoft does indeed &amp;quot;help them to install the software&amp;quot;. &amp;nbsp;It is called Windows Update.&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3200430" width="1" height="1"&gt;</description></item><item><title>re: Russian Roulette with your Network</title><link>http://blogs.technet.com/b/rhalbheer/archive/2009/01/04/russian-roulette-with-your-network.aspx#3185772</link><pubDate>Mon, 19 Jan 2009 20:30:20 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3185772</guid><dc:creator>Andy</dc:creator><description>&lt;p&gt;Look, your company distributed software that has a security problem. So it has to bear the consequences and deliver the support. I would expect Microsoft to go to customers and help them to install the software as it is their fault, your company delivered broken software.&lt;/p&gt;
&lt;p&gt;Why do customers have to roll out patches? Why do companies and European citizens have to invest their man-hours to fix what you broke! How are the compensated?&lt;/p&gt;
&lt;p&gt;&amp;quot;Microsoft recommends that customers apply the update immediately.&amp;quot;&lt;/p&gt;
&lt;p&gt;Oh, nice attitude, go an fix your stuff as we said in bullettin message PBFX #1038478. As if it was our fault!&lt;/p&gt;
&lt;p&gt;Who was fired and slain by your company for letting it happen? Did your company express its regret for delivering defect software? No, you rather insult your customers:&lt;/p&gt;
&lt;p&gt;&amp;quot;Account Lockouts all over the place, admin passwords that were grabbed (often the Domain Admins) etc – and we had some really upset engineers as they had to work instead of having off because some customers were not up to their duty (and this is what it is for me!).&amp;quot;&lt;/p&gt;
&lt;p&gt;Oh yes, you delivered defect software! You were paid for support! So don't complain! Go and fix the mess.&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3185772" width="1" height="1"&gt;</description></item><item><title>Conficker.B</title><link>http://blogs.technet.com/b/rhalbheer/archive/2009/01/04/russian-roulette-with-your-network.aspx#3182021</link><pubDate>Wed, 14 Jan 2009 00:12:30 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3182021</guid><dc:creator>Gerhard´s Marktbeobachtungen</dc:creator><description>&lt;p&gt;Ende Oktober hat Microsoft eine au&amp;#223;erplanm&amp;#228;&amp;#223;ige Sicherheits-Aktualisierung ver&amp;#246;ffentlicht. Siehe dazu&lt;/p&gt;
&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3182021" width="1" height="1"&gt;</description></item><item><title>re: Russian Roulette with your Network</title><link>http://blogs.technet.com/b/rhalbheer/archive/2009/01/04/russian-roulette-with-your-network.aspx#3180835</link><pubDate>Sun, 11 Jan 2009 23:58:30 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3180835</guid><dc:creator>rhalbheer</dc:creator><description>&lt;p&gt;I did not get upset at all :)&lt;/p&gt;
&lt;p&gt;But yes, it is very frightening and I do not understand the motivation behind it and whether it is pure vandalism.&lt;/p&gt;
&lt;p&gt;Good luck&lt;/p&gt;
&lt;p&gt;Roger&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3180835" width="1" height="1"&gt;</description></item><item><title>re: Russian Roulette with your Network</title><link>http://blogs.technet.com/b/rhalbheer/archive/2009/01/04/russian-roulette-with-your-network.aspx#3180832</link><pubDate>Sun, 11 Jan 2009 23:52:03 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3180832</guid><dc:creator>Jediwarrior</dc:creator><description>&lt;p&gt;Thank you, Roger,&lt;/p&gt;
&lt;p&gt;I am just a simple user who never had any problems with viruses, worms etc using the Mac. No reason to get sarcastic or upset and I do not want to open the stupid Mac-PC discussion.&lt;/p&gt;
&lt;p&gt;One reason for my concern - our company has just shut down the whole network and I just wanted to ask if patched PCs could also catch the worm. You answered the question - yes - only one unpatched PC in a network is enough to spread the infection in the network. Really frightening though! Kind regards&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3180832" width="1" height="1"&gt;</description></item><item><title>re: Russian Roulette with your Network</title><link>http://blogs.technet.com/b/rhalbheer/archive/2009/01/04/russian-roulette-with-your-network.aspx#3180775</link><pubDate>Sun, 11 Jan 2009 22:03:50 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3180775</guid><dc:creator>rhalbheer</dc:creator><description>&lt;p&gt;Well, then you do not have the Conficker problem but let's not open the can of worms with regards to Apple vulnerbailities and the willingness of Apple to understand the necessity of AV-software on Apple - I would get too sarcastic openign that.&lt;/p&gt;
&lt;p&gt;Conficker.B has several ways to spread. One of them is the MS08-067 vulnerabiltiy but there are others. If you click on the link above on Conficker you will find the entry in our encyplopedia where you find all the ways it spread&lt;/p&gt;
&lt;p&gt;Hope this helps&lt;/p&gt;
&lt;p&gt;Roger&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3180775" width="1" height="1"&gt;</description></item><item><title>re: Russian Roulette with your Network</title><link>http://blogs.technet.com/b/rhalbheer/archive/2009/01/04/russian-roulette-with-your-network.aspx#3180768</link><pubDate>Sun, 11 Jan 2009 21:54:38 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3180768</guid><dc:creator>Jediwarrior</dc:creator><description>&lt;p&gt;Roger - can a PC patched with MS08-067 saftey patch still be attacked and infected by Conficker or any mutants in a company network?&lt;/p&gt;
&lt;p&gt;Fortunately, I do not have such problems. The only notebook I use is an iBook G4.&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3180768" width="1" height="1"&gt;</description></item><item><title>re: Russian Roulette with your Network</title><link>http://blogs.technet.com/b/rhalbheer/archive/2009/01/04/russian-roulette-with-your-network.aspx#3178689</link><pubDate>Fri, 09 Jan 2009 13:17:12 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3178689</guid><dc:creator>carinthian</dc:creator><description>&lt;p&gt;No, i will not make an update. I will be in the news.&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3178689" width="1" height="1"&gt;</description></item></channel></rss>