Warning this article may contain opinions of the author that you and iTWire don't agree with.
Visit the last page to have your say in our forum.

No. 1 Story

Telstra adds one million mobile services, but Sensis plummets

Telstra has revealed the addition of almost one million new mobile services in the six months to December 2011, but Sensis revenues plummeted 24 percent in 12 months.

read more

Why the latest IE flaw proves Linux got it right from the start

Opinion and Analysis

I won’t repeat the comments made by others that using a different web browser, such as Mozilla Firefox, will protect you from problems like this, but I will comment on something else.

Microsoft note that users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.

That makes sense; if a user runs with administrator privileges the rogue code can have full control of their system. If the user is unprivileged then the attack surface is much less.

Nevertheless, it’s a pipe dream. Unlike operating systems like Linux which have always encouraged users to have “ordinary” accounts and only claim administrator privileges when needed, and only for performing specific tasks, Windows has trained its users – and worse, its legion of developers – to always run as the local administrator.

Vista’s UAC was intended to help mitigate this problem but proved unpopular due to the great number of programs which necessitate elevated privileges.

Perhaps the ultimate solution for a safe online experience isn’t to just change your browser but to change your OS also.

Give thought to Linux; it is safe by design. This design has lasted the test of time. This design is now a major differentiation between it and Windows.

Microsoft are hoping to undo their bad security design by re-educating its horde of users to a Linux way of life. This re-education isn't working, largely because any attempts to run within a totally unprivileged environment mean the bulk of your programs no longer work.

Microsoft have to bite the bullet and obliterate the design goal of backward compatibility if they ever hope to genuinely have an operating system where administrator-level accounts aren't used for ordinary logins and usage. It's not going to be pretty.

Meanwhile, Linux just keep soldiering on. It got it right from the start. Its users are accustomed to running sudo if they temporarily require higher access as the following xkcd comic illustrates.

xkcd - sudo make me a sandwich

Loading comments ...



- sponsored feature -

The Death of Traditional BI: What’s Next?

How to Make Business Discovery Work for Your Business IP PABX BUYING GUIDE

Business Discovery takes its cues from consumer apps. Like Google, it encourages us- ers to hunt for and explore data without worrying about or even noticing the underly- ing technology. Their entire experience is working within an intuitive interface to get real-time, self-service results with only minimal training. ...more