Security Advisor

Microsoft Continues To Beat the Conflicker Drum

Listening to Tim Rains, director of Microsoft Trustworthy Computing, discuss today's release of the semi-annual Microsoft Security Intelligence Report (SIR), one might think it's 2008 all over again. And that's because Microsoft chose to spotlight that pesky Conficker worm that we've all been dealing with for the past four or so years.

So why is Microsoft sending up the smoke signals for a worm that hasn't seen a variant in over two years? Because the infection continues to spread. Microsoft said that over 600 million systems fell victim to it during the second half of 2011.

What's even more disheartening is the fact that 92 percent of these infections were caused by a hacker either swiping or guessing your password.

If I was a software developer like Microsoft, this figure would get under my skin. No matter how well you secure your products, no matter how quickly you respond to found vulnerabilities and no matter how much you beat the drum for stronger passwords (look at today's SIR release), you can't fully protect against bad habits and user ignorance.

How do you deal with user ignorance when it comes to passwords in your organization? Are you guilty of employing unsafe, yet easy-to-remember passwords? Let me know at [email protected]

About the Author

Chris Paoli is the site producer for Redmondmag.com and MCPmag.com.

Featured

  • SameSite Cookie Changes Rolled Back Until Summer

    The Chromium Project announced on Friday that it's delaying enforcement of SameSite cookie changes, and is temporarily rolling back those changes, because of the COVID-19 turmoil.

  • Basic Authentication Extended to 2H 2021 for Exchange Online Users

    Microsoft is now planning to disable Basic Authentication use with its Exchange Online service sometime in the "second half of 2021," according to a Friday announcement.

  • Microsoft Offers Endpoint Configuration Manager Advice for Keeping Remote Clients Patched

    Microsoft this week offered advice for organizations using Microsoft Endpoint Configuration Manager with remote Windows systems that need to get patched, and it also announced Update 2002.

  • Azure Edge Zones Hit Preview

    Azure Edge Zones, a new edge computing technology from Microsoft designed to enable new scenarios for developers and partners, emerged as a preview release this week.

comments powered by Disqus

Office 365 Watch

Sign up for our newsletter.

Terms and Privacy Policy consent

I agree to this site's Privacy Policy.