[Google]

WMF flaw was deliberate

Wow, this is really scary. I just listened to episode 22 of the SecurityNow podcast and according to Steve Gibson the recent WMF vulnerability on windows may have been a backdoor intentionally placed there by Microsoft. The nature of the flaw means that there is absolutely no reason for it to be there as a feature as was previously assumed. While a coding flaw is always possible it’s extremely unlikely in this case as it’s not something you could just overlook like a buffer overflow. Not only that but this code must have been reviewed several times by Microsoft’s security team when other WMF flaws surfaced previously. So either they are a bunch of morons and missed it or they already knew about it and left it in there on purpose. Eep!

If this is really true then it makes you wonder how many more backdoors there are in there and what Microsoft intend to do with them.

Related Posts

No related posts.

Leave a Reply

 

 

 

You can use these HTML tags

<a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>

Additional comments powered by BackType