US Department of Homeland Security Wants You To Update Windows
By Angsuman Chakraborty, Gaea News NetworkThursday, August 10, 2006
I have never seen them so concerned about computer vulnerability from Microsoft Windows software. Everyone knows Windows OS is vulnerable by default. Why the special initiative this time?
The Department of Homeland Security (DHS) is recommending that Windows Operating Systems users apply Microsoft security patch MS06-040 as quickly as possible. This security patch is designed to protect against a vulnerability that, if exploited, could enable an attacker to remotely take control of an affected system and install programs, view, change, or delete data, and create new accounts with full user rights.
Windows Operating Systems users are encouraged to avoid delay in applying this security patch. Attempts to exploit vulnerabilities in operating systems routinely occur within 24 hours of the release of a security patch. This vulnerability could impact government systems, private industry and critical infrastructure, as well as individual and home users.
Users can apply the Microsoft MS06-040 security patch at https://www.microsoft.com/technet/security/bulletin/ms06-040.mspx. Home user may prefer to go to Windows Update at https://update.microsoft.com and select “express” to install critical security updates, including the MS06-040 security patch.
The Department’s U.S. Computer Emergency Readiness Team (US-CERT) continues to work closely with Microsoft to minimize any impact from this vulnerability.
DHS recommends that computer users and administrators implement the following preparedness measures to protect themselves against this vulnerability, and also from future vulnerabilities, worms, and viruses:
* Keep up-to-date on security patches and fixes for your operating system. The easiest way to do this is to set your system to receive automatic updates, which will ensure you automatically receive security updates issued by Microsoft. If your system does not allow automatic updates, we recommend that you manually install the Microsoft security patch today through Microsoft Update at https://update.microsoft.com/microsoftupdate
* Install anti-virus and anti-spy ware software and keep them up-to-date
* Enable a firewall which will help block attacks before they can get into your computer
* Do not open emails from unknown sources and do not open or execute email attachments that you are not expecting even if they come from a known and trusted source.
I am as perplexed as you are. Today Homeland Security is doing what should be Microsoft’s job. What next? Would they announce next to adopt and rewrite Windows to make it secure? Frankly I would welcome it.