Where There’s Life, There’s Hope

It works! My laptop PC that is, following my decision to install Windows XP Service Pack 2 (SP2).



Without having fully backed-up my “Production” work machine, I’m not yet confident enough to try it out without at least a week’s experience of SP2 in operation elsewhere, so the Hewlett Packard laptop was volunteered as the Guinea Pig for the experiment.

Having read through the experiences of others, I was worried that my wireless network would cease to function and my anti-virus protection would become invisible. In fact, the network carried-on quite happily but did ask me if I wished to beef-up its security. Norton anti-virus, I’m told by the Symantec website is still there, although Windows now warns me that it isn’t and a “Live-update” of my anti-virus software confirmed that everything was working as it should be.

The only change I’ve really noticed is the Windows Security Centre, which encourages me and millions of other users to take more care of my system’s security, while automatically switching my Firewall on. Rather like the Norton Personal Firewall, Windows now asks me if I trust any application that appears to be breaking its security rules, an example being a Bluetooth application for my Sony Ericsson P900 phone, which I had to look-up on the Web before I knew what it was.

In the real world however, readers have more systems to worry about than I have and many organisations are reportedly blocking Windows SP2 from automatically updating end-user PCs until they are completely satisfied that it won’t break any vital applications. With this in mind, I’ve included a list of resources from Microsoft with this column that may be of help until you have made up your own mind.

Service Pack 2 is an optional update at the moment and Microsoft have given the world until next year before it becomes mandatory, a major step towards making this sorry industry a more secure place. Just to illustrate the depth of the problem, last month, a large IRC "botnet" controlling more than 10,000 Personal Computers was shut down by the security staff of Norwegian provider Telenor. Increasingly, such networks of remote-controlled PCs’ are available “off-the-shelf” to criminal gangs, commonly from Russia, who can quite literally rent them for extortion operations involving distributed denial of service (DDoS) attacks from supermarket-style underground websites.

If you didn’t know already, “Bot” networks aggregate computers that have been compromised with “RATS”, Remote-Access- Trojans, allowing them to be remotely controlled by hackers. Netcraft reports that in the past year, the proliferation of e-mail borne viruses and auto-downloading trojans has dramatically increased the number and size of botnets, which now have economic value as Spam engines and tools in DDoS blackmail schemes. Compromised "zombie" machines were recently found on the networks of the U.S. Defense Department and Senate and in an earlier Computer Weekly column you may remember that I have questioned how secure our own public sector systems are following the Department of Work & Pensions scandal.

In a month’s time the UK Government, business and the IT industry, will be fighting back with a national IT security awareness programme code-named “Operation Endurance”, which is still very much under wraps but has already started leaking to the press. The ultimate question is of course whether a Government-funded initiative and even the arrival of SP2 is enough to turn the tide or whether we have now reached a critical mass of insecurity which makes any short-term vision of a secure knowledge economy a hopeless aspiration rather than a sensible proposition.

SP2 Resources

Windows XP SP2 - A site aimed at IT Professionals with useful information and White Papers on Windows XP SP2, including a whole section on deployment:

Comments

Popular posts from this blog

Civilisational Data Mining

The Nature of Nurture?