• Alaknár@sopuli.xyz
      link
      fedilink
      English
      arrow-up
      1
      arrow-down
      19
      ·
      3 hours ago

      Copy Fail, Dirty Frag and Fragnesia exist. What are you going to switch to now?

      • azuth@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        20
        ·
        3 hours ago

        They will be patched. There is also no indication that they 'be been known and exploited till recently.

        This was allegedly deliberately non patched to be exploited.

        Getting a system without bugs and security issues is impossible, you can at least avoid intentional compromise.

        • Alaknár@sopuli.xyz
          link
          fedilink
          English
          arrow-up
          1
          arrow-down
          2
          ·
          1 hour ago

          They will be patched. There is also no indication that they 'be been known and exploited till recently.

          Two of the three are being used in the wild, with Copy Fail being retroactively found at least 9 days before the disclosure.

          What are the indications that the BitLocker vulnerability is already being utilised?

          This was allegedly deliberately non patched to be exploited.

          Alleged by a guy who was fired from Microsoft. I’d take that with a pinch of salt.

          Getting a system without bugs and security issues is impossible, you can at least avoid intentional compromise.

          I agree! But other than one angry dude, not much else is pointing towards this being intentional - so far! Let’s see how things go.

          That being said, open source repos are being attacked constantly with attempts at intentional malicious code injection - I’m sure you’ve heard of XZ Utils? How many others went through and are being exploited without anyone noticing?

      • michaelmrose@lemmy.world
        link
        fedilink
        English
        arrow-up
        5
        ·
        3 hours ago

        Those are potential vulnerabilities that can be patched. This is an indication that MS intends for bitlocker which you really need to be secure to bother using windows on a laptop to never be secure by design.

        • Alaknár@sopuli.xyz
          link
          fedilink
          English
          arrow-up
          1
          arrow-down
          1
          ·
          1 hour ago

          Those are potential vulnerabilities that can be patched

          “Potential”? They are actively being exploited. And they don’t require physical access to the device.

      • 87Six@lemmy.zip
        link
        fedilink
        English
        arrow-up
        5
        arrow-down
        1
        ·
        3 hours ago

        I always wonder whether to block people like you.

        Sometimes I see your comments and get angry at how stupid you are.

        Other times I see your comments and become really aware of how intelligent I am compared to… whatever the hell you are.

        • Alaknár@sopuli.xyz
          link
          fedilink
          English
          arrow-up
          2
          arrow-down
          2
          ·
          1 hour ago

          I mean, if you have nothing of value to say, why even make a comment? Just block me and move on, mate.

          Or, I don’t know, engage and tell say why you think this comment was stupid?