Advertisement

We need your help now

Support from readers like you keeps The Journal open.

You are visiting us because we have something you value. Independent, unbiased news that tells the truth. Advertising revenue goes some way to support our mission, but this year it has not been enough.

If you've seen value in our reporting, please contribute what you can, so we can continue to produce accurate and meaningful journalism. For everyone who needs it.

AP Photo/Ron Harris

Microsoft criticises Google for revealing a Windows bug before it could fix it

The company has criticised Google’s Project Zero for revealing details of a Windows 8.1 vulnerability two days before it was due to fix it.

MICROSOFT HAS CRITICISED Google’s decision to reveal a software vulnerability relating to Windows 8.1 two days before it had planned to fix it.

Google Project Zero is a service which tracks software flaws and reports them to the relevant parties before they are exploited. To ensure that all bugs are fixed, Project Zero gives them 90 days to patch it or else it publishes the details.

The senior director of Microsoft’s Security Response Centre Chris Betz described Google’s decision as “less like principles and more like a ‘gotcha’”.

In a post detailing Microsoft’s stance on the issue, Betz mentioned that the bug would be fixed as part of Patch Tuesday, a planned event which happens on the second Tuesday of every month. Microsoft had asked Google to keep the vulnerability under wraps until then, but Google published the details of said bug on 29 December as its 90-day deadline wasn’t met.

CVD (Coordinated Vulnerability Disclosure) philosophy and action is playing out today as one company – Google – has released information about a vulnerability in a Microsoft product, two days before our planned fix on our well known and coordinated Patch Tuesday cadence, despite our request that they avoid doing so.

Specifically, we asked Google to work with us to protect customers by withholding details until Tuesday, January 13, when we will be releasing a fix. Although following through keeps to Google’s announced timeline for disclosure, the decision feels less like principles and more like a “gotcha”, with customers the ones who may suffer as a result. What’s right for Google is not always right for customers. We urge Google to make protection of customers our collective primary goal.

Betz said that the process of dealing with security vulnerabilities can be a “complex, extensive and time-consuming process” where issues like the real world impact in consumer environments, the number of platforms said bug exists in and the complexity of the fix must be considered.

Vulnerabilities are not all made equal nor according to a well-defined measure. And, an update to an online service can have different complexity and dependencies than a fix to a software product, decade old software platform on which tens of thousands have built applications, or hardware devices. Thoughtful collaboration takes these attributes into account.

Batz made a request to researchers to privately disclose vulnerabilities to software providers and work with them until a fix is made before making the details public, said it’s a “partnership that customers benefit the most.” Not doing this would result in a “zero sum game where all parties end up injured.”

After Project Zero released the details of the bug, one of its members defended its decision to publish it saying “on balance… disclosure deadlines are currently the optimal approach for user security,” and would monitor the effects of its policy “very closely.”

Read: Here’s the right way to set a New Year’s Resolution >

Read: So far, the latest version of Android is only on a tiny number of devices >

Readers like you are keeping these stories free for everyone...
A mix of advertising and supporting contributions helps keep paywalls away from valuable information like this article. Over 5,000 readers like you have already stepped up and support us with a monthly payment or a once-off donation.

Close
10 Comments
    Install the app to use these features.
    Mute john Appleseed
    Favourite john Appleseed
    Report
    Mar 2nd 2017, 6:22 AM

    Let’s blame Airbnb for a housing shortage that FG are unwilling and incapable of solving. Reduce capital gain tax and incentivise new developments through tax. Stop the building height restrictions. Half of north Dublin City is in ruin with empty houses all over it.

    99
    Install the app to use these features.
    Mute Captain kirk
    Favourite Captain kirk
    Report
    Mar 2nd 2017, 6:24 AM

    A few weeks ago he said he wasn’t going regulate it, I think this guy is making it up as he goes along.

    81
    Install the app to use these features.
    Mute Noel
    Favourite Noel
    Report
    Mar 2nd 2017, 6:27 AM

    Kirk he’s trying to be popular FG leadership coming up ok

    50
    Install the app to use these features.
    Mute Pheilum Shannon
    Favourite Pheilum Shannon
    Report
    Mar 2nd 2017, 6:37 AM

    A lot of people that rent out rooms etc on Airbnb, do so out of necessity. It provides an income supplement that many people needed during the height of the recession because of the austerity imposed by the government. Of course some people are going to make a fortune out of it, and more luck to them. In my opinion though, regulating Airbnb will only serve as a tax collecting tool, not something that will actually fix the housing crisis. I think their first port of call should be to reduce the tax on rental income that landlords have to pay. This would encourage more people to invest in property, as it would mean the property would pay for itself when rented out!

    72
    Install the app to use these features.
    Mute Anne Marie Devlin
    Favourite Anne Marie Devlin
    Report
    Mar 2nd 2017, 7:19 AM

    @pheilum. A lot of people also rent out entire properties on a full-time basis via airbnb. I agree that it won’t fix the housing crisis, but I strongly believe that those renting out full time should be regulated. They should have to apply for planning permission for change of use. After all, the premises is no longer a home. They should pay taxes and they should have to ensure that they meet health and safety standards. A person occasionally renting out a spare room entirely different.

    45
    Install the app to use these features.
    Mute Captain kirk
    Favourite Captain kirk
    Report
    Mar 2nd 2017, 7:39 AM

    Well if you agree that it won’t fix the housing crisis what is the problem? Btw who said they don’t pay taxes?

    17
    Install the app to use these features.
    Mute Noel
    Favourite Noel
    Report
    Mar 2nd 2017, 6:25 AM

    Coveney be better off regulating hotel prices in city’s over weekends ?

    71
    Install the app to use these features.
    Mute Derek Walsh
    Favourite Derek Walsh
    Report
    Mar 2nd 2017, 2:10 PM

    Only if he wants hotels to go out of business. Hotel prices are the sort of thing that don’t need regulation. If they’re too high, the rooms remain empty. If they’re too low, the hotel runs at a loss. Encouraging the building of more hotels – or the use of houses and apartments as short-term lets – would drive hotel prices down.

    3
    Install the app to use these features.
    Mute Willy Malone
    Favourite Willy Malone
    Report
    Mar 2nd 2017, 6:11 AM

    Convey, ask Europe what to do. If it suits FG, go for it , If not , ignore em. Ain’t that the FG way ?

    75
    Install the app to use these features.
    Mute Noel
    Favourite Noel
    Report
    Mar 2nd 2017, 6:24 AM

    Willy FG are a facist party

    39
    Install the app to use these features.
    Mute Cram Wood
    Favourite Cram Wood
    Report
    Mar 2nd 2017, 11:52 AM

    Regulate, regulate, regulate.
    Keep regulating so that any competition to the status quo is abolished.
    Keep regulating so that home owners can’t generate a small side income without being hammered with taxes.
    Keep regulating so that there is no more innovation.
    Keep regulating so that costs to employers are driver up thereby squeezing wages.
    Keep regulating, Keep regulating, Keep regulating FFS.

    17
    Install the app to use these features.
    Mute Captain kirk
    Favourite Captain kirk
    Report
    Mar 2nd 2017, 6:54 AM

    Why isn’t there anyone standing up for property rights? Why is it the individual property owners responsibility to solve the housing crisis caused by government? The little guy paying the bills yet again

    70
    Install the app to use these features.
    Mute OU812
    Favourite OU812
    Report
    Mar 2nd 2017, 7:48 AM

    I don’t do ab&b but surely it’s a property owner’s responsibility to do what they want with he property they pay for?

    64
    Install the app to use these features.
    Mute Rodger 5
    Favourite Rodger 5
    Report
    Mar 2nd 2017, 8:22 AM

    Airbnb is responsible for bringing in tourists who spend a lot of €€€€€€€€, thread carefully.

    39
    Install the app to use these features.
    Mute Peter Buchanan
    Favourite Peter Buchanan
    Report
    Mar 2nd 2017, 7:08 AM

    Nanny state strikes again….

    31
    Install the app to use these features.
    Mute Tony Hardwicke
    Favourite Tony Hardwicke
    Report
    Mar 2nd 2017, 7:59 AM

    The more he interferes with the rental market the more flee from it ..including his beloved large professional landlord firms

    24
    Install the app to use these features.
    Mute Jack Bowden
    Favourite Jack Bowden
    Report
    Mar 2nd 2017, 7:08 AM

    The headline makes it sound like he’s looking for a brown envelope. “Satisfactory arrangement”, I wonder what that could mean?

    21
    Install the app to use these features.
    Mute Drew TheChinaman :)
    Favourite Drew TheChinaman :)
    Report
    Mar 2nd 2017, 9:38 AM

    When they say It’s not right, what they really mean is it exposes the government’s failure to adequately implement any real policy to address housing shortages. It has nothing to do with being right and everything to with making the government look incompetent and its housing policy look non-existent.

    Airbnb overall increases the supply of accommodation. It has the potential to take an under-utilised resource… a house or apartment which is vacant part of the time or a place someone does not want to let long term and makes it available on the market.

    Governments around the world are going to have to get used to a sharing economy and too technology easily, cheaply and efficiently connecting individuals with something to share with someone else that has need.

    13
    Install the app to use these features.
    Mute iBob101
    Favourite iBob101
    Report
    Mar 2nd 2017, 8:49 AM

    Why doesn’t he keep his fat nose out of our business?

    20
Submit a report
Please help us understand how this comment violates our community guidelines.
Thank you for the feedback
Your feedback has been sent to our team for review.
JournalTv
News in 60 seconds