Live data from Hacker News

Fix Windows 10

fix10.isleaked.com

31–40 of 201 posts

Re: Fix Windows 10

#31
I can't help but feel like some of this is fear mongering. There are some good features in there that are being disabled for the sake of "privacy" like sharing of Windows updates with other computers to speed up downloads. And how do we expect things like Windows Defender or Microsoft's handwriting and voice recognition to improve if we refuse to share back any anonymized information with Microsoft?

Re: Fix Windows 10

#33

Earlier quoted context omitted.

The guide shows how to disable sending updates from your computer to other computers on your LAN or on the Internet. It doesn't suggest disabling updates anywhere...

I don't understand why you would want to disable LAN distribution of Windows 10 updates to your other Windows 10 machines. It seems like a great way of avoiding multiple downloads of the same thing, and I'd love something similar for Linux (aptorrent or something; manual rsync of /var/cache/apt/archives isn't quite the same, neither is apt-mirror). Disabling uploads to other external machines does make sense to me, t…

Probably not much point in disabling that. Disabling downloads from other machines on the web makes more sense if you have a data cap or are charged per MB, which is common in some countries. It's not really a privacy-related change as far as I can see.

Re: Fix Windows 10

#34
The number of options related to easing network access and location awareness demonstrates that Win10 is more aimed at laptops and tablets than desktops etc.

Re: Fix Windows 10

#35
post #21
post #18

> 7. To disable telemetry (...) Why should I disable that? What does it do? My understanding is that it's only statistics on data usage, which I find useful?

Nearly all of the windows privacy issues come from useful features. If cortana wants to automatically recommend appointments from emails? Guess what? She has to read your emails. If you want to be blocked from downloading malware? Guess what? You have to check with a central db first. etc Apple, Google devices etc have had this stuff on for ages.

> If you want to be blocked from downloading malware? Guess what? You have to check with a central db first.

Or it could download the db and do the checks locally. There wouldn't be privacy concerns about MS knowing which sites one's browsing.

Re: Fix Windows 10

#36
post #4

Unfortunately, the ad under "Does this banner show ads based on your interests? If yes, you have been tracked" is a link to what I can only imagine is malware, given that it's an "Update Drivers Now" ad. As such, this site isn't really appropriate to send to the average non-technical user, as given my experience from working at an IT help desk years ago, people will end up clicking that ad and installing the malware.…

That's Google Ads. So I guess most of the internet isn't really appropriate to send to the average non-technical user?

Pretty much, no, really.

This is why I consider an ad-blocker part of any standard security suite.

Re: Fix Windows 10

#37

Shutting off smartscreen is short sighted and wrong. Its no different than the lists Chrome and FF use to block malicious sites. These lists are shared via a shared security initiative between the major browser makers. Disabling this is a good way to make sure you get cryptolocker. Shutting off cloud-based protection in Defender is equally stupid. Now you're not getting instant and up to date virus definitions from t…

The problem I have with the current settings in Windows 10 is how they seem to lump together vital security update functionality with Cortana and other datamining features. They shouldn't be part of the same 'module' as it were. But someone at MS HQ thought it was a good idea for some odd reason. I can't see this as anything but a way to sweeten the medicine they feel we need to take. IMO, if they were up front about…

Well, I'm not an expert on UI stuff, but the author did go right into Defender's settings and choose to disable the cloud definitions. How is that misleading? MS didn't hide that setting. Its in a logical place. Its obvious the author didn't bother to understand what cloud definitions are, just saw the word "cloud," and put on his Mr. Privacy Expert hat and told everyone to turn it off.

I do agree that Smartscreen is in a silly place, but because MS now uses it for not only sites but MS Store links, it kinda makes sense to move it out of the browser and into a more general place. Sadly, links like these guides get everywhere on the internet. Lots of people are now going to be at risk at easily avoided malware and phishing attempts because of his laziness and stupidity.

In a couple months we'll have articles about "Why is Windows 10 getting so much malware?" Gee maybe because everyone disabled the security features in an angry privacy fit without considering the consequences or thinking through the problem? The same way geeks freaked out when the UAC in Vista was revealed and disabled it, along with the security layer it provides.

Re: Fix Windows 10

#38

Shutting off smartscreen is short sighted and wrong. Its no different than the lists Chrome and FF use to block malicious sites. These lists are shared via a shared security initiative between the major browser makers. Disabling this is a good way to make sure you get cryptolocker. Shutting off cloud-based protection in Defender is equally stupid. Now you're not getting instant and up to date virus definitions from t…

The issue is that both SmartScreen and Defender 'cloud' protection upload or otherwise inform Microsoft about what you are downloading. For example, it could conceivably track and prevent you from downloading and using Tor. For most Western countries that's not a problem, but is the data sent encrypted? Could an adversary (nation-state) MITM your connection (e.g. GFoC) and immediately be informed about who downloaded Tor, even if they had been using a VPN or other circumvention mechanism? (Windows Defender scans files as soon as you open the directory, not just the first time)

Also, I don't think Defender's cloud-based protection has anything to do with updates. These are delivered via WU; I think it's more to do with informing Microsoft about detection or suspicious files so they can be analysed.

(Not voted either way)

Edit: I really wish people would say why they downvote. Otherwise I have no idea what you disagree with or whether you think what I've written is factually incorrect.

Re: Fix Windows 10

#39
post #21
post #18

> 7. To disable telemetry (...) Why should I disable that? What does it do? My understanding is that it's only statistics on data usage, which I find useful?

Nearly all of the windows privacy issues come from useful features. If cortana wants to automatically recommend appointments from emails? Guess what? She has to read your emails. If you want to be blocked from downloading malware? Guess what? You have to check with a central db first. etc Apple, Google devices etc have had this stuff on for ages.

I find myself reminded of how people oh and ah over Google Now being helpful, while i am sitting here wondering how much Google must know about each person to produce those results.

I am sure the technologists at both Google and Microsoft has the best of intentions with their creations, the question is what happens when a TLA or similar comes knocking.

Re: Fix Windows 10

#40

Shutting off smartscreen is short sighted and wrong. Its no different than the lists Chrome and FF use to block malicious sites. These lists are shared via a shared security initiative between the major browser makers. Disabling this is a good way to make sure you get cryptolocker. Shutting off cloud-based protection in Defender is equally stupid. Now you're not getting instant and up to date virus definitions from t…

Let's clarify: disabling smartscreen for privacy reasons is different that keeping it enabled for security reasons. Smartscreen sends urls you visit to Msoft, and since Win8, it sends filenames of downloaded files to Msoft too.

As for the security argument, smartscreen only works in IE, so for those of use who don't want any of that turned on, and use FF (instead of chrome), where we download the blacklist instead of sending it outside our network, we can still maintain the same level of security while adding a layer to our privacy.

The same for cloud based Defender. There is no reason I shouldn't be able to turn it off if I have an approriate replacement that protects my privacy.

Which also means you are wrong when you say "if you run any AV or use any browser, you're already doing this". Nope, not at all, and either you are unaware of what you speak of or you are being disingenuous.

Post reply on HN