Wannacry About Business Models
stratechery.com
Wannacry About Business Models
1–10 of 33 posts
Re: Wannacry About Business Models
#2Microsoft isn't a victim here. They made decisions that made it difficult or impossible for customers to upgrade their software. They also print money.
Is it a pain in the ass to support a bunch of old software? Yes. Should anyone, anywhere have any sympathy for them? No.
Re: Wannacry About Business Models
#3This is a bizarre perspective. Microsoft isn't a victim here. They made decisions that made it difficult or impossible for customers to upgrade their software. They also print money. Is it a pain in the ass to support a bunch of old software? Yes. Should anyone, anywhere have any sympathy for them? No.
Is fixing 0-days sufficient "support", or do you think Microsoft should be forced to actively invest in security updates for end-of-life software?
Re: Wannacry About Business Models
#4This is a bizarre perspective. Microsoft isn't a victim here. They made decisions that made it difficult or impossible for customers to upgrade their software. They also print money. Is it a pain in the ass to support a bunch of old software? Yes. Should anyone, anywhere have any sympathy for them? No.
How "old" is sufficient? Forever? Is fixing 0-days sufficient "support", or do you think Microsoft should be forced to actively invest in security updates for end-of-life software?
Re: Wannacry About Business Models
#5This is a bizarre perspective. Microsoft isn't a victim here. They made decisions that made it difficult or impossible for customers to upgrade their software. They also print money. Is it a pain in the ass to support a bunch of old software? Yes. Should anyone, anywhere have any sympathy for them? No.
How "old" is sufficient? Forever? Is fixing 0-days sufficient "support", or do you think Microsoft should be forced to actively invest in security updates for end-of-life software?
Re: Wannacry About Business Models
#6This is a bizarre perspective. Microsoft isn't a victim here. They made decisions that made it difficult or impossible for customers to upgrade their software. They also print money. Is it a pain in the ass to support a bunch of old software? Yes. Should anyone, anywhere have any sympathy for them? No.
How "old" is sufficient? Forever? Is fixing 0-days sufficient "support", or do you think Microsoft should be forced to actively invest in security updates for end-of-life software?
Re: Wannacry About Business Models
#7False dichotomy. The choices are not only:
a) NSA pays lots of money to identify exploits and then hoards and uses them, vs
b) NSA does not identify exploits, leaving it up to China or Russia to do so and leaving us vulnerable.
There is a third choice:
c) NSA recognizes that only State actors have the money or time for this kind of thing, and should invest the money to detect and report exploits because China and Russia are probably doing so.
In fact (a) doesn't actually provide defense against China and Russia having the exploit: we were undefended until the exploit leaked, and without the leak, China or Russia could have executed an attack at any time. They didn't.
Re: Wannacry About Business Models
#8This is a bizarre perspective. Microsoft isn't a victim here. They made decisions that made it difficult or impossible for customers to upgrade their software. They also print money. Is it a pain in the ass to support a bunch of old software? Yes. Should anyone, anywhere have any sympathy for them? No.
How "old" is sufficient? Forever? Is fixing 0-days sufficient "support", or do you think Microsoft should be forced to actively invest in security updates for end-of-life software?
At some point, the support stops being pulled from the product budget and starts being pulled from the advertising budget.
Dollars to doughnuts its worth it in the end.
Re: Wannacry About Business Models
#9Re: Wannacry About Business Models
#10Earlier quoted context omitted.
How "old" is sufficient? Forever? Is fixing 0-days sufficient "support", or do you think Microsoft should be forced to actively invest in security updates for end-of-life software?
My question would be how could you bake into the original cost the cost of long term support when you have no idea how long one might use it? Windows XP was only end of life after 14 years. Some people STILL use it. I doubt the $139 price 14 years ago was expected to cover more than 5 years of use. Would $5/month forever make more sense?