Well, there's the smoking gun for the reason behind CISPA. I'm sure tptacek still won't admit he was wrong though.
U.S. National Security Agencies Said to Swap Data With Thousands of Firms
11–20 of 78 posts
Re: U.S. National Security Agencies Said to Swap Data With Thousands of Firms
#12Holy shit. Microsoft Corp. (MSFT), the world’s largest software company, provides intelligence agencies with information about bugs in its popular software before it publicly releases a fix, according to two people familiar with the process. That information can be used to protect government computers and to access the computers of terrorists or military foes. Microsoft gives US military hackers and the NSA zero days…
Or, they have a MAPP[1] subscription. You too could have information about bugs in Microsoft software before the fix has been released, if you could become a MAPP partner or subscriber. 1. http://www.microsoft.com/security/msrc/collaboration/mapp.as...
Do you agree to publish monthly protections derived from MAPP information
only after Microsoft’s public security update release?
I'm doubting the NSA / military hackers make, or honor, any such agreement.Re: U.S. National Security Agencies Said to Swap Data With Thousands of Firms
#13Holy shit. Microsoft Corp. (MSFT), the world’s largest software company, provides intelligence agencies with information about bugs in its popular software before it publicly releases a fix, according to two people familiar with the process. That information can be used to protect government computers and to access the computers of terrorists or military foes. Microsoft gives US military hackers and the NSA zero days…
Re: U.S. National Security Agencies Said to Swap Data With Thousands of Firms
#14Holy shit. Microsoft Corp. (MSFT), the world’s largest software company, provides intelligence agencies with information about bugs in its popular software before it publicly releases a fix, according to two people familiar with the process. That information can be used to protect government computers and to access the computers of terrorists or military foes. Microsoft gives US military hackers and the NSA zero days…
governments of every other country should shit in their pants after reading this. Stop using MSFT os at this very moment.
Re: U.S. National Security Agencies Said to Swap Data With Thousands of Firms
#15Holy shit. Microsoft Corp. (MSFT), the world’s largest software company, provides intelligence agencies with information about bugs in its popular software before it publicly releases a fix, according to two people familiar with the process. That information can be used to protect government computers and to access the computers of terrorists or military foes. Microsoft gives US military hackers and the NSA zero days…
Well, I don't think this is as bad as you make it out to be. This is fairly standard practice for firms, releasing the knowledge of security holes to customers, especially if a patch isn't prepared. See the entire Heroku/Postgres for another, less insidious example.
Re: U.S. National Security Agencies Said to Swap Data With Thousands of Firms
#16Holy shit. Microsoft Corp. (MSFT), the world’s largest software company, provides intelligence agencies with information about bugs in its popular software before it publicly releases a fix, according to two people familiar with the process. That information can be used to protect government computers and to access the computers of terrorists or military foes. Microsoft gives US military hackers and the NSA zero days…
Re: U.S. National Security Agencies Said to Swap Data With Thousands of Firms
#17-= THEM =- Ok, ________ . Did you live @ ___________ in _ _ _ _ ? Did you ever have an account at ________ ?
Where do you think they get the info. Connect the dots.
Re: U.S. National Security Agencies Said to Swap Data With Thousands of Firms
#18Holy shit. Microsoft Corp. (MSFT), the world’s largest software company, provides intelligence agencies with information about bugs in its popular software before it publicly releases a fix, according to two people familiar with the process. That information can be used to protect government computers and to access the computers of terrorists or military foes. Microsoft gives US military hackers and the NSA zero days…
http://www.microsoft.com/en-gb/security/online-privacy/overv...
Re: U.S. National Security Agencies Said to Swap Data With Thousands of Firms
#19-= YOU =- Hi, my name is __________ . I would like a [loan, voter registration, health care check up, et al] -= THEM =- Ok, ________ . Did you live @ ___________ in _ _ _ _ ? Did you ever have an account at ________ ? Where do you think they get the info. Connect the dots.
Re: U.S. National Security Agencies Said to Swap Data With Thousands of Firms
#20Earlier quoted context omitted.
Or, they have a MAPP[1] subscription. You too could have information about bugs in Microsoft software before the fix has been released, if you could become a MAPP partner or subscriber. 1. http://www.microsoft.com/security/msrc/collaboration/mapp.as...
If you're in the MAPP program, you promise (on application, and presumably contractually upon membership as well), to: Do you agree to publish monthly protections derived from MAPP information only after Microsoft’s public security update release? I'm doubting the NSA / military hackers make, or honor, any such agreement.