On The Insider: Miley Says No to Nudity

Search:
Go!




Click Here
advertisement

Security Watch : Don't get burned by viruses and hackers
Windows Vista's new security features
By Robert Vamosi 
Senior editor, CNET Reviews
September 30, 2005

It seems that every time I sit down with Microsoft to discuss Windows Vista, something has been changed or added, which is good. In some cases, something has been removed, which is bad. One and a half years from launch, I understand that beta code changes frequently. Here's my standard disclaimer: The following column is based on the last build from Microsoft, Windows Vista build 5219, released September 2005. It is one more semipublic build later than the Beta 1 currently in limited circulation, but Microsoft is careful not to call it Beta 2, although the code is based on code that will eventually be Beta 2 (got that?).

Like Linux, like Mac...
Microsoft seems keenly aware of its competition. For years, Linux and the Mac OS have designated administrator privileges to a separate user account, not the default user account, so malware has found it harder to infect those OSs. Microsoft had argued that Windows was easier for everyone to use; Microsoft's user-cum-administrator access within Windows allowed you to make changes within the operating system with ease. But the downside of this convenience is steep; viruses and malicious code picked up along the Internet could also perform changes and could even take over your computer.

Linux and the Mac OS designate administrator privileges to a separate user account, not the default user account, so malware has found it harder to infect those OSs.

In Vista, Microsoft offers something called User Account Protection (UAP). Under UAP, standard users can still install software and make changes within the OS, but they'll first be prompted to enter an administrator password. Even Administrator accounts (like those in XP) will be limited, requiring additional passwords to perform high-level tasks. Seems like that might be a hassle, but there's an immediate benefit to this extra layer of passwords: you'll be prompted before anything rogue attempts to install on your machine. This should reduce the need for antispyware apps in the future.

And speaking of restrictions, Microsoft also plans to reduce the amount of kernel-level code in Vista, relocating a number of device drivers and virus scanners that currently write to the protected areas of the system registry. For example, all printer drivers write to the kernel, requiring a reboot. The downside is that if the printer driver ever misbehaves, it'll take down your entire system. Under the new Vista plan, printer drivers, antivirus scanners, and other devices will install on the user level only--not within the OS kernel. As a result, look for new Vista-compatible antivirus products to hit the shelves next fall.

Internet Explorer 7 for Vista
IE 7 for Vista (as opposed to IE 7 for XP SP2, which will be released first) will operate in a restricted mode as well. The browser will be able to write only to the History and Temporary Internet folders; it cannot, for example, upgrade privileges without your Administrator password. This should prevent malware from hijacking your browser and taking control of your PC.

IE 7 will also require you to turn on or off any add-ins, such as the Flash player, and IE 7 for Vista will have built-in antiphishing technology. Whenever you attempt to access a page that Microsoft determines to contain the potential for ID theft, you'll receive a warning. You may proceed, but at your own risk. The plan here is that users will report suspected phishing sites, and the MSN division of Microsoft will check them out and warehouse a database of blacklisted sites. The details of this technology are sketchy, and I suspect this feature will change before the final release.

Hits and misses
One of the really wild ideas being discussed for Windows Vista is self-healing software. The applications and the OS will contain a list of key hash files; if any of the files have changed over time or are missing, the software will automatically reinstall the file upon loading. Also, whenever the OS is updated, Windows Update will check your system for and remove known malware. These are cool ideas, should they become implemented.

One of the really wild ideas being discussed for Windows Vista is self-healing software.

Then there are some obvious misses. While Microsoft plans to finally roll out its two-way firewall, once again, the new firewall feature won't be on by default. Given Microsoft's past performance with firewalls, though, I'd say you're better off using a third-party product such as ZoneAlarm instead. Still, providing a two-way firewall shouldn't be such a hassle. Microsoft says it doesn't want the user to experience "dialog fatigue" from accepting or denying applications that want to access the Internet. Microsoft will have a whitelist of apps permitted to run under Windows Firewall, but it sounds as though it won't be as thorough as that offered by ZoneAlarm or other major firewall vendors. I remain baffled as to why Microsoft can't seem to get a basic security feature like personal firewalls right.

It's coming: Microsoft antivirus app
Also missing will be the much-rumored Microsoft antivirus app. I wrote a while ago that I didn't think Microsoft would get into the antivirus business, displacing stalwarts such as Symantec and McAfee. It would also open the software giant up to charges of creating a monopoly. Instead, through the aegis of MSN, Microsoft will offer something called OneCare, a protection service that users subscribe to annually. OneCare will manage just about everything on your PC, from backups to disk defragmentation, and will also include Microsoft's GeCad-based antivirus app as part of the service. So OneCare won't really compete with Symantec and McAfee, but I think that's a fine legal distinction.

Are you looking forward to Windows Vista, or do you plan to sit and wait a while before you adopt the new OS? Talk back to me.


Security Center
Top antivirus apps
From CNET Reviews
Top antispyware apps
From CNET Reviews
Virus and security alert forums
From CNET Message Boards


More commentary
Buzz Report
Molly Wood
Taking a bite out of hype.
Security Watch
Robert Vamosi
Don't get burned by viruses and hackers.
Fully Equipped
David Carnoy
The electronics you lust for.
On Call
Kent German
Solutions for your wireless woes.
Driving It
Wayne Cunningham
What's hot and what's not in car tech.

TalkBack
543 messages

Article discussion: Security Watch: Windows Vista's new security features


Latest post:

"Windows Still Hasn't Got It Cracked!!"
by nthd3gr33 (See profile) - May 14, 2006 6:02 PM PDT
Sorry, what I mean is windows is ALWAYS getting cracked.

It doesn't matter how linux-like or OSX-like they try to make it; Microsoft still have a lot of problems to fix.
... (Read more).
Sort by: Title |
Date
| Most helpful

Vista=Solid new OS

You dont know how wrong you are my friend. Did you know that Bill Gates being th... (Read more)
by Daileyp13 (See profile) - December 8, 2005 8:50 PM PST

Bloat

All I can see with these self healing features is bloat and more bloat! (Read more)
by Zebra2468 (See profile) - November 18, 2005 5:23 PM PST

Hi

Hi,

Hope all is well with you (Read more)
by jorgesegura (See profile) - November 3, 2005 11:46 AM PST

We purchase a test

We may buy one copy for testing. (Read more)
by xyxx1 (See profile) - October 30, 2005 7:02 PM PST

We purchase a test

<B>We may buy one copy for testing.</B> (Read more)
by xyxx1 (See profile) - October 30, 2005 7:01 PM PST

Forgot to ask...

Just wondering but I haven't noticed one person here (or Microsoft for that matt... (Read more)
by HoloShock (See profile) - October 30, 2005 1:03 AM PDT

Looks nice, but will it stand up?

After taking Microsoft's "sneak peek" at MS Vista (http://www.microsoft.com/wind... (Read more)
by HoloShock (See profile) - October 30, 2005 12:51 AM PDT

VISTA, the new foal of Bill Gates

I agree! (Read more)
by yenaro (See profile) - October 29, 2005 10:21 PM PDT

WinVista...

Windows2000...the windows winner. I still use it flawlessly on one machine (neve... (Read more)
by melissamoss (See profile) - October 27, 2005 11:24 AM PDT


© 2008 CNET Networks, Inc., a CBS Company. All rights reserved. | Privacy Policy | Terms of Use