Tech Planet 3
Wednesday, October 17, 2007
  Security flaws in Vista Home Premium

At work I use mostly Debian Linux, but when I built home computer recently (see the Hardware Guys forum if you're thinking of doing it) I installed Vista. My experience has been mostly positive. Reliability has been good except for occasional Windows Explorer crashes, which are detected and restart the process automatically. Most things just work, and work easier. The Windows Aero interface is an improvement, but with my video RAM on board the mother board, it's slow. For now it's disabled, and will be re enabled when I add a graphics board.

There are a few glaring problems, however, notably in the area of security. Surprised? I certainly was. With all the negative publicity Microsoft has had for poor security, you'd think they wouldn't make simple mistakes. Simply put, some of the security defaults are questionable and they left a few security features out of Vista Home Basic and Premium that are in the business versions, but are equally important to home users:

The Vista Home password expiration procedure is difficult enough that questions about how to do it are all over the web. Put together, these two problems are security flaws for most home users: 1.) if you're not careful any user can power on your computer and get access to your files; and 2.) it's so difficult to reset the password maximum age that most users will give up and go without passwords. Basically, it's easy to setup your computer with no security, and if you set your browser to remember your usernames and passwords anybody can access your online data.

What was Microsoft thinking? The default for power-off and restart should be to require a password, and there are lots of ways to differentiate Vista Home from Vista Business without making password expiration management so hard. I'm surprised there hasn't been more attention paid to these serious (and easy for Microsoft to fix) security flaws.

 
Comments: Post a Comment

Subscribe to Post Comments [Atom]





<< Home
Emerging technologies, trends, and news.

Name:
Location: Sudbury, MA, United States

Art Huston is a computer software professional with an innovative background in distributed systems, mobile devices, audio/video streaming, and data communications. He enjoys working with technology as well as keeping up with future trends and innovations. Art has a deep knowledge of technology and leadership experience in Php, C/C++, Java, Linux, Windows and other technologies.

View Art Huston's LinkedIn profileView Art Huston's profile
Archives
October 2007 / March 2008 / April 2008 / July 2009 /


Subscribe to
Posts [Atom]