Windows7's "Deep Defense" Theory (1)

  
        Microsoft's new operating system, Windows 7, has been on the market for a while. Many users who are experiencing Windows 7 experience often encounter some annoying problems during installation and use. Some users even think that Windows 7 is as disappointing as the previous operating system. But this really true? Especially on the issue of Windows7 antivirus idea, come with small series together.

Microsoft said, Windows7 is the most secure Windows, but anti-virus vendors countered, speaking the same language in the end, what is the truth? in fact, there is not necessarily the truth, sometimes only news "angle" problem ...

SophosLabs last week said they Windows7 the installation on a bare metal, and in accordance with the user account control (UAC) The system is configured by default, but the anti-virus software is not installed, and then 10 virus samples are imported. It is found that 8 viruses can attack the Windows 7 vulnerability.

SophosLabs Security Adviser ChesterWisniewski representation, UAC is indeed one of the intercepted virus samples, regardless of how, as he warned previously proposed, Windows7 of UAC preset configuration not protect the PC from virus threats, Windows7 and not Microsoft Declared so safe. WisnIEwski believes that Windows 7 is as disappointing as the previous operating system. But it really so?

Yes,

bad things will happen first, as long as the "executive" is at risk, so be careful when you execute the program. Although Microsoft's security director said: "If the user executes an unknown program on the computer, bad things will happen." But this has a dilemma: we buy a computer to execute the program, that is, to download the download, that is to play a variety of known unknown various interesting things, just do not want to be restricted about as long as the system ...... if we do not run unknown programs that use the computer what fun?

my The view is: Users can "do their best" to do something to improve the problem, such as "the unknown process does not run it", "the company's computer should be used according to regulations", "computers must be equipped with anti-virus software" If you work harder, you will have more protection, and that’s it. The current computer world is like a tropical rain forest, but it is full of poisonous snakes, arrow frogs and piranhas. It is better to save yourself than to complain.

Microsoft security director believes that simply use a computer to perform a virus, then said Windows7 unsafe ── That would be too arbitrary. On this point, I have to say that I have really seen users indiscriminately pressing and arbitrarily executing a pass. It is useless to control your poison and no poison. Let's say it twice. So, this kind of testing by Shophos - although rudimentary, a little arbitrary - is not impossible. However, the Microsoft Security Director also agreed that Windows originally needed anti-virus software, and even Microsoft itself provided a free solution for users to use.

So, no matter what they are noisy, in short, remember this conclusion on the right: run Windows must have installed anti-virus software ── whether it is not more secure Windows. However, there is nothing to be disappointed with, and life is like this.

"defense in depth"

Microsoft Windows7 security director mentioned an interesting concept: defense in depth (defense-in-depth) philosophy, which is what

this? It is the so-called "the principle of the siege defense." You have to strengthen defenses from the inside out, in order to more effectively resist foreign enemies.

want to maintain homeland security, you have to build outside the city walls, the city, the city re-establish sentry, patrol sent, if possible, have people in the settlement outside the city, life, if so, even if there is a foreign enemy Intrusion (invasion of foreign enemies is unavoidable), and your defense will not be broken. Shophos believes that Windows 7 is not safer. It seems to me that "Windows 7 is still likely to be broken by viruses", but this is actually a reasonable conclusion (Which city is always safe and will never be broken?).

while Microsoft's director of security is illustrated, Windows7 compromised by virus, "originally" is possible, so Windows7 already need anti-virus software. But Windows 7 does intensify every aspect of Windows, trying to make Windows 7 "not so easy to break." He cited a number of aspects:

● UAC function

● Windows core protection

● Windows service (WindowsServices) enhanced

● random address space layout (ASLR)

● data execution prevention (DEP)

these things very simple, "from the inside out trying to make Windows more robust", which is "defense in depth." Microsoft's security director wants to express: Some people say that Windows is invincible? No! So Windows needs anti-virus software can be said to be authentic! If you do not install anti-virus software is horrible! So, even Microsoft, also provides anti-virus software For customers!
Copyright © Windows knowledge All Rights Reserved