Fix for Windows XP flaws OK, FBI says

  • Thursday, January 3, 2002 9:00pm
  • Business

Associated Press

WASHINGTON — The FBI has reversed its advice for computer users trying to protect themselves against serious flaws in the latest version of Windows: Applying the free fix from Microsoft Corp. is adequate after all.

The bureau’s top cyber-security unit, the National Infrastructure Protection Center, told consumers and companies Thursday to disregard its earlier advice to go beyond the Microsoft recommendations to protect against hackers who might try to attack Windows computers.

The FBI said it based its latest determination "upon a careful review of the written technical materials provided by Microsoft" and after working with the federally funded CERT Coordination Center at Carnegie Mellon University.

Microsoft said last month that Windows XP suffers from serious problems that allow hackers to steal or destroy a victim’s data files across the Internet or implant rogue computer software. The glitches were unusually serious because they allow hackers to seize control of all Windows XP operating system software without requiring a computer user to do anything except connect to the Internet.

The problem also affects some copies of earlier Windows ME software, and in some rare cases can affect users of Windows 98.

Microsoft offered a free fix on its Web site the day the vulnerability was announced. But one day later, on Dec. 21, the FBI urged consumers and corporations to go beyond installing that fix and to disable the Windows universal plug and play features affected by the glitches.

However, even those warnings came under fire by experts as inaccurate. The steps outlined by the FBI failed to instruct consumers also to turn off in Windows an important, related feature — called a "discovery service" — that still left computers vulnerable.

"They made an honest mistake, gave the wrong information," said Richard Smith, an independent security expert in Brookline, Mass. "All this stuff is so complicated. It shows that even the experts can’t keep track of it."

At the time, the FBI said its recommendation to shut down the vulnerable Windows features was based on "technical discussions with Microsoft and other partners in the Internet and information-security community."

Outside experts have cautioned that disabling the affected Windows XP features threatens to render unusable an entire category of high-tech devices about to go on the market, such as a new class of printers that are easier to set up. But they also said that disabling it could afford some protection against similar flaws discovered in the future.

After its first warning, the FBI’s cyber-security unit published an Internet link to the Web site for eEye Digital Security Inc., which discovered the Windows flaws. EEye’s advisory, published on its Web site, also urged consumers to install Microsoft’s fix and cautioned that "it would be wise" to turn off the vulnerable features completely.

The FBI acknowledged Thursday that neither it nor security experts at CERT had independently tested Microsoft’s repair solution. But the FBI said, "We are satisfied that it corrects the problem that could lead to system compromise and affords substantial and adequate protection."

Copyright ©2002 Associated Press. All rights reserved. This material may not be published, broadcast, rewritten, or redistributed.

Talk to us

> Give us your news tips.

> Send us a letter to the editor.

> More Herald contact information.

More in Business

Lily Lamoureux stacks Weebly Funko toys in preparation for Funko Friday at Funko Field in Everett on July 12, 2019.  Kevin Clark / The Herald)
Everett-based Funko ousts its CEO after 14 months

The company, known for its toy figures based on pop culture, named Michael Lunsford as its interim CEO.

The livery on a Boeing plane. (Christopher Pike / Bloomberg)
Former Lockheed Martin CFO joins Boeing as top financial officer

Boeing’s Chief Financial Officer is being replaced by a former CFO at… Continue reading

Izaac Escalante-Alvarez unpacks a new milling machine at the new Boeing machinists union’s apprentice training center on Friday, June 6, 2025 in Everett, Washington. (Olivia Vanni / The Herald)
Boeing Machinists union training center opens in Everett

The new center aims to give workers an inside track at Boeing jobs.

Some SnoCo stores see shortages after cyberattack on grocery supplier

Some stores, such as Whole Foods and US Foods CHEF’STORE, informed customers that some items may be temporarily unavailable.

People take photos and videos as the first Frontier Arlines flight arrives at Paine Field Airport under a water cannon salute on Monday, June 2, 2025 in Everett, Washington. (Olivia Vanni / The Herald)
Water cannons salute Frontier on its first day at Paine Field

Frontier Airlines joins Alaska Airlines in offering service Snohomish County passengers.

Amit B. Singh, president of Edmonds Community College. 201008
Edmonds College and schools continue diversity programs

Educational diversity programs are alive and well in Snohomish County.

A standard jet fuel, left, burns with extensive smoke output while a 50 percent SAF drop-in jet fuel, right, puts off less smoke during a demonstration of the difference in fuel emissions on Tuesday, March 28, 2023 in Everett, Washington. (Olivia Vanni / The Herald)
Sustainable aviation fuel center gets funding boost

A planned research and development center focused on sustainable aviation… Continue reading

Helion's 6th fusion prototype, Trenta, on display on Tuesday, July 9, 2024 in Everett, Washington. (Olivia Vanni / The Herald)
Helion celebrates smoother path to fusion energy site approval

Helion CEO applauds legislation signed by Gov. Bob Ferguson expected to streamline site selection process.

Britney Barber, owner of Everett Improv. Barber performs a shows based on cuttings from The Everett Herald. Photographed in Everett, Washington on May 16, 2022. (Kevin Clark / The Herald)
August 9 will be the last comedy show at Everett Improv

Everett improv club closing after six years in business.

Pharmacist John Sontra and other employees work on calling customers to get their prescriptions transferred to other stores from the Bartell Drugs Pharmacy on Hoyt Avenue on Wednesday, July 2, 2025 in Everett, Washington. (Olivia Vanni / The Herald)
Bartell Drugs location shutters doors in Everett

John Sontra, a pharmacist at the Hoyt Avenue address for 46 years, said Monday’s closure was emotional.

Support local journalism

If you value local news, make a gift now to support the trusted journalism you get in The Daily Herald. Donations processed in this system are not tax deductible.