Inherit flaw in logic of Windows Genuine Advantage

14 August 2005, 12:34 am ISTFiled under: Microsoft

There is an inherit flaw in logic of Microsoft's Windows Genuine Advantage program to allow customers to download security patches only after authentication that their copy of Windows (XP) is authentic.

The flaw is that check it not being performed at the time of patching the system but at the time of downloading. This presents some interesting but very real and practical situations. Supposedly one could download the patches from a genuine Windows system and then apply the patch on a system with pirated copy of Windows XP. There is no software check stopping the customer from doing so.

This type of scenario would be ideal in a SME in countries like India and China, wherein the rate of piracy has dropped but not completely vanished. In this scenario a company or individual would have few genuine copies and many pirated one.

Although, Microsoft has used the check at the time of installing in past like in Service Pack 2 (SP2). But then that was a huge pack and Microsoft could actually do that in such a huge pack. The trick would be to implement this in a normal patches of 200 ~ 700 KB sizes. Till then piraters are one step ahead of Microsoft on this issue.

P.S: Microsoft has started using actively the Windows Genuine Advatage program recently. And to implement this has switched to version 6 (v6) of the Windows Update site.

User comments

Aminder Athwal (aminder at cisco dot com)     8 December 2005, 07:50 pm IST
Is there any way past this??
Post comments









Please copy the text "MTIyNzI1MzQ0Mw==" (without quotes) in the authenication field, in order to post.

 


Help

[b]Text[/b] => Text
[i]Text[/i] => Text
[u]Text[/u] => Text
[php]<?php php_code(); ?>[/php]
[code]Program code[/code]
[url=http://www.site.com/]Site Name[/url]

  1. Every post will be reviewed and any flamatory remarks will get removed.
  2. HTML tags are not allowed. BBCode is allowed
  3. Your email is never shown in linkable format
  4. URLs entered will be checked, so don't post just to increase your rank
  5. Line breaks will NOT be converted into <br /> tags
  6. Only following BBCodes are allowed


Syndicate

RSS1
RSS2
Feedburner
Add to MyMSN
Add to MyYahoo
Add to Google

Topics

About

Amit Arora is web developer with expertise in developing eCommerce enabled websites for the businesses.

Contact | Resume

Subscribe to newsletter




Get Firefox

Ads