As technology marches on, some people get trapped using decades-old software and devices. Here's a look inside the strange, stubborn world of obsolete Windows machines.
People keep saying to keep these XP machines off the internet. I seriously doubt there’s much threat, especially for even older OS’s like 98 and 95. It’s the very devil just trying to browse with them, nothing much out there is going to be able to attack them. Security through obscurity indeed!
In any case, we’re no longer in the Wild West days when people had machines hooked directly to the internet and a firewall was a third-party addon. LOL, ZoneAlarm anyone!
We all have a basic firewall built into our routers so unless you deliberately expose services you’re fairly bulletproof to scanners. I remember scanning for Win2000 machines in blocks of IPs, long after it was defunct. Plenty were out there!
You are forgetting targeted attacks. A blind attack would pretty much not have much of an effect indeed, however if the attacker knows the machine, then it’s easy for the attackers to exploit these vulnerability if left “out in the open”, and cause havoc, possibly create a lot of damages or leech informations pumped into those machines via old Windows installations.
You wanna hack my dnd campaign and some pictures of my cock? Sure whatever dude. All financial and important shit goes through my phone anyway and that’s likely to be hacked from the institutions I use.
While that is awful and sucks. Again, probably won’t really target me
If China or America use my machine as a member of their DDoS bot swarm likely I probably couldn’t even fight back as much as I’d like. Either one of those countries could have backdoor bullshit into any system you think of.
If it is a nefarious third party maybe I want them to use my computer to attack the financial system of these capitalist regimes or to harm the infrastructure of an oppressive government.
Again, have my cock and dnd campaign. If my system runs slow and annoys me guess I’ll deal with it. They already will get my information from the millions of sources compiling and collecting it.
This is short-sighted. It also reeks of “Fuck you, I got mine!” I know that’s not your intention. I just think you haven’t thought super hard about it. I was the same with privacy concerns.
So let me throw some edge cases at you.
You remember the network time protocol vulnerability that was used to power botnets for a little bit? Well, until everyone upgraded their shit, service providers had to just block IP ranges of compromised machines until enough machines in that block stopped DDoS’ing them.
So what happens when some script kiddy pays for time on the botnet, which includes your box, to smash Wizards while you’re trying to look things up? Or what if someone uses your box as a jump box to go attack some giant corporation, and shit gets traced back to you? Or what if someone decides you’re the unlucky one where their whole goal is to dominate your entire home network, and they get your phone when it’s on your home wifi?
People keep saying to keep these XP machines off the internet. I seriously doubt there’s much threat, especially for even older OS’s like 98 and 95. It’s the very devil just trying to browse with them, nothing much out there is going to be able to attack them. Security through obscurity indeed!
In any case, we’re no longer in the Wild West days when people had machines hooked directly to the internet and a firewall was a third-party addon. LOL, ZoneAlarm anyone!
We all have a basic firewall built into our routers so unless you deliberately expose services you’re fairly bulletproof to scanners. I remember scanning for Win2000 machines in blocks of IPs, long after it was defunct. Plenty were out there!
You are forgetting targeted attacks. A blind attack would pretty much not have much of an effect indeed, however if the attacker knows the machine, then it’s easy for the attackers to exploit these vulnerability if left “out in the open”, and cause havoc, possibly create a lot of damages or leech informations pumped into those machines via old Windows installations.
For a business sure.
You wanna hack my dnd campaign and some pictures of my cock? Sure whatever dude. All financial and important shit goes through my phone anyway and that’s likely to be hacked from the institutions I use.
They’ll infect it and make it part of their DDoS bot swarm.
While that is awful and sucks. Again, probably won’t really target me
If China or America use my machine as a member of their DDoS bot swarm likely I probably couldn’t even fight back as much as I’d like. Either one of those countries could have backdoor bullshit into any system you think of.
If it is a nefarious third party maybe I want them to use my computer to attack the financial system of these capitalist regimes or to harm the infrastructure of an oppressive government.
Again, have my cock and dnd campaign. If my system runs slow and annoys me guess I’ll deal with it. They already will get my information from the millions of sources compiling and collecting it.
I dunno doesn’t really make me shake in my boots
This is short-sighted. It also reeks of “Fuck you, I got mine!” I know that’s not your intention. I just think you haven’t thought super hard about it. I was the same with privacy concerns.
So let me throw some edge cases at you.
You remember the network time protocol vulnerability that was used to power botnets for a little bit? Well, until everyone upgraded their shit, service providers had to just block IP ranges of compromised machines until enough machines in that block stopped DDoS’ing them.
So what happens when some script kiddy pays for time on the botnet, which includes your box, to smash Wizards while you’re trying to look things up? Or what if someone uses your box as a jump box to go attack some giant corporation, and shit gets traced back to you? Or what if someone decides you’re the unlucky one where their whole goal is to dominate your entire home network, and they get your phone when it’s on your home wifi?