Thoughts and prayers go out to all those experts who have to explain the background of today's clownstrike oopsie to the befuddled press.

It takes some non-trivial mental contortion to explain the whole "people installing a backdoor on their computers for some company to execute privileged code, written in an unsafe language, in order to make their computers more secure" thing.

@nblr "clownstrike" made my day 🤣
@nblr In the end it boils down to this: There is a compliance dance that you have to do, if you want to work for/with certain customers. One of the boxes to check is: An AV-solution is deployed, active and up to date on all systems. So you pick one (they are all a pita one way or the other) and deploy it. Then you check the box.
It's not about making things more secure. It's about checking that box.
@sebastian ...for which all involved parties should be adequately and mercilessly ridiculed. Mitleid bringt uns nicht weiter.

@nblr Ist halt im Zweifel leider der Unterschied zwischen: Du hast Kunden und kannst denen was verkaufen oder du kannst zu machen.
Ich seh das ja bei meinem Brötchengeber gerade.

Gibt sehr viele Leute, die das eigentlich besser wissen, aber das Spiel halt mitspielen müssen.

@nblr Was uns weiter bringen würde wäre, wenn die Hersteller von dem Bums für solche Ausfälle vollumfänglich haften. Und wenn man die auch jedes Mal zur Kasse bitten kann, wenn ihr Mist irgendeine Ransomware durchlässt.
Dann gäbe es auf einmal einen Markt und ein Incentive für Lösungen mit denen Kram wirklich messbar sicherer wird.

@sebastian @nblr

I've noticed this too, to my great dismay.

And would like to propose the term "#enshittipliance" for this.

(for the capturing of compliance mechanisms by snake-oil sellers etc.)

@sebastian @nblr I see a business opportunity here:

A Windows AntiVirus program that installs a kernel driver whose entire implementation is a no-op. The guarantee, which I am 100% willing to stand behind, is that, in the absolute worst case, it does not lower the overall security of your system. As such, it is best in class and you can install it and meet your compliance obligations.

@david_chisnall
Do you mean our best in class security solution that integrates perfectly with existing OS mechanisms such as windows defender to provide state of the art protection without any performance overhead?

@nblr

@nblr

Well, the whole concept *is* fucked up, isn't it?

@quincy Yes. And I have the first pour souls below this post wielding their Level 23 cognitive dissonance trying to explain why it is without alternative and how to incrementally improve upon it.
@nblr
Easy as 1-2-3:
"It was a global software issue. There was nothing we could have done to prevent it." 🥶
@Ifrauding Computerfehler. Kann man nix machen. ¯\_(ツ)_/¯
@nblr
Ja, leider.
Das passiert nunmal. Bluescreen kennen wir doch alle. 🤷🏻‍♀️

@Ifrauding @nblr nö, nicht alle: seit 20 Jahren privat Linux User. Noch kein BOD.

Naja: bei meinem Arbeitgeber schon mal. Aber da ist's ein PAL, ich verkaufe Software, ich bin nicht Programmierer, Betreiber oder Support.

Und mein derzeitiger stellt mir die Wahl „Windows, Linux oder Apple“ sogar frei.

@nblr my attempt with gf: so everyone just had all their breakers flip and have to individually go in and flip them back on, but first they need to make sure NOT to flip a particular breaker which has to be replaced
@nblr The vendor should strictly be referred to as "Cloudstroke", and their product as "recovery position".
@nblr And yet Big Gaming managed to sell exactly that to competitive gamers with their kernel-level anti-cheat solutions.
@nblr recently, Citrix AppProtection broke my Android emulator ... This stuff is indistinguishable from malware.