How more secure is Windows 7 / Vista, really when compared to XP?


Recommended Posts

I was listening to the latest security now and an interesting question came up

Question

You sound so optimistic about how the new architecture will protect the OS from all sorts of nasty things. I've only listened to a few new episodes, but I do know you're still doggedly hanging onto XP. I never would have guessed that five years from where I am right now, you would be so against the new platform. For the benefit of those who haven't yet listened to the other episodes, the remaining episodes, would you give the listeners a brief overview of what went wrong? Did Microsoft get lax and start letting every passerby drop code into the kernel? Did the creators of malware find a way to bust through the protection? Or was it really an improvement for security, but other irritating issues kept you from making the switch? Thanks for the show. You are a great service to the Intertubes, says Quib.

Answer

Steve: So, okay. Microsoft clearly improved security dramatically from XP to Vista, and fixed the things that they really didn't do that well, sort of maybe went overboard with Vista, in 7, making 7 more friendly. Yet we don't see attacks which are only effective against XP. All the attacks that we see are always effective against all of them. So when you think about it, there isn't a differentiation. I'm not seeing anything that gets 7 that doesn't also get XP. Why? Because it's still the same operating system. Microsoft comes up with new layers of eye candy and new UI features, but nothing fundamentally changes. I mean, yes, Address Space Layout Randomization gets better, and DEP is more strongly enforced, and a few things like that. But they can't really change much without breaking all of the legacy stuff. So they're limited in what they're able to do. And you could argue that they're sort of running out of things to do at this point. So first of all, looking back at all the patches we've discussed in the last year, nothing is XP only. I can't think of anything that only affected XP.

Steve: Nothing seems to be actually more secure. And I don't see anything that I want over on Windows, lord knows on Vista, but even on 7. I mean, it looks different, but it's just in my way more. So it isn't demonstrating better security. Now, that will change in two years or three years, whenever it is that patches stop being offered for SP3. So at that point I'll think, okay. Either the bad guys will have moved off to Windows 8, and no one will even be bothering to attack XP anymore because it'll be more like Windows 98 is, for which none of these things are effective because it'll just have enough different DNA that it can't be infected. Or maybe I'll switch. I'm not sure. But at the moment, XP is the same as 7 in every way I can tell. Everything I want to do is compatible with XP still. So there's no incompatibility problems. And there's no demonstrated actual effective increase in security. So why would I move?

Now a lot of you will probably not take anything he says seriously because he is still running XP, but I agree with him on his answer. It's not like malware infections stopped dead in their tracks. I also don't see less security patches for the Newer operating systems. In some cases the newer operating systems have more of them. I also see the same amount of infections with Vista and 7 as I do with XP. So while Microsoft added all of this "new security to the operating system, I really don't see it fixing the problem.

He's wrong. The addition of ASLR to Windows has made vector based buffer overflow attacks virtually impossible to pull off, worms like Blaster and Sasser are a lot harder to pull off. Yes there are still security flaws in Windows that are found and fixed but the amount of holes that can be attacked with remote exploits has dropped dramatically. With regards to viruses and malware they are designed to exploit the weakest link in the computer, the user. If the user just clicks allow of course things like UAC are going to be useless.

  • Like 2
So while Microsoft added all of this "new security to the operating system, I really don't see it fixing the problem.

Well I do agree they've added a bunch of new features to harden the OS in general, by default it's a good deal more secure than XP. But it's been said quite often here in various threads... "you can't fix stupid." If you can convince a person that it's ok to enter a password/click past UAC/skip whatever precaution the OS happens to have, all the security in the world isn't going to stop a malicious program from running. I don't care which OS you're on, if you blindly let an unknown run, you can get burnt. Even better when said user intentionally disables the security mechanisms all for the sake of shaving off a half second of inconvenience.

Well I do agree they've added a bunch of new features to harden the OS in general, by default it's a good deal more secure than XP. But it's been said quite often here in various threads... "you can't fix stupid." If you can convince a person that it's ok to enter a password/click past UAC/skip whatever precaution the OS happens to have, all the security in the world isn't going to stop a malicious program from running. I don't care which OS you're on, if you blindly let an unknown run, you can get burnt. Even better when said user intentionally disables the security mechanisms all for the sake of shaving off a half second of inconvenience.

In the reverse if a smart person who wasn't an idiot was using XP they wouldn't be that bad off.

I'm no expert, but I have not had any infection problems with the Windows 7 computer, as I did once in a while with Windows XP.

I've never had an infection with vista or windows 7 BUT I also NEVER had a virus on XP either from the Time it RTM'ed till the time I upgraded to vista.

In the reverse if a smart person who wasn't an idiot was using XP they wouldn't be that bad off.

I disagree. Even a smart person using XP is missing a lot of the preventative features of Windows Vista/7. It certainly isn't too hard to initiate a drive by on XP that would bypass the AV entirely, once the AV is bypassed, there is little to noghting standing in the malwares way!

In the reverse if a smart person who wasn't an idiot was using XP they wouldn't be that bad off.

It's all relative. All users, both smart and dumb would still be more secure using 7 than they would on XP. Granted by how much is a question that depends on who you ask but on the Internet it's my opinion that even being fractionally more secure is still advantageous to the end user. It's also worth nothing that the requirement for digital driver signing and the prevention of kernel patching on 64 bit versions of Vista and 7 adds even more security and stability.

In the reverse if a smart person who wasn't an idiot was using XP they wouldn't be that bad off.

I won't argue with that, as long as the user in question follows safe computing and has a safety net for if they make a mistake. When I used to use XP I've only been infected once, and it was a case of self-inflicted dumbassery on my part.. deserved what I got, and easy recovery via a mirror. Trick is educating the 'average user', and since people in general are dumb (in general.. that's not directed at anyone), Windows 7 would be the safer bet.

In the reverse if a smart person who wasn't an idiot was using XP they wouldn't be that bad off.

XP doesn't support sandboxing (particularly useful for browsers). It doesn't matter if you're "smart," it's still less secure. Then there are the big features like ASLR, NX, PatchGuard, etc. But more than that (and despite what "Steve" says) new versions of Windows aren't "new layers."

The sandboxing in 8 (particularly for Metro apps and "Enhanced Protected Mode" in IE) goes far further than anything we've had before.

What about this from back in 2010 as an example

"A new zero-day exploit in Microsoft Windows was disclosed today. The exploit allows an application to elevate privilege to "system," and in Vista and Windows 7 also bypass User Account Control (UAC). The flaw was posted briefly on a programming education site and has since been removed."

http://nakedsecurity...s-uac/#comments

Windows Malware, Viruses, keyloggers, and Rootkits have evolved quite a bit over the years. The trend seems to be - they get better and better at hiding themselves (Rootkits in particular). I've found many instances of Windows Rootkits on Vista and 7 and the owners didn't even notice anything. So when someone comes out and says boastfully "My system has never had a virus" or "I don't even need to run an anti-virus with Windows 7", pay no attention, it's all bravado. every single Windows 7 and Vista PC is vulnerable, no matter what Microsoft or some obscure paid report says.

While it's true that the user is the weakest link in the chain (usually), the Windows and Microsoft platforms have allowed a vast malware ecosystem to develop around them. Unfortunately as long as Windows supports the Win32 API, there will be millions of active infections worldwide. Windows RT's attempt to remedy that situation on tablets is a step forward, but I can't see it improving the desktop version any time soon.

Whoever this "Steve" guy is obviously doesn't know about the massive under the hood changes in security Vista and 7 brought about. Good lord.

http://en.wikipedia.org/wiki/Steve_Gibson_(computer_programmer)

What about this from back in 2010 as an example

"A new zero-day exploit in Microsoft Windows was disclosed today. The exploit allows an application to elevate privilege to "system," and in Vista and Windows 7 also bypass User Account Control (UAC). The flaw was posted briefly on a programming education site and has since been removed."

http://nakedsecurity...s-uac/#comments

Nobody claimed UAC was perfect, but it's still better to have it than not. Besides, that exploit is just another form of drive by malware it still cannot be installed via remote execution it would still require some form of user interaction to find it's way onto a user's machine.

pay no attention, it's all bravado. every single Windows 7 and Vista PC is vulnerable, no matter what Microsoft or some obscure paid report says.

Every OS has vulnerabilities. No exceptions. If you can install software, you can install malware, to think otherwise is delusional. Windows gets targeted on the desktop because there's where the largest user base is, just as *Nix has the most hacks/exploits on the server end of things. Most malware gets installed because of user error; barring an unpatched zero-day exploit (every OS has them), they won't magically appear out of thin air. I can just as easily write up a bit of nasty code for OSX or Linux.

  • Like 2

Neowin article from last year: Avast: Windows XP makes up 74% of rootkit infections

http://www.neowin.ne...tkit-infections

Clearly the usage to rootkit ratio for Windows 7 is much improved from XP and Vista.

Rootkit%20Numbers.jpg

Every OS has vulnerabilities. No exceptions. If you can install software, you can install malware, to think otherwise is delusional. Windows gets targeted on the desktop because there's where the largest user base is, just as *Nix has the most hacks/exploits on the server end of things. Most malware gets installed because of user error; barring an unpatched zero-day exploit (every OS has them), they won't magically appear out of thin air. I can just as easily write up a bit of nasty code for OSX or Linux.

Precisely. Microsoft can harden their OS against threats but as long as an OS can execute non native code (and by that I mean anything that isn't a system application / service) there will be ways of getting it to run malware. Microsoft haven't just "let malware develop" they just can't do anything more about it. The best you can hope for is to make remote exploits difficult to pull off and I believe Microsoft's record on that front has improved substantially between XP and 7

It's also worth noting, in a rather amusing case of irony that the main reason we have to thank for the ability to subvert patchguard is the changes Microsoft were forced to make to appease McAffee and Symantec's bitching about the loss of privileged kernel mode.

One of the biggest changes to Windows Vista and Windows 7 that this Steve correctly sighted was address space layout randomisation. The problem is while this makes it more difficult for malicious software to locate a memory space to inject code in to it isn't impossible and in some cases very easy. This is due to in part windows not using ASLR on every system process, only new processes compiled for the latest versions of windows and secondly because the operating system both gives up the true address spaces of running executables and because its implementation is generally weak.

I'll give you one example, lets say you want to find out where a PDF viewer is storing the PDF's it has open so that you can inject some code to make that piece of address space executable. Basically you want to bypass the processors protections that allow software to declare parts of its memory use as data only which means the CPU to try and increase security won't allow anything in that address space to execute. But you can't find it because of ASLR right? - Well you can just start reading the memory address space at random 16 bit lengths until you find a string that matches your planned injection point. It may take a while like a few minutes but many people have only 4GB or less memory and you can already gauge the size of the in-use address range before you begin checking.

The point is ASLR isn't that amazing. The operating system can't hide everything from software running on the system because it would break compatibility with a whole range of applications. The legacy parts of windows hold back its security just like Steve says.

And also I want to point out that he is right about what he says with regards to security in general. Windows Vista and Windows 7 haven't really affected security that much when it comes to difficulty. Infecting the browser by having the browser itself execute your code through a javascript interpretation error is still the easiest way to get on a system. Sandboxing and breaking up the browser in to many smaller executables with significantly reduced permissions is the only way to fight that hazard and when we do the attacks will just go full steam in to social engineering which today is mostly dominated by weaker programmers who can't find and write exploits for vulnerabilities in browsers.

Security is a huge problem and will remain so for a very long time. You can't have both a completely open platform that lets users install any application and also have bullet proof security.

  • Like 1

What about this from back in 2010 as an example

"A new zero-day exploit in Microsoft Windows was disclosed today. The exploit allows an application to elevate privilege to "system," and in Vista and Windows 7 also bypass User Account Control (UAC). The flaw was posted briefly on a programming education site and has since been removed."

http://nakedsecurity...s-uac/#comments

You see a lot of this. Windows isn't really any more secure now than it was a few years, really.

I'll give you one example, lets say you want to find out where a PDF viewer is storing the PDF's it has open so that you can inject some code to make that piece of address space executable.

Ok... Although injecting code isn't going to make it executable. You're going to have to defeat DEP first. Anyway...

Basically you want to bypass the processors protections that allow software to declare parts of its memory use as data only which means the CPU to try and increase security won't allow anything in that address space to execute. But you can't find it because of ASLR right?

No, you can't because of DEP. First, you don't know where the data is stored (ASLR), and then even if you could inject code, it's marked as data and therefore isn't executable... So all you've done is create a useless memory corruption. This will crash the program, but not lead to arbitrary code execution.

Well you can just start reading the memory address space at random 16 bit lengths until you find a string that matches your planned injection point.

How are you going to read memory addresses at random? You need code to do that. You assume that you have already injected code and are running that code. You can have code that does this, but how are you going to run it?

If you have code running, you're already done. But this assumes you've already defeated ASLR and DEP. Kind of a chicken and the egg situation.

It may take a while like a few minutes but many people have only 4GB or less memory and you can already gauge the size of the in-use address range before you begin checking.

There is a difference between the virtual and physical address space. Just because a system has less than 4GB of memory - maybe only 16MB! - you still have to look through the virtual address space. Stuff can be placed arbitrarily anywhere in virtual address space. And if it's a 64 bit operating system, the virtual address space you would have to search is absolutely huge. It's completely impractical.

Besides, why would you want to write code to search for an injection point? If you're already running arbitrary code, you've already succeeded.

Now, if you're doing this on your system and expecting that the offset you find by doing the search (perhaps with a debugger) will work on another system, you're wrong. Just restart the computer and the offsets change. But you can do this on Windows XP and exploit buffer overflows very very easily.

A good way to exploit ASLR is to find a DLL that wasn't compiled to support ASLR (I know, you said this). That works. Find the location of JMP $ESP or something. There are ways, it just doesn't seem like your example is a good one.

I think a lot of the security discrepencies we see between the two operating systems can be explained away by a few things.

1. Windows 7 now comes with a free Antivirus from Microsoft in Windows Update that a staggeringly high number of consumers are taking advantage of.

2. People who are buying new computers are automatically receiving some Antivirus. Be it Norton, Nod32 or Kaspersky as an OEM software bundle.

3. People who upgrade their own PC to Windows 7 by purchasing a copy are also very likely to buy an Antivirus

All these things combined result in a much higher use of Antivirus software on Windows 7 by consumers which will result in lower infections in general. Then there is another point, a lot of the Viruses, Worms and Trojans still floating around and infecting people were authored many many years ago and may rely on very specific parts of the Windows XP operating system just due to their age and how the programmer wished to mask its presence by perhaps bundling a dynamic link library in to the software that the OS would load at boot.

With Windows 7 there is a major change in that regard and all those hundreds of thousands of pieces of malicious software that was authored years ago for XP can't work on Windows 7 because they aren't generalised enough.

These are just my thoughts on it anyway.

Ok... Although injecting code isn't going to make it executable. You're going to have to defeat DEP first. Anyway...

This is the whole point of finding where the program is storing it so that you can then change that address space to become executable by using another vulnerability in DEP. That is if DEP is even activated for applications.

No, you can't because of DEP. First, you don't know where the data is stored (ASLR), and then even if you could inject code, it's marked as data and therefore isn't executable...

Well that isn't accurate as by simply printing the address spaces and then doing a simple search on the data you can determine where the space you want is and then inject there. ASLR is not bullet proof and doesn't hide things well enough and it doesn't stop programs from probing address space to find out where things are.

How are you going to read memory addresses at random? You need code to do that. You assume that you have already injected code and are running that code. You can have code that does this, but how are you going to run it?

This all assumes that you are currently able to run some code from a sandboxed application that has some of its permissions revoked such as writing to the file system.

There is a difference between the virtual and physical address space. Just because a system has less than 4GB of memory - maybe only 16MB! - you still have to look through the virtual address space. Stuff can be placed arbitrarily anywhere. And if it's a 64 bit operating system, the virtual address space you would have to search is absolutely huge.

Not exactly, there are ways to determine these things

Besides, why would you want to write code to search for an injection point? If you're already running arbitrary code, you've already succeeded.

Not necessarily. It really depends how your code is being run first of all. Perhaps you have a payload in the PDF file itself, and the PDF viewer has opened that file and read it in to memory and there is a specially crafted part of the PDF file such as an image which you know that PDF viewer can't read under certain conditions perhaps its buffer for reading the colour profile of that image is written poorly and it is possible to get some code of only a finite length stored and executed by the PDF Viewer but its privileges on the system are low enough that you can't create or store any files on the system to keep your malicious software around after a reboot of the system.

There are a lot of reasons as to why you would want to exploit a vulnerability like this. Another example would be if you have a PDF file that opens on a website and Chrome for example has a built in PDF viewer. Chrome sandboxes its PDF Viewer so it can't do anything even if you were able to gain control over it, but maybe you found an exploit in this that lets you get out of that sandbox and in to the overall chrome process or up on to the operating system.

It isn't uncommon to need several different exploits just to get from the browser to the OS without the user ever accepting anything.

Now, if you're doing this on your system and expecting that the offset you find by doing the search (perhaps with a debugger) will work on another system, you're wrong. Just restart the computer and the offsets change. But you can do this on Windows XP and exploit buffer overflows very very easily.

A good way to exploit ASLR is to find a DLL that wasn't compiled to support ASLR. That works. Find the location of JMP $ESP or something. There are ways, it just doesn't seem like your example is a good one.

My example if fine if you understand it. And I already mentioned how a lot of stuff in the system isn't even affected by ASLR in my first post. My example was one for if ASLR was activated on the executable you want to mess with.

Windows Vista fixed alot of XP's security holes, and Windows 7 did Vista's, but simpy put the more software a user uses, the bigger the attack vector gets. The OS could be bullet prrof, but as long as one application remains out of date, the user is vulnerable, no matter what OS they are using, be it Windows, Mac, or Linux.

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Well I really think the repasting helped if your higher clocks have returned, maybe the next thing to look at is if there is a problem with your case airflow? I guess this because your 3080 has returned to optimal state, but is still staying too warm, which might suggest it was thermal throttling before you repasted, of which the only logical conclusion could be outside factors.
    • Samsung Galaxy Z Fold 8, Flip 8, Z Fold Wide: Everything you need to know by Hamid Ganji Galaxy Z Fold 7 - Image via Samsung The next generation of Samsung foldables is set to be unveiled next month at the second Unpacked event of the year. Samsung’s 2026 foldables are not expected to offer significant upgrades over their predecessors, with the Korean firm instead focusing on design refinements and conventional upgrades such as faster processors and better cameras. However, Samsung is reportedly planning to unveil an all-new passport-style foldable this year to rival Apple’s first foldable iPhone, which is expected to debut this September. Here’s a roundup of everything we know about Samsung’s upcoming foldable devices ahead of their official debut. When can we expect Samsung’s new foldables? The Galaxy Z Fold 7 and Z Flip 7 series were unveiled in July, and Samsung is expected to maintain this timeframe in 2026. Based on previous reports from Korean sources, Samsung will hold its Unpacked event on July 22 in London, UK, to pull back the curtain on the Galaxy Z Fold 8 series. The devices are also expected to hit the shelves a few weeks after launch. However, Samsung has yet to announce an official date. A new naming scheme? One of the most interesting changes we might see this year is a new naming scheme for Samsung’s latest foldables. SamMobile reported that since Samsung is expected to unveil three foldables this year, it has adopted a new naming strategy to simplify product identification for customers. Accordingly, the standard Galaxy Z Fold 8 will reportedly be called the Galaxy Z Fold 8 Ultra and will serve as the direct successor to last year’s Galaxy Z Fold 7. The “Ultra” suffix suggests the phone could feature higher-end specifications, such as additional rear camera modules. Samsung’s new passport-style foldable is expected to carry the Galaxy Z Fold 8 name without any suffix. This model is reportedly equipped with two rear cameras. No major changes are expected for the Flip model. Galaxy Z Fold 8 Ultra and Z Flip 8 anticipated specs Rumors over the past few months suggest Samsung is preparing several upgrades for its upcoming foldables, although the devices may continue to rely on larger batteries and faster charging speeds rather than dramatic design changes. The primary focus this year is expected to be the Galaxy Z Fold 8 and its wide-screen design. Galaxy Z Fold 8 Ultra official CAD renders - Image via AndroidHeadlines Here are the anticipated specifications for the Galaxy Z Fold 8 Ultra based on previous leaks: 6.5-inch outer display and 8-inch inner display, 120Hz refresh rate, and 2,600 nits peak brightness Snapdragon 8 Elite Gen 5 processor, paired with 12GB or 16GB of RAM and 256GB, 512GB, or 1TB of storage 4.1mm thickness when unfolded and a weight of 210g 200MP main camera, 50MP ultrawide camera, 10MP or 12MP telephoto camera, 10MP cover camera, and 10MP selfie camera 5,000mAh battery with 45W wired charging Android 17 and One UI 9 As for the Galaxy Z Flip 8, the device is not expected to be a major departure from its predecessor, although it could become slightly slimmer. Expected specifications include: Snapdragon 8 Elite Gen 5 or Exynos 2600 processor 12GB of RAM with 256GB and 512GB storage options 6.9-inch Dynamic AMOLED 2X inner dispaly and 4.1-inch Super AMOLED outer dispaly 50MP main camera, 12MP ultrawide camera, and 10MP selfie camera 4,300mAh battery with 25W wired charging Android 17 and One UI 9 Samsung’s foldables are also expected to launch with Gemini Intelligence, Google’s AI suite for automating tasks in Android ecosystem. Moreover, given current memory and component costs, some Galaxy Z Fold 8 Ultra and Z Flip 8 variants could see a price hike. Galaxy Z Fold 8 adopts a wide-screen design The centerpiece of the upcoming Unpacked event could be the Galaxy Z Fold 8, previously rumored as the Galaxy Z Fold Wide. This model adopts a passport-style form factor and is expected to compete directly with Apple’s iPhone Fold. Galaxy Z Fold 8 official CAD renders - Image via AndroidHeadlines Here’s what to expect: 7.6-inch primary OLED display and 5.4-inch cover display, 120Hz refresh rate, 2,600 nits peak brightness, and 4:3 aspect ratio Snapdragon 8 Elite Gen 5 processor, 12GB or 16GB of RAM, and 256GB, 512GB, or 1TB storage options 4,800mAh battery with 45W wired charging 50MP main camera, 50MP ultrawide camera, and 10MP selfie camera Android 17 and One UI 9 The three new foldable phones are unlikely to be the only devices unveiled at Samsung’s Unpacked event. The company is also expected to introduce the Galaxy Watch Ultra 2 and the Galaxy Watch 9 series.
    • Thanks
    • 7 Days: Killing uBlock Origin bypasses, Euro Office faces fire, and will AI replace you? by Aditya Tiwari 7 Days is a weekly roundup of picks of what's been happening in the world of technology - written with a dash of humor, a hint of exasperation, and an endless supply of (black) coffee. This week's highlights include WWDC 2026 announcements, updates on child safety, and Meta's use of data from outside businesses to optimize your feed. Let's get started. You can check out the recent issues of the 7 Days weekly roundup. Killing uBlock Origin bypasses The hottest news of the week was about Google Chrome effectively ending most uBlock Origin workarounds (a free, open-source ad blocker extension) by permanently dropping MV2 extensions and their bypasses. Chrome is transitioning towards newer MV3 extensions. A recent discussion thread highlighted how the latest and upcoming versions of the most popular browser are expected to be its final releases with support for MV2 extensions. Genuinely European? Euro-Office faces fire The recently launched cloud-based office suite, Euro-Office, is facing criticism at home. The LibreOffice developer wrote an open letter criticizing Euro-Office for its marketing claim that it's the "first open-source office suite developed in Europe," since the honor has belonged to OpenOffice since 2001. The Document Foundation has called out Euro-Office, arguing that it can't consider "itself genuinely European" as long as it keeps pushing Microsoft defaults on users, adding that "it has to speak ODF as its mother tongue." Will AI replace you? Image: Tara Winstead via Pexels Microsoft's AI boss, Mustafa Suleyman, said in an interview earlier this year that AI would replace office workers within 12 to 18 months. Joining the ranks of top executives who have softened their stance on AI replacing humans, Suleyman recently walked back his earlier remarks and now says that AI will automate tasks, not replace entire white-collar jobs. He defended his earlier comments by arguing that they referred only to individual actions people perform at their desks. Louis Rossmann wants to sue Samsung Image: Louis Rossmann Tech repair entrepreneur and right-to-repair activist Louis Rossmann contacted Samsung support over a failed 4TB Samsung 990 Pro NVMe SSD. After back-and-forth communication, Samsung offered a $330 refund instead of a replacement, but Rossmann found that the SSD was readily available for new buyers at a higher price. He has issued a formal 60-day notice and intends to file a suit in Texas small claims court, as Samsung's actions reflect a failure to honor its warranty obligations. Samsung reached out to Neowin to clarify its updated stance that customers in such situations will receive a refund equal to the product's current market price. Child safety or mass surveillance? Image: Jonathan Borba via Pexels Signal accused the UK government of using child safety and device-level explicit content ban as a cover for mass surveillance. Calling the plan "dystopian," Signal warned that it violates everyone's fundamental right to privacy. The messaging platform believes that the government should keep children "safe" and "protected," but it should do so through social services and education. Fears of social media regulation Image via DepositPhotos.com More governments across the globe are tightening their grip on social media and bringing stricter regulations in the name of child safety. Bluesky COO, Rose Wang, warned that social media regulations could destroy competition from small startups and that heavy regulatory compliance costs favor deep-pocketed tech giants while locking out new entrants. Our Features Image: Pexels Our coffee-powered team publishes a platter of editorials, opinion posts, and guides. Here's what they got for the week: UK **** blockers are a looming privacy disaster, we must be able to see the source code This week in software news Image: Proton Catch up on some of the latest software news updates that arrived throughout the week: Dark clouds over PC makers: Building on our report from last month, Dell officially acknowledged that its own remediation software was causing BSOD issues and unexpected system restarts. HP is also facing equally frustrating issues involving recent Windows Secure Boot updates on Windows 11. Controversial icon: Spotify finally removed the disco ball icon from its app and replaced it with the familiar flat green logo after weeks of mixed reactions online. While some people don't like the new design, the retro, three-dimensional look has generated a following of its own. Even other brands are coming up with their versions of the disco logo. NVIDIA fixes stuff: A new hotfix driver 610.52 fixes various issues related to monitors and displays, noting that G-SYNC-related frame pacing troubles should now be resolved on Ada Lovelace GPUs. The feedback thread also points out that the hotfix patches a BSOD issue. FIFA World Cup tracker: Opera is redesigning its Android browser with a built-in football tracker for the upcoming World Cup in the US. The new homepage is now "more immersive" with easier access to common browser features. Command line for Proton: The Swiss technology company has launched a command line version of the Proton Drive, which you can use to manage your encrypted files directly from a terminal across all major platforms, including Windows, macOS, and Linux. This week in hardware news Image: Thermaltake Catch up on some of the latest software news updates that arrived throughout the week: Intel and AMD PCs in one case: Thermaltake's CAPO X dual-system chassis brings you the best of both worlds by supporting two microATX (mATX) motherboards and up to two 360 mm AIO liquid coolers. If you want ideas, maybe you can use one as your main PC and another as an AI agent. Google Tensor production: While TSMC will remain the lead producer, the search giant is reportedly in talks with Samsung to hand over part of the production of its next-generation Tensor AI chips. The upcoming TPUs are reportedly codenamed “Icefish” and will be produced using Samsung's 2-nanometer process technology. Lethal fake phone chargers: UK-based consumer rights organization Which? has warned that "potentially lethal knock-off chargers" are still being sold on online marketplaces, including Amazon and eBay, despite the dangers of such chargers having been exposed. This week in Google News Image: Google Catch up on some of the latest Google news updates that arrived throughout the week: Sliding into DMs: You might remember that YouTube had a direct messaging feature back in the day. It's now rolling out a revamped direct messaging inbox that lets you share Shorts, videos, and live streams and have conversations about them. New in NotebookLM: The AI-powered note-taking app got some new agentic capabilities and more advanced reasoning, thanks to support for Gemini 3.5 and Antigravity. NotebookLM can now generate outputs in more formats, making it easier to start new projects with less information. This week in Apple News Image: Apple Catch up on some of the latest Apple news updates that arrived throughout the week: WWDC 2026: This week was all about Apple's annual developer conference, where the iPhone-maker finally unveiled an upgraded Siri AI and a platter of new Apple Intelligence features. Siri AI now has a cross-platform app, which is supported on select models of iPhone, iPad, Mac, Apple Watch, and Vision Pro. What's different about WWDC: I wrote a detailed feature this week discussing how Apple changed the WWDC keynote this year, blurring the lines between its operating systems. Apple didn't have dedicated segments for its operating systems this year and didn't even publish the official press releases. Liquid Glass slider (finally): It's that time of the year when Apple previews fresh updates for iPhone, iPad, Mac, Apple Watch, AirPods, and other platforms. A new transparency slider for Liquid Glass is coming to iOS 27, iPadOS 27, and macOS 27 Golden Gate. Is your device supported?: If you're wondering whether your Apple device supports the new developer beta builds, you can check the respective compatibility lists for iOS 27, iPadOS 27, macOS 27, and watchOS 27. Siri AI not coming to Europe: Yes, that's true due to complications related to the Digital Markets Act (DMA). While Apple penned a blog post to tell its side of the story, a European Commission spokesperson told Neowin that the DMA does not prohibit Apple from launching its services in the EU; the company is simply required to comply with the law. New child safety features: Apple announced a trove of new safety features for kids, including a simpler setup experience for parents, Ask to Browse, Time Allowances, and a redesigned Screen Time UI. Parents can now visit a new website to find answers to common questions around child safety features. More cloud power: Apple's Private Cloud Compute cloud infrastructure will now run beyond its own data centers for the first time. It's working with Google and NVIDIA to run new Apple Intelligence workloads on Google Cloud systems powered by NVIDIA GPUs. This week in Meta news Catch up on the latest Meta news updates that arrived throughout the week: Data from outside: Meta is rolling out a new update globally to personalize your AI responses and primary feeds using data from outside businesses. It already targets ads based on shopping activity, but the latest development enables it to personalize other "parts of your experience." There is a toggle in the Settings to disable activity from other businesses; however, it won't prevent companies from sending your data to Meta. Level playing field: The European Commission has ordered the social media giant to restore access to WhatsApp for third-party AI chatbots, including ChatGPT and Copilot. Meta previously blocked rival AI chatbots from operating on WhatsApp, prompting the Commission to launch an antitrust investigation. Spying on users: On the flip side, WhatsApp accused the Israeli cyber-intelligence firm, NSO Group, of deploying a fresh wave of targeted "spear phishing" attacks against its users, which were thwarted by WhatsApp's security teams. Reorder profile grid: Adding some customization for the profile grid feature, Instagram now lets you rearrange posts in your profile without deleting and reuploading content. Go to your profile and long-press any thumbnail to find the "Reorder grid" option. This week in AI news Catch up on the latest artificial intelligence news updates that arrived throughout the week: Claude RAM hogger: Windows users are getting infuriated by Claude Desktop's hidden 1.8GB Hyper-V VM bug, which spins up if you use Claude Cowork or agent mode even once. It shows a Vmmem process in Task Manager, indicating 0% CPU usage but 1.8GB of RAM usage. Claude Fable 5: The new state-of-the-art AI model from Anthropic beats OpenAI's ChatGPT-5.5 in multiple AI benchmarks. Claude Fable 5 sits above the Opus models and outperforms most other generally available models across knowledge work, vision, scientific research, and more. However, the model was abruptly suspended after receiving an export control directive from the US government. Stack Overflow for AI agents: The popular Q&A platform has launched Stack Overflow for Agents in beta, which AI agents can use to share, find, and reuse coding knowledge. It explained that AI agents operate in isolation, creating an Ephemeral Intelligence Gap, and valuable tokens are wasted on something another agent has already solved. Upgrading Codex: OpenAI is buying a company called Ona, which makes secure cloud execution and orchestration technology for developers. The ChatGPT-maker aims to make Codex agents run for days without being tied to a local machine or an active session. It also announced a new developer mode in Chrome. This week in open-source news Catch up on some of the latest open-source and Linux updates that arrived throughout the week: Linux 7.1 rc7: Linux Torvalds dropped an optimized rc7 with crucial fixes for AMD and laptop hardware. He said that a stable version of Linux 7.1 could arrive next week, adding that the latest RC is not small, but smaller than recent releases. Alpine Linux 3.24: The latest Alpine Linux release added support for COSMIC Desktop, Linux 6.18, IPv6 installer support, automatic serial console configuration for headless setups, and major package updates and removals. This week in Microsoft News Microsoft had to shut down more than 70 GitHub repos after they were compromised by malware, Teams is getting a controversial tracking feature that users may hate, and the company explained why the new update makes PowerToys faster. You can check out Taras's freshly baked Microsoft Weekly roundup to catch up on all the interesting stories this week. This week in gaming The latest issue of Pulasthi's Weekend PC Game Deals curates several exciting games on sale this week. On the Epic Games Store, the new titles on display for grabs include Warhammer 40K Speed Freeks and The Ouroboros King. NVIDIA GeForce NOW's summer sale lowered the prices of both the Performance and Ultimate membership options for a limited time period. Meanwhile, the Xbox Free Play Days brought Undead Labs' post-apocalyptic title State of Decay 2, as well as two Team17-published titles. That said, here are some more stories from the gaming world: Dragon's Dogma 2: Dark Arisen expansion to bring snowy region, new updates also coming Playground drops 30 minutes of Fable gameplay, shows off life sim and morality system Playground Games confirms Forza Horizon 6 save wipe bug Doom: The Dark Ages Revelations expansion gives the Slayer a brutal Chain Spear State of Decay 3 is out in 2027, reveals Plague Nests with new co-op gameplay trailer From the review corner This week, Taras got his hands on the DuRoBo Krono portable e-ink reader, which comes with a $279 price tag. It's a smartphone-sized device with a rotating dial, sitting somewhere between premium and cheap in terms of build quality. Speaking of the pros, the physical controls are cool, the smart dial is useful, the battery life is good, and Android 15 has no-nonsense software. On the flip side, the device lacks software customization, the built-in AI needs improvement, the smart dial is a bit wobbly, and there is no ambient light sensor. EA Sports UFC 6 EA Sports UFC 6 does a better job at onboarding new players than most fighting games, according to Pulasthi's detailed review. The game comes with rewarding combat systems, top-notch animation, impressive impact physics, and visible damage on fighters. However, the menus lag a lot, grappling isn't very fun, and the flow state feels a little misplaced. More price drops! We got you covered with some hot tech deals all week. For some reason, if you missed out on a great discount, here is a summary of some recent deals that are still alive: GIGABYTE Radeon RX 9070 XT Gaming OC ICE 16G - $649.99 (13% off) 1TB Samsung T7 Portable SSD - $189.98 (31% off) AirPods Pro 3 - $179 ($50 off) Edifier R1280Ts Powered Bookshelf Speakers - $129.99 (24% off) To view all of our recent deals, click here. So, these were some of the biggest tech news and other updates from this week. There will be more issues of our 7 Days series in the coming weeks and months, so stay tuned. You can also support Neowin by registering for a free member account or subscribing to extra member benefits, along with an ad-free tier option. Have a great weekend!
  • Recent Achievements

    • Week One Done
      rolfus earned a badge
      Week One Done
    • One Month Later
      Leroy Jethro Gibbs earned a badge
      One Month Later
    • Conversation Starter
      flexorcist earned a badge
      Conversation Starter
    • One Month Later
      AndreaB earned a badge
      One Month Later
    • One Month Later
      agatameier earned a badge
      One Month Later
  • Popular Contributors

    1. 1
      +primortal
      505
    2. 2
      +Edouard
      197
    3. 3
      PsYcHoKiLLa
      141
    4. 4
      ATLien_0
      90
    5. 5
      Steven P.
      80
  • Tell a friend

    Love Neowin? Tell a friend!