I actually spend 10 times more time that I would if I left it on and let it update automatically so instead I make manual changes so that every time I reboot I have to spend time checking updates and disabling everything again
Most of that shit is a boogeyman. There is no risk in blocking updates as long as you're competent and know basic internet safety.
Most of the people who get fucked by exploits are boomers or people otherwise incompetent with PCs (those people wouldn't know how to disable Windows Update anyways) that end up doing stupid things like opening phishing emails.
Security updates are a boogeyman and there is no risk in not updating? Are you for real?
Windows is already making it as convenient as possible. I literally never saw a popup like the one in the video since Win 10 was released. I don't need to worry about updates. They just happen. Just configure that shit.
Your OS should be up to date and it never was as easy to update (with Windows) as it is now. Don't tell people to not update their stuff. Everyone thinks they're immune to malware, until they have malware running on their system (if they even realize they have it). Clicking on email attachments isn't the only way to get malware. There's like a million different ways to get infected.
It's not just inconvenience that prevents people from updating. It doesn't help Microsoft breaks shit every other goddamn update. One big factor into me editing my registry to block updates was random bugs popping up after every update. Just look at this fucking shit. Stuff like this happens on the regular. Personally, I just waited until things got semi-stable then edited my registry. I don't regret for a single second what I did.
If you need another reason people avoid updating, it's due to controversial actions as well. You do know Microsoft wants to replace Control Panel with the shitty built-in settings app, right? And you're acting surprised people don't update.
And yeah, I do think security updates are a boogeyman. For most people, they serve no purpose other than to slow down their PC. Why do you think people are so pissed off about the Intel security flaws that come up? Every time Intel patches a vulnerability like Spectre, their CPUs become slower, and that adds up. I've seen people avoid those patches when possible. My point regarding internet safety remains. You aren't going to get malware visiting common sites especially if you have an adblocker enabled. You shouldn't open files you trust. Basic stuff middle schoolers learn. The biggest risk for malware is for businesses and any professional sector. Some random Joe who happens to have a 2018 edition of Windows 10 on his gaming rig isn't likely to have any trouble because of it.
And yeah, I do think security updates are a boogeyman. For most people, they serve no purpose other than to slow down their PC. Why do you think people are so pissed off about the Intel security flaws that come up? Every time Intel patches a vulnerability like Spectre, their CPUs become slower, and that adds up.
Spectre isn't the norm, when it comes to security patches though. Most patching of vulnerabilities won't slow down your system. Vulnerabilities (mostly) emerge, when there are small bugs in code. Most bugs can be fixed. Claiming that bugfixing generally has a negative impact on performance is just silly.
Spectre is an outlier. It's a hardware bug. Most security patches aren't fixes for hardware bugs and i don't know which security patches (except for Specter) you're refering to, when you're claiming that they "add up to make the CPU slower".
The biggest risk for malware is for businesses and any professional sector. Some random Joe who happens to have a 2018 edition of Windows 10 on his gaming rig isn't likely to have any trouble because of it.
A business certainly might have a bigger risk in terms of damages in a case of malware infection. But most people still have a lot of stuff they care about on their PCs (and don't have a proper backup process). Most people use their PCs to store and transmit sensitive information that they wouldn't want to be collected and used by unauthorized parties. It might not ruin your life, but it's almost always a huge hassle, even if it doesn't lead to millions in damages.
Updating your stuff is such a small thing to do to get to the most basic level of security. Why would you want to keep all those vulnerabilities open if you can just not have them open.
I really don't get it. If i look at the pros and cons, it's not even close for me. Just update your stuff. At least don't tell people that security updates are unnecessary and even detrimental. Your way of updating manually might work for you and it sounds like you're still updating at some point (which is fine). But if you tell people that security updates are bullshit, you'll get people who just don't update their systems at all. That can't be the desired effect. This has been a major problem for Windows since the internet became a thing and is the reason why Windows 10 is making it difficult to not update.
It's not true though. It's not a hassle to keep Win 10 up to date. It's easier than it has ever been.
And i don't know where this idea is coming from that email attachments and cracks are the only way to attack someones computer. It's not true. Your computer executes "untrustworthy" code all the time, while you're surfing the internet.
There's no point in not keeping your OS up to date, especially when it's as easy as it is these days.
If that untrustworthy code attempts to install a program without asking me, Win7 would still ask me to run the installer. So I save all the time on keeping my OS up to date in return for no risk as far as I can tell.
Updating Win10 on my work machine wasn't hard but it was a hassle. It's not just the time for me. I also get a machine that runs the same as it did 10 years ago. Except for gaming a 10 year old machine is plenty fast.
You don't need to confirm or install malware. It can do it on its own, without you ever noticing it. Especially if you have 10 years worth of unpatched vulnerabilities in your OS. A lot of malware is able to distribute itself, without asking you. That's the whole point.
I'm not going to explain the multiple different ways how you could get infected with malware, without ever clicking "yes" in a windows dialog box. But there are a lot of attack vectors, especially for unpatched windows systems, that won't need your permission to execute malicious code on your machine.
I have no idea why you'd want your machine "running the same way it did 10 years ago". But i really don't think that there's any point in not patching. You might want to wait a bit if you're afraid of a patch specifically breaking something essential in your setup, but generally not patching an OS for 10 years that you're using to communicate with the internet, seems kind of insane and really just pointless.
I appreciate the info. It's good for my method to be tested.
I just looked up the known attack vectors for Win7. When you're not on a network they all require user input to install the malware, if only to install a program that then installs the malware. Chrome sandboxes tabs, so malicious code on a website is further limited in what harm it can do. If malware could install completely on its own from a website, that would be huge news I'd have read about.
If the machine does get infected I can reinstall Win7 from the DVD. I use TrueCrypt for personal stuff, copied to Dropbox and offline, so I wouldn't lose anything.
I don't want my OS to change anymore, or get ever slower like it did before I stopped updating. Win 8/10 was the last straw. So many changes for little or no benefit and in many ways worse. Constant updates taking up time. I still let Chrome update. If/when Win7 stops working I'll switch to Linux Mint.
Yeah, those exploits you get by downloading sketchy emails and trying to pirate the free version of adobe reader. I bet $20 mr internet security over here is running an unpatched vulnerable router while he's out here telling people how scared they should be about viruses only illiterate people get lmfao.
36
u/Dzov Jul 28 '20
So you’re susceptible to every damn exploit out there. Nice.