Microsoft Withheld Update That Could Have Slowed WannaCry: Report

ras74

Level 2
Thread author
Verified
May 11, 2014
60
American software giant Microsoft held back from distributing a free security update that could have protected computers from the WannaCry global cyber attack, the Financial Times reported Thursday.

In mid-march, Microsoft distributed a security update after it detected the security flaw in its XP operating system that enabled the so-called WannaCry ransomware to infiltrate and freeze computers last week.

But the software giant only sent the free security update -- or patch -- to users of the most recent version of the Windows 10 operating system, the report said.

Users of older software, such as Windows XP, had to pay hefty fees for technical support, it added.

"The high price highlights the quandary the world's biggest software company faces as it tries to force customers to move to newer and more secure software," it said.

A Microsoft spokesperson based in the United States told AFP: "Microsoft offers custom support agreements as a stopgap measure" for companies that choose not to upgrade their systems.

"To be clear, Microsoft would prefer that companies upgrade and realise the full benefits of the latest version rather than choose custom support."

According to the FT, the cost of updating older Windows versions "went from $200 per device in 2014, when regular support for XP ended, to $400 the following year," while some clients were asked to pay heftier fees.

The newspaper argued the high costs led Britain's National Health Service -- one of the first victims of the WannaCry attack -- to not proceed with updates.

Microsoft ended up distributing the free patch for the older versions on Friday -- the day the ransomware was detected.

Although the announcement was "too late to contain the WannaCry outbreak," the report said.

Microsoft did not confirm to AFP when it made the patch free.

A hacking group called Shadow Brokers released the malware in April claiming to have discovered the flaw from the NSA, according to Kaspersky Lab, a Russian cybersecurity provider. jc-at/har MICROSOFT
 

Fritz

Level 11
Verified
Top Poster
Well-known
Sep 28, 2015
543
I just heard Mercedes-Benz doesn't offer air bags for my 280 E from 1977. I'm furious. They know how important these are and just want to sell new cars. :eek:

– Delusional Customer from 2017 with a strong feeling of entitlement to service from products sold last century

:p
 

Arequire

Level 29
Verified
Top Poster
Content Creator
Feb 10, 2017
1,822
Except the majority of systems hit were apparently running Windows 7 which did receive the mid-march security update but organisations chose not to update their systems due to either cost or indifference.
Did the journalist at the FT not research the fact that XP's extended support ended in 2014? Those organisations who brokered a deal with Microsoft for continued support of their XP systems after that date still have to apply the updates themselves. Oh and about the NHS...
 
Last edited:

Handsome Recluse

Level 23
Verified
Top Poster
Well-known
Nov 17, 2016
1,242
I just heard Mercedes-Benz doesn't offer air bags for my 280 E from 1977. I'm furious. They know how important these are and just want to sell new cars. :eek:

– Delusional Customer from 2017 with a strong feeling of entitlement to service from products sold last century

:p
They'll be replaced by a new generation.
I guess this is why Microsoft sent out the patch to XP.
 

soccer97

Level 11
Verified
May 22, 2014
517
Fake and inaccurate news is a real problem - verify sources on sites like that. Microsoft patched the products that are currently supported within their lifecycle. See the following link: Microsoft FAQ - Windows Products. I will add a link to the OS forum for the main page. Almost every product gets 10 years of support, which is reasonable - a bit generous. The initial off the shelf price (~$200 for Windows 7 or 10 Professional is expensive. The average life of a laptop is 5-6 years if I remember correctly. I understand your frustration though.
 
  • Like
Reactions: frogboy

tryfon

Level 2
Verified
May 13, 2017
76
Most people wouldn't have updated given there even was one pushed by Microsoft
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top