<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Why was Media Player updated?</title>
	<atom:link href="http://www.edbott.com/weblog/?feed=rss2&#038;p=485" rel="self" type="application/rss+xml" />
	<link>http://www.edbott.com/weblog/?p=485</link>
	<description>Helping PC users make sense of Microsoft software since 1991</description>
	<lastBuildDate>Fri, 20 Nov 2009 18:54:09 -0700</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Redflower</title>
		<link>http://www.edbott.com/weblog/?p=485&#038;cpage=1#comment-85722</link>
		<dc:creator>Redflower</dc:creator>
		<pubDate>Wed, 05 Jul 2006 08:10:04 +0000</pubDate>
		<guid isPermaLink="false">http://www.edbott.com/wordpress/?p=485#comment-85722</guid>
		<description>that&#039;s an easy question, if they are not updated, no one would choose, for the hot competition.</description>
		<content:encoded><![CDATA[<p>that&#8217;s an easy question, if they are not updated, no one would choose, for the hot competition.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ben Edelman</title>
		<link>http://www.edbott.com/weblog/?p=485&#038;cpage=1#comment-898</link>
		<dc:creator>Ben Edelman</dc:creator>
		<pubDate>Wed, 31 Dec 1969 17:00:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.edbott.com/wordpress/?p=485#comment-898</guid>
		<description>I tested the patch in my lab last night.  

Recall the specific problem uncovered last month: On XP SP2, all ActiveX installation attempts are supposed to yield Information Bar confirmations before showing popups.  XP SP2 plus WMP10 does in fact do so.  But XP SP2 plus WMP9 does not -- the popups appear without users activating an Information Bar.  Since SP2 purportedly resolved the problem of these misleading popups, SP2 users have reason to lower their guard against such deception.  Yet in the case of WMP9, they&#039;re entirely at risk.  So this was the problem MS was expected to solve in the patch, and MS was expected to solve it by causing WMP9 to use the Information Bar.

Needless to say, that&#039;s not what the patch did.  See the screenshot and video linked below -- the result of playing an infected WMV file on a SP2 WMP9 machine.  Note the misleading ActiveX popup shown without users clicking on anything.  This is **NO CHANGE FROM BEHAVIOR OBSERVED BEFORE INSTALLING THE PATCH**.

&lt;a href=&quot;http://www.benedelman.org/spyware/images/drmtest-021605.png&quot; rel=&quot;nofollow&quot;&gt;Screen shot&lt;/a&gt;
&lt;a href=&quot;http://www.benedelman.org/spyware/images/drmtest-021605.wmv&quot; rel=&quot;nofollow&quot;&gt;Video&lt;/a&gt;

So what did the patch do?  As best I can tell, nothing.  Very weird.
</description>
		<content:encoded><![CDATA[<p>I tested the patch in my lab last night.  </p>
<p>Recall the specific problem uncovered last month: On XP SP2, all ActiveX installation attempts are supposed to yield Information Bar confirmations before showing popups.  XP SP2 plus WMP10 does in fact do so.  But XP SP2 plus WMP9 does not &#8212; the popups appear without users activating an Information Bar.  Since SP2 purportedly resolved the problem of these misleading popups, SP2 users have reason to lower their guard against such deception.  Yet in the case of WMP9, they&#8217;re entirely at risk.  So this was the problem MS was expected to solve in the patch, and MS was expected to solve it by causing WMP9 to use the Information Bar.</p>
<p>Needless to say, that&#8217;s not what the patch did.  See the screenshot and video linked below &#8212; the result of playing an infected WMV file on a SP2 WMP9 machine.  Note the misleading ActiveX popup shown without users clicking on anything.  This is **NO CHANGE FROM BEHAVIOR OBSERVED BEFORE INSTALLING THE PATCH**.</p>
<p><a href="http://www.benedelman.org/spyware/images/drmtest-021605.png" rel="nofollow">Screen shot</a><br />
<a href="http://www.benedelman.org/spyware/images/drmtest-021605.wmv" rel="nofollow">Video</a></p>
<p>So what did the patch do?  As best I can tell, nothing.  Very weird.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
