It's an endless chain of
critical security updates... I'm getting sick and tired form all of them.
Here we have it again. And they make sure that the new updates will be needed soon. How? They include deliberately insecurities (installing new executables that could run on background potentially by a malware, elevate its own privileges, spread configuration files across your computer, etc), so users will have those problems in nearest future and they, Macromedia, will have to issue new
critical security updates again and again...
Here is what I found new in this v11.2.202.228 update:
1. Setup is pushing a new updater, asking if you want to allow automatic updates. Even if you will never need it, they ignore your setting and install additional insecure components on your computer anyway.
2. Setup silently adds new scheduled task(s):
Adobe Flash Player Updater3. Setup adds new file
C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe (additional vector for future exploits), that is registered to run as a service
Now, how to make Flash secure?
After you run all setup programs (ActiveX and Plugin versions, if needed):
1. Follow instructions from this page:
How to Make Flash Secure Software FAQ2. If you don't use autoupdater (as I always recommend - don't do it, be careful and watch what Macromedia installs on your computers), uninstall the new Adobe Flash Player Update service. Run in CMD:
sc delete AdobeFlashPlayerUpdateSvc
del C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
del C:\WINDOWS\system32\Macromed\Flash\mms.cfg3. Remove new scheduled task ("Adobe Flash Player Updater") from this folder:
C:\WINDOWS\TasksWhy Macromedia is always trying to put a pig into my computers? I specifically instruct the latest installer -
Never check for updates. But it disregards my will and installs their new update service on my computer and puts new files into known places, so the future hackers potentially could exploit that to their advantage... Do they have any respect to my computer? I don't think so. So the question arises - what's wrong with these people???