Redmond is patching Windows 8 but NOT Windows 7, say security bods | The Register

New tool checks differences, could lead to 0-day bonanza

DiffRay GUI and flow chart

[…] Researcher Moti Joseph (@gamepe) – formerly of Websense – speculated Microsoft had not applied fixes to Win 7 to save money.


„Why is it that Microsoft inserted a safe function into Windows 8 [but not] Windows 7? The answer is money – Microsoft does not want to waste development time on older operating systems … and they want people to move to higher operating systems,“ Joseph said in a presentation at the Troopers14 conference. […]


In a demonstration of DiffRay, the researchers found four missing safe functions in Windows 7 that were present in 8.


„If we get one zero-day from this project, it’s worth it,“ Joseph said.


