@miki @stroughtonsmith Pretty much. EC required the same from Microsoft regarding security software – any APIs that are available to MS have to be available to 3rd party developers.
Top-level
@miki @stroughtonsmith Pretty much. EC required the same from Microsoft regarding security software – any APIs that are available to MS have to be available to 3rd party developers. 3 comments
@miki I think ClownStrike would've happened regardless of whether Microsoft allowed API access or not – they had a broken parser running in a kernel driver, and that doesn't need any special API access to break. @jernej__s It needs you to be able to run in kernel mode, a capability which Microsoft wanted to deprecate for security software following Apple's lead, but was forbidden to do so by the European Commission. |
@jernej__s @stroughtonsmith hence CloudStrike