Comment by gambiting

1 day ago

I wonder what you consider serious work then, because as a developer I think Visual Studio is the most "serious" developer environment there is, and I'd take it over any linux or Mac based setup.

Think about it like this: Would you manage a fortune in crypto on Windows? I wouldn't, because I just wouldn't even trust my environment at first. And for Visual Studio, I would solely run it in a firewalled VM.

MS employees have access to a lot of your work/data/fingerprints which makes it insecure by default. There is also serious privacy concerns, basic one would be that telemetry sends all HWID of devices by default, so if you share a USB stick with a friend, you two are automatically correlated in MS database, not really my cup of tea.

Not a big fan of an OS asking for an ID indirectly (via mandatory phone number) as well, mandatory MS account at install time (except if you tamper with the ISO, yeah sure)

  • >Think about it like this: Would you manage a fortune in crypto on Windows? I wouldn't

    Most banks on the planet manage trillions on Windows, so I'm not sure what you're trying to prove by dying on this hill. Just because you wouldn't do something doesn't make you knowledgeable or right about that.

    >MS employees have access to a lot of your work/data/fingerprints.

    I wonder how all those companies, banks and governments manage to keep MS workers out of their work data.

    Any MS workers here that can answer what are you guys doing with all that customer data you look at all day instead of coding?

    • I doubt workers stealing data (which is more frequent than you might think) will just openly post about it...

      Do you really believe it's normal that banks are on Windows? Do you want governments, military and such to be on Windows, really? It's not a popularity contest, we know that most corpos do terrible choice about IT stuff (at least back then and now they are doomed).

      It breach basic every security principles, we should be relying on cryptography and not human trust? Would you let your ISP inject a CA in your OS and just rely on the trust of their employees to not look at your traffic? you're building your security model on the assumption that a private corporation's employees won't abuse access they structurally have, you rely on faith which imo is plain wrong. But even, the privacy factor has not been addressed, you are alright with MS correlating your entire life, many wouldn't accept that.

      2 replies →