Microsoft silently kills silent, automatic Skype install via Updates

Skype me! What? I think you'll find you do have it


Microsoft has pulled the plug on a Windows update that snuck Skype onto business PCs.

Corporate admins got a nasty surprise on Wednesday when Skype 5.9 was automatically and silently installed on work machines via Windows Server Update Service (WSUS) - including PCs that did not have the voice chat software previously installed.

IT bods on this microsoft.com forum complained of hundreds of computers infected by the update and scrambled to remove the VoIP client centrally from PCs.

One admin blasted:

I administer several banks that belong to a holding company. I had to dispatch techs immediately to remove the software from appx 25 machines first thing this morning because they are in the middle of an IT audit and Skype is definitely not going to pass.

Another wrote:

I have hundreds of computers this morning with Skype 5.9 installed because WSUS pushed the update to the clients. WSUS will install Skype 5.9 on clients that have never had Skype installed if install Important Updates is enabled on the client.

Microsoft blessed this command-line magic to remove the unwanted Skype from machines, while also “expiring” the update – meaning it has been withdrawn.

The Windows software giant bought loss-making Skype in May 2011 for $8.5bn. In May Microsoft delivered tools for OEMs to install the VoIP client on consumers' PCs. ®

Similar topics

Broader topics


Other stories you might like

  • Azure issues not adequately fixed for months, complain bug hunters
    Redmond kicks off Patch Tuesday with a months-old flaw fix

    Updated Two security vendors – Orca Security and Tenable – have accused Microsoft of unnecessarily putting customers' data and cloud environments at risk by taking far too long to fix critical vulnerabilities in Azure.

    In a blog published today, Orca Security researcher Tzah Pahima claimed it took Microsoft several months to fully resolve a security flaw in Azure's Synapse Analytics that he discovered in January. 

    And in a separate blog published on Monday, Tenable CEO Amit Yoran called out Redmond for its lack of response to – and transparency around – two other vulnerabilities that could be exploited by anyone using Azure Synapse. 

    Continue reading
  • Microsoft pledges neutrality on unions for Activision staff
    Now can we just buy them, please?

    Microsoft isn't wasting time trying to put Activision Blizzard's problems in the rearview mirror, announcing a labor neutrality agreement with the game maker's recently-formed union.

    Microsoft will be grappling with plenty of issues at Activision, including unfair labor lawsuits, sexual harassment allegations and toxic workplace claims. Activision subsidiary Raven Software, developers on the popular Call of Duty game series, recently voted to organize a union, which Activision entered into negotiations with only a few days ago.

    Microsoft and the Communication Workers of America (CWA), which represents Raven Software employees, issued a joint statement saying that the agreement is a ground-breaking one that "will benefit Microsoft and its employees, and create opportunities for innovation in the gaming sector." 

    Continue reading
  • Microsoft seizes 41 domains tied to 'Iranian phishing ring'
    Windows giant gets court order to take over dot-coms and more

    Microsoft has obtained a court order to seize 41 domains used by what the Windows giant said was an Iranian cybercrime group that ran a spear-phishing operation targeting organizations in the US, Middle East, and India. 

    The Microsoft Digital Crimes Unit said the gang, dubbed Bohrium, took a particular interest in those working in technology, transportation, government, and education sectors: its members would pretend to be job recruiters to lure marks into running malware on their PCs.

    "Bohrium actors create fake social media profiles, often posing as recruiters," said Amy Hogan-Burney, GM of Microsoft's Digital Crimes Unit. "Once personal information was obtained from the victims, Bohrium sent malicious emails with links that ultimately infected their target's computers with malware."

    Continue reading

Biting the hand that feeds IT © 1998–2022