• phoenixz@lemmy.ca
    link
    fedilink
    arrow-up
    0
    ·
    2 months ago

    Install Linux on your desktops. If you have windows servers then what the hell are you doing anyway? Dump Microsoft

  • Son_of_dad@lemmy.world
    link
    fedilink
    arrow-up
    0
    ·
    2 months ago

    It installed itself on my laptop during the last update. Anyone know how to remove it? Will uninstall actually get rid of it?

    • Wooki@lemmy.world
      link
      fedilink
      arrow-up
      0
      ·
      2 months ago

      Microsoft has a whole suite of exfiltration tools such as telemetry and searchapp. Check out what searchapp does next time you search for anything. Those searches are going to microsoft online services, what about thr index?. So youve reached the tip of the of the spyware operating system.

    • IggyTheSmidge@kbin.social
      link
      fedilink
      arrow-up
      0
      ·
      2 months ago

      I don’t have a Windows 11 machine available, so I can’t get you the exact command, but this should get you there.
      It should remove it from all users on the laptop, and (hopefully!) prevent it from coming back:

      Open Powershell and run:
      Get-AppxProvisionedPackage -Online | Where-Object {$_.displayname -like "*Copilot*"}

      Copy the Package Name entry and run the following command, with PACKAGENAME replaced by what you just copied:
      Remove-AppxProvisionedPackage -online -packagename PACKAGENAME

  • Mereo@lemmy.ca
    link
    fedilink
    arrow-up
    0
    ·
    edit-2
    2 months ago

    What the hell?!?!?! This is a server OS! It needs to be as light as possible and for the sake of server stability and security, admins carefully choose the installed apps. Microsoft can just install new applications on a whim.

    This is fuged up.

      • XTL@sopuli.xyz
        link
        fedilink
        arrow-up
        0
        ·
        2 months ago

        There is a truly baffling amount of people who imagine that Microsoft has suddenly turned into a good company.

    • Couldbealeotard@lemmy.world
      link
      fedilink
      English
      arrow-up
      0
      ·
      2 months ago

      People in this thread seem to be missing this point.

      This is windows server, not windows 11. The consequences is not “I’ll have an annoying taskbar icon on my home computer”, this is enterprise level interference that could affect large systems and thousands of users.

      Linux Mint isn’t an alternative to windows server.

      • fruitycoder@sh.itjust.works
        link
        fedilink
        arrow-up
        0
        ·
        2 months ago

        For sure, if you need paid support (which if you aren’t a tech giant, a fledgling startup, or a system with no need for uptime metrics, you probally do) the you have:

        • SUSE Linux Enterprise Server (aka SLES and only still Libre option in this category unfortunately)
        • Red Hat Enterprise Linux (RHEL)
        • Ubuntu are

        if don’t need paid support then Debian, OpenSuse, Rocky, or Fedora are all good picks.

      • TexasDrunk@lemmy.world
        link
        fedilink
        arrow-up
        0
        ·
        2 months ago

        Yep. I no longer have to administer Windows servers (everything I do is serverless these days) but I did for many years.

        Adding anything to a server without vetting it against policies is a huge no no. Back when I was doing it, a big part of our monthly update deployment was updating the test environment first so we knew we weren’t about to break a bunch of shit for us and our customers. Not just “does this brick Windows server”, but “do our applications still function” (usually yes, but the answer was no on several occasions over shit smaller than this).

        I don’t know what adding copilot does. Is it going to accidentally break some custom application by accident because it’s tied directly into the system? Is it going to report shit that I’ve already opted out of due to our data policies and possibly fuck up our audit compliance because of government regulations (defense, medical, and energy sectors have huge responsibilities in that area, just don’t ask how I know)? How does it interact with our in-house developed software?

        Fuck, I dunno. That sounds like a nightmare for infrastructure and ops, several managers, government regulators, and a payday for legal.

      • AMDIsOurLord@lemmy.ml
        link
        fedilink
        arrow-up
        0
        ·
        2 months ago

        Almost any Unix can be an alternative for Windows Server. Never understood why it was used, other than tech illiteracy of lowly tech workers who only knew MS stack.

        • herrvogel@lemmy.world
          link
          fedilink
          arrow-up
          0
          ·
          2 months ago

          The usual answer to that is “active directory”. It’s not uncommon to have one windows server alongside other Linux servers because of AD.

          • TexasDrunk@lemmy.world
            link
            fedilink
            arrow-up
            0
            ·
            2 months ago

            In addition, with all Microsoft’s faults they had a hell of a small business package for years. In a lot of small businesses, the current CIO came up during those times and dictates policy.

            Plus there are a lot of VARs and MSPs who push MS due to favorable terms and kickbacks. Small and medium sized businesses who outsource IT go with whatever they’re told because they don’t have the expertise, time, or desire to explore alternatives.

            Plus there’s a load of self hosted software for certain industries that only works on Windows servers.

    • BolexForSoup@kbin.social
      link
      fedilink
      arrow-up
      0
      ·
      2 months ago

      No enterprise is going to want to deal with that and realistically they’re the only ones with the pockets to fight that battle. Hope I’m wrong though. Microsoft needs a swift kick in the ass.

      • Jo Miran@lemmy.ml
        cake
        link
        fedilink
        arrow-up
        0
        ·
        2 months ago

        If introducing Copilot to server degrades service enough to trigger an SLA upstream, you can absolutely bet lawyers will get involved.

      • Jo Miran@lemmy.ml
        cake
        link
        fedilink
        arrow-up
        0
        ·
        2 months ago

        If introducing Copilot to server degrades service enough to trigger an SLA downstream, you can absolutely bet lawyers will get involved.

        • ElCanut@jlai.lu
          link
          fedilink
          arrow-up
          0
          ·
          2 months ago

          There’s no need to degrade performance to get a lawsuit, the simple fact of extrading data can get you in a tribunal, especially from customers with high privacy requirements, or with European sovereign clouds certifications

        • Monument@lemmy.sdf.org
          link
          fedilink
          English
          arrow-up
          0
          ·
          2 months ago

          Or if CoPilot starts exfiltrating data to Microsoft so their server farms can ‘analyze’ it.

          I’m not heavily involved in the space, but I’m given to understand that MS isn’t very clear about what happens to your data or how it gets used or shared.

          Perhaps Microsoft will be smart enough not to allow the general public to query trade secrets or government data that’s been pulled via unwanted copilot integration.
          But maybe the ongoing Russian hack of Microsoft will make it irrelevant, because the servers can be accessed directly.
          Or perhaps at some distant time, Microsoft will roll out features or technologies developed using an internal version of CoPilot that has access to all data - including proprietary information from competitors.

          And that’s not even counting what ISP’s will do if they find a way to analyze copilot traffic, or what state actors will do if they can set up MitM attacks for Copilot.

          Honestly, I sort of fear the repercussions, but I look forward to the lawsuits.

          • taladar@sh.itjust.works
            link
            fedilink
            arrow-up
            0
            ·
            edit-2
            2 months ago

            I thought the Microsoft technologies designed to allow anyone to access your servers were called Exchange and Active Directory.

              • taladar@sh.itjust.works
                link
                fedilink
                arrow-up
                0
                ·
                2 months ago

                Usually those are the ones all those companies and organizations are using who have their files encrypted by malware.

                • lud@lemm.ee
                  link
                  fedilink
                  arrow-up
                  0
                  ·
                  edit-2
                  2 months ago

                  Yes that’s because pretty much all companies use AD and exchange is also popular (but less so now with exchange online)

                  Both are also extremely valuable for companies and thus attackers.

                  Ransomware attacks pretty much always rely on missconfiguration and/or social engineering.

                • 4am@lemm.ee
                  link
                  fedilink
                  arrow-up
                  0
                  ·
                  2 months ago

                  Correlation != Causation.

                  Now, on the other hand, the number of breaches has gone way up recently. Microsoft has pushed AD and Exchange into the cloud recently. And they just had several instances where keys were stolen and passwords were left in the clear for months after they were notified, as well…

                  Well we have no solid evidence but it’s certainly within the realm of possibility.

            • Monument@lemmy.sdf.org
              link
              fedilink
              English
              arrow-up
              0
              ·
              2 months ago

              Exchange allows users to access data and Microsoft services and it comes with good documentation and a whole slew of controls for org admins.

              Active Directory provides authentication services, and it is mostly for your internal users (so they can access org services, including Exchange), but it’s very common to allow guests and to federate under certain circumstances, so your AD talks to their AD and external guests can authenticate and use resources that have been shared with them.
              It is also well-documented with tight control in the hands of administrators.

              Copilot is a black box. Their terms of service are vague. Microsoft’s responsible AI website comprises of marketing speak, no details, and the standards guide on the site is mostly questions that amount to “TBD”. Administrative ability to control data sharing is non-existent, not yet developed, or minimal.
              We don’t know the scope of data gathered, the retention and handling policies, or where that data/any models built from that data are going to wind up.
              My read is that they’re waiting to be sued or legislated before they impose any limits on themselves.

      • Jo Miran@lemmy.ml
        cake
        link
        fedilink
        arrow-up
        0
        ·
        2 months ago

        If introducing Copilot to server degrades service enough to trigger an SLA upstream, you can absolutely bet lawyers will get involved.

      • riodoro1@lemmy.world
        link
        fedilink
        arrow-up
        0
        ·
        2 months ago

        Thats a load of bullshit. The icon is probably more than that.

        My comment was sarcastic, but I guess I need to start using /s here as on reddit.

    • Buelldozer@lemmy.today
      link
      fedilink
      arrow-up
      0
      ·
      2 months ago

      I can’t believe people use this shit.

      What’s your suggestion for a HIPAA validated EHR or PM system that runs on *Nix or WS without DE installed? Do you have one?

      • boonhet@lemm.ee
        link
        fedilink
        arrow-up
        0
        ·
        2 months ago

        I think you responded to the wrong comment.

        Anyway, if you need it to run on a server, I don’t see why you’d need a DE. If you’re talking about the client, I don’t see why you’d need to run it on a server OS without a DE.

  • w2tpmf@sh.itjust.works
    link
    fedilink
    arrow-up
    0
    ·
    2 months ago

    Why are people installing Server 2022 with a GUI even?

    This seems like a case of “people using Windows Server as a desktop get desktop features in an update”. Yawn.

    • The only self hosted NVR software I could find for my parents that has an accompanying phone app doesn’t have a Linux version: it’s Windows-only and the desktop GUI is required to set it up

      I personally use Motion and Home Assistant at home, but I wouldn’t set up the same for other non-techies, IMO no point making yourself tech support where it isn’t necessary

        • Yepp I know - my preference leaned towards the server edition as it doesn’t include the unnecessary UWP apps installed with Win10/11, and has a much lighter footprint in comparison, resulting in less resource usage overall.

          If these were Windows 7 or Windows XP days, a professional edition install would have sufficed for me tbh… but with all the Metro UI and additional telemetry in Windows editions after 8, it doesn’t seem worth the hassle.

          When I need to log in and fix something now I really wouldn’t want to stare at a “please wait, we’re upgrading your apps” because some UWP update occured, or have the telemetry service gobble up idle CPU

          • w2tpmf@sh.itjust.works
            link
            fedilink
            arrow-up
            0
            ·
            2 months ago

            Look into the LTSC version on Win10.

            It doesn’t contain UWP apps and stays on a stable version for years like Server OSs.

            It’s like $130 for an upgrade license for it, or you can just run it without a license and the only downside is the watermark (that you can easily remove).

    • Buelldozer@lemmy.today
      link
      fedilink
      arrow-up
      0
      ·
      2 months ago

      Why are people installing Server 2022 with a GUI even?

      There are server apps that require Windows with the DE.

    • lud@lemm.ee
      link
      fedilink
      arrow-up
      0
      ·
      2 months ago

      Why not? It’s always convenient to have if you need to quickly fix or troubleshoot something.

      But yes generally servers aren’t accessed graphically.

    • panicnow@lemmy.world
      link
      fedilink
      arrow-up
      0
      ·
      2 months ago

      I have Server 2022 with a GUI installed on my laptop because it lets me use all the server features, play Windows games that use DRM and not spend time messing around with getting linux to run on a laptop. I have Linux on the laptop, but running inside VMs.

      I still don’t want copilot installed. I can confirm it is installed on my Windows Server 2022 laptop. I don’t see any entry points on the desktop or start menu. I haven’t checked Edge yet.

      I wonder if copilot is released to all update channels or if it is only on a subset?

    • brygphilomena@lemmy.world
      link
      fedilink
      arrow-up
      0
      ·
      2 months ago

      Because techs I work with are used to a gui, so it’s either get bad help I can direct or no help. And I don’t want to do everything myself.

  • Omega_Haxors@lemmy.ml
    link
    fedilink
    English
    arrow-up
    0
    ·
    edit-2
    2 months ago

    How desperate they are to force that shit onto everyone should tell you everything you need to know about what their intentions are.

  • werefreeatlast@lemmy.world
    link
    fedilink
    arrow-up
    0
    ·
    2 months ago

    “Hmm. It looks like you are serving porn. Would you like me to create more of this porn and distribute it to as many of your contacts and visitors as possible?”

    NO!

    " okay removing hot dildo Asian DP 12 inch penis porn. Sending recall email to contacts from: Pornification@yeahovas.com MikeArmington@UCSF.edu MArmington@Gaminisfun.com JustMikenFamily@MiddleHigh.edu MikesChurch@Churchography.org These are all the email contacts we gathered from you in the past 25 minutes. There’s high traffic from Churchography.org and yeahovas.com, are you sure you want to ruin a good thing? Only 40 people replied from MiddleHigh.edu, the replies were deleted but they seemed awfully upset. Good day Mikey!"

      • Zerush@lemmy.ml
        link
        fedilink
        arrow-up
        0
        ·
        2 months ago

        Anyway on Windows the Optimizer is an must have app. It is the best to cut M$'s bad habits

        • KyuubiNoKitsune@lemmy.blahaj.zone
          link
          fedilink
          arrow-up
          0
          ·
          2 months ago

          Yeeeeah, no enterprise admin would run that… GPOs would do the same with more transparency and no privacy concerns (besides running Windows of course)

    • Trollception@lemmy.world
      link
      fedilink
      arrow-up
      0
      ·
      2 months ago

      Who exactly is the target audience for this? Home users running Windows server? This would get flagged for sure in an enterprise environment and no self respecting admin would ever install something like that.

      • areyouevenreal@lemm.ee
        link
        fedilink
        arrow-up
        0
        ·
        2 months ago

        Yes I think the better solution is to read your username. It’s hard to argue with Linux and BSDs when it comes to servers.

        • Possibly linux@lemmy.zip
          link
          fedilink
          English
          arrow-up
          0
          ·
          edit-2
          2 months ago

          I agree 100%. Google Cloud platform doesn’t have Windows servers and the cloud providers are simply two small for Microsoft products.

          Its hard to beat a Linux server as you can spin one up on prem or in the cloud quickly and it doesn’t have a lot of overhead in most cases.

    • The Octonaut@mander.xyz
      link
      fedilink
      arrow-up
      0
      ·
      2 months ago

      The icon itself is probably more than 8kb. It’s either incorrect or literally just a desktop URL shortcut

    • UID_Zero@infosec.pub
      link
      fedilink
      English
      arrow-up
      0
      ·
      2 months ago

      I did see another report that it’s just a component in Edge. Unfortunately I don’t have that link handy right now.

    • panicnow@lemmy.world
      link
      fedilink
      arrow-up
      0
      ·
      edit-2
      2 months ago

      I don’t even see a link. Though I guess I should look inside Microsoft Edge.

      Edit: I cannot find anyway to get to it in either the desktop or Edge. I do not have a signed in Microsoft account on this machine, so that may be why I don’t see it. I’m not willing to sign in to see.