Paul Thurrott wrote a lengthy critique about Windows Vista RC1. My favorite part is this:

And take User Account Control (UAC), please. No seriously, please take it. And kill it. And stomp on its dead body. And then hang it on a flag pole as a warning to others.

Well, I couldn’t have expressed it better. UAC is more than just annoying. In my view, it doesn’t improve security. On the contrary, it reduces security!

All it really does is train users (and system administrators) like rats to click on “Continue” every time they see a pop-up. So, if there ever is a situation where it is really necessary to read a message first before proceeding, many will just do what their “UAC trainer” taught them to do.

I think, there is a general rule with respect to pop-ups. Only use them if they there is a 50% chance that the user will confirm the message.

comment Leave a Comment | RSS Subscribe RSS | MailNewsletter |