Difficult situation for Microsoft. If you install applications which mess with the operating system in unsupported ways you can't expect your system to function correctly with automatic updates. On the other hand, users are likely not aware of what they have done and bricking millions of computers is also not good. Might for example cause a backslash when people stop updating their systems.
This sounds like a quick and dirty fix they put in place while figuring out what to do.
They have reasons for doing it the other way, but I definitely blame them for not standing up to crap AV vendors in this and many other situations.
That seems like a crazy thought process. You're running software that modifies Window's internal functionality. The vendor knows it's unsupported. How can you blame the company who just made the platform you compromised?
Might as well set your root password to "password" and open it to the public then complain that the security is bad.
Yes it is.
AV use various hacks and exploits to hijack calls to the kernel. How did you think they notify you of an infected file before you open the infected file? The AV intercepts kernel API calls to list and open files.
I wouldn't be surprised if the patch for meltdown/spectre breaks these techniques. Generally speaking, these techniques will crash the system if they didn't work as intended. Microsoft doesn't want AV to BSOD millions of computers so they don't update when they detect an AV. It's perfectly reasonable to me.
So, again, the "where do you want to go today?" company decides "never mind, this is where you are going: we're stopping updates because you might have thought about it."
(Of course, let's ignore the obvious joke about some AV solutions like Symantec.)
It is because these (misbehaved) 3rd party applications do things that cause the mitigations update to make computers unusable.
>and of all things, hilariously defaulting to 'no'
It does not default to "no" since the default is to run MSE / Defender.
> It does not default to "no" since the default is to run MSE / Defender.
I think that it's reasonable to read the grandparent's post as meaning "defaulting to 'no' under certain conditions on the system". It would surprise me if there weren't plenty of users out there who have legacy workflows with antiquated antivirus software still running, either because they set it up and haven't changed it or because their local tech geeks set it up and they don't know how to change it. I know that, as I've tried gradually (and unsuccessfully) to ease back into Windows after a long time away, it's been hard for me to believe in Defender as a full AV solution, and my first instinct was to run old favourites like ClamAV as an extra layer of defence.
Coping with Windows is a fact of life. Get used to it.
Plenty of us have gotten rid of that virus years ago; yes even at work.
echoes from 1998.
http://www.catb.org/~esr/halloween/
Your use of the word 'coping' is telling.
p.s. I can't remember the last time I touched MS software outside of a VM.
The default is to use the 1st party product, Windows Defender, which defaults to 'yes'.
It has been first-party for many years - MSE was released 2009-09 per Wikipedia.
In the PC case both Windows and AV are third party products.