Microsoft: We can make ANYTHING insecure

A friend writes:

You know, I imported my Thawte cert in Outlook, and after asking me for the password to open the file, it blithely started using my private key for me. No opportunity for me to supply a passphrase, just heigh-ho-lickety-split look! I can decrypt messages for you! Or anyone else who happens to turn on your laptop!

Sigh.

Microsoft: We can make ANYTHING insecure.

Yup, while The World’s Richest Man talks about security and how password are terrible, this is what happens where the rubber meets the road.