Why doesn't Microsoft just rewrite their entire coding structure. You hear say they are considering RUST, and that might be a step in the right direction, but doubt they ever will given the authority they wield with Windows just as it is with a few occasional tweaks now and then.
I piggy back on the question as to why Microsoft won't just rewrite their code. I guess I can understand that, for the most part, it is solid code, but the longer it is out there the more it will be exploited with the new malware technologies. It is a tough position they are in, but they still bear a responsibility to at least try to make some mods that will help seal vulnerabilities in key pieces of their code.