Search   Feed   Browse   Add
Feed items 1 - 5 of 5 for March 2008

Michael Howard's Web Log

A Simple Software Security Guy at Microsoft!

"How Do I" Videos for Security - March 30, 2008

These are pretty cool - I'm a big fan of highly focused, short education like this... http:msdn2.microsoft.comen-ussecuritybb896640.aspx
http://blogs.msdn.com/michael_howard/archive/2008/03/30/how-do-i-videos-for-security.aspx

IE8 Activity to lookup CVEs and Microsoft bulletins - March 19, 2008

Update: Added Microsoft bulletin stuff. I'm always looking up CVEs so I want to get to the data as quickly as possible, especially if I'm digging through a load of them.  Three years ago I posted some code to perform CVE lookup using Smart Tags in Microsoft Office. IE8 offers similar functionality to Smart Tags, but way more flexible, named Activities. So I did a bit of digging around, and found this article by Jane Kim in the IE8 team that explains how to use and create Activities (and...
http://blogs.msdn.com/michael_howard/archive/2008/03/18/ie8-to-lookup-cves.aspx

Protecting Your Code with Visual C++ Defenses - March 17, 2008

MSDN Magazine has just published an article I wrote that collects many of the various C and C++ defenses in the current Visual C++ compiler suite, all of these defenses are SDL requirements or recommendations.
http://blogs.msdn.com/michael_howard/archive/2008/03/17/protecting-your-code-with-visual-c...

The impact of the SDL on Microsoft SQL Server - March 7, 2008

Following on from my recent post about Windows Vista security and the SDL, a number of people have indicated to me that obvioulsy it's a fluke. It's important to point out that the reason I talk about Windows Vista so much is because I work in the Windows Division. The SDL was born in Windows. But the SDL extends across Microsoft, not just Windows. So if the SDL works, wouldn't we see vulnerability reduction in other Microsoft products too Er, yes! Take a look at a blog post Jeff just...
http://blogs.msdn.com/michael_howard/archive/2008/03/06/the-impact-of-the-sdl-on-microsoft...

Some thoughts about Windows Server 2008 - March 5, 2008

Windows Server 2008 has shipped! And a fine product it is, too! Windows Server 2008 is the first Windows Server to go through the full SDL process, making it the most secure version of Windows Server to date. We raised the security bar in Windows Vista, and we REALLY raised the bar in Windows Server 2008. Windows Server 2008 is a prime product example of our ongoing commitment to Trustworthy Computing, and how the company is making good on its commitment to continue to build the most secure...
http://blogs.msdn.com/michael_howard/archive/2008/03/04/some-thoughts-about-windows-server...
Available Archives
- February (2 items)
- March (5 items)
- April (5 items)
- May (1 item)
- June (1 item)
- July (1 item)
Sponsored Links
© 2008 FeedCapsule.com  |  Contact