Browse by Tags

What I Learned from Attending the Windows Launch Event Today
Today I attended the Microsoft 2008 server wave launch event in Seattle. In the process I learned a number of things: The launch event apparently does not need to coincide with actually launching anything. Server 2008 launched a couple of months ago....
Resource Kit Done!
Last Friday the last of the Windows Server 2008 Security Resource Kit finally went to press! This was a project I had not really planned and so, to complete it in time, I brought in an amazing crew of co-authors. Together, we managed to put together 17...
Hey, Mozilla: Quotes Are Not Legal in a URL
When I was a child, I learned a saying that I still find important to keep in mind: Those who are sitting in a glass house shall not throw stones The good folks at Mozilla may want to look up what that really means. Two days ago, Mozilla published Firefox...
At Least This Snake Oil Is Free
Snake oil , for those that are not familiar with the U.S. English vernacular, is a derogatory term for some product that makes unverifiable or exaggerated claims. True to the tradition, we now find " Vista Firewall Control ," complete with a...
Downloads from the Vista Security Book
As with Protect Your Windows Network I wrote some tools for the Windows Vista Security book that just came out. However, the Vista book does not come with a CD. Rather, Wiley has made the tools available for download . If you solemnly promise that you...
Unified Hardening Guidance for the U.S. Government
All U.S. Government computers are finally required to conform to one of two configurations. White House Memo M-07-11 , further clarified in M-07-18 directs all government agencies to use a single hardening guide. M-07-18 clarifies that it is to be the...
Show the Owner of a File
In my most recent article in TechNet Magazine I wrote: Unfortunately, icacls.exe can’t show you the owner of an object. There is no way to actually see, from the command line, who the owner of an object is. Furthermore, if you save the ACL for an object...
Access Control Lists in Windows Vista
TechNet Magazine just published the first of several articles with excerpts from the Windows Vista Security Book . " New ACLs Improve Security in Windows Vista " is what they called the first of two excerpts from the Access Control chapter....
64-bit Anti-Virus For Vista
One of the (few) security tools that does not come with Windows Vista is anti-virus. Tons of people have asked about which one to use, and which are available. The answer is: most are available for 32-bit Vista already. Malke, a Windows Shell MVP, put...
Security Vendors: Microsoft is making Vista Too Secure
McAfee today joined Symantec in complaining about Microsoft making Windows Vista too secure, making it difficult for them to rootkit the OS to do their security voodoo. The arguments are centered on two main complaints, which I will attempt to translate...
So, you want to BitLocker an existing computer?
The other day I decided, probably against better judgement, to turn on BitLocker on my laptop running Windows Vista RC1+. There were several concerns about doing that though: What if you do not have a TPM chip of any kind. In that case, your only option...