Monthly Archives: June 2008

Improvement in Incident Response: ICASI launched

At FIRST in Vancouver the formation of the Industry Consortium for Advancement of Security on the Internet (ICASI) was announced (I love abbreviations J). This consortium addresses in my opinion an important challenge of today’s incident response which is cross-vendor … Continue reading

Posted in Incidents, Incidents | Leave a comment

Hyper-V is {Here}

We just released Windows Server 2008 Hyper-V to manufacturing. You can find more information on our Virtualization Page Roger

Posted in Products | Leave a comment

Deploying Forefront Client Security at Microsoft

A question I often get is “How does Microsoft solve the problem x in their IT?” (e.g. How does Microsoft do Patch Management). These questions are usually directed towards MSIT (Microsoft IT as we call it) and not towards Microsoft … Continue reading

Posted in Products | Leave a comment

Links to Microsoft Security Pages

Our Chief Security Advisor in Italy spent quite some time to collect a list of web-pages and blogs with regards to Microsoft and Security. If you are looking for something, go there and find it Jhttp://blogs.technet.com/feliciano_intini/pages/microsoft-blogs-and-web-resources-about-security.aspx Roger

Posted in Products | Leave a comment

New Information on SQL Injection Attacks

I just wanted to make sure that you have seen the Advisory (Rise in SQL Injection Attacks Exploiting Unverified User Data Input) where we added some additional information. This is especially important as we did not “only” publish guidance but … Continue reading

Posted in Incidents, Incidents, Process | Leave a comment

Bitlocker™ completes FIPS 104-2 Certification

I am very proud for the product team to tell you that Windows Vista Bitlocker™ completes FIPS 140-2 certification. If you are interested, you find the according certificate here. Roger

Posted in Processes, Products | Leave a comment

Issue deploying updates with SCCM 2007

There seems to be some problems deploying the latest security updates with System Center Configuration Manager 2007 to SMS 2003 Agents. If you have any challenges with that or need more information, please see the just published advisory System Center … Continue reading

Posted in Incidents, Microsoft, Processes, Products | Leave a comment

Money talks in Security – Does it?

Often, when I talk to security people, they are telling me that if they would have more budget and money available, the problem would be much lower. Now, I have been in Qatar last week, one of the richest countries … Continue reading

Posted in Crime, Process | Leave a comment

Server Core in our Security Bulletins

A question that was often raised after the launch of Windows Server 2008 was about Server Core and our Security Bulletins: How do you know whether a Server Core installation needs updating as well? We just added a statement to … Continue reading

Posted in Processes, Products | Leave a comment

Are we talking about the right things?

I am in Qatar at the moment at the Doha Information Security Conference. They actually have a very interesting setup as they only have very short presentations (about 5-10 minutes) of approx. 2 people and from there on they are … Continue reading

Posted in Events/Trainings, Process | Leave a comment