Consumerization of IT–How to address this
Bring Your Own Device or Consumerization of IT are fairly hot themes in a lot of customer organizations. When I talk to customers, there are typically different reactions, once we bring this up. Some tell us, that it is not part of their strategy; some tell us that they plan to do it but that they have a hard time figuring out, how to secure such an environment; very, very ...
10 Years of Trustworthy Computing at Microsoft
Before joining Microsoft a little bit more than 10 years ago, I ran a team at PricewarehoureCoopers on e-Business Risk Management – classical security consulting in the Internet bubble time. When I announced that I will leave PwC and join Microsoft, I got interesting reactions (and remember, this was 2001). Mainly they were along two lines: Oh, you are joining a desktop company? ...
10 Reasons to migrate off Windows XP
I would like you to sit back, close your eyes and think about the year 2001. Think about how you used technology back then, how you used the Internet. Now, let’s take it a little bit further back in history and think of the year 2000. Just after we realized that the Year-2000-Problem was handled very well by the industry. How you used technology, how you used the Internet, the ...
Office 365 Becomes First and Only Major Cloud Productivity Service to Comply With Leading EU and U.S. Standards for Data Protection and Security
A long title but this was the title of the official press statement yesterday. Compliance is always a key question in the public cloud space. Therefore it is very important for us that we now achieved three things: Office 365 is compliant with EU Model Clauses, Data Processing Agreements and ISO 27001 among other standards. Office 365 is the first and only major ...
By Roger Halbheer, on February 27th, 2009% During Conficker we realized that a lot of customers are on unsupported OSs. I would like to draw your attention to a few things:
There is a webpage called Microsoft Support Lifecycle where you find all the information on the lifecycle of our products. Let me just quote two things: Through the policy, Microsoft will . . . → Read More: Pre-warning: Windows Server 2003 SP1 Out of Support in April
By Roger Halbheer, on February 24th, 2009% I just want to make sure you have seen it:
There were some reports in the last day or two about targeted attacks on Excel. We are aware of these reports and are looking into this. In order to give you our assessment of the situation, we published Microsoft Security Advisory (968272) From what we . . . → Read More: Two new Security Advisories
By Roger Halbheer, on February 24th, 2009% A few days ago, we released the Security Compliance Management Toolkit. I think that this toolkit might definitely help you to secure your environment and monitor it against a security baseline
Security Compliance Management Toolkit Series
Roger
By Roger Halbheer, on February 20th, 2009% This is an interesting paper from Microsoft Research. Now, before you read it: This is research and be no means a commitement to develop it for IE 9.
The Multi-Principal OS Construction of the Gazelle Web Browser
Roger
By Roger Halbheer, on February 18th, 2009% Jeff Jones just started a blog series to show the impact of our Security Development Lifecycle on the updates to be deployed. It is a pretty interesting read:
Here is the February version: Feb09 Security Bulletin SDL Benefit Summary
Roger
By Roger Halbheer, on February 16th, 2009% I guess you know Get Safe Online in the meantime. They are publishing a lot of good and insightful information. Now, they collaborate with the Office of Fair Trading in the UK for a Scam Awareness Month.
Again, there is a log of excellent information on the web for you to look at:
Get . . . → Read More: Scam Awareness Month in the UK
By Roger Halbheer, on February 10th, 2009% Not directly security related: I am often asked about the interoperability between our products and third-party products. Additionally people claim that we do not allow others to use our technology – that we lock you in.
Just now I read the following news:
Google just announced Google Sync, which licenses our Active Sync technology. . . . → Read More: News from the Interop front
By Roger Halbheer, on February 7th, 2009% Yes, Conficker is far from being over. We still see a lot of infections. Therefore we decided to publish additional guidance for Conficker:
Microsoft Conficker guidance page for IT Professionals and those focused on security in the enterprise: http://technet.microsoft.com/en-us/security/dd452420.aspx
Microsoft Conficker guidance page for consumers and home users: http://www.microsoft.com/protect/computer/viruses/worms/conficker.mspx
Roger
By Roger Halbheer, on February 6th, 2009% Jon and Steven released another blog post on UAC and explained their decision how to change things:
They start with the risk of blogging:
When we started the “E7” blog we were both excited and also a bit uneasy. The excitement is obvious. The unease is because at some point we knew we would mess . . . → Read More: UAC in Windows 7: The "Final" Decision
By Roger Halbheer, on February 5th, 2009% I have to come back to the UAC problem again. I just read a good article from Larry Seltzer on eWeek.com:
Both Sides of the Win7 UAC Problem
I think it is one of the first one I read, which takes the emotions out of the discussion and tries to understand the real problem. He . . . → Read More: Both Sides of the Windows 7 UAC Problem
|
|
|