It you write code then you need to understand how to write secure code. If you want to understand how to write code that is secure by design then you need to seek the help of people who "have been there". Microsoft has helped thousands of people write applications that do not leak information...
Sorry to sound so vague, but I have to start by saying that Windows Server 2008 is a server platform, not a cure for cancer, so lets put it in perspective and set our expectations high, but not stupidly high expecting it to be revolution. Server 2008 is a quality evolution of Windows Server 2003 and...
Posted to
David Overton's Blog
by
David Overton
on Fri, Dec 14 2007
Filed under: Support and Tools, Virtualisation, Developer, Security, Documentation, Internet and Web, Windows Server 2008, IIS
I'm sure you have heard that the Office 2007 Service Pack is here. Darren Strange has documented what is in it and how to get it at Office 2007 sp1 ready for download today and OfficeRocker! : More detail about sp1 . In answer to Susanne's post at here , hopefully this post has some more info...
Posted to
David Overton's Blog
by
David Overton
on Thu, Dec 13 2007
Filed under: Office System, Support and Tools, Windows SharePoint Services, Developer, Security, VoIP, Office 2007, Documentation, Excel, Outlook, PowerPoint, Service Pack, SharePoint, If you only read one post today, ISV
Now this sounds familiar - compromise the dev tools and they compromise all products produced with them. Enterprises using open source software to engineer custom applications could be vulnerable to a newly discovered class of hack attack, a security firm claimed today. Fortify Software 's Security...
Building Secure ASP.NET Applications: Data Access Security http://go.microsoft.com/?linkid=7243611 This MSDN article presents recommendations and guidance that will help you develop a secure data access strategy. Topics covered include using Windows authentication from ASP.NET to the database, securing...
I got this e-mail today from the UK SharePoint User Group. They have two meetings coming up, one in Reading and one in Newcastle. Since SBS includes WSS and you can easily load WSS v3 onto it too, here are the details: Newcastle - 10th September MOSS MVP and general all round nice guy Spencer Harbar...
Posted to
David Overton's Blog
by
David Overton
on Wed, Sep 5 2007
Filed under: SBS 2003, Office System, Windows SharePoint Services, Developer, Security, Windows Server 2003, Event, Office 2007, SBS 2003 R2, Tips, SharePoint
A new blog has opened at Microsoft called "hackers @ microsoft". As many people know Microsoft is very strongly involved in the security arena. Part of this is having people who have hacked or now hack against our products to understand how to make them more secure. This group of people know...