<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://blogs.msdn.com/utility/FeedStylesheets/atom.xsl" media="screen"?><feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en-US"><title type="html">Security Guidance for .NET Framework 2.0</title><subtitle type="html" /><id>http://blogs.msdn.com/b/securityguidance/atom.aspx</id><link rel="alternate" type="text/html" href="http://blogs.msdn.com/b/securityguidance/" /><link rel="self" type="application/atom+xml" href="http://blogs.msdn.com/b/securityguidance/atom.aspx" /><generator uri="http://telligent.com" version="5.6.50428.7875">Telligent Evolution Platform Developer Build (Build: 5.6.50428.7875)</generator><updated>2005-08-31T00:57:00Z</updated><entry><title>Available on MSDN</title><link rel="alternate" type="text/html" href="http://blogs.msdn.com/b/securityguidance/archive/2005/11/08/490590.aspx" /><id>http://blogs.msdn.com/b/securityguidance/archive/2005/11/08/490590.aspx</id><published>2005-11-09T02:44:00Z</published><updated>2005-11-09T02:44:00Z</updated><content type="html">&lt;H2&gt;&lt;FONT face=Arial size=2&gt;The following security guidance is now available on MSDN:&lt;/FONT&gt;&lt;/H2&gt;
&lt;H2&gt;&lt;FONT face=Arial size=2&gt;Guidelines:&lt;/FONT&gt;&lt;/H2&gt;&lt;FONT face=Arial size=2&gt;
&lt;UL&gt;
&lt;LI&gt;
&lt;H2&gt;&lt;FONT size=2&gt;&lt;A href="http://msdn.microsoft.com/library/en-us/dnpag2/html/PAGGuidelines0003.asp"&gt;Security Guidelines: .NET &lt;FONT style="BACKGROUND-COLOR: #ffffff"&gt;Framework&lt;/FONT&gt; 2.0&lt;/A&gt;&lt;/FONT&gt;&lt;/H2&gt;
&lt;LI&gt;
&lt;H2&gt;&lt;FONT size=2&gt;&lt;A href="http://msdn.microsoft.com/library/en-us/dnpag2/html/PAGGuidelines0002.asp"&gt;Security Guidelines: ADO.NET 2.0&lt;/A&gt;&lt;/FONT&gt;&lt;/H2&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;/FONT&gt;
&lt;H2&gt;&lt;FONT face=Arial size=2&gt;Checklists:&lt;/FONT&gt;&lt;/H2&gt;&lt;FONT face=Arial size=2&gt;
&lt;UL&gt;
&lt;LI&gt;
&lt;H2&gt;&lt;FONT size=2&gt;&lt;A href="http://msdn.microsoft.com/library/en-us/dnpag2/html/PAGCK0003.asp"&gt;Security Checklist: .NET Framework 2.0&lt;/A&gt;&lt;/FONT&gt;&lt;/H2&gt;
&lt;LI&gt;
&lt;H2&gt;&lt;FONT size=2&gt;&lt;A href="http://msdn.microsoft.com/library/en-us/dnpag2/html/PAGCK0002.asp"&gt;Security Checklist: ADO.NET 2.0&lt;/A&gt;&lt;/FONT&gt;&lt;/FONT&gt;&amp;nbsp;&lt;/H2&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.msdn.com/aggbug.aspx?PostID=490590" width="1" height="1"&gt;</content><author><name>SecurityGuidanceTeam</name><uri>http://blogs.msdn.com/SecurityGuidanceTeam/ProfileUrlRedirect.ashx</uri></author></entry><entry><title>Security Engineering Explained and Security Deployment Review for ASP.NET 2.0 are now available on MSDN</title><link rel="alternate" type="text/html" href="http://blogs.msdn.com/b/securityguidance/archive/2005/10/18/482439.aspx" /><id>http://blogs.msdn.com/b/securityguidance/archive/2005/10/18/482439.aspx</id><published>2005-10-19T01:51:00Z</published><updated>2005-10-19T01:51:00Z</updated><content type="html">&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Arial"&gt;We just released &lt;A href="http://msdn.microsoft.com/library/en-us/dnpag2/html/SecEngExplained.asp"&gt;patterns &amp;amp; practices Security Engineering Explained &lt;/A&gt;and &lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Arial; mso-fareast-font-family: 'Times New Roman'; mso-ansi-language: EN-US; mso-fareast-language: EN-US; mso-bidi-language: AR-SA"&gt;&lt;A href="http://msdn.microsoft.com/library/en-us/dnpag2/html/PAGHT000028.asp"&gt;How To: Perform a Security Deployment Review for ASP.NET 2.0&lt;/A&gt;&lt;U&gt;&amp;nbsp;&lt;/U&gt;&lt;/SPAN&gt;&amp;nbsp;on MSDN.&lt;?xml:namespace prefix = o ns = "urn:schemas-microsoft-com:office:office" /&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Arial"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Arial"&gt;The Security Engineering Explained PDF builds on the guidance from &lt;A href="http://msdn.microsoft.com/library/en-us/dnnetsec/html/ThreatCounter.asp"&gt;Improving Web Application Security: Threats and Countermeasures&lt;/A&gt;. &lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Arial"&gt;The PDF contains the following chapters:&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 8pt; FONT-FAMILY: Verdana"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;
&lt;DIV class=MsoNormal style="MARGIN: 0in 0in 0pt; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Arial"&gt;Introduction &lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;LI&gt;
&lt;DIV class=MsoNormal style="MARGIN: 0in 0in 0pt; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Arial"&gt;Chapter 1, Security Engineering Approach &lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;LI&gt;
&lt;DIV class=MsoNormal style="MARGIN: 0in 0in 0pt; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Arial"&gt;Chapter 2, Security Objectives &lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;LI&gt;
&lt;DIV class=MsoNormal style="MARGIN: 0in 0in 0pt; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Arial"&gt;Chapter 3, Security Design Guidelines &lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;LI&gt;
&lt;DIV class=MsoNormal style="MARGIN: 0in 0in 0pt; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Arial"&gt;Chapter 4, Threat Modeling &lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;LI&gt;
&lt;DIV class=MsoNormal style="MARGIN: 0in 0in 0pt; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Arial"&gt;Chapter 5, Security Architecture and Design Review &lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;LI&gt;
&lt;DIV class=MsoNormal style="MARGIN: 0in 0in 0pt; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Arial"&gt;Chapter 6, Security Code Review &lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;LI&gt;
&lt;DIV class=MsoNormal style="MARGIN: 0in 0in 0pt; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Arial"&gt;Chapter 7, Security Deployment Review&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;/LI&gt;&lt;/UL&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 0.7pt"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: Arial"&gt;The &lt;A href="http://msdn.microsoft.com/library/en-us/dnpag2/html/PAGHT000028.asp"&gt;How To: Perform a Security Deployment Review for ASP.NET 2.0&lt;/A&gt; shows you how to perform a security deployment review for an ASP.NET 2.0 application and how to identify potential security vulnerabilities introduced by inappropriate configuration settings. &lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.msdn.com/aggbug.aspx?PostID=482439" width="1" height="1"&gt;</content><author><name>SecurityGuidanceTeam</name><uri>http://blogs.msdn.com/SecurityGuidanceTeam/ProfileUrlRedirect.ashx</uri></author></entry><entry><title>Released How To: Perform a Security Code Review for Managed Code (.NET Framework 2.0)</title><link rel="alternate" type="text/html" href="http://blogs.msdn.com/b/securityguidance/archive/2005/10/13/480410.aspx" /><id>http://blogs.msdn.com/b/securityguidance/archive/2005/10/13/480410.aspx</id><published>2005-10-13T06:55:00Z</published><updated>2005-10-13T06:55:00Z</updated><content type="html">&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: blue; FONT-FAMILY: Arial"&gt;&lt;FONT color=#000000&gt;We released an updated version of our Security Code Review today called&lt;/FONT&gt; &lt;A href="http://msdn.microsoft.com/library/en-us/dnpag2/html/PAGHT000027.asp"&gt;&lt;STRONG&gt;&lt;FONT color=#000080&gt;&lt;FONT style="BACKGROUND-COLOR: #ffffff"&gt;How To: Perform a Security Code Review for Managed Code (.NET Framework 2.0&lt;/FONT&gt;)&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/A&gt;&lt;STRONG&gt;&lt;FONT color=#000080&gt;.&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: blue; FONT-FAMILY: 'Comic Sans MS'; mso-bidi-font-family: Arial"&gt;&lt;?xml:namespace prefix = o ns = "urn:schemas-microsoft-com:office:office" /&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; mso-layout-grid-align: none"&gt;&lt;FONT color=#000000&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: blue; FONT-FAMILY: Arial"&gt;&lt;FONT color=#000000&gt;This improves our original &lt;B&gt;&lt;A href="http://msdn.microsoft.com/library/en-us/dnnetsec/html/THCMCh21.asp"&gt;&lt;FONT color=#000080&gt;security code review for .NET Framework 1.1&lt;/FONT&gt;&lt;/A&gt;&lt;/B&gt; in Threats and &lt;/FONT&gt;&lt;FONT color=#000000&gt;Countermeasures&lt;/FONT&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: Arial"&gt;&lt;SPAN style="COLOR: blue"&gt;&lt;FONT color=#000000&gt;. The new version outlines the code review process which uses a question driven approach by technology&lt;/FONT&gt;.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: blue; FONT-FAMILY: Arial"&gt;&lt;o:p&gt;&lt;FONT color=#000000&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: blue; FONT-FAMILY: Arial"&gt;&lt;FONT color=#000000&gt;Use the companion question lists to determine if your application is susceptible to the listed security issues. The companion Question Lists are:&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: blue; FONT-FAMILY: Arial"&gt;&lt;/SPAN&gt;&amp;nbsp;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;
&lt;DIV class=MsoNormal style="MARGIN: 0in 0in 0pt; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: blue; FONT-FAMILY: Arial"&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: blue; FONT-FAMILY: Arial"&gt;&lt;A href="http://msdn.microsoft.com/library/en-us/dnpag2/html/PAGQuestionList0001.asp"&gt;&lt;STRONG&gt;&lt;FONT color=#000080&gt;Security Question List: ASP.NET 2.0&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: blue; FONT-FAMILY: Arial"&gt;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;/LI&gt;
&lt;LI&gt;
&lt;DIV class=MsoNormal style="MARGIN: 0in 0in 0pt; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: blue; FONT-FAMILY: Arial"&gt;&lt;A href="http://msdn.microsoft.com/library/en-us/dnpag2/html/PAGQuestionList0002.asp"&gt;&lt;STRONG&gt;&lt;FONT color=#000080&gt;Security Question List: Managed Code (.NET Framework 2.0)&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.msdn.com/aggbug.aspx?PostID=480410" width="1" height="1"&gt;</content><author><name>SecurityGuidanceTeam</name><uri>http://blogs.msdn.com/SecurityGuidanceTeam/ProfileUrlRedirect.ashx</uri></author></entry><entry><title>Web Cast on Security Engineering by patterns &amp; practices Team</title><link rel="alternate" type="text/html" href="http://blogs.msdn.com/b/securityguidance/archive/2005/10/07/478030.aspx" /><id>http://blogs.msdn.com/b/securityguidance/archive/2005/10/07/478030.aspx</id><published>2005-10-07T02:09:00Z</published><updated>2005-10-07T02:09:00Z</updated><content type="html">&lt;P&gt;Alex Mackman, core team member, delivers &lt;A href="http://msevents.microsoft.com/CUI/EventDetail.aspx?EventID=1032280110&amp;amp;Culture=en-US"&gt;Security Engineering Web Cast&lt;/A&gt;. &lt;/P&gt;
&lt;P&gt;In this webcast, we introduce you to the Microsoft patterns &amp;amp; practices approach to security that spans the life cycle of your application. These security measures include threat modeling, architecture, and design reviews for security, code reviews, and deployment reviews. Join us as we highlight the existing and emerging security guidance available to developers. &lt;/P&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.msdn.com/aggbug.aspx?PostID=478030" width="1" height="1"&gt;</content><author><name>SecurityGuidanceTeam</name><uri>http://blogs.msdn.com/SecurityGuidanceTeam/ProfileUrlRedirect.ashx</uri></author></entry><entry><title>Available on MSDN</title><link rel="alternate" type="text/html" href="http://blogs.msdn.com/b/securityguidance/archive/2005/08/31/458217.aspx" /><id>http://blogs.msdn.com/b/securityguidance/archive/2005/08/31/458217.aspx</id><published>2005-08-31T03:06:00Z</published><updated>2005-08-31T03:06:00Z</updated><content type="html">&lt;P&gt;The following are some links to available patterns &amp;amp; practices Security Guidance on MSDN.&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Short Cut URLs&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL dir=ltr style="MARGIN-RIGHT: 0px"&gt;
&lt;LI&gt;/ThreatModeling 
&lt;LI&gt;/SecurityGuidance 
&lt;LI&gt;/SecurityEngineering&lt;/LI&gt;&lt;/UL&gt;
&lt;P&gt;To use, append to the end &lt;A href="http://msdn.com"&gt;http://msdn.com&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Indexes&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Security Guidance Index: &lt;A href="http://msdn.microsoft.com/SecurityGuidance"&gt;http://msdn.microsoft.com/SecurityGuidance&lt;/A&gt;&amp;nbsp; 
&lt;LI&gt;Security Engineering Index: &lt;A href="http://msdn.microsoft.com/SecurityEngineering"&gt;http://msdn.microsoft.com/SecurityEngineering&lt;/A&gt;&amp;nbsp; 
&lt;LI&gt;Security How To Index: &lt;A href="http://msdn.microsoft.com/library/en-us/dnpag2/html/SecurityHowTosIndex.asp"&gt;http://msdn.microsoft.com/library/en-us/dnpag2/html/SecurityHowTosIndex.asp&lt;/A&gt;&amp;nbsp; 
&lt;LI&gt;Threat Modeling: &lt;A href="http://msdn.microsoft.com/ThreatModeling"&gt;http://msdn.microsoft.com/ThreatModeling&lt;/A&gt;&lt;/LI&gt;&lt;/UL&gt;
&lt;P&gt;&lt;STRONG&gt;Views&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Security Guidance for .NET Framework 2.0: &lt;A href="http://msdn.microsoft.com/library/en-us/dnpag2/html/AppSecGuidanceForFrameworkV2.asp?frame=true"&gt;http://msdn.microsoft.com/library/en-us/dnpag2/html/AppSecGuidanceForFrameworkV2.asp?frame=true&lt;/A&gt;&amp;nbsp; 
&lt;LI&gt;ASP.NET 1.1 Security Guidance Index: &lt;A href="http://msdn.microsoft.com/library/en-us/dnpag2/html/ASPNET11SecurityGuidanceIndex.asp?frame=true"&gt;http://msdn.microsoft.com/library/en-us/dnpag2/html/ASPNET11SecurityGuidanceIndex.asp?frame=true&lt;/A&gt;&amp;nbsp; 
&lt;LI&gt;ASP.NET 2.0 Security Guidance Index: &lt;A href="http://msdn.microsoft.com/library/en-us/dnpag2/html/ASPNET2SecurityGuidanceIndex.asp?frame=true"&gt;http://msdn.microsoft.com/library/en-us/dnpag2/html/ASPNET2SecurityGuidanceIndex.asp?frame=true&lt;/A&gt;&lt;/LI&gt;&lt;/UL&gt;
&lt;P&gt;&lt;BR&gt;&lt;STRONG&gt;ASP.NET 2.0&lt;/STRONG&gt;&lt;/P&gt;&lt;STRONG&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;/STRONG&gt;ASP.NET 2.0 Security Guidance Index:&amp;nbsp; &lt;A href="http://msdn.microsoft.com/library/en-us/dnpag2/html/ASPNET2SecurityGuidanceIndex.asp?frame=true"&gt;http://msdn.microsoft.com/library/en-us/dnpag2/html/ASPNET2SecurityGuidanceIndex.asp?frame=true&lt;/A&gt;&amp;nbsp; 
&lt;LI&gt;ASP.NET 2.0 Security Guidelines: &lt;A href="http://msdn.microsoft.com/library/en-us/dnpag2/html/PAGGuidelines0001.asp?frame=true"&gt;http://msdn.microsoft.com/library/en-us/dnpag2/html/PAGGuidelines0001.asp?frame=true&lt;/A&gt;&amp;nbsp; 
&lt;LI&gt;ASP.NET 2.0 Security Checklist: &lt;A href="http://msdn.microsoft.com/library/en-us/dnpag2/html/PAGCK0001.asp?frame=true"&gt;http://msdn.microsoft.com/library/en-us/dnpag2/html/PAGCK0001.asp?frame=true&lt;/A&gt;&amp;nbsp; 
&lt;LI&gt;ASP.NET 2.0 Security Practices: &lt;A href="http://msdn.microsoft.com/library/en-us/dnpag2/html/PAGPractices0001.asp?frame=true"&gt;http://msdn.microsoft.com/library/en-us/dnpag2/html/PAGPractices0001.asp?frame=true&lt;/A&gt;&amp;nbsp; 
&lt;LI&gt;ASP.NET 2.0 Security How Tos: &lt;A href="http://msdn.microsoft.com/library/en-us/dnpag2/html/SecurityHowTosIndex.asp?frame=true"&gt;http://msdn.microsoft.com/library/en-us/dnpag2/html/SecurityHowTosIndex.asp?frame=true&lt;/A&gt;&lt;/LI&gt;&lt;/UL&gt;
&lt;P&gt;&lt;STRONG&gt;Security Engineering&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Security Engineering Index: &lt;A href="http://msdn.microsoft.com/SecurityEngineering"&gt;http://msdn.microsoft.com/SecurityEngineering&lt;/A&gt;&amp;nbsp; 
&lt;LI&gt;Web Application Security Engineering Index: &lt;A href="http://msdn.microsoft.com/library/en-us/dnpag2/html/WebAppSecurityEngIndex.asp?frame=true"&gt;http://msdn.microsoft.com/library/en-us/dnpag2/html/WebAppSecurityEngIndex.asp?frame=true&lt;/A&gt;&amp;nbsp; 
&lt;LI&gt;Security Architecture and Design Review Index: &lt;A href="http://msdn.microsoft.com/library/en-us/dnpag2/html/SecurityArchAndDesignReviewIndex.asp?frame=true"&gt;http://msdn.microsoft.com/library/en-us/dnpag2/html/SecurityArchAndDesignReviewIndex.asp?frame=true&lt;/A&gt;&amp;nbsp; 
&lt;LI&gt;Security Deployment Review Index:&amp;nbsp; &lt;A href="http://msdn.microsoft.com/library/en-us/dnpag2/html/SecurityDeploymentReviewIndex.asp?frame=true"&gt;http://msdn.microsoft.com/library/en-us/dnpag2/html/SecurityDeploymentReviewIndex.asp?frame=true&lt;/A&gt;&amp;nbsp; 
&lt;LI&gt;Threat Modeling Web Applications: &lt;A href="http://msdn.microsoft.com/library/en-us/dnpag2/html/TMWA.asp?frame=true"&gt;http://msdn.microsoft.com/library/en-us/dnpag2/html/TMWA.asp?frame=true&lt;/A&gt;&lt;BR&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.msdn.com/aggbug.aspx?PostID=458217" width="1" height="1"&gt;</content><author><name>SecurityGuidanceTeam</name><uri>http://blogs.msdn.com/SecurityGuidanceTeam/ProfileUrlRedirect.ashx</uri></author></entry><entry><title>About the Security Guidance for .NET Framework 2.0 Project</title><link rel="alternate" type="text/html" href="http://blogs.msdn.com/b/securityguidance/archive/2005/08/31/458212.aspx" /><id>http://blogs.msdn.com/b/securityguidance/archive/2005/08/31/458212.aspx</id><published>2005-08-31T02:57:00Z</published><updated>2005-08-31T02:57:00Z</updated><content type="html">&lt;P&gt;The patterns &amp;amp; practices team is building application security guidance and security engineering guidance for .NET Framework 2.0 (Whidbey).&amp;nbsp; The breakdown is as follows:&lt;/P&gt;
&lt;LI&gt;&lt;B&gt;Security Engineering&lt;/B&gt; Help practitioners integrate security into their life cycle. 
&lt;LI&gt;&lt;B&gt;Application Building&lt;/B&gt;. Help architects/developer leads design secure applications. Help developers write secure managed code 
&lt;LI&gt;&lt;STRONG&gt;Technical Guidance.&lt;/STRONG&gt; Provide security guidance for applications built with Whidbey. 
&lt;LI&gt;&lt;STRONG&gt;Tools Integration&lt;/STRONG&gt;. Improve tools/platform integration of the guidance. 
&lt;P&gt;Members from this team previously brought you Building Secure ASP.NET Applications and Improving Web Application Security (See &lt;A href="http://msdn.microsoft.com/SecNet"&gt;http://msdn.microsoft.com/SecNet&lt;/A&gt;)&lt;/P&gt;&lt;/LI&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.msdn.com/aggbug.aspx?PostID=458212" width="1" height="1"&gt;</content><author><name>SecurityGuidanceTeam</name><uri>http://blogs.msdn.com/SecurityGuidanceTeam/ProfileUrlRedirect.ashx</uri></author></entry></feed>