<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://blogs.msdn.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Security Dependencies</title><link>http://blogs.msdn.com/david_leblanc/archive/2007/07/24/security-dependencies.aspx</link><description>There's been an interesting little tempest in a teapot going on WRT IE and Firefox. I in general don't pay a whole lot of attention to the browser vuln du jour, but this one caught my eye - http://www.computerworld.com/action/article.do?command=viewArticleBasic&amp;amp;articleId=9027718&amp;amp;intsrc=news_ts_head</description><dc:language>en-US</dc:language><generator>CommunityServer 2.1 SP1 (Build: 61025.2)</generator><item><title>
			Larholm.com - Me, myself and I			 &amp;raquo; Handling URL protocol handlers		</title><link>http://blogs.msdn.com/david_leblanc/archive/2007/07/24/security-dependencies.aspx#4047659</link><pubDate>Wed, 25 Jul 2007 21:03:07 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:4047659</guid><dc:creator>
			Larholm.com - Me, myself and I			 » Handling URL protocol handlers		</dc:creator><description>&lt;p&gt;PingBack from &lt;a rel="nofollow" target="_new" href="http://larholm.com/2007/07/25/handling-url-protocol-handlers/"&gt;http://larholm.com/2007/07/25/handling-url-protocol-handlers/&lt;/a&gt;&lt;/p&gt;
</description></item><item><title>re: Security Dependencies</title><link>http://blogs.msdn.com/david_leblanc/archive/2007/07/24/security-dependencies.aspx#4049802</link><pubDate>Thu, 26 Jul 2007 01:13:09 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:4049802</guid><dc:creator>Alun Jones</dc:creator><description>&lt;P&gt;Will Window follow your example and blame this on Frank?&lt;/P&gt;
&lt;P&gt;[dcl] No telling - you'd have to ask her.&lt;/P&gt;</description></item><item><title>re: Security Dependencies</title><link>http://blogs.msdn.com/david_leblanc/archive/2007/07/24/security-dependencies.aspx#4070503</link><pubDate>Fri, 27 Jul 2007 00:05:29 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:4070503</guid><dc:creator>Philip Taron</dc:creator><description>&lt;P&gt;Dave,&lt;/P&gt;
&lt;P&gt;Could you talk about how threat modeling that takes into account dependencies should work if those dependencies are part of the same software project, but produced by another team?&lt;/P&gt;
&lt;P&gt;Philip&lt;/P&gt;
&lt;P&gt;[dcl] Sure - I'll post briefly on that in a moment.&lt;/P&gt;</description></item></channel></rss>