Welcome to MSDN Blogs Sign in | Join | Help

Michael Howard's Web Log

A Simple Software Security Guy at Microsoft!

December 2004 - Posts

Windows XP Service Pack 2: The Inside Story
An excellent article on how Windows XP SP2 was designed and built. A great many of us spent over a year on this puppy! http://www.winsupersite.com/showcase/windowsxp_sp2_inside.asp Read More...
Shell Extension for DropMyRights
A reader (hofi) was kind enough to create a shell extension for the DropMyRights tool I wrote about in " Browsing the Web and Reading E-mail Safely as an Administrator ." Download HShellExtPack from http://www.freeweb.hu/hofi/Programming/Vcl/VclComponentsHu.php Read More...
"How can I Trust Firefox" blog by Torr
Peter Torr has joined our group, working with development teams to help them through the Security Development Lifecycle and Final Security Review processes. He just posted an interesting comment about downloading and running Firefox. http://blogs.msdn.com/ptorr/archive/2004/12/20/327511.asp Read More...
MSN Phishing and Scams site
Just gone live, you should point friends and family to this: http://safety.msn.com/phishing/ Read More...
Microsoft Acquires Anti-Spyware Leader GIANT Company
Hot from the newsroom: http://www.microsoft.com/presspass/press/2004/dec04/12-16GIANTPR.asp Read More...
Evils of strncat and strncpy - Answers
Ok, so I took a little longer than expected to post the answers, but here they are. BTW, many people worked them out :) // Example #1 (code prior to this verifies pszSrc is <= 50 chars) #define MAX (50) char *pszDest = malloc(sizeof(pszSrc)); strncpy(pszDest,pszSrc,MAX); Read More...
Windows Server 2003 SP1 Release Candidate Available
In case you hadn't heard, RC1 is avail for download from http://www.microsoft.com/windowsserver2003/downloads/servicepacks/sp1/default.mspx eWeek has a short write-up about some of the security changes we have made, http://www.eweek.com/article2/0,1759,1736680,00.as Read More...
Page view tracker