Crispin Cowan

Member since 4/18/2008 4:08:13 PM
Last visited 3/5/2009 2:03:21 AM
Timezone
The timezone the user resides within.
-8 GMT
Location Redmond WA
Occupation Program Manager
Interests computer security, science fiction, snowboarding
Birthday  
Website http://crispincowan.com/
Blog
Gallery

Post signature

Signature

About Crispin Cowan

"Reliable software does what it is supposed to. Secure software does what it is supposed to, and nothing else." -- Ivan Arce Thus software security is very simple: only use perfect software :-) There being a supply shortage of perfect software, to secure systems we must do something else to ensure that software does not mis-behave when fed "interesting" input by attackers. At extreme detail, we can specify exactly everything the program may do. This is called "the code" and we already know we can't get that right.. So we must abstract what is allowed and what is not into useful classifications. But if we get these classifications wrong, say "no" to access too often, or at the wrong times, security becomes painful. If we fix that by making security complicated, it is still painful. Which is why most users choose no security and hope for the best. Designing secure solutions that are effective AND easy to live with is what I do. I invented the StackGuard method of compiled buffer overflow protection, now used in both GCC and Microsoft Visual Studio. I designed the Immunix/Novell AppArmor application security system: standard access control security, with revolutionary ease of use. I now work for Microsoft, applying these same principles to the problem of enhancing Windows security.

Post statistics and rank

Total Posts 9 // Post Rank 0 //

Shared Favorites

Favorite Users

Username Total Posts Post Rank Actions
This user has no favorite users to share.

Favorite Posts

Subject Excerpt
This user has no favorite posts to share.

Favorite Sections

Name Description
This user has no favorite sections to share.


© 2009 Microsoft Corporation. All rights reserved. Terms of Use  |  Trademarks  |  Privacy Statement
Microsoft
Page view tracker