Browse by Tags

All Tags » What my wife knows » Things I Learned At Microsoft (RSS)

UAC - The Emperor's New Clothes

I heard a complaint the other day about UAC - User Account Control - that was new to me. Let's face it, as a Security MVP, I hear a lot of complaints about UAC - not least from my wife, who isn't happy with the idea that she can be logged on as...

Why you don't run as root

[... or administrator, or whatever] I like Roger Grimes, he's a nice guy, and he generally makes me think about what he has to say. That's a good thing, because otherwise he'd either be part of the same choir as me, or he'd be the sort...

How many people do you represent?

In my earlier discussion on why 100% utilisation is not maximum efficiency , I alluded to the fact that a rejected customer, or a customer with a bad experience, will tell other potential customers that you never get to see. This reminded me that there...

Couldn't have done that at Microsoft

Today, another reminder of things I couldn't have done at Microsoft. Last night, I rushed home from work in time to take my kid to his Webelos den meeting. There, we worked on his Pinewood Derby car. He's been sick most of last week and weekend, so he...

WIP: Principles of Secure Software Development

This is a work-in-progress, but I'd like your opinions on it: Principles of Secure Software Development You're not that good - someone will find a hole in your software. Find as many as you can, first. You're still not that good - you didn't find all...

Security Bulletins are easier to read in Japanese

It's "Patch Tuesday" again - and you're going to be spending a busy Valentine's day installing all of them. I'm not the first person to cover this - Steve Riley did it way back when, and Susan Bradley reminded us of it , but it's time to raise the point...

Developers are users, too.

Jesper and Steve like to talk about "users just want to see the naked dancing pigs ". What they mean is that when users have selected an action that they want to do, whether it's looking at a purported picture of a naked celebrity, or getting rich by...

I'm a developer - I don't do operations.

Okay, so there's a point that Larry has here, in referring to Dare's posts 1 and 2 - that operations and development are two separate skills. [ Joe refers to it , too] I've suggested for a long time that developers should spend some time on technical...

How hard do you want to make this?

So, I'm beta testing Outlook 2007, and it's got some really pretty "ribbons" that indicate that they've gone to great lengths to improve the user interface. Today, I'm creating a distribution list from a number of people that have emailed me. This should...