Sign in
Steve Riley on Security
Formerly of Microsoft's Trustworthy Computing Group.
Options
About
Email Blog Author
RSS for Posts
Atom
RSS for Comments
OK
Search Blogs
Advanced search options...
Search In:
Everything
Blogs
Forums
People
Groups
Places
Pages
Date range:
All Time
Last Year
Last 6 Months
Last 3 Months
Last Month
Last Week
Last Two Days
Search
Tags
access technologies
authentication
blogging
conferences and seminars
configuration
email
encryption
false claims
malware
my book
networking
protection
public policy
risk mitigation
security myths
security policies
security science
security theater
spam
TechEd
things that make me angry
things that make me laugh
things that make me worried
threats
Windows Vista
Archive
Archives
August 2009
(1)
May 2009
(1)
February 2009
(1)
January 2009
(5)
December 2008
(1)
November 2008
(1)
October 2008
(2)
September 2008
(6)
August 2008
(2)
June 2008
(2)
April 2008
(1)
February 2008
(7)
January 2008
(1)
November 2007
(1)
October 2007
(3)
September 2007
(5)
August 2007
(2)
July 2007
(4)
May 2007
(2)
April 2007
(1)
February 2007
(1)
January 2007
(3)
December 2006
(2)
November 2006
(3)
October 2006
(2)
September 2006
(6)
August 2006
(1)
July 2006
(3)
June 2006
(1)
May 2006
(2)
April 2006
(2)
March 2006
(5)
February 2006
(2)
January 2006
(3)
November 2005
(5)
September 2005
(4)
August 2005
(2)
July 2005
(5)
June 2005
(5)
April 2005
(3)
March 2005
(2)
February 2005
(2)
January 2005
(1)
TechNet Blogs
>
Steve Riley on Security
Posts
Subscribe via RSS
Sort by:
Most Recent
|
Most Views
|
Most Comments
Excerpt View
|
Full Post View
Steve Riley on Security
Blog relocated again
Posted
Wed, Aug 19 2009
by
TechNetArchive
0
Comments
Just a quick update, to make sure everyone knows. I've moved my blog from MSInfluentials to WordPress.com. Please update your aggregators/bookmarks/favorites to http://stvrly.wordpress.com . I've posted the reasoning for my move, as well as a description...
Steve Riley on Security
Good bye, and good luck
Posted
Wed, May 6 2009
by
TechNetArchive
131
Comments
Friends, as a part of Microsoft’s second round of restructuring, my position was eliminated yesterday and my employment with Microsoft has ended. While there were many rewards that came from my job, the most satisfying element was knowing that our time...
Steve Riley on Security
If you know the Conficker dude, we've got a prize for you
Posted
Fri, Feb 13 2009
by
TechNetArchive
5
Comments
Yesterday (12 February 2009) Microsoft announced a partnership with technology industry leaders and academia to implement a coordinated, global response to the Conficker (aka Downadup) worm. Together with security researchers, Internet Corporation for...
Steve Riley on Security
Today’s spam
Posted
Wed, Jan 21 2009
by
TechNetArchive
12
Comments
Here’s what’s in my junk mail folder today: What is up with all that? Apparently I sent a payment to myself, I initiated another payment to myself, I am a user of myself who’s received exclusive offers for January, and I received a payment from myself...
Steve Riley on Security
Attacks against integrity
Posted
Tue, Jan 20 2009
by
TechNetArchive
3
Comments
I’ve been mentioning this frequently during my talks in the last 12 months: that accidental or malicious data modification is yet something else we need to defend against. Richard Bejtlich wrote last year about attack progressions , and this year summarized...
Steve Riley on Security
I want a Model 22 HDD Hard Drive Disintegrator
Posted
Tue, Jan 20 2009
by
TechNetArchive
10
Comments
Here at Microsoft we have an active internal discussion group where most security-minded folk hang out. The topic of data destruction came up recently, it’s actually a lot more difficult than most people think. CIPHER /W and SDELETE do a reasonable job...
Steve Riley on Security
Questions about virtualization and security?
Posted
Fri, Jan 9 2009
by
TechNetArchive
4
Comments
Yesterday, Donnie Hamlett, a Microsoft core infrastructure optimization specialist, gave a webcast and played a video of my TechEd presentation on virtualization and security. Some of the viewers had questions, and I offered to Donnie that they could...
Steve Riley on Security
Poll: do you use scheduled scans for malware?
Posted
Mon, Jan 5 2009
by
TechNetArchive
18
Comments
An interesting comment recently appeared on my older post about whether or not to use antimalware software. Peter van Dam wondered whether scheduled scans are really necessary, given that anti-malware products scan files as they enter (and sometimes...
Steve Riley on Security
Updated Microsoft Security Assessment Tool
Posted
Mon, Dec 1 2008
by
TechNetArchive
6
Comments
Greetings. In case you haven’t already read about it, we recently updated the Microsoft Security Assessment Tool (MSAT). Version 4.0 hit the web on 31 October. It’s been four years since the initial release, and two years since the prior version. Between...
Steve Riley on Security
Reading list from “How IT will change in the next 10 years”
Posted
Mon, Nov 24 2008
by
TechNetArchive
4
Comments
At Windows Connections two weeks ago, during my keynote speech “How IT will change in the next 10 years and why you should care,” I mentioned several books worth reading. Many of you have asked for the list; here it is: The Cathedral and the Bazaar by...
Steve Riley on Security
Comments, administrivia, and the future of the “infosec professional”
Posted
Wed, Oct 15 2008
by
TechNetArchive
14
Comments
Back when the spam was spiraling out of control, I configured my blog to close comments after 90 days. I’ve removed the limitation now, for two reasons: the spam is under control, and I wanted to reply to a comment made to my post on IPsec/IPv6 direct...
Steve Riley on Security
Ethernet and WiFi and Bluetooth, oh my!
Posted
Wed, Oct 15 2008
by
TechNetArchive
19
Comments
Customers have long requested a way to configure a computer to automatically disable its wireless NIC when its Ethernet is in use. Many third-party utilities can do this for you, but neither XP nor Vista have a built-in way to accomplish this, nor will...
Steve Riley on Security
Passgen tool from my book
Posted
Mon, Sep 29 2008
by
TechNetArchive
14
Comments
Way back in 2005, Jesper Johannson and I wrote Protect Your Windows Network . It’s still available , and although its product set is now somewhat dated (Windows XP and Server 2003), much of the practical advice about security policies, social engineering...
Steve Riley on Security
Sao Paulo, here I come
Posted
Mon, Sep 29 2008
by
TechNetArchive
14
Comments
I have a new TechEd destination this year: Brazil. It’ll be my first time to speak at our event there; indeed, even my first time to travel to South America. I’m looking forward to it. The event runs during 14-16 October 2008 . I’m delivering the same...
Steve Riley on Security
Internet Explorer security levels compared
Posted
Tue, Sep 16 2008
by
TechNetArchive
9
Comments
A pretty good question came across the newsgroups the other day. Someone was asking what are the differences between IE's "medium" and "medium-high" security settings. I did some digging, and found only this on MSDN: About URL security...
Steve Riley on Security
The opt-out from hell
Posted
Tue, Sep 16 2008
by
TechNetArchive
8
Comments
One problem with making your email address available (which I will continue to do, don't worry) is that folks with something to sell assume you're interested in their stuff. To wit, let's consider an email I received today (copied, headers and all, after...
Steve Riley on Security
Blamestorming
Posted
Fri, Sep 12 2008
by
TechNetArchive
4
Comments
So, let's recap the sequence of events: The Sun-Sentinel newspaper in Fort Lauderdale accidentally republishes a six-year-old news story about the bankruptcy of UAL. It wasn't on the home page, but instead buried somewhere inside the web site. Google...
Steve Riley on Security
Who is "dodacrazy" and what is a "montize buddy"?
Posted
Thu, Sep 11 2008
by
TechNetArchive
4
Comments
Check this out: http://blogs.technet.com/steriley/archive/2008/06/25/directly-connect-to-your-corpnet-with-ipsec-and-ipv6.aspx#3122377 Hey Steve you and your montize buddy Scott will soon have your hands full after the federal officers come down on your...
Steve Riley on Security
TechEd 2009: Never too early to start planning
Posted
Mon, Aug 25 2008
by
TechNetArchive
14
Comments
What's on your mind? What do you want to learn more about? Tell me, tell me... Oh, and for 2009 I plan to stay at TechEd US for both weeks. I want to start spending more time with developers -- they need some security love too :)
Steve Riley on Security
[OT rant] Are there any home WiFi routers that DON'T SUCK?
Posted
Fri, Aug 22 2008
by
TechNetArchive
25
Comments
Warning: rant ahead, and names named. When I'm not traveling, I like to work from home some days rather than endure the trek from Seattle to Redmond (although it's much better now that our own employee transit service has expanded into my neighborhood...
Steve Riley on Security
Tweet!
Posted
Fri, Jun 27 2008
by
TechNetArchive
1
Comments
The other day an office mate asked, "Do you twitter?" Sorting through the various snarky remarks that immediately popped to mind, I replied that I didn't think anyone would find my routine bits all that interesting. He suggested otherwise: that...
Steve Riley on Security
Directly connect to your corpnet with IPsec and IPv6
Posted
Wed, Jun 25 2008
by
TechNetArchive
26
Comments
Contrary to popular belief, the rumors of my demise have been greatly exaggerated. Well, ok, no actual rumors, but hey, one can dream, huh? My spring calendar was full of events in Asia and Australia, then TechEd US seemed to suddenly appear out of nowhere...
Steve Riley on Security
Do you need RMS/IRM in Office for Macintosh?
Posted
Wed, Apr 23 2008
by
TechNetArchive
19
Comments
Please let me know if this is a feature you'd be interested in. We're looking to build the business case to develop it, and the best way to do that is for you, our customers, to let us know. Also, if any of you want to deploy RMS now but can't because...
Steve Riley on Security
Throw away your digital picture frames
Posted
Mon, Feb 18 2008
by
TechNetArchive
4
Comments
Surely time itself has warped and it's suddenly April 1st. Come on, if you read the following, wouldn't you first think it was a hoax, as did I? Virus from China, the gift that keeps on giving An insidious computer virus recently discovered on digital...
Steve Riley on Security
Supporting your family, friends, and neighbors
Posted
Wed, Feb 13 2008
by
TechNetArchive
5
Comments
By Steve Riley Senior Security Strategist Trustworthy Computing Group, Microsoft Corporation (originally published at http://www.microsoft.com/technet/community/columns/secmgmt/sm0208.mspx ) I’ve met thousands of IT pros during my years speaking at conferences...
Page 1 of 5 (114 items)
1
2
3
4
5