<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://blogs.technet.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>MSRC Ecosystem Strategy Team : MMPC</title><link>http://blogs.technet.com/ecostrat/archive/tags/MMPC/default.aspx</link><description>Tags: MMPC</description><dc:language>en-US</dc:language><generator>CommunityServer 2.1 SP1 (Build: 61025.2)</generator><item><title>心の会合: The Gathering</title><link>http://blogs.technet.com/ecostrat/archive/2009/07/17/the-gathering.aspx</link><pubDate>Fri, 17 Jul 2009 15:00:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3265785</guid><dc:creator>msrcecostrat</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/ecostrat/comments/3265785.aspx</comments><wfw:commentRss>http://blogs.technet.com/ecostrat/commentrss.aspx?PostID=3265785</wfw:commentRss><description>&lt;P&gt;&lt;div class="author"&gt;
&lt;img src="http://blogs.technet.com/photos/msrcecostrat/images/3148863/original.aspx" /&gt; 
&lt;b&gt;Handle: &lt;/b&gt;&lt;br /&gt;Cap'n Steve&lt;br /&gt;&lt;br /&gt;
&lt;b&gt;IRL: &lt;/b&gt;&lt;br /&gt;Steve Adegbite&lt;br /&gt;&lt;br /&gt;
&lt;b&gt;Rank: &lt;/b&gt;&lt;br /&gt;Senior Security Program Manager Lead&lt;br /&gt;&lt;br /&gt;
&lt;b&gt;Likes: &lt;/b&gt;&lt;br /&gt;Reverse Engineering an obscene amount of code and ripping it up on a snowboard&lt;br /&gt;&lt;br /&gt;
&lt;b&gt;Dislikes: &lt;/b&gt;&lt;br /&gt;Not much but if you hear me growl…run&lt;br /&gt;&lt;br /&gt;
&lt;/div&gt;&lt;/P&gt;
&lt;DIV style="PADDING-BOTTOM: 0px; MARGIN: 0px; PADDING-LEFT: 0px; PADDING-RIGHT: 0px; DISPLAY: inline; FLOAT: none; PADDING-TOP: 0px" id=scid:8747F07C-CDE8-481f-B0DF-C6CFD074BF67:8a1c2a51-bbe5-46d3-887a-8caf76dc5f25 class=wlWriterEditableSmartContent&gt;&lt;A title="" href="http://blogs.technet.com/blogfiles/ecostrat/WindowsLiveWriter/TheGathering_ADCF/Kyoto%20FIRST-8x6.png" rel=thumbnail mce_href="http://blogs.technet.com/blogfiles/ecostrat/WindowsLiveWriter/TheGathering_ADCF/Kyoto%20FIRST-8x6.png"&gt;&lt;IMG border=0 src="http://blogs.technet.com/blogfiles/ecostrat/WindowsLiveWriter/TheGathering_ADCF/Kyoto%20FIRST_8.png" width=420 height=203 mce_src="http://blogs.technet.com/blogfiles/ecostrat/WindowsLiveWriter/TheGathering_ADCF/Kyoto%20FIRST_8.png"&gt;&lt;/A&gt;&lt;/DIV&gt;
&lt;P&gt;Konnichiwa!&lt;/P&gt;
&lt;P&gt;I guess you are wondering why I said hello in Japanese. I have just recently returned from attending the 21&lt;SUP&gt;st&lt;/SUP&gt; Forum of Incident Handling and Security Teams (&lt;A href="http://conference.first.org/" mce_href="http://conference.first.org/"&gt;FIRST&lt;/A&gt;) annual conference hosted in the awesome city of Kyoto in Japan. The city of Kyoto is beautiful. I was amazed at all the interesting palaces and temples located right in the middle of a modern city. It was truly awesome. What was even more awesome was the 21&lt;SUP&gt;st&lt;/SUP&gt; FIRST Annual Conference. You have heard us here at Microsoft talk a lot lately about community-based defense initiatives. These initiatives drive the security ecosystem to work in a coordinated fashion to address security issues. This works best by creating a community that is built on trust and common goals. The common goal here is to build coordinated defense from attacks. FIRST is one such trusted, security-focused community. This is one reason why Microsoft supports their efforts. As a community of incident and security response teams, FIRST provides a trusted network to share information and provide coordination efforts that is all member-driven. &lt;/P&gt;
&lt;P&gt;Most members work for larger companies but their efforts in the FIRST organization are at times above and beyond the duties of their jobs. FIRST relies on its member community to do a lot of work since it is a not-for-profit organization. The conferences are no different. This year the Japanese local teams of FIRST had the task of assisting the conference organizers set things up. Let me say they did an excellent job. It was surreal from the banquet to the mixer session; it was, in a word, “exquisite.” I personally loved the entertainment by a troupe of local taiko drummers. Check them out &lt;A href="http://www.bati-holic.jp/english/index.htm" mce_href="http://www.bati-holic.jp/english/index.htm"&gt;here&lt;/A&gt;. &lt;/P&gt;
&lt;DIV style="PADDING-BOTTOM: 0px; MARGIN: 0px; PADDING-LEFT: 0px; PADDING-RIGHT: 0px; DISPLAY: inline; FLOAT: right; PADDING-TOP: 0px" id=scid:8747F07C-CDE8-481f-B0DF-C6CFD074BF67:076624f7-5c1b-428d-912a-67a741e1f456 class=wlWriterEditableSmartContent&gt;&lt;A title="Clockwise from right: Peter Allor, Eyal Mador, Steve Adegbite, Ofer Mador" href="http://blogs.technet.com/blogfiles/ecostrat/WindowsLiveWriter/TheGathering_ADCF/FIRST-8x6.png" rel=thumbnail mce_href="http://blogs.technet.com/blogfiles/ecostrat/WindowsLiveWriter/TheGathering_ADCF/FIRST-8x6.png"&gt;&lt;IMG border=0 src="http://blogs.technet.com/blogfiles/ecostrat/WindowsLiveWriter/TheGathering_ADCF/FIRST_6.png" width=420 height=339 mce_src="http://blogs.technet.com/blogfiles/ecostrat/WindowsLiveWriter/TheGathering_ADCF/FIRST_6.png"&gt;&lt;/A&gt;&lt;/DIV&gt;
&lt;P&gt;It wasn’t all fun and games, though some of it was. Check out the picture above. As you can see, we got the rare chance to interact with the potential future security community thanks to Ziv Mador, a Microsoft security professional from the Microsoft Malware Protection Center (&lt;A href="http://blogs.technet.com/mmpc/" mce_href="http://blogs.technet.com/mmpc/"&gt;MMPC&lt;/A&gt;) group, who brought his family along to the conference. Thanks to Eyal and Ofer Mador who provided us a wonderful chance to show them how cool security professionals can be. &lt;/P&gt;
&lt;P&gt;Back to business. As a member of the Steering Committee (SC), we meet year round. However, we usually conduct most annual business at the conference. That business can range from giving status updates on projects to providing the organization’s financial numbers. We also hold elections for the committee when an SC member’s term is up. This year, we elected two new members to the SC, joining the three current members of the committee. &lt;/P&gt;
&lt;P&gt;Speaking of elections, I am glad that Microsoft views our participation in FIRST as a key thing. This is extremely good, as it seems I will be spending a fair bit more time working on the FIRST Steering Committee and Board of Directors. At this annual general meeting (AGM), I was elected to be the Chairman of the Steering Committee and President of the Board of Directors for FIRST. I look forward to stepping into these roles to help steer the organization toward its goals. &lt;/P&gt;
&lt;P&gt;The conference tracks presented were great and focused on relevant problems faced by incident handling teams, from network monitoring to malware analysis.&lt;/P&gt;
&lt;P&gt;We also conducted meetings of special interest groups (SIG) to cover in-depth problems and issues faced by members in the same interest and focus areas. These sessions are really great because you get to meet like-minded peers who are facing the same problems you face. The Law Enforcement SIG and Network Monitoring SIG were well attended this year.&lt;/P&gt;
&lt;P&gt;You have heard &lt;A href="http://blogs.technet.com/ecostrat/archive/2009/02/03/constants-and-change.aspx" mce_href="http://blogs.technet.com/ecostrat/archive/2009/02/03/constants-and-change.aspx"&gt;Andrew Cushman talk about “Hallway Tracks”&lt;/A&gt; as a way to label all connections and conversations taking place outside of the presented tracks. The hallway tracks at the conference were golden. The amount of focused security discussion I had out in the hallway will have me set for a month with action items. &lt;/P&gt;
&lt;P&gt;Well, that’s it for now. But before I go I wanted to take the time to introduce a new member to the EcoStrat Team. I want to welcome Karl Hanmore to the team. He comes to us from Auscert with a strong CERT background. He will be with us in Vegas at Black Hat… so see ya there!&lt;/P&gt;
&lt;P&gt;-Steve&lt;/P&gt;
&lt;P&gt;*Postings are provided "AS IS" with no warranties, and confers no rights.*&lt;/P&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3265785" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/ecostrat/archive/tags/Community-based+Defense/default.aspx">Community-based Defense</category><category domain="http://blogs.technet.com/ecostrat/archive/tags/Security+Conference+Engagement/default.aspx">Security Conference Engagement</category><category domain="http://blogs.technet.com/ecostrat/archive/tags/Security+Ecosystem/default.aspx">Security Ecosystem</category><category domain="http://blogs.technet.com/ecostrat/archive/tags/MMPC/default.aspx">MMPC</category><category domain="http://blogs.technet.com/ecostrat/archive/tags/FIRST/default.aspx">FIRST</category><category domain="http://blogs.technet.com/ecostrat/archive/tags/Watering+Hole/default.aspx">Watering Hole</category><category domain="http://blogs.technet.com/ecostrat/archive/tags/Hallway+Tracks/default.aspx">Hallway Tracks</category><category domain="http://blogs.technet.com/ecostrat/archive/tags/Attack/default.aspx">Attack</category><category domain="http://blogs.technet.com/ecostrat/archive/tags/MSRC+Ecosystem+Strategy/default.aspx">MSRC Ecosystem Strategy</category></item><item><title>Chills and Thrills at FIRST</title><link>http://blogs.technet.com/ecostrat/archive/2009/02/11/chills-and-thrills-at-first.aspx</link><pubDate>Wed, 11 Feb 2009 09:00:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3200928</guid><dc:creator>msrcecostrat</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/ecostrat/comments/3200928.aspx</comments><wfw:commentRss>http://blogs.technet.com/ecostrat/commentrss.aspx?PostID=3200928</wfw:commentRss><description>
&lt;p&gt;&lt;b&gt;Sveika!&lt;/b&gt; Hey Steve here, been a while since I posted on the EcoStrat blog. With all the security events that happened during the latter half of 2008, I have been very focused on working with the security update releases and Microsoft Active Protections Program (&lt;a href="http://www.microsoft.com/security/msrc/mapp/overview.mspx" mce_href="http://www.microsoft.com/security/msrc/mapp/overview.mspx"&gt;MAPP&lt;/a&gt;).&lt;/p&gt;

&lt;div class="author"&gt;
&lt;img src="http://blogs.technet.com/photos/msrcecostrat/images/3148863/original.aspx" /&gt; 
&lt;b&gt;Handle: &lt;/b&gt;&lt;br /&gt;Cap'n Steve&lt;br /&gt;&lt;br /&gt;
&lt;b&gt;IRL: &lt;/b&gt;&lt;br /&gt;Steve Adegbite&lt;br /&gt;&lt;br /&gt;
&lt;b&gt;Rank: &lt;/b&gt;&lt;br /&gt;Senior Security Program Manager Lead&lt;br /&gt;&lt;br /&gt;
&lt;b&gt;Likes: &lt;/b&gt;&lt;br /&gt;Reverse Engineering an obscene amount of code and ripping it up on a snowboard&lt;br /&gt;&lt;br /&gt;
&lt;b&gt;Dislikes: &lt;/b&gt;&lt;br /&gt;Not much but if you hear me growl…run&lt;br /&gt;&lt;br /&gt;
&lt;/div&gt;

&lt;div class="wlWriterEditableSmartContent" id="scid:8747F07C-CDE8-481f-B0DF-C6CFD074BF67:7e715ec7-60a2-42ad-b737-ceb0bb878c9c" style="margin: 0px; padding: 0px; display: inline; float: right;"&gt;&lt;a href="http://blogs.technet.com/blogfiles/ecostrat/WindowsLiveWriter/testing_5118/Riga-8x6.jpg" title="Night sky near Riga's Central Station" rel="thumbnail" mce_href="http://blogs.technet.com/blogfiles/ecostrat/WindowsLiveWriter/testing_5118/Riga-8x6.jpg"&gt;&lt;img src="http://blogs.technet.com/blogfiles/ecostrat/WindowsLiveWriter/testing_5118/Riga_8.png" mce_src="http://blogs.technet.com/blogfiles/ecostrat/WindowsLiveWriter/testing_5118/Riga_8.png" border="0" height="281" width="420"&gt;&lt;/a&gt;&lt;/div&gt;

&lt;p&gt;You are probably wondering what an EcoStrat guy has to do with security updates and other technical deliverables. Well, I want to take a moment to explain why this makes sense. Before taking on the role of working with the monthly security release team and the MAPP program team, I primarily worked with the partner outreach team, managing ecosystem changes through industry partnerships. The partner outreach team’s goals/focus, within the scope of the EcoStrat team, is to work with industry to establish partnerships and initiatives to protect consumers. One of the most visible results is the MAPP initiative. This is a program that works with the security industry ecosystem to create an effective conduit for inbound and outbound information flow.&lt;/p&gt;

&lt;p&gt;This was a large effort to affect ecosystem change externally, but what about internally? Microsoft is a large company that has an interesting culture and ecosystem of its own with developers, technology evangelists, security engineers, program managers, marketers, etc...&lt;/p&gt;

&lt;p&gt;It became very clear that external ecosystem changes weren’t going to be enough without an effort focused on internal ecosystem changes as well. We needed a number of ways to effectively drive internal change with information we were getting from the external ecosystem while still following one of our core tenets to focus primarily on efforts that protect customers. One way we can do that is by releasing monthly security updates. Within the Microsoft Security Response Center (MSRC), we have an exceptional security release team that manages this large and complex effort. The team’s main focus is to make sure quality security updates are delivered to customers in a consistent manner. We noticed that a way to accomplish this was to become what we call “change agents.” Change agents influence change on a large scale most of the time without the formal authority to do so. This made sense as the release team manages the monthly release via a process that doesn’t have them building/owning any binary packages for release. They effectively were driving ecosystem changes just internally. So it made sense to have someone bridge both the internal and external sides of ecosystem change efforts. &lt;/p&gt;

&lt;p&gt;So I’m grateful, and excited, to be in a position to work on both sides of the coin to effect change.&amp;nbsp; And, I get to work with folks currently managing MAPP and the security release every month to help make these changes possible. Their good work also makes it possible for me leave Redmond and engage directly with the community in crucial industry events. Just recently, I had the chance to jump back into my partner outreach role within the EcoStrat team and had the chance to travel.&lt;/p&gt;

&lt;p&gt;I am starting to really understand the need to be multicultural in the job we do here on the EcoStrat team. Many times it’s the cultural differences that sometime make or break the security messages we are trying to get across. This is one reason why this team travels a lot to target every place that Microsoft technologies are prevalent. It’s also the number one reason why I pick myself up and out of the day-to-day operations to understand these differences. &lt;/p&gt;

&lt;p&gt;Last month, I got to put back on my &lt;a href="http://www.first.org/" mce_href="http://www.first.org/"&gt;FIRST&lt;/a&gt; Steering committee hat, and I traveled to the beautiful but cold city of Riga, Latvia. The FIRST Steering Committee has four meetings a year to get work done for its members. We usually use the technical colloquiums (TC) as good times to get together and partake in the great “watering hole” activities described in Andrew Cushman’s last &lt;a href="http://blogs.technet.com/ecostrat/archive/2009/02/03/constants-and-change.aspx" mce_href="http://blogs.technet.com/ecostrat/archive/2009/02/03/constants-and-change.aspx"&gt;blog&lt;/a&gt;.&lt;/p&gt;

&lt;p&gt;The TC is organized by a local host. The local host for this one was Trans-European Research and Education Network Association (&lt;a href="http://www.terena.org/" mce_href="http://www.terena.org/"&gt;TERENA&lt;/a&gt;) computer security incident response team (TF-CSIRT). TERENA is an organization that focuses on offering a forum to collaborate, innovate and share knowledge in order to foster the development of internet technology, infrastructure and services for the research and education communities. They present and train at the TC server to educate security teams, highlighting new techniques to deal with relevant computer security issues. Usually I get to just sit back and enjoy the presentations but his time was a little different. The majority of the presentations were centered on the latest Conficker worm. Not familiar to you? Well, cruise on down to the following Microsoft &lt;a href="http://technet.microsoft.com/en-us/security/dd452420.aspx" mce_href="http://technet.microsoft.com/en-us/security/dd452420.aspx"&gt;Conficker page&lt;/a&gt; and relevant posts on the &lt;a href="http://blogs.technet.com/msrc/archive/2009/02/06/new-information-pages-on-conficker.aspx" mce_href="http://blogs.technet.com/msrc/archive/2009/02/06/new-information-pages-on-conficker.aspx"&gt;MSRC&lt;/a&gt; and &lt;a href="http://blogs.technet.com/mmpc/archive/2009/01/22/centralized-information-about-the-conficker-worm.aspx" mce_href="http://blogs.technet.com/mmpc/archive/2009/01/22/centralized-information-about-the-conficker-worm.aspx"&gt;MMPC&lt;/a&gt; blogs. &lt;/p&gt;

&lt;p&gt;Being the lone Microsoft guy and a member of the Steering Committee was very interesting to say the least. After this conference, I personally know almost every European CERT or CSIRT contact after fielding some good and frank questions about Conficker. &lt;/p&gt;

&lt;p&gt;Like I said, I spent most of the day fielding questions about Conficker and Microsoft’s actions to help security teams in their effort to protect consumers from this threat. Microsoft has a robust process when it comes to our response to issues so I was well prepared with information that went above and beyond the out-of-band security update that was released for this issue back in October (&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-067.mspx" mce_href="http://www.microsoft.com/technet/security/Bulletin/MS08-067.mspx"&gt;MS08-067&lt;/a&gt;)&lt;/p&gt;

&lt;p&gt;Although the frank questioning felt like on-the-spot cavity cleaning, I was extremely happy to have the chance to clear up some of the myths and give some actionable information to these important security stakeholders. It also allowed me to understand information that the MSRC usually doesn’t get a chance to receive first hand. Also, having a response guy from Microsoft at FIRST allowed the security teams to understand that we are taking the problem seriously. One internal ecosystem change that was supported came about from feedback from this trip. One clear feedback item was to make sure that we had a single authoritative source/place for Microsoft efforts on Conficker. This information added more key data points to indicate that the teams in Microsoft managing the Conficker efforts were doing the right thing in moving forward with creating a single place for outlining Conficker resources. This is just one example of using external information to aid in driving change to help the greater ecosystem at large.&lt;/p&gt;
&lt;div class="wlWriterEditableSmartContent" id="scid:8747F07C-CDE8-481f-B0DF-C6CFD074BF67:460e5e62-e22e-4680-a6ba-4c42b4fcfef7" style="margin: 0px; padding: 0px; display: inline; float: left;"&gt;&lt;a href="http://blogs.technet.com/blogfiles/ecostrat/WindowsLiveWriter/testing_5118/Steve-8x6.jpg" title="Dinner fun wiht FIRST SC members Yurie Ito (lower right) and Pete Allor (middle)" rel="thumbnail" mce_href="http://blogs.technet.com/blogfiles/ecostrat/WindowsLiveWriter/testing_5118/Steve-8x6.jpg"&gt;&lt;img src="http://blogs.technet.com/blogfiles/ecostrat/WindowsLiveWriter/testing_5118/Steve_6.png" mce_src="http://blogs.technet.com/blogfiles/ecostrat/WindowsLiveWriter/testing_5118/Steve_6.png" border="0" height="325" width="335"&gt;&lt;/a&gt;&lt;/div&gt;
&lt;p&gt;My Trip wasn’t all fun &lt;span style="font-size: 11pt; font-family: Wingdings;"&gt;&lt;span style=""&gt;J&lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: 11pt; font-family: 'Calibri','sans-serif';"&gt; &lt;/span&gt;&lt;u&gt;&lt;/u&gt;&lt;/p&gt;

&lt;p&gt;There was the 3 ½ days worth of Steering Committee (SC) meeting to decide various organizational things. One major topic was the 2009 Annual FIRST &lt;a href="http://conference.first.org/" mce_href="http://conference.first.org/"&gt;conference&lt;/a&gt; (AGM) in Kyoto, Japan. The AGM gives us the opportunity to meet and share presentation on a number of security topics. The logistics of putting on a large conference are mind boggling in my opinion. I am glad to say, I will enjoy watching our own Andrew Cushman figure out some of these issues firsthand as he was named the 2010 Program chair for the 2010 Annual First conference.&lt;/p&gt;

&lt;p&gt;I love the fact that Microsoft makes a point to work with the security community at large and truly values community-based defense. Our consistency and trusted relationships make it much easier to have the conversations at the proverbial “watering holes” to get messages across to the security ecosystem that we do care and take the job of securing customers at all level as our main priority.&lt;/p&gt;

&lt;p&gt;Now that I am settling back into a groove, I look forward to heading out and doing more in my EcoStrat role. Stay tuned for more from me as I travel to&lt;a href="http://cansecwest.com/" mce_href="http://cansecwest.com/"&gt; CanSecWest&lt;/a&gt; and &lt;a href="http://www.blackhat.com/html/bh-europe-09/bh-eu-09-main.html" mce_href="http://www.blackhat.com/html/bh-europe-09/bh-eu-09-main.html"&gt;Black Hat Europe&lt;/a&gt;.&lt;/p&gt;

&lt;p&gt;Later...&lt;/p&gt;

&lt;p&gt;Steve “Capt Steve” Adegbite&lt;span class="sbmLink"&gt;&lt;/span&gt;&lt;/p&gt;

&lt;p&gt;Share this post : &lt;a href="http://social.microsoft.com/en-us/action/create/s/E/?url=http://blogs.technet.com/ecostrat/archive/2009/02/11/chills-and-thrills-at-first.aspx&amp;amp;ttl=Chills%20and%20Thrills%20at%20FIRST"&gt;&lt;img src="http://www.dotnetscraps.com/dotnetscraps/samples/sbmtool/social.png" border="0"&gt;&lt;/a&gt;&lt;a href="http://social.msdn.microsoft.com/en-us/action/create/s/E/?url=http://blogs.technet.com/ecostrat/archive/2009/02/11/chills-and-thrills-at-first.aspx&amp;amp;ttl=Chills%20and%20Thrills%20at%20FIRST"&gt;&lt;img src="http://www.dotnetscraps.com/dotnetscraps/samples/sbmtool/msdn.png" border="0"&gt;&lt;/a&gt;&lt;a href="http://social.technet.microsoft.com/en-us/action/create/s/E/?url=http://blogs.technet.com/ecostrat/archive/2009/02/11/chills-and-thrills-at-first.aspx&amp;amp;ttl=Chills%20and%20Thrills%20at%20FIRST"&gt;&lt;img src="http://www.dotnetscraps.com/dotnetscraps/samples/sbmtool/technet.png" border="0"&gt;&lt;/a&gt;&lt;a href="http://social.expression.microsoft.com/en-us/action/create/s/E/?url=http://blogs.technet.com/ecostrat/archive/2009/02/11/chills-and-thrills-at-first.aspx&amp;amp;ttl=Chills%20and%20Thrills%20at%20FIRST"&gt;&lt;img src="http://www.dotnetscraps.com/dotnetscraps/samples/sbmtool/expression.png" border="0"&gt;&lt;/a&gt;&lt;a href="http://www.backflip.com/add_page_pop.ihtml?url=http://blogs.technet.com/ecostrat/archive/2009/02/11/chills-and-thrills-at-first.aspx&amp;amp;title=Chills%20and%20Thrills%20at%20FIRST"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/backflip4.png" border="0"&gt;&lt;/a&gt;&lt;a href="http://www.blinkbits.com/bookmarklets/save.php?v=1&amp;amp;source_url=http://blogs.technet.com/ecostrat/archive/2009/02/11/chills-and-thrills-at-first.aspx&amp;amp;title=Chills%20and%20Thrills%20at%20FIRST"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/blinkbit4.png" border="0"&gt;&lt;/a&gt;&lt;a href="http://buddymarks.com/s_add_bookmark.php?bookmark_url=http://blogs.technet.com/ecostrat/archive/2009/02/11/chills-and-thrills-at-first.aspx&amp;amp;bookmark_title=Chills%20and%20Thrills%20at%20FIRST"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/buddymar4.png" border="0"&gt;&lt;/a&gt;&lt;a href="http://complore.com/?q=node/add/flexinode-5&amp;amp;url=http://blogs.technet.com/ecostrat/archive/2009/02/11/chills-and-thrills-at-first.aspx&amp;amp;title=Chills%20and%20Thrills%20at%20FIRST"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/complore4.png" border="0"&gt;&lt;/a&gt;&lt;a href="http://del.icio.us/post?url=http://blogs.technet.com/ecostrat/archive/2009/02/11/chills-and-thrills-at-first.aspx&amp;amp;;title=Chills%20and%20Thrills%20at%20FIRST"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/deliciou4.png" border="0"&gt;&lt;/a&gt;&lt;a href="http://de.lirio.us/bookmarks/sbmtool?action=add&amp;amp;address=http://blogs.technet.com/ecostrat/archive/2009/02/11/chills-and-thrills-at-first.aspx&amp;amp;title=Chills%20and%20Thrills%20at%20FIRST"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/deliriou4.png" border="0"&gt;&lt;/a&gt;&lt;a href="http://digg.com/submit?phase=2&amp;amp;url=http://blogs.technet.com/ecostrat/archive/2009/02/11/chills-and-thrills-at-first.aspx&amp;amp;title=Chills%20and%20Thrills%20at%20FIRST"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/digg14.png" border="0"&gt;&lt;/a&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http://blogs.technet.com/ecostrat/archive/2009/02/11/chills-and-thrills-at-first.aspx&amp;amp;title=Chills%20and%20Thrills%20at%20FIRST"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/CropperCapture154.jpg" border="0"&gt;&lt;/a&gt;&lt;a href="http://www.facebook.com/sharer.php?u=http://blogs.technet.com/ecostrat/archive/2009/02/11/chills-and-thrills-at-first.aspx&amp;amp;t=Chills%20and%20Thrills%20at%20FIRST"&gt;&lt;img src="http://blogs.technet.com/photos/james/images/1765319/original.aspx" border="0"&gt;&lt;/a&gt;&lt;a href="http://www.furl.net/store?s=f&amp;amp;to=0&amp;amp;u=http://blogs.technet.com/ecostrat/archive/2009/02/11/chills-and-thrills-at-first.aspx&amp;amp;ti=Chills%20and%20Thrills%20at%20FIRST"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/furl4.png" border="0"&gt;&lt;/a&gt;&lt;a href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;amp;mkt=en-us&amp;amp;url=http://blogs.technet.com/ecostrat/archive/2009/02/11/chills-and-thrills-at-first.aspx&amp;amp;title=Chills%20and%20Thrills%20at%20FIRST"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/live4.png" border="0"&gt;&lt;/a&gt;&lt;a href="http://netvouz.com/action/submitBookmark?url=http://blogs.technet.com/ecostrat/archive/2009/02/11/chills-and-thrills-at-first.aspx&amp;amp;title=Chills%20and%20Thrills%20at%20FIRST"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/netvouz4.png" border="0"&gt;&lt;/a&gt;&lt;a href="http://reddit.com/submit?url=http://blogs.technet.com/ecostrat/archive/2009/02/11/chills-and-thrills-at-first.aspx&amp;amp;title=Chills%20and%20Thrills%20at%20FIRST"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/reddit4.png" border="0"&gt;&lt;/a&gt;&lt;a href="http://www.shadows.com/bookmark/saveLink.rails?page=http://blogs.technet.com/ecostrat/archive/2009/02/11/chills-and-thrills-at-first.aspx&amp;amp;title=Chills%20and%20Thrills%20at%20FIRST"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/shadows6.png" border="0"&gt;&lt;/a&gt;&lt;a href="http://technorati.com/faves/?add=http://blogs.technet.com/ecostrat/archive/2009/02/11/chills-and-thrills-at-first.aspx&amp;amp;title=Chills%20and%20Thrills%20at%20FIRST"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/technora4.png" border="0"&gt;&lt;/a&gt;&lt;a href="http://www.wists.com/?action=add&amp;amp;url=http://blogs.technet.com/ecostrat/archive/2009/02/11/chills-and-thrills-at-first.aspx&amp;amp;title=Chills%20and%20Thrills%20at%20FIRST"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/wists9.png" border="0"&gt;&lt;/a&gt;&lt;a href="http://myweb.yahoo.com/myresults/bookmarklet?u=http://blogs.technet.com/ecostrat/archive/2009/02/11/chills-and-thrills-at-first.aspx&amp;amp;t=Chills%20and%20Thrills%20at%20FIRST"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/yahoo9.png" border="0"&gt;&lt;/a&gt; 
&lt;/p&gt;

&lt;p&gt;*Posting is provided "AS IS" with no warranties, and confers no rights.*&lt;/p&gt;
&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3200928" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/ecostrat/archive/tags/EcoStrat/default.aspx">EcoStrat</category><category domain="http://blogs.technet.com/ecostrat/archive/tags/Community-based+Defense/default.aspx">Community-based Defense</category><category domain="http://blogs.technet.com/ecostrat/archive/tags/Black+Hat/default.aspx">Black Hat</category><category domain="http://blogs.technet.com/ecostrat/archive/tags/Microsoft+Active+Protections+Program+_2800_MAPP_2900_/default.aspx">Microsoft Active Protections Program (MAPP)</category><category domain="http://blogs.technet.com/ecostrat/archive/tags/Security+Conference+Engagement/default.aspx">Security Conference Engagement</category><category domain="http://blogs.technet.com/ecostrat/archive/tags/MS08-067/default.aspx">MS08-067</category><category domain="http://blogs.technet.com/ecostrat/archive/tags/Security+Ecosystem/default.aspx">Security Ecosystem</category><category domain="http://blogs.technet.com/ecostrat/archive/tags/Security+Advisory/default.aspx">Security Advisory</category><category domain="http://blogs.technet.com/ecostrat/archive/tags/MSRC/default.aspx">MSRC</category><category domain="http://blogs.technet.com/ecostrat/archive/tags/MMPC/default.aspx">MMPC</category><category domain="http://blogs.technet.com/ecostrat/archive/tags/Conficker/default.aspx">Conficker</category><category domain="http://blogs.technet.com/ecostrat/archive/tags/CanSecWest/default.aspx">CanSecWest</category><category domain="http://blogs.technet.com/ecostrat/archive/tags/FIRST/default.aspx">FIRST</category><category domain="http://blogs.technet.com/ecostrat/archive/tags/Watering+Hole/default.aspx">Watering Hole</category></item></channel></rss>