<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://blogs.technet.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Security e Virtualization Blog di Feliciano Intini (e il suo team PCfSV2) : Forefront Client Security</title><link>http://blogs.technet.com/feliciano_intini/archive/tags/Forefront+Client+Security/default.aspx</link><description>Tags: Forefront Client Security</description><dc:language>en-US</dc:language><generator>CommunityServer 2.1 SP1 (Build: 61025.2)</generator><item><title>In futuro prevarrà la Positive Security?</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/09/22/in-futuro-prevarr-la-positive-security.aspx</link><pubDate>Mon, 22 Sep 2008 13:27:50 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3126745</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>3</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3126745.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3126745</wfw:commentRss><description>Alzi la mano chi di voi sa dire al volo cosa sia la &amp;quot; Positive Security &amp;quot;. Io confesso di averlo appreso da pochissimo: anche se il suo significato &amp;#232; abbastanza intuibile, questo termine non sembra ancora molto diffuso (wikipedia non ha...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/09/22/in-futuro-prevarr-la-positive-security.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3126745" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Windows+Vista+Security/default.aspx">Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Security+Management/default.aspx">Security Management</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Forefront+Client+Security/default.aspx">Forefront Client Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Windows+Server+2008+Security/default.aspx">Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Windows+XP+Security/default.aspx">Windows XP Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/0.1.1.1+End+to+End+Trust/default.aspx">0.1.1.1 End to End Trust</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Positive+Security/default.aspx">Positive Security</category></item><item><title>Analisi di rischio sui Bollettini di sicurezza Microsoft - settembre 2008</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/09/09/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-settembre-2008.aspx</link><pubDate>Wed, 10 Sep 2008 00:39:01 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3121668</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>1</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3121668.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3121668</wfw:commentRss><description>Il rilascio dei bollettini di sicurezza Microsoft di questo mese vede l'emissione di 4 bollettini, con rating Critical , che risolvono un totale di 8 vulnerabilit&amp;#224;, tutte non note pubblicamente prima d'ora . Come si potr&amp;#224; notare dalla consueta...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/09/09/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-settembre-2008.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3121668" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.0+Operating+System+Security/default.aspx">3.0 Operating System Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/4.0+Application+Security/default.aspx">4.0 Application Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Security+Update+Management/default.aspx">Security Update Management</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Windows+Vista+Security/default.aspx">Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Forefront+Client+Security/default.aspx">Forefront Client Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Office+Security/default.aspx">Office Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Windows+Server+2008+Security/default.aspx">Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Security+Bulletin+and+Advisory+Risk+Analysis/default.aspx">Security Bulletin and Advisory Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Internet+Explorer+Security/default.aspx">Internet Explorer Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Windows+XP+Security/default.aspx">Windows XP Security</category></item><item><title>Versione definitiva del "Microsoft Forefront Integration Kit for Network Access Protection", portale NAP, podcast su Stirling</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/06/05/versione-definitiva-del-microsoft-forefront-integration-kit-for-network-access-protection-portale-nap-podcast-su-stirling.aspx</link><pubDate>Thu, 05 Jun 2008 16:07:55 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3066464</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3066464.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3066464</wfw:commentRss><description>Riprendo doverosamente il post di Renato che annuncia il rilascio definitivo del &amp;quot; Microsoft Forefront Integration Kit for Network Access Protection &amp;quot; di cui vi avevo parlato in occasione della relativa versione Beta. Come &amp;#232; buona abitudine...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/06/05/versione-definitiva-del-microsoft-forefront-integration-kit-for-network-access-protection-portale-nap-podcast-su-stirling.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3066464" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.0+Operating+System+Security/default.aspx">3.0 Operating System Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0+Perimeter+and+Network+Security/default.aspx">2.0 Perimeter and Network Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Network+Access+Protection+_2800_NAP_2900_/default.aspx">Network Access Protection (NAP)</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Forefront+Client+Security/default.aspx">Forefront Client Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Forefront+Stirling/default.aspx">Forefront Stirling</category></item><item><title>Nuovo blog e nuove risorse su Forefront Stirling</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/05/20/nuovo-blog-e-nuove-risorse-su-forefront-stirling.aspx</link><pubDate>Tue, 20 May 2008 16:13:44 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3057846</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>2</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3057846.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3057846</wfw:commentRss><description>&lt;p&gt;&lt;font face="Calibri" size="3"&gt;Direttamente dal &lt;a href="http://blogs.technet.com/forefront/archive/2008/05/19/stirling-blog-post-new-stirling-resources.aspx" target="_blank"&gt;blog&lt;/a&gt; generale sulla famiglia Forefront, vi segnalo la nascita di un &lt;a href="http://blogs.technet.com/Stirling/" target="_blank"&gt;&lt;strong&gt;nuovo blog&lt;/strong&gt;&lt;/a&gt; dedicato alla prossima versione della suite &lt;a href="http://www.microsoft.com/forefront/stirling/en/us/default.aspx" target="_blank"&gt;&lt;strong&gt;Forefront&lt;/strong&gt;, code name &amp;quot;&lt;strong&gt;Stirling&lt;/strong&gt;&amp;quot;&lt;/a&gt;, di cui vi ho parlato in occasione del &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/04/09/rsa-conference-2008-rilasciata-la-beta-di-forefront-stirling.aspx" target="_blank"&gt;lancio della beta pubblica&lt;/a&gt; durante la scorsa RSA Conference 2008. Il lancio del blog &amp;#232; stata anche l'occasione per la pubblicazione di una nuova serie di whitepaper e risorse utili per l'approfondimento:&lt;/font&gt;&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;&lt;font color="#0000ff"&gt;&lt;strong&gt;TechNet:&lt;/strong&gt; Stirling information can be accessed from the &lt;/font&gt;&lt;font color="#0000ff"&gt;&lt;a href="http://technet.microsoft.com/en-us/forefront/stirling/default.aspx" target="_blank"&gt;Stirling TechNet Web site&lt;/a&gt;&lt;/font&gt;&lt;font color="#0000ff"&gt;.&lt;/font&gt;&lt;/p&gt;    &lt;p&gt;&lt;font color="#0000ff"&gt;&lt;strong&gt;Deployment&lt;/strong&gt;: The &lt;/font&gt;&lt;font color="#0000ff"&gt;&lt;a href="http://technet.microsoft.com/en-us/library/cc441299.aspx" target="_blank"&gt;Stirling Deployment Guide&lt;/a&gt;&lt;/font&gt;&lt;font color="#0000ff"&gt; steps you through installing Stirling and deploying the Stirling client software to the client computers in your lab environment.&lt;/font&gt;&lt;/p&gt;    &lt;p&gt;&lt;font color="#0000ff"&gt;&lt;strong&gt;Operations&lt;/strong&gt;: The &lt;/font&gt;&lt;font color="#0000ff"&gt;&lt;a href="http://technet.microsoft.com/en-us/library/cc441317.aspx" target="_blank"&gt;Stirling Operations Guide&lt;/a&gt;&lt;/font&gt;&lt;font color="#0000ff"&gt; has documentation on day-to-day management tasks, as well as &lt;/font&gt;&lt;font color="#0000ff"&gt;&lt;a href="http://technet.microsoft.com/en-us/library/cc441338.aspx" target="_blank"&gt;feature walkthroughs&lt;/a&gt;&lt;/font&gt;&lt;font color="#0000ff"&gt; that you can use in your lab to explore the Stirling features. &lt;/font&gt;&lt;/p&gt;    &lt;p&gt;&lt;font color="#0000ff"&gt;&lt;strong&gt;Stirling and PowerShell&lt;/strong&gt;: Stirling utilizes PowerShell for its features, and the cmdlets available with Beta 1 are documented in the PowerShell console and on &lt;/font&gt;&lt;font color="#0000ff"&gt;&lt;a href="http://technet.microsoft.com/en-us/library/cc483118.aspx" target="_blank"&gt;TechNet&lt;/a&gt;&lt;/font&gt;&lt;font color="#0000ff"&gt;. Also - a brief introduction on &lt;/font&gt;&lt;font color="#0000ff"&gt;&lt;a href="http://technet.microsoft.com/en-us/library/cc441280.aspx" target="_blank"&gt;how Stirling uses PowerShell&lt;/a&gt;&lt;/font&gt;&lt;font color="#0000ff"&gt; is included in the Operations guide.&lt;/font&gt;&lt;/p&gt;    &lt;p&gt;&lt;font color="#0000ff"&gt;&lt;strong&gt;Newsgroups&lt;/strong&gt;: You can post questions and get more information about Stirling on the &lt;/font&gt;&lt;font color="#0000ff"&gt;&lt;a href="http://forums.technet.microsoft.com/en-US/tag/Forefront%20codename%20%27Stirling%27/forums/" target="_blank"&gt;Stirling TechNet Community Forums&lt;/a&gt;&lt;/font&gt;&lt;font color="#0000ff"&gt;.&lt;/font&gt;&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Davvero urge l'aggiornamento del mio &lt;a href="http://blogs.technet.com/feliciano_intini/pages/microsoft-blogs-and-web-resources-about-security.aspx" target="_blank"&gt;Microsoft Security Portal&lt;/a&gt;... ho un arretrato da paura di link da aggiungere...sorry :-( &lt;/font&gt;&lt;/p&gt; &lt;span class="sbmLink"&gt;   &lt;table cellspacing="1" cellpadding="1"&gt;&lt;tbody&gt;       &lt;tr&gt;         &lt;td class="sbmText"&gt;Share this post : &lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to del.icio.us" onmouseout="mOut(this)" href="http://del.icio.us/post?url=http://blogs.technet.com/feliciano_intini/archive/2008/05/20/nuovo-blog-e-nuove-risorse-su-forefront-stirling.aspx&amp;amp;;title=Nuovo blog e nuove risorse su Forefront Stirling" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/deliciou4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to digg" onmouseout="mOut(this)" href="http://digg.com/submit?phase=2&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/20/nuovo-blog-e-nuove-risorse-su-forefront-stirling.aspx&amp;amp;title=Nuovo blog e nuove risorse su Forefront Stirling" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/digg14.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to live" onmouseout="mOut(this)" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;amp;mkt=en-us&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/20/nuovo-blog-e-nuove-risorse-su-forefront-stirling.aspx&amp;amp;title=Nuovo blog e nuove risorse su Forefront Stirling" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/live4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to technorati!" onmouseout="mOut(this)" href="http://technorati.com/faves/?add=http://blogs.technet.com/feliciano_intini/archive/2008/05/20/nuovo-blog-e-nuove-risorse-su-forefront-stirling.aspx&amp;amp;title=Nuovo blog e nuove risorse su Forefront Stirling" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/technora4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to yahoo!" onmouseout="mOut(this)" href="http://myweb.yahoo.com/myresults/bookmarklet?u=http://blogs.technet.com/feliciano_intini/archive/2008/05/20/nuovo-blog-e-nuove-risorse-su-forefront-stirling.aspx&amp;amp;t=Nuovo blog e nuove risorse su Forefront Stirling" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/yahoo9.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;       &lt;/tr&gt;     &lt;/tbody&gt;&lt;/table&gt; &lt;/span&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3057846" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.0+Operating+System+Security/default.aspx">3.0 Operating System Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0+Perimeter+and+Network+Security/default.aspx">2.0 Perimeter and Network Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/4.0+Application+Security/default.aspx">4.0 Application Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Forefront+Client+Security/default.aspx">Forefront Client Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Forefront+Stirling/default.aspx">Forefront Stirling</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Forefront+Threat+Management+Gateway+_2800_TMG_2900_/default.aspx">Forefront Threat Management Gateway (TMG)</category></item><item><title>Analisi di rischio sui Bollettini di sicurezza Microsoft - maggio 2008</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/05/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-maggio-2008.aspx</link><pubDate>Tue, 13 May 2008 23:12:08 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3054728</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>1</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3054728.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3054728</wfw:commentRss><description>&lt;p&gt;&lt;font face="Calibri" size="3"&gt;Dopo avervi fornito su &lt;a href="http://www.mclips.it/archive/2008/05/13/bollettini-di-sicurezza-di-maggio-pochi-ma-buoni.aspx" target="_blank"&gt;&lt;strong&gt;MClips&lt;/strong&gt;&lt;/a&gt; le considerazioni pi&amp;#249; generali dell'emissione di bollettini di sicurezza di maggio, eccovi un'analisi pi&amp;#249; di dettaglio:&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://blogs.technet.com/photos/pcfs-gallery/images/3054727/original.aspx" target="_blank"&gt;&lt;img src="http://blogs.technet.com/photos/pcfs-gallery/images/3054727/secondarythumb.aspx" /&gt;&lt;/a&gt;&amp;#160; &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;&lt;/font&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;strong&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-026.mspx" target="_blank"&gt;MS08-026&lt;/a&gt;&lt;/font&gt;&lt;/strong&gt;&lt;font face="Calibri" size="3"&gt; su &lt;strong&gt;Word&lt;/strong&gt;: due vulnerabilit&amp;#224; &lt;em&gt;Critical&lt;/em&gt; di tipo &lt;em&gt;Remote&lt;/em&gt; &lt;em&gt;Code Execution&lt;/em&gt; relative &lt;u&gt;a tutte le versioni attualmente supportate di &lt;strong&gt;Office&lt;/strong&gt;&lt;/u&gt; che permetterebbero di eseguire codice non autorizzato nel contesto di sicurezza dell'utente loggato. Il vettore di attacco &amp;#232; diverso per le due vulnerabilit&amp;#224;: per la prima consiste in file/email di tipo RTF (&lt;em&gt;Rich Text Format&lt;/em&gt;), per la seconda consiste in file di Word. In virt&amp;#249; di quanto detto questo bollettino merita una sollecitudine particolare all'aggiornamento da parte degli utenti dotati di &lt;strong&gt;Outlook 2007&lt;/strong&gt; e &lt;strong&gt;Outlook 2007 SP1&lt;/strong&gt;: queste versioni utilizzano nativamente Word come editor predefinito e quindi sono soggette all'attacco da parte di email malformate ad-hoc in formato RTF se vengono visualizzate (anche in preview) in formato RTF/HTML (in queste situazioni la visualizzazione in formato solo testo &amp;#232; un valido workaround in attesa dell'aggiornamento).         &lt;br /&gt;&lt;strong&gt;Questo aggiornamento introduce inoltre un miglioramento funzionale di sicurezza&lt;/strong&gt;: all'utente ora viene chiesta una conferma esplicita prima di procedere all'esecuzione di comandi/query SQL in caso di database Jet inclusi in documenti Word (per irrobustire la protezione da attacchi segnalati dal &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/03/22/security-advisory-950627-relativo-ad-una-vulnerabilit-in-jet.aspx" target="_blank"&gt;Security Advisory 950627&lt;/a&gt; e indirizzati dal bollettino &lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-028.mspx" target="_blank"&gt;MS08-028&lt;/a&gt;).&lt;/font&gt; &lt;/li&gt;    &lt;li&gt;&lt;strong&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-027.mspx" target="_blank"&gt;MS08-027&lt;/a&gt;&amp;#160;&lt;/font&gt;&lt;/strong&gt;&lt;font face="Calibri" size="3"&gt;su &lt;strong&gt;Publisher&lt;/strong&gt;: una vulnerabilit&amp;#224; &lt;em&gt;Critical&lt;/em&gt; di tipo &lt;em&gt;Remote&lt;/em&gt; &lt;em&gt;Code Execution&lt;/em&gt; relativa &lt;u&gt;a tutte le versioni attualmente supportate di &lt;strong&gt;Office&lt;/strong&gt;&lt;/u&gt; che permetterebbero di eseguire codice non autorizzato nel contesto di sicurezza dell'utente loggato tramite l'apertura di file di Publisher malformati ad-hoc.&lt;/font&gt; &lt;/li&gt;    &lt;li&gt;&lt;strong&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-028.mspx" target="_blank"&gt;MS08-028&lt;/a&gt;&amp;#160;&lt;/font&gt;&lt;/strong&gt;&lt;font face="Calibri" size="3"&gt;sul &lt;strong&gt;Microsoft Jet 4.0 Database Engine (Jet)&lt;/strong&gt; in &lt;strong&gt;Windows&lt;/strong&gt;: una vulnerabilit&amp;#224; &lt;em&gt;Critical&lt;/em&gt; di tipo &lt;em&gt;Remote&lt;/em&gt; &lt;em&gt;Code Execution&lt;/em&gt; (gi&amp;#224; nota pubblicamente, e di cui era gi&amp;#224; nota la presenza di exploit) relativa &lt;u&gt;solo alle versioni meno recenti e meno aggiornate di Windows&lt;/u&gt; (&lt;strong&gt;Windows 2000 SP4, Windows XP SP2 e Windows Server 2003 SP1&lt;/strong&gt;) che permetterebbero di eseguire codice non autorizzato nel contesto di sicurezza dell'utente loggato tramite l'invio di query malformate ad-hoc ad applicazioni che utilizzano JET (il vettore di attacco tipico &amp;#232; l'invio di file MDB, direttamente o inclusi in documenti Word/email; gli utenti dotati di Outlook 2003/2007 sono a rischio anche rispetto alla visualizzazione in HTML in preview).&lt;/font&gt; &lt;/li&gt;    &lt;li&gt;&lt;strong&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-029.mspx" target="_blank"&gt;MS08-029&lt;/a&gt;&amp;#160;&lt;/font&gt;&lt;/strong&gt;&lt;font face="Calibri" size="3"&gt;sul &lt;strong&gt;Microsoft Malware Protection Engine&lt;/strong&gt; incluso in &lt;strong&gt;Windows Live OneCare&lt;/strong&gt;, &lt;strong&gt;Microsoft Antigen for Exchange&lt;/strong&gt;, &lt;strong&gt;Microsoft Antigen for SMTP Gateway&lt;/strong&gt;, &lt;strong&gt;Microsoft Windows Defender&lt;/strong&gt;, &lt;strong&gt;Microsoft Forefront Client Security&lt;/strong&gt;, &lt;strong&gt;Microsoft Forefront Security for Exchange Server&lt;/strong&gt;, &lt;strong&gt;Microsoft Forefront Security for SharePoint&lt;/strong&gt;, &lt;strong&gt;Standalone System Sweeper&lt;/strong&gt; presente in &lt;strong&gt;Diagnostics and Recovery Toolset 6.0 (DaRT&lt;/strong&gt;): due vulnerabilit&amp;#224; &lt;em&gt;Moderate&lt;/em&gt; di tipo &lt;em&gt;Denial of Service&lt;/em&gt; che permetterebbero di far smettere di funzionare (e di far ripartire automaticamente) i suddetti prodotti tramite l'invio di un file malformato ad-hoc e sottoposto a scansione da parte del Malware Protection Engine. &lt;/font&gt;&lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Ho anche aggiornato il &lt;/font&gt;&lt;a href="http://blogs.technet.com/feliciano_intini/pages/riepilogo-analisi-e-risorse-su-security-bulletin-e-security-advisory-di-microsoft.aspx"&gt;&lt;font face="Calibri" size="3"&gt;mini-portale tematico&lt;/font&gt;&lt;/a&gt;&lt;font face="Calibri" size="3"&gt; che raccoglie le risorse sui Security Bulletin.&lt;/font&gt;&lt;/p&gt; &lt;span class="sbmLink"&gt;   &lt;table cellspacing="1" cellpadding="1"&gt;&lt;tbody&gt;       &lt;tr&gt;         &lt;td class="sbmText"&gt;Share this post : &lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to del.icio.us" onmouseout="mOut(this)" href="http://del.icio.us/post?url=http://blogs.technet.com/feliciano_intini/archive/2008/05/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-maggio-2008.aspx&amp;amp;;title=Analisi di rischio sui Bollettini di sicurezza Microsoft - maggio 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/deliciou4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to digg" onmouseout="mOut(this)" href="http://digg.com/submit?phase=2&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-maggio-2008.aspx&amp;amp;title=Analisi di rischio sui Bollettini di sicurezza Microsoft - maggio 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/digg14.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to live" onmouseout="mOut(this)" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;amp;mkt=en-us&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-maggio-2008.aspx&amp;amp;title=Analisi di rischio sui Bollettini di sicurezza Microsoft - maggio 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/live4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to technorati!" onmouseout="mOut(this)" href="http://technorati.com/faves/?add=http://blogs.technet.com/feliciano_intini/archive/2008/05/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-maggio-2008.aspx&amp;amp;title=Analisi di rischio sui Bollettini di sicurezza Microsoft - maggio 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/technora4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to yahoo!" onmouseout="mOut(this)" href="http://myweb.yahoo.com/myresults/bookmarklet?u=http://blogs.technet.com/feliciano_intini/archive/2008/05/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-maggio-2008.aspx&amp;amp;t=Analisi di rischio sui Bollettini di sicurezza Microsoft - maggio 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/yahoo9.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;       &lt;/tr&gt;     &lt;/tbody&gt;&lt;/table&gt; &lt;/span&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3054728" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.0+Operating+System+Security/default.aspx">3.0 Operating System Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/4.0+Application+Security/default.aspx">4.0 Application Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Security+Update+Management/default.aspx">Security Update Management</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Windows+Vista+Security/default.aspx">Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Forefront+Client+Security/default.aspx">Forefront Client Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Office+Security/default.aspx">Office Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Malware+and+Attack+analysis/default.aspx">Malware and Attack analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Windows+Server+2008+Security/default.aspx">Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Security+Bulletin+and+Advisory+Risk+Analysis/default.aspx">Security Bulletin and Advisory Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Windows+XP+Security/default.aspx">Windows XP Security</category></item><item><title>4 bollettini in arrivo per maggio 2008</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/05/09/4-bollettini-in-arrivo-per-maggio-2008.aspx</link><pubDate>Fri, 09 May 2008 13:11:10 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3052883</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>4</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3052883.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3052883</wfw:commentRss><description>&lt;p&gt;&lt;font face="Calibri" size="3"&gt;Rieccoci a parlare di bollettini visto che oggi &amp;#232; il venerd&amp;#236; che precede il famigerato &lt;em&gt;Microsoft Patch Tuesday&lt;/em&gt; (il 2&amp;#176; marted&amp;#236; di ogni mese):&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://blogs.technet.com/blogfiles/feliciano_intini/WindowsLiveWriter/4bollettiniinarrivopermaggio2008_AB58/Microsoft-2008-05-Security%20Bulletin%20Advanced%20Notification_2.png"&gt;&lt;img style="border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px" height="228" alt="Microsoft-2008-05-Security Bulletin Advanced Notification" src="http://blogs.technet.com/blogfiles/feliciano_intini/WindowsLiveWriter/4bollettiniinarrivopermaggio2008_AB58/Microsoft-2008-05-Security%20Bulletin%20Advanced%20Notification_thumb.png" width="515" border="0" /&gt;&lt;/a&gt; &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Recuperando i dettagli che trovate come al solito nella pagina di &amp;quot;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms08-may.mspx" target="_blank"&gt;Microsoft Security Bulletin Advance Notification for May 2008&lt;/a&gt;&amp;quot; si possono aggiungere le seguenti considerazioni:&lt;/font&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;font face="Calibri" size="3"&gt;il bollettini per &lt;strong&gt;Word&lt;/strong&gt; e &lt;strong&gt;Publisher&lt;/strong&gt; interessano tutte le versioni attualmente supportate della suite &lt;strong&gt;Office&lt;/strong&gt;.&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font face="Calibri" size="3"&gt;il bollettino sul &lt;strong&gt;Microsoft Jet 4.0 Database Engine&lt;/strong&gt; interessa invece solo le versioni meno aggiornate di Windows, in particolare solo &lt;strong&gt;Windows 2000 SP4&lt;/strong&gt;, &lt;strong&gt;Windows XP SP2&lt;/strong&gt; e &lt;strong&gt;Windows Server 2003 SP1&lt;/strong&gt; (quindi &lt;u&gt;non&lt;/u&gt; sono interessati &lt;strong&gt;Windows XP SP3&lt;/strong&gt;, &lt;strong&gt;Windows Vista, Windows Server 2003 SP2&lt;/strong&gt; e &lt;strong&gt;Windows Server 2008&lt;/strong&gt;).&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font face="Calibri" size="3"&gt;l'ultimo bollettino interessa l'intero insieme di prodotti anti-malware, probabilmente per una vulnerabilit&amp;#224; nell'engine: sono interessati &lt;strong&gt;Windows Live OneCare&lt;/strong&gt;, &lt;strong&gt;Microsoft Antigen for Exchange&lt;/strong&gt;, &lt;strong&gt;Microsoft Antigen for SMTP Gateway&lt;/strong&gt;, &lt;strong&gt;Microsoft Windows Defender&lt;/strong&gt;, &lt;strong&gt;Microsoft Forefront Client Security&lt;/strong&gt;, &lt;strong&gt;Microsoft Forefront Security for Exchange Server&lt;/strong&gt;, &lt;strong&gt;Microsoft Forefront Security for SharePoint&lt;/strong&gt;, &lt;strong&gt;Standalone System Sweeper&lt;/strong&gt; presente in &lt;strong&gt;Diagnostics and Recovery Toolset 6.0 (DaRT&lt;/strong&gt;).&lt;/font&gt;&lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Se avete espresso un... DaRTche??? ... nel leggere del componente &lt;strong&gt;Standalone System Sweeper&lt;/strong&gt; presente in &lt;strong&gt;&lt;a href="http://windowsvistablog.com/blogs/windowsexperience/archive/2007/11/12/giving-the-microsoft-diagnostic-and-recovery-toolset-dart-a-try.aspx" target="_blank"&gt;Diagnostics and Recovery Toolset 6.0&lt;/a&gt; (&lt;a href="http://www.microsoft.com/windows/products/windowsvista/enterprise/dart.mspx" target="_blank"&gt;DaRT&lt;/a&gt;&lt;/strong&gt;) che &amp;#232; parte del &lt;strong&gt;&lt;a href="http://windowsvistablog.com/blogs/windowsvista/archive/2008/04/01/microsoft-desktop-optimization-pack-2008-released.aspx" target="_blank"&gt;Microsoft Desktop Optimization Pack (MDOP) 2008&lt;/a&gt;&lt;/strong&gt;, vi raccomando la lettura dei link ai post che ho agganciato alle parole precedenti.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Su questo tema ci diamo appuntamento a marted&amp;#236; notte (o mercoled&amp;#236; mattina) per l'analisi di rischio.&lt;/font&gt;&lt;/p&gt; &lt;span class="sbmLink"&gt;   &lt;table cellspacing="1" cellpadding="1"&gt;&lt;tbody&gt;       &lt;tr&gt;         &lt;td class="sbmText"&gt;Share this post : &lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to del.icio.us" onmouseout="mOut(this)" href="http://del.icio.us/post?url=http://blogs.technet.com/feliciano_intini/archive/2008/05/09/4-bollettini-in-arrivo-per-maggio-2008.aspx&amp;amp;;title=4 bollettini in arrivo per maggio 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/deliciou4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to digg" onmouseout="mOut(this)" href="http://digg.com/submit?phase=2&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/09/4-bollettini-in-arrivo-per-maggio-2008.aspx&amp;amp;title=4 bollettini in arrivo per maggio 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/digg14.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to live" onmouseout="mOut(this)" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;amp;mkt=en-us&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/09/4-bollettini-in-arrivo-per-maggio-2008.aspx&amp;amp;title=4 bollettini in arrivo per maggio 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/live4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to technorati!" onmouseout="mOut(this)" href="http://technorati.com/faves/?add=http://blogs.technet.com/feliciano_intini/archive/2008/05/09/4-bollettini-in-arrivo-per-maggio-2008.aspx&amp;amp;title=4 bollettini in arrivo per maggio 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/technora4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to yahoo!" onmouseout="mOut(this)" href="http://myweb.yahoo.com/myresults/bookmarklet?u=http://blogs.technet.com/feliciano_intini/archive/2008/05/09/4-bollettini-in-arrivo-per-maggio-2008.aspx&amp;amp;t=4 bollettini in arrivo per maggio 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/yahoo9.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;       &lt;/tr&gt;     &lt;/tbody&gt;&lt;/table&gt; &lt;/span&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3052883" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.0+Operating+System+Security/default.aspx">3.0 Operating System Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Security+Update+Management/default.aspx">Security Update Management</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Forefront+Client+Security/default.aspx">Forefront Client Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Office+Security/default.aspx">Office Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Security+Bulletin+and+Advisory+Risk+Analysis/default.aspx">Security Bulletin and Advisory Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Forefront+Stirling/default.aspx">Forefront Stirling</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Windows+XP+Security/default.aspx">Windows XP Security</category></item><item><title>RSA Conference 2008: rilasciata la beta di Forefront Stirling!</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/04/09/rsa-conference-2008-rilasciata-la-beta-di-forefront-stirling.aspx</link><pubDate>Wed, 09 Apr 2008 03:47:06 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3032636</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>2</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3032636.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3032636</wfw:commentRss><description>&lt;a href="http://www.microsoft.com/forefront/stirling/en/us/default.aspx"&gt;&lt;img style="border-right: 0px; border-top: 0px; margin: 0px 10px 0px 0px; border-left: 0px; border-bottom: 0px" height="92" alt="Forefront Stirling" src="http://blogs.technet.com/blogfiles/feliciano_intini/WindowsLiveWriter/RSAConference2008rilasciatalabetadiForef_2725/Forefront%20Stirling_3.jpg" width="244" align="left" border="0" /&gt;&lt;/a&gt;   &lt;p&gt;&lt;font face="Calibri" size="3"&gt;E' notte fonda, ho appena mandato in rotativa il consueto &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/04/09/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-aprile-2008.aspx"&gt;mega-post sui bollettini di sicurezza di questo mese&lt;/a&gt;, ma non riesco ad andare a dormire se non vi segnalo velocemente questo importante annuncio lanciato in occasione dell'&lt;a href="http://www.rsaconference.com/2008/US/Home.aspx"&gt;&lt;strong&gt;RSA Conference 2008&lt;/strong&gt;&lt;/a&gt; di San Francisco:&lt;/font&gt;&lt;/p&gt;  &lt;h3&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://www.microsoft.com/presspass/press/2008/apr08/04-08ForefrontBetaPR.mspx"&gt;Microsoft Releases Beta of Integrated Security System Forefront &amp;#8220;Stirling&amp;#8221;&lt;/a&gt;&lt;/font&gt;&lt;/h3&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Il sottotitolo del comunicato stampa &amp;#232; significativo per una sintesi di cosa si propone di essere Stirling: una soluzione di sicurezza che integra in modo omogeneo le prossime versioni dei prodotti della linea Forefront (quindi non una semplice suite!), che si integra al meglio con la piattaforma di infrastruttura Microsoft, con una unica comoda console di gestione e di monitoraggio, per una gestione degli aspetti di protezione che si estende dai sistemi client, alle applicazioni server, ai sistemi perimetrali. Con il mio amico e collega Andrea Piazza avevamo gi&amp;#224; accennato alle &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2007/06/29/Stirling-la-prossima-versione-della-suite-Forefront.aspx"&gt;prime caratteristiche di Forefront Stirling&lt;/a&gt;: ora che la &lt;a href="http://www.microsoft.com/stirling"&gt;beta &amp;#232; scaricabile&lt;/a&gt; si potranno subito approfondire meglio gli aspetti pi&amp;#249; interessanti e ancora poco noti (come la tecnologia&lt;strong&gt;&lt;em&gt; Dynamic Response&lt;/em&gt;&lt;/strong&gt;) sui quali non mancher&amp;#242; di aggiornarvi quanto prima.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;L'RSA Conference 2008 &amp;#232; stata anche l'occasione per battezzare con il nuovo nome la prossima versione di ISA Server: &lt;strong&gt;Forefront Threat Management Gateway (TMG)&lt;/strong&gt;! Anche qui: dar&amp;#242; maggiori dettagli non appena ci sar&amp;#224; il tempo per assimilare tutta questa marea di novit&amp;#224; in area sicurezza...:-)&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Dulcis in fundo: cuore della partecipazione Microsoft all'evento RSA (che potete seguire attraverso la &lt;a href="http://www.microsoft.com/security/rsa2008/default.mspx"&gt;pagina/blog&lt;/a&gt; dedicata allo scopo) &amp;#232; stato il keynote di Craig Mundie che ha delineato gli &lt;u&gt;elementi della nuova strategia Microsoft in area sicurezza e il lancio di un'importantissimo dibattito pubblico sul tema&lt;/u&gt;. Sar&amp;#224; il tema del mio prossimo post (e non solo di quello...;-) quindi vi consiglio di tenere i vostri lettori RSS ben sincronizzati...&lt;/font&gt;&lt;/p&gt; &lt;span class="sbmLink"&gt;   &lt;table cellspacing="1" cellpadding="1"&gt;&lt;tbody&gt;       &lt;tr&gt;         &lt;td class="sbmText"&gt;Share this post : &lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to del.icio.us" onmouseout="mOut(this)" href="http://del.icio.us/post?url=http://blogs.technet.com/feliciano_intini/archive/2008/04/09/rsa-conference-2008-rilasciata-la-beta-di-forefront-stirling.aspx&amp;amp;;title=RSA Conference 2008: rilasciata la beta di Forefront Stirling!" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/deliciou4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to digg" onmouseout="mOut(this)" href="http://digg.com/submit?phase=2&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/04/09/rsa-conference-2008-rilasciata-la-beta-di-forefront-stirling.aspx&amp;amp;title=RSA Conference 2008: rilasciata la beta di Forefront Stirling!" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/digg14.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to live" onmouseout="mOut(this)" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;amp;mkt=en-us&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/04/09/rsa-conference-2008-rilasciata-la-beta-di-forefront-stirling.aspx&amp;amp;title=RSA Conference 2008: rilasciata la beta di Forefront Stirling!" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/live4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to technorati!" onmouseout="mOut(this)" href="http://technorati.com/faves/?add=http://blogs.technet.com/feliciano_intini/archive/2008/04/09/rsa-conference-2008-rilasciata-la-beta-di-forefront-stirling.aspx&amp;amp;title=RSA Conference 2008: rilasciata la beta di Forefront Stirling!" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/technora4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to yahoo!" onmouseout="mOut(this)" href="http://myweb.yahoo.com/myresults/bookmarklet?u=http://blogs.technet.com/feliciano_intini/archive/2008/04/09/rsa-conference-2008-rilasciata-la-beta-di-forefront-stirling.aspx&amp;amp;t=RSA Conference 2008: rilasciata la beta di Forefront Stirling!" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/yahoo9.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;       &lt;/tr&gt;     &lt;/tbody&gt;&lt;/table&gt; &lt;/span&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3032636" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.0+Operating+System+Security/default.aspx">3.0 Operating System Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0+Perimeter+and+Network+Security/default.aspx">2.0 Perimeter and Network Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Forefront+Client+Security/default.aspx">Forefront Client Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Forefront+Stirling/default.aspx">Forefront Stirling</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Forefront+Threat+Management+Gateway+_2800_TMG_2900_/default.aspx">Forefront Threat Management Gateway (TMG)</category></item><item><title>Microsoft acquisisce Komoku, azienda specializzata nelle soluzioni anti-rootkit</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/03/21/microsoft-acquisisce-komoku-azienda-specializzata-nelle-soluzioni-anti-rootkit.aspx</link><pubDate>Fri, 21 Mar 2008 01:36:54 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3016818</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3016818.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3016818</wfw:commentRss><description>&lt;p&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://blogs.technet.com/forefront/archive/2008/03/20/microsoft-acquires-komoku.aspx"&gt;&lt;font size="4"&gt;&lt;/font&gt;&lt;/a&gt;&lt;/a&gt;&lt;a href="http://blogs.technet.com/forefront/archive/2008/03/20/microsoft-acquires-komoku.aspx"&gt;&lt;font size="3"&gt;&lt;strong&gt;&lt;font face="Calibri" size="3"&gt;&lt;font size="4"&gt;&lt;/font&gt;&lt;/font&gt;&lt;/strong&gt;&lt;/font&gt;&lt;/a&gt;&lt;/a&gt;&lt;a href="http://blogs.technet.com/forefront/archive/2008/03/20/microsoft-acquires-komoku.aspx"&gt;&lt;font size="3"&gt;&lt;strong&gt;&lt;/strong&gt;&lt;a href="http://blogs.technet.com/blogfiles/feliciano_intini/WindowsLiveWriter/MicrosoftacquisisceKomokuaziendaspeciali_1190B/Komoku_4.jpg"&gt;&lt;img style="border-right: 0px; border-top: 0px; margin: 0px 10px 0px 0px; border-left: 0px; border-bottom: 0px" height="64" alt="Komoku" src="http://blogs.technet.com/blogfiles/feliciano_intini/WindowsLiveWriter/MicrosoftacquisisceKomokuaziendaspeciali_1190B/Komoku_thumb_1.jpg" width="78" align="left" border="0" /&gt;&lt;/a&gt;&lt;/font&gt;&lt;/a&gt;&lt;/a&gt;Le acquisizioni da parte di Microsoft in area &lt;em&gt;Security&lt;/em&gt; continuano: dopo la tecnologia &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/03/06/microsoft-acquisisce-la-tecnologia-u-prove-di-credentica.aspx" target="_blank"&gt;U-Prove di Credentica&lt;/a&gt;, ora &amp;#232; la volta di &lt;a href="http://www.komoku.com/" target="_blank"&gt;&lt;strong&gt;Komoku&lt;/strong&gt;&lt;/a&gt;:&lt;/font&gt;&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;&lt;font size="3"&gt;&lt;strong&gt;&amp;#160;&lt;a href="http://blogs.technet.com/forefront/archive/2008/03/20/microsoft-acquires-komoku.aspx" target="_blank"&gt;Microsoft Acquires Komoku&lt;/a&gt;&lt;/strong&gt;&lt;/font&gt;&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Come potete leggere dall'annuncio dato direttamente sul blog del team di prodotto, questa azienda &amp;#232; specializzata nelle soluzioni &lt;strong&gt;anti-rootkit&lt;/strong&gt; e quindi va a rafforzare ulteriormente l'area di ricerca e sviluppo &lt;a href="http://www.microsoft.com/security/portal/" target="_blank"&gt;dell'engine anti-malware di Microsoft&lt;/a&gt; che &amp;#232; alla base di tutte le soluzioni &lt;strong&gt;&lt;a href="http://www.microsoft.com/forefront/default.mspx" target="_blank"&gt;Forefront&lt;/a&gt;&lt;/strong&gt; (per l'ambito aziendale) e di quelle &lt;strong&gt;&lt;a href="http://onecare.live.com/" target="_blank"&gt;Windows Live OneCare&lt;/a&gt;&lt;/strong&gt; (per l'ambito consumer). &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Nonostante sia una &lt;em&gt;startup&lt;/em&gt; (&amp;#232; nata nel 2004), &amp;#232; riconosciuta tra le aziende leader in questo specifico ambito, tanto che vanta gi&amp;#224; una serie significativa di grandi clienti in ambito governativo/militare statunitense caratterizzati da stringenti requisiti di sicurezza: &lt;a href="http://www.darpa.mil/" target="_blank"&gt;Defense Advanced Research Projects Agency (DARPA)&lt;/a&gt;, &lt;a href="http://www.navy.mil/" target="_blank"&gt;U.S. Navy&lt;/a&gt;, &lt;a href="http://www.dhs.gov" target="_blank"&gt;Department of Homeland Security (DHS)&lt;/a&gt; e &lt;a href="http://www.dod.mil/" target="_blank"&gt;Department of Defense (DOD)&lt;/a&gt;. &lt;/font&gt;&lt;font face="Calibri" size="3"&gt;Niente male come curriculum, no?&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;In ogni caso &amp;#232; sicuramente un'altra prova di quanto seriamente Microsoft intenda impegnarsi nella realizzazione del miglior anti-malware possibile. C'&amp;#232; naturalmente ancora un po' di strada da fare per raggiungere i livelli di eccellenza che Microsoft si &amp;#232; prefissa di raggiungere, ma si vedono gi&amp;#224; alcuni progressi significativi: non perdete le considerazioni che ha fatto &lt;a href="http://blogs.technet.com/antimalware/archive/2008/03/20/microsoft-acquires-komoku.aspx" target="_blank"&gt;Jimmy Kuo sui recenti risultati delle analisi AV-Test e AV-Comparatives&lt;/a&gt;.&lt;/font&gt;&lt;/p&gt; &lt;span class="sbmLink"&gt;   &lt;table cellspacing="1" cellpadding="1"&gt;&lt;tbody&gt;       &lt;tr&gt;         &lt;td class="sbmText"&gt;Share this post : &lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to del.icio.us" onmouseout="mOut(this)" href="http://del.icio.us/post?url=http://blogs.technet.com/feliciano_intini/archive/2008/03/21/microsoft-acquisisce-komoku-azienda-specializzata-nelle-soluzioni-anti-rootkit.aspx&amp;amp;;title=Microsoft acquisisce Komoku, azienda specializzata nelle soluzioni anti-rootkit" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/deliciou4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to digg" onmouseout="mOut(this)" href="http://digg.com/submit?phase=2&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/03/21/microsoft-acquisisce-komoku-azienda-specializzata-nelle-soluzioni-anti-rootkit.aspx&amp;amp;title=Microsoft acquisisce Komoku, azienda specializzata nelle soluzioni anti-rootkit" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/digg14.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to live" onmouseout="mOut(this)" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;amp;mkt=en-us&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/03/21/microsoft-acquisisce-komoku-azienda-specializzata-nelle-soluzioni-anti-rootkit.aspx&amp;amp;title=Microsoft acquisisce Komoku, azienda specializzata nelle soluzioni anti-rootkit" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/live4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to technorati!" onmouseout="mOut(this)" href="http://technorati.com/faves/?add=http://blogs.technet.com/feliciano_intini/archive/2008/03/21/microsoft-acquisisce-komoku-azienda-specializzata-nelle-soluzioni-anti-rootkit.aspx&amp;amp;title=Microsoft acquisisce Komoku, azienda specializzata nelle soluzioni anti-rootkit" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/technora4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to yahoo!" onmouseout="mOut(this)" href="http://myweb.yahoo.com/myresults/bookmarklet?u=http://blogs.technet.com/feliciano_intini/archive/2008/03/21/microsoft-acquisisce-komoku-azienda-specializzata-nelle-soluzioni-anti-rootkit.aspx&amp;amp;t=Microsoft acquisisce Komoku, azienda specializzata nelle soluzioni anti-rootkit" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/yahoo9.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;       &lt;/tr&gt;     &lt;/tbody&gt;&lt;/table&gt; &lt;/span&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;     &lt;br /&gt;&lt;/font&gt;&lt;/p&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3016818" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.0+Operating+System+Security/default.aspx">3.0 Operating System Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/0.0.0.0+Microsoft+Strategy+and+Initiatives/default.aspx">0.0.0.0 Microsoft Strategy and Initiatives</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Forefront+Client+Security/default.aspx">Forefront Client Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Forefront+Stirling/default.aspx">Forefront Stirling</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/0.1.0.0+Security+and+Privacy/default.aspx">0.1.0.0 Security and Privacy</category></item><item><title>Beta del "Microsoft Forefront Integration Kit for Network Access Protection"</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/03/14/beta-del-microsoft-forefront-integration-kit-for-network-access-protection.aspx</link><pubDate>Fri, 14 Mar 2008 14:12:41 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:2998116</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>5</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/2998116.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=2998116</wfw:commentRss><description>&lt;p&gt;&lt;font face="Calibri" size="3"&gt;Ecco un nuovo programma beta della serie &amp;quot;&lt;em&gt;Solution Accelerators&lt;/em&gt;&amp;quot; (di cui vi ho detto in questo &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/03/04/rilasciato-l-external-collaboration-toolkit-for-sharepoint.aspx" target="_blank"&gt;post&lt;/a&gt; sul toolkit per Sharepoint). Questa volta il kit si propone di aiutare i professionisti IT delle aziende che hanno sia la soluzione &lt;a href="http://www.microsoft.com/forefront/clientsecurity/default.mspx" target="_blank"&gt;&lt;strong&gt;Forefront Client Security&lt;/strong&gt;&lt;/a&gt; (ricordo che &lt;strong&gt;FCS&lt;/strong&gt; &amp;#232; la &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2007/05/03/Lancio-di-Forefront-e-System-Center-la-sicurezza-e-nulla-senza-il-controllo.aspx" target="_blank"&gt;soluzione anti-malware di Microsoft&lt;/a&gt; per le realt&amp;#224; aziendali dedicata ai sistemi operativi di base, sia client che server) sia &lt;strong&gt;Windows Server 2008&lt;/strong&gt; (per la parte di &lt;strong&gt;&lt;a href="http://technet.microsoft.com/en-us/network/bb545879.aspx" target="_blank"&gt;Network Access Protection - NAP&lt;/a&gt;&lt;/strong&gt;): in questa situazione i clienti hanno gi&amp;#224; tutto l'occorrente per realizzare una soluzione integrata che permetta di far accedere alla rete aziendale solo i client che risultino conformi alla policy creata ad-hoc sullo stato dell'applicazione anti-malware e di gestire il processo di adeguamento per i client non conformi.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Il kit intende aiutare passo passo nella realizzazione di questa soluzione:&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://blogs.technet.com/blogfiles/feliciano_intini/WindowsLiveWriter/BetadelMicrosoftForefrontIntegrationKitf_ABAE/image_2.png"&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://blogs.technet.com/blogfiles/feliciano_intini/WindowsLiveWriter/BetadelMicrosoftForefrontIntegrationKitf_ABAE/image_2.png"&gt;&lt;img style="border-right: 0px; border-top: 0px; margin: 0px 15px 0px 0px; border-left: 0px; border-bottom: 0px" height="326" alt="image" src="http://blogs.technet.com/blogfiles/feliciano_intini/WindowsLiveWriter/BetadelMicrosoftForefrontIntegrationKitf_ABAE/image_thumb.png" width="115" align="left" border="0" /&gt;&lt;/a&gt;&lt;/font&gt;&lt;/a&gt;&lt;font face="Calibri" size="3"&gt; &lt;u&gt;Fase di &lt;strong&gt;configurazione&lt;/strong&gt;&lt;/u&gt;: il componente del kit &amp;quot;&lt;em&gt;System Health Validator (SHV)&lt;/em&gt;&amp;quot; serve per stabilire le &amp;quot;&lt;em&gt;health policies&lt;/em&gt;&amp;quot; che verranno forzate su ogni client dotate di Forefront Client Security. Tipicamente queste sono che FCS sia installato, in esecuzione e con le file di signatures aggiornate.&amp;#160; &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;&lt;u&gt;Fase di &lt;strong&gt;verifica&lt;/strong&gt;&lt;/u&gt;: il componente del kit &amp;quot;&lt;em&gt;System Health Agent (SHA)&lt;/em&gt;&amp;quot; controlla in tempo reale lo stato di conformit&amp;#224; del client FCS rispetto alle policy aziendali impostate nella fase precedente. &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;&lt;u&gt;Fase di &lt;strong&gt;adeguamento&lt;/strong&gt;&lt;/u&gt;: Se il &lt;em&gt;System Health Agent&lt;/em&gt; rileva un problema su un computer, a tale client viene inibito l'accesso alla rete per prevenire l'eventuale diffusione di malware verso altri sistemi nella intranet. Sempre il &lt;em&gt;SHA&lt;/em&gt; opera per adeguare il client alle policy e dopo tale processo al client viene ridato il permesso di accedere alla rete. &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Credo sia davvero interessante iniziare a vedere NAP in azione e questo kit vi aiuta in un paio d'ore a mettere in campo una soluzione subito operativa!&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Qui il &lt;a href="https://connect.microsoft.com/InvitationUse.aspx?ProgramID=2017&amp;amp;InvitationID=MESQ-9779-TKPW&amp;amp;SiteID=14" target="_blank"&gt;&lt;strong&gt;link&lt;/strong&gt; per partecipare alla beta&lt;/a&gt; e qui il &lt;a href="http://blogs.technet.com/secguide/archive/2008/03/13/new-beta-available-microsoft-forefront-integration-kit-for-network-access-protection.aspx" target="_blank"&gt;post&lt;/a&gt; del blog dei Solution Accelerators di Security &amp;amp; Compliance che ne parla.&lt;/font&gt;&lt;/p&gt; &lt;span class="sbmLink"&gt;   &lt;table cellspacing="1" cellpadding="1"&gt;&lt;tbody&gt;       &lt;tr&gt;         &lt;td class="sbmText"&gt;Share this post : &lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to del.icio.us" onmouseout="mOut(this)" href="http://del.icio.us/post?url=http://blogs.technet.com/feliciano_intini/archive/2008/03/14/beta-del-microsoft-forefront-integration-kit-for-network-access-protection.aspx&amp;amp;;title=Beta del " target="_blank" protection??="Protection??" Access="Access" Network="Network" for="for" Kit="Kit" Integration="Integration" Forefront="Forefront" Microsoft="Microsoft"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/deliciou4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to digg" onmouseout="mOut(this)" href="http://digg.com/submit?phase=2&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/03/14/beta-del-microsoft-forefront-integration-kit-for-network-access-protection.aspx&amp;amp;title=Beta del " target="_blank" protection??="Protection??" Access="Access" Network="Network" for="for" Kit="Kit" Integration="Integration" Forefront="Forefront" Microsoft="Microsoft"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/digg14.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to live" onmouseout="mOut(this)" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;amp;mkt=en-us&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/03/14/beta-del-microsoft-forefront-integration-kit-for-network-access-protection.aspx&amp;amp;title=Beta del " target="_blank" protection??="Protection??" Access="Access" Network="Network" for="for" Kit="Kit" Integration="Integration" Forefront="Forefront" Microsoft="Microsoft"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/live4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to technorati!" onmouseout="mOut(this)" href="http://technorati.com/faves/?add=http://blogs.technet.com/feliciano_intini/archive/2008/03/14/beta-del-microsoft-forefront-integration-kit-for-network-access-protection.aspx&amp;amp;title=Beta del " target="_blank" protection??="Protection??" Access="Access" Network="Network" for="for" Kit="Kit" Integration="Integration" Forefront="Forefront" Microsoft="Microsoft"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/technora4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to yahoo!" onmouseout="mOut(this)" href="http://myweb.yahoo.com/myresults/bookmarklet?u=http://blogs.technet.com/feliciano_intini/archive/2008/03/14/beta-del-microsoft-forefront-integration-kit-for-network-access-protection.aspx&amp;amp;t=Beta del " target="_blank" protection??="Protection??" Access="Access" Network="Network" for="for" Kit="Kit" Integration="Integration" Forefront="Forefront" Microsoft="Microsoft"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/yahoo9.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;       &lt;/tr&gt;     &lt;/tbody&gt;&lt;/table&gt; &lt;/span&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=2998116" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.0+Operating+System+Security/default.aspx">3.0 Operating System Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0+Perimeter+and+Network+Security/default.aspx">2.0 Perimeter and Network Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Network+Access+Protection+_2800_NAP_2900_/default.aspx">Network Access Protection (NAP)</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Forefront+Client+Security/default.aspx">Forefront Client Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Windows+Server+2008+Security/default.aspx">Windows Server 2008 Security</category></item><item><title>Slide del seminario Technet Expert sulla Microsoft Security Strategy e su Forefront</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/01/30/slide-del-seminario-technet-expert-sulla-microsoft-security-strategy-e-su-forefront.aspx</link><pubDate>Wed, 30 Jan 2008 13:07:34 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:2797855</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/2797855.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=2797855</wfw:commentRss><description>&lt;p&gt;&lt;font face="Calibri" size="3"&gt;Lo scorso 22 gennaio abbiamo ospitato nella sede Microsoft di Segrate l'evento &lt;strong&gt;Technet Expert Tour&lt;/strong&gt;, interamente dedicato alle soluzioni Forefront, di cui vi avevo accennato in questo &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/01/03/risorse-su-forefront-ed-evento-technet-expert-tour.aspx"&gt;post&lt;/a&gt; (dove trovate i link ad una serie utile di risorse su questi argomenti). Speaker d'eccezione &amp;#232; stato &lt;strong&gt;Ronald Beekelaar&lt;/strong&gt;, che ho trovato molto chiaro ed esauriente (...peccato dovermi subito assentare per attivit&amp;#224; urgenti). Io ho avuto la possibilit&amp;#224; di fare una rapida (anzi rapidissima... vero?) overview della &lt;u&gt;strategia di Microsoft sulla sicurezza&lt;/u&gt;. Soprattutto a beneficio di chi non &amp;#232; riuscito a venire, volevo segnalare che ora sono &lt;a href="http://www.microsoft.com/italy/technet/eventi/passati/expert.mspx"&gt;disponibili le slide Powerpoint di tutte le sessioni della giornata&lt;/a&gt;, compresa la mia. &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Certo vi siete persi il gusto dell'ascolto &lt;em&gt;live&lt;/em&gt; della mia cadenza tipicamente pugliese, ma tranquilli, non mancheranno nuove occasioni!&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;P.S. Se chi &amp;#232; stato presente volesse darmi un feedback ulteriore sulla mia sessione o sull'evento in generale sarei ben felice, anzi... Feliciano! (E' giornata di freddure, non ci fate caso...).&lt;/font&gt;&lt;/p&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=2797855" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.0+Operating+System+Security/default.aspx">3.0 Operating System Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0+Perimeter+and+Network+Security/default.aspx">2.0 Perimeter and Network Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/4.0+Application+Security/default.aspx">4.0 Application Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/6.0+Data+Security/default.aspx">6.0 Data Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/0.0.0.0+Microsoft+Strategy+and+Initiatives/default.aspx">0.0.0.0 Microsoft Strategy and Initiatives</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/z-Eventi/default.aspx">z-Eventi</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Forefront+Client+Security/default.aspx">Forefront Client Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Forefront+Stirling/default.aspx">Forefront Stirling</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/0.1.0.0+Security+and+Privacy/default.aspx">0.1.0.0 Security and Privacy</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/0.1.1.0+Trustworthy+Computing+_2800_TwC_2900_+/default.aspx">0.1.1.0 Trustworthy Computing (TwC) </category></item><item><title>Risorse su Forefront ed evento Technet Expert Tour</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/01/03/risorse-su-forefront-ed-evento-technet-expert-tour.aspx</link><pubDate>Thu, 03 Jan 2008 13:25:43 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:2705811</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>2</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/2705811.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=2705811</wfw:commentRss><description>&lt;p&gt;&lt;font face="Calibri" size="3"&gt;Riprendo volentieri il &lt;a href="http://blogs.technet.com/italy/archive/2008/01/02/protezione-da-virus-e-malware-dell-infrastruttura-aziendale.aspx" target="_blank"&gt;post&lt;/a&gt; dell'amico Renato sul blog Technet per un paio di buoni motivi. &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Il primo di questi &amp;#232; l'utile riepilogo di risorse per approfondire il tema Forefront. Renato ha raccolto i diversi webcast in italiano, io ho approfittato per aggiornare il mio &lt;a href="http://blogs.technet.com/feliciano_intini/pages/microsoft-blogs-and-web-resources-about-security.aspx" target="_blank"&gt;Microsoft Security Portal&lt;/a&gt; con i link ai diversi TechCenter di Technet sui diversi prodotti Forefront (li trovate cercando [UPD-08-01] nella pagina del portale).&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Il secondo &amp;#232; la segnalazione del prossimo evento &lt;strong&gt;&lt;a href="http://www.microsoft.com/italy/technet/eventi/forefront.mspx" target="_blank"&gt;Technet Expert Tour&lt;/a&gt;&lt;/strong&gt; che ospiteremo il prossimo &lt;u&gt;22 gennaio&lt;/u&gt; nell'Auditorium della nostra sede di Segrate (MI). L'evento sar&amp;#224; una giornata intera dedicata alle soluzioni &lt;strong&gt;Forefront&lt;/strong&gt;, come potete notare dall'elenco delle sessioni in &lt;a href="http://www.microsoft.com/italy/technet/eventi/forefront.mspx" target="_blank"&gt;agenda&lt;/a&gt;, tenute dal famoso esperto &lt;strong&gt;Ronald Beekelaar&lt;/strong&gt;. Questo implica che le sessioni saranno in inglese (con possibilit&amp;#224; di richiedere la traduzione simultanea), tutte tranne una, la prima.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;La prima sessione infatti sar&amp;#224; &lt;strong&gt;una panoramica della strategia Microsoft per la sicurezza&lt;/strong&gt; e la terr&amp;#224; un vostro caro amico: &lt;strong&gt;Feliciano Intini&lt;/strong&gt;. S&amp;#236;, proprio io! Se quindi contate di &lt;a href="http://msevents.microsoft.com/CUI/EventDetail.aspx?EventID=1032364079&amp;amp;Culture=it-IT" target="_blank"&gt;iscrivervi&lt;/a&gt; e venire a trovarci sar&amp;#224; un piacere conoscerci: io mi tratterr&amp;#242; nei paraggi dell'Auditorium per tutta la durata dell'evento in modo da potervi incontrare durante le pause, fatevi avanti, vi aspetto!&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.microsoft.com/italy/technet/eventi/forefront.mspx" target="_blank"&gt;&lt;img style="border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px" height="150" alt="forefront_top" src="http://blogs.technet.com/blogfiles/feliciano_intini/WindowsLiveWriter/RisorsesuForefrontedeventoTechnetExpertT_A0A9/forefront_top_3.jpg" width="520" border="0" /&gt;&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;&amp;#160;&lt;/font&gt;&lt;/p&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=2705811" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.0+Operating+System+Security/default.aspx">3.0 Operating System Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0+Perimeter+and+Network+Security/default.aspx">2.0 Perimeter and Network Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Remote+Access+-+VPN+-+Quarantine+Services/default.aspx">Remote Access - VPN - Quarantine Services</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/z-Eventi/default.aspx">z-Eventi</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Forefront+Client+Security/default.aspx">Forefront Client Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Forefront+Stirling/default.aspx">Forefront Stirling</category></item><item><title>Miglioramenti per l'engine di scansione anti-malware Microsoft</title><link>http://blogs.technet.com/feliciano_intini/archive/2007/09/10/miglioramenti-per-l-engine-di-scansione-anti-malware-microsoft.aspx</link><pubDate>Mon, 10 Sep 2007 19:55:47 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:1934213</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>1</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/1934213.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=1934213</wfw:commentRss><description>&lt;p&gt;&lt;font face="Calibri" size="3"&gt;Forse qualcuno di voi si starà domandando: perché Microsoft produce anche gli antivirus ? Ebbene sì. Come parte della non troppo recente strategia di sicurezza, Microsoft ha ritenuto opportuno proporsi nel mercato delle soluzioni anti-malware avendo intuito la possibilità di riuscire a competere con i prodotti già esistenti su due aspetti essenziali: la migliore integrazione con il sistema operativo e le applicazioni Microsoft, e una migliore gestibilità di queste soluzioni per semplificare il compito dell'amministratore e dell'operatore dedito al monitoraggio degli eventi. Presa questa direzione, Microsoft ha iniziato ad acquisire &lt;em&gt;know-how&lt;/em&gt; su queste soluzioni tramite una serie di acquisizioni di aziende già specializzate. E' un dato di fatto che si sia dovuto creare questo tipo di competenza abbastanza ex-novo (non avendola nativamente pronta in casa), e quindi non mi ha particolarmente sorpreso come i primi risultati nel confronto con gli altri prodotti antivirus operati nei primi mesi del 2007 siano stati a dir poco deludenti. Poi, come spesso succede in casa Microsoft, quei risultati negativi sono serviti per identificare in modo puntuale le aree che avevano bisogno di un serio miglioramento, ed ecco apparire i primi risultati interessanti di tale impegno.&lt;/font&gt;&lt;/p&gt; &lt;p&gt;&lt;font face="Calibri" size="3"&gt;I test realizzati da &lt;a href="http://www.av-test.org/" target="_blank"&gt;&lt;strong&gt;AV-Test&lt;/strong&gt;&lt;/a&gt; ad agosto (e commentati in questo &lt;a href="http://news.softpedia.com/news/Microsoft-039-s-Security-Solutions-Explode-Top-Sophos-Nod32-McAfee-and-Trend-Micro-63834.shtml" target="_blank"&gt;articolo&lt;/a&gt;) hanno visto l'engine anti-malware di Microsoft produrre il 96,42% di capacità di rilevamento rispetto ad un campione di circa 875.000 file virali degli ultimi sei mesi, in un confronto con 29 prodotti: il decimo posto in questa classifica davanti a nomi blasonati è di tutto rispetto se pensiamo all'ultimo posto dell'ultimo confronto. &lt;/font&gt;&lt;/p&gt; &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Sempre in agosto, &lt;a href="http://www.av-comparatives.org/" target="_blank"&gt;&lt;strong&gt;AVComparatives&lt;/strong&gt;&lt;/a&gt; ha condotto il suo secondo test del 2007 (commentato in questo &lt;a href="http://www.virusbtn.com/news/2007/09_03.xml" target="_blank"&gt;articolo&lt;/a&gt;) sui prodotti anti-virus di tipo consumer (test che copre un set di file virali relativi agli ultimi 3 anni) e ha certificato &lt;a href="http://onecare.live.com/standard/it-it/default.htm" target="_blank"&gt;&lt;strong&gt;Windows Live OneCare&lt;/strong&gt;&lt;/a&gt; per essere in grado di rilevare circa il 90,7% del campione malware analizzato, con un miglioramento del 7% rispetto allo scorso test di febbraio. &lt;/font&gt;&lt;/p&gt; &lt;p&gt;&lt;font face="Calibri" size="3"&gt;VI ricordo che l'engine anti-malware di Microsoft è unico e presente sia nel prodotto &lt;a href="http://onecare.live.com/standard/it-it/default.htm" target="_blank"&gt;&lt;strong&gt;Windows Live OneCare&lt;/strong&gt;&lt;/a&gt; orientato al consumer sia nelle suite &lt;a href="http://www.microsoft.com/forefront" target="_blank"&gt;&lt;strong&gt;Forefront&lt;/strong&gt;&lt;/a&gt; orientate alla clientela business. &lt;/font&gt;&lt;/p&gt; &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Se continuiamo a lavorare così per migliorarlo, c'è da ben sperare in un prodotto interessante: non so che esperienza abbiate voi, ma nelle mie attività di consulenza succede ormai molto spesso di trovarsi di fronte alla scoperta di nuove varianti di malware e di osservare una preoccupante inadeguatezza da parte dei vendor anti-virus nel fornire supporto completo e tempestivo per aiutare il cliente in questi frangenti.&amp;nbsp; Su questi aspetti Microsoft è in grado di fare la differenza e se il prodotto diventa davvero concorrenziale nelle funzionalità e nella capacità di rilevamento potrebbe diventare una soluzione temibile, come tanti analisti cominciano a segnalare.&lt;/font&gt;&lt;/p&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=1934213" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.0+Operating+System+Security/default.aspx">3.0 Operating System Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Forefront+Client+Security/default.aspx">Forefront Client Security</category></item><item><title>Lancio di Forefront e System Center: la sicurezza è nulla senza il controllo</title><link>http://blogs.technet.com/feliciano_intini/archive/2007/05/03/Lancio-di-Forefront-e-System-Center-la-sicurezza-e-nulla-senza-il-controllo.aspx</link><pubDate>Thu, 03 May 2007 15:36:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:876280</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>2</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/876280.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=876280</wfw:commentRss><description>Ho un lungo backlog di informazioni che premono per diventare dei post, ma l'annuncio di ieri merita una corsia preferenziale: Microsoft ha operato il lancio di due soluzioni, Microsoft® Forefront Client Security e Microsoft System Center Essentials 2007, e lo ha fatto volutamente congiunto per delineare la sua intenzione strategica di integrare le soluzioni di sicurezza con quelle di management, costruite entrambe su una comune piattaforma di gestione dell'infrastruttura. ...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2007/05/03/Lancio-di-Forefront-e-System-Center-la-sicurezza-e-nulla-senza-il-controllo.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=876280" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.0+Operating+System+Security/default.aspx">3.0 Operating System Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/7.0+Security+Foundations+_2800_Technology_2900_/default.aspx">7.0 Security Foundations (Technology)</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/0.0.0.0+Microsoft+Strategy+and+Initiatives/default.aspx">0.0.0.0 Microsoft Strategy and Initiatives</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/System+Center+Operations+Manager+_2800_SCOM_2900_+2007+/default.aspx">System Center Operations Manager (SCOM) 2007 </category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Forefront+Client+Security/default.aspx">Forefront Client Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/0.1.0.0+Security+and+Privacy/default.aspx">0.1.0.0 Security and Privacy</category></item></channel></rss>