Robert Hensing's Blog
Home of the "Fail Open Goat" Award
October 2008 - Posts
Microsoft SideSight?
Looks cool: http://www.gearlog.com/2008/10/microsofts_sidesight_something.php
Read More...
SmoothHD
Akamai / IIS7 / SilverLight 2.0 / VC-1 == HD over broadband happiness. It's sort of cool - the video started off a tad blurry and then got sharper after a few seconds and I didn't have a single glitch. Pretty impressive stuff: http://www.smoothhd.com/
Read More...
Mass SQL Injection : The Chinese Way
The blog pretty much speaks for itself: http://www.circleid.com/posts/20081022_sql_injection_attacks_chinese_way/ Client-side browser vulns are of little use without an effective way of spreading them to the victims - unfortunately - it's still relatively
Read More...
Out of band security update planned for today (MS08-067)
Updated 10/23/2008 @ 1:17pm EST We have pushed the update live - here's the direct link to the bulletin: http://www.microsoft.com/technet/security/Bulletin/MS08-067.mspx (if it doesn't work for you - keep trying - it will be live real soon now). Also
Read More...
Flash 10 & IE8b2 Per Site ActiveX
So I've got IE8b2 installed on all of my machines and I've noticed that since installing Flash 10 that all web sites now prompt me before running Flash 10! The new gold bar experience users will see when they install Flash 10 on IE8 is described here
Read More...
Flash 10 is out - install it like . . . yesterday.
If I were a bad guy and I wanted to pwn lots of people via the web - I'd probably focus my efforts on ubiquitous software guaranteed to give me a lot of bang for my buck (like Flash and Acrobat). Software like Flash would seem like a good target given
Read More...
Win7 to officially be called . . . Win7?
I actually for once - LOVE that we are keeping the name of the OS simple and leaving it at Win7. I will admit - I was somewhat disappointed when XP's name was announced internally (internally it was known as Whistler) and I was downright horrified when
Read More...
MAPP + Exploitability Index == Protected Customers, Better Security Update Prioritization
Today we officially launched our MAPP program ( http://www.microsoft.com/security/msrc/mapp/partners.mspx ) and at the same time we also started providing exploitability information about our vulnerabilities to the world. These two things are pretty huge.
Read More...
DayCon II / OSU Security Day / SafeCode
Welp - just got back from speaking at a couple of events in Dayton, OH. First up was THE Ohio State University security day . . . I delivered my 'targeted attacks' presentation which I've been doing for over 2 years now (everything's the same - only the
Read More...
Shostack on "Threat Modeling"
Adam Shostack is incredibly smart - and he also happens to be responsible for managing the threat modeling aspect of the SDL these days. Here's got a nice 10 page paper here on threat modeling - very much worth the read if you're into that sort of thing.
Read More...
iPhone running WM 6.1?
Okay - I'm not sure if this is real or not - but the interview itself is hilarious - the questions the woman asks at the end and the kid's responses are hysterical: http://wmpoweruser.com/?p=1330
Read More...
Search
This Blog
Home
Email
Tags
No tags have been created or used yet.
Archives
December 2008 (1)
November 2008 (2)
October 2008 (11)
September 2008 (13)
August 2008 (6)
July 2008 (11)
June 2008 (24)
May 2008 (11)
April 2008 (15)
March 2008 (15)
February 2008 (11)
January 2008 (7)
December 2007 (9)
November 2007 (15)
October 2007 (23)
September 2007 (18)
August 2007 (8)
July 2007 (13)
June 2007 (10)
May 2007 (12)
April 2007 (8)
March 2007 (5)
February 2007 (4)
January 2007 (7)
December 2006 (5)
November 2006 (6)
September 2005 (1)
July 2005 (1)
March 2005 (4)
February 2005 (6)
January 2005 (8)
November 2004 (1)
October 2004 (2)
August 2004 (2)
July 2004 (1)
Syndication
RSS 2.0
Atom 1.0