New Windows Vista Security Blog


Posted by Nick White on Monday, July 24, 2006 7:49 PM 14 Comments

One of Windows Vista's central tenets is to enhance Windows security to such a degree that both power users and novices alike can access networks and information in a secure, protected manner and without worry.  Security has been such an obsessive focus and underpins so many parts of the new OS that it's arguably been the key driver behind our desire to release a new version of Windows.  It affects us all to some degree and is something about which pretty much everyone has an opinion, yet in Windows Vista, it's a poorly understood subject by and large.  My sense is that while features such as User Account Control have gotten their fair share of attention (and possibly more), others such as outbound application filtering by the Windows Vista Firewall are still unfamiliar to many readers.

The Windows Vista Security Blog was launched with that in mind.  In fact, the first post was drafted by Ben Fathi, our VP of the Security Technology Unit, and makes reference to a number of other security-related blogs, documents and sites that you might check out as well.  Ben also mentions that topics previously covered on other blogs will now be covered in more depth on the new security blog, which should make it easier to find more security-related content in a single place and also provide the entire team with feedback in the bargain.

For example, one topic Ben mentions is Address Space Layout Randomization -- which, combined with Data Execution Protection, are two aspects of security that're not necessarily well-known, let alone well understoodThese two innovations represent an ingenious way of preventing malware access to mapped memory locations wherein they could otherwise create buffer overruns and allow the execution of malicious data.  ASLR+NX represents one of the myriad ways that we've incorporated security measures into Windows Vista, and it's worth learning about that from the very people who designed and built the product.  Now you can via this new blog.

Security encompasses a multitude of topics and often gets attention only when it's a problem -- which is too bad, because it's a fascinating element of Windows Vista.  I'm happy to see this new blog and look forward to sharing highlights and insights from it with you in the future.

 

Posted by The Buzz


The issue of security in Windows Vista is vitally important but, as Nick points out in this post on the
 

Posted by The Insider by Sidebar Geek


Nick introduces us to the Windows Vista Security Blog - focusing on all things security in Windows Vista.
 

Posted by Ashwin


Hey sidebar, I need your help. Why am i not getting the Aero interface?? I mean, not the glass one, but the normal Aero, without the glass?? this is build 5384
 

Posted by Nick White


Hi Ashwin:

The hardware requirements for Windows Vista are pretty clearly defined on this page:

http://www.microsoft.com/windowsvista/getready/capable.mspx

You should note that the OS will scale the user experience (i.e., UI) according to the capabilities of the particular system; in other words, Aero may be disabled if the system does not have enough video memory or processing power to support it.  In this case, the Aero option would not appear in the drop-down found at Control Panel | Personalization | Appearance.

Hope this helps.

-- Nick
 

Posted by Ashwin


No, I dont want Aero Glass, I want the standard version of it where it looks like Aero glass but without the glass part.
 

Posted by Satisfy Me


MikeNash Nash presented an on-demand webcast for the Small Business Summit this past March,...
 

Posted by Windows Vista Team Blog


Roger Grimes, who serves as Security Advisor at InfoWorld, has gathered quite an extensive list of security

 

Posted by Microsoft a Secure OS Vendor? » Dee’s-Planet! Blog


 

Posted by Does Vista make Microsoft a Secure OS Vendor? « Vistahacker - The Guide to Windows Vista


 

Posted by Maxim Masiutin


I use Delphi compiler and cannot run Microsoft’s link.exe with "/dynamicbase" to set a new flag in the PE header to enable ASLR. Is therer any application that patches the PE header of the compiled EXE file to set the new flag to my application?

 

Posted by Michael_Moor


Hey "Nick White",thx for share

---------

http://www.dl4all.com

 

Posted by Angelique


How will i know to configure windows vista firewall, im worried about the outbound feature, i dont have a computer tech to teach me, and i want to configure it. Or when i buy a new operating system that comes with it, will they do it?

Please help

 

Posted by JacnLivi


Question, I notice I had to disable all the Windows Firewalls inorder for me so navigate away from ISP (Suddenlink) a broadband connection.  I emailed them with the question, do they have a firewall that we will not work with any of the Windows Firewall.   I notice that after I upgraded with Windows Vista Prem. Home, that I started having this problem. LiviB

 

Posted by chrisbee


Perhaps I am a bit confused about Bitlocker.  What if and individual loses his key altogether?  Is there no way to recover the drive itself?

Can it be formatted?  If so, cant the data be recovered using using data recovery software?

Thanks

Chris

Anonymous comments are disabled
© Copyright 2007 Microsoft Corporation. All rights reserved.