Tag: critical security

Windows 7 Security Evolution

October 07, 2009 by Jason

Confronted with increasingly bulletproofed Windows operating systems, the threat environment shifted toward targeting vulnerabilities in the code designed to run on top of the platform. With security enhancements such as User Account Control, Address Space Layout Randomization, Kernel Patch Protection and driver signing, but also with the new development methodology set in place via the Microsoft Security Development Lifecycle, vulnerabilities in Windows Vista and its successor Windows 7 have become harder to exploit, in the eventuality that attackers do come across critical security holes.

The biggest advantage in terms of security Vista and Windows 7 have over precursor Windows clients is the Security Development Lifecycle. And with the threat environment changing focus onto third-party Windows applications, Microsoft is ready to share the SDL secrets with third-party developers. An illustrative example in this regard is the Microsoft Security Development Lifecycle (SDL): Developer Starter Kit.

“The Microsoft SDL – Developer Starter Kit offers content, labs, and training to help you establish a standardized approach to rolling out the Microsoft Security Development Lifecycle (SDL) in your organization—or enrich your existing development practices,” Microsoft revealed.
Read More»

Windows 7 Beta Application Incompatibility Behavior

February 27, 2009 by Jason

Microsoft is not only serving Critical security updates designed to patch vulnerabilities in pre-release versions of Windows 7, but also refreshes meant to boost the operating system’s compatibility level. With Win 7, the Redmond company placed a strong focus on delivering backwards compatibility with Vista-tailored software and hardware products, and even went as far as labeling the next iteration of the Windows client with version 6.1, while its precursor was just 6.0. Still, compatibility, just as security, is an ongoing effort, and Microsoft is ready to start improving Windows 7 as early as Beta Build 7000.

In this regard, the software giant made available for download the first compatibility update for Windows 7 Beta and Windows Server 2008 R2 Beta. “Install this update to resolve issues with non-compatible applications for Windows 7 Beta,” Microsoft informed, indicating that the bits were also delivered through Windows Update, even if also available via the Download Center. It is important to note that in Windows 7 refreshes aimed to improve compatibility will be delivered under the same model as in Windows Vista. Read More»