Sign in
in
   
"It is the mark of an educated mind to be able to entertain a thought without accepting it."
-Aristotle

About Me

I am a co-founder of Notches, an early stage startup currently based in NYC. We are building a free, open reviews network that anyone can participate in and anyone can build on top of. You can find out more on our official blog.

Read more about my background.

Connect with me on...

Recent Readers

Flickr Photos

 

Browse by Tags

All Tags » Security » Microsoft (RSS)
  • The UAC security flaw in Vista

    User Account Control (UAC) is one of the key security mechanisms introduced in Vista. In the past, the default account as an administrator. Following the principle of least privilege , the default Vista account runs with limited access, and Vista detects when something requires "administrator prompts", as mocked in the most recent Mac ad. All told, this is a good thing. Unfortunately, Microsoft made some poor design decisions in the implementation, sacrificing some of the security for ease of use. Joanna Rutkowska summarizes the issue : One thing that I found particularly annoying though, is that Vista automatically assumes that all setup programs (application installers) should be run with administrator privileges. So, when you try to run such a program, you get a UAC prompt and you have only two choices: either to agree to run this application as administrator or to disallow running it at all. That means that if you downloaded some freeware Tetris game, you will have to run its installer...
  • Google launches Google Apps Premier Edition

    As rumored yesterday , Google made a major announcement : a subscription package of premium, hosted business applications. (Man, Arrington's sources are scary good). The service combines GMail, Google Calendar, Google Talk and Google Docs & Spreadsheets for $50 per user annually. I still insist that Microsoft is well positioned to compete with a hosted version that integrates with existing Office apps. There are elements about a hosted Office that are appealing, but there are just as many that are not - particularly in publicly traded enterprises. Aside from potential downtime issues, you're placing a lot of trust in Google and its security ( which may not be the best idea ). No word on any plans for a self-hosted server like their search appliance - to me, that would be key for broader adoption and erase a lot of these security and compliance concerns. Getting back to Microsoft, I'm still puzzled that they haven't done more with Foldershare. By integrating this technology with a Office...