Cross-post from my blog The Microsoft Patterns and Practices Team has just released a new GUI app on CodePlex called Patterns & Practices Guidance Explorer. What's really useful about this tool is that it can be a one stop shop for you to evaluate Read More
The Code Room has produced a new show called Breaking Into Las Vegas.  This episode shows a game of cat and mouse with hackers and defenders with the stakes being the High Roller accounts in the Plaza Hotel and Casino.  This is a really cool Read More
The Patterns and Practices team at Microsoft has published 6 introductory training modules on secure development from Keith Brown on the Channel 9 site.  They are complete with video on the tecniques and explanations of why you have to take these Read More
The Microsoft ACE Team opened a new blog on Thursday Aussie time. It's all about Threat Modeling.  We welcome the Microsoft Threat Modeling & Analysis Blog to the Blogsphere! Since I'm a particular fan of Threat Modeling, and the ACE Team's Read More
For a long time Threat Modeling by Frank Swiderski and Window Snyder has been the Threat Modeling Bible and rightfully so.  Traditional Threat Modeling is a software development life cycle process in which data flow diagrams are used to find points Read More