Security response isn’t just about the “sexy” analysis of vulnerabilities, reverse-engineering of malware, and so on… it’s probably mostly about getting the basics right. Every morning, I forward all of the PayPal phishing scams I receive to PhishTank, Netcraft, and Spoof@Paypal. Today, I took a closer look at the response I got to the lastContinue reading “Security Response Basics”
Category Archives: windmills
DotNet Makes Me Sad, In Pictures
.NET Framework KB 3088956: Ouch, that sounds pretty severe. I guess I’d better go manually install a hotfix? Seriously? An email address and a CAPTCHA? Fine. Oh, an email delivered HTTP URL pointed at an executable file? That seems totes legit. Yup, definitely legit, it says “Microsoft” right there at the top! Sure, let’s putContinue reading “DotNet Makes Me Sad, In Pictures”
Ad Publishers–A TODO List
Where’s Google’s* blog on how they’re doing everything they can to make ads they serve as fast and small as possible? Where’s Google’s blog on how many ads they’ve nuked as “deceptive” and trumpeting how policy forbids ads for “adware-wrapped” installers? Where’s Google’s blog about how many billions of ad-generated dollars they’ve supplied to contentContinue reading “Ad Publishers–A TODO List”
Developer Advocacy
The Microsoft Edge (nee Internet Explorer) team held one of their “#AskMSEdge chats” on Twitter yesterday. After watching the stream, @MarkXA neatly summarized the chat: The folks over on WindowsCentral built out a larger summary of the tidbits of news that did get answered on the chat, some of which were just pointers to theirContinue reading “Developer Advocacy”
Attribution Error
In life, you sometimes encounter people with “high standards”—folks who often find others’ behavior lacking in some way. Such people usually explain: “Sure, I have high standards… but I hold myself to an even higher standard!” Except… they rarely do. The problem is that, as humans, we’re subject to both fundamental attribution error and actor-observer bias. TheseContinue reading “Attribution Error”