Stories by: Roger A. Grimes
Application whitelisting in Windows 7 and Windows Server 2008 R2
Microsoft's AppLocker, the application control feature included in Windows 7 and Windows Server 2008 R2, is an improvement on the Software Restriction Policies (SRP) introduced with Windows XP Professional. AppLocker allows application execution rules and exceptions to them to be defined based on file attributes such as path, publisher, product name, file name, file version, and so on. Policies can then be assigned to computers, users, security groups, and organizational units through Active Directory.Application whitelisting review: McAfee Application Control
McAfee Application Control 5.0 (due out Dec. 15) is the result of McAfee's acquisition of Solidcore and the integration of Solidcore S3 Control with McAfee ePolicy Orchestrator (ePO). McAfee Application Control rivals SignaCert for the broadest client support among all the products in InfoWorld's review. It also boasts write protection and ownership protection of whitelisted files, good reporting and alerting, and no significant cons.Application whitelisting review: Bit9 Parity Suite
As many product vendors can readily tell you, this reviewer is the ultimate computer security cynic and a tough writer to please. I'm unsparingly critical of overhyped products. Although I've evaluated a number of excellent products over the years, I've never given a perfect 10 in any scorecard category -- until now. Bit9 Parity is one of the few computer security products that, if deployed in your Windows environment, will radically and immediately reduce your enterprise's level of security risk. It's not perfect, and it did not score a perfect 10 in every field -- but it earned the highest score this reviewer has ever given.Application whitelisting review: CoreTrace Bouncer
CoreTrace's Bouncer 5 is application control and more. Bouncer is the only product in InfoWorld's review that successfully protected against buffer overflows. It also offers unique write protection of whitelisted files and does a nice job of handling updates to controlled applications.Application whitelisting review: Lumension Application Control
Lumension Application Control is a strong whitelisting solution with broad file coverage, excellent reporting, and a complete set of Windows file definitions that can be used to spot potentially troublesome changes to system files. Its one noteworthy shortcoming is the inability to create whitelisting rules based on the digital signatures of application publishers.Application whitelisting review: SignaCert Enterprise Trust Services
SignaCert was one of the first whitelisting products available, and it now boasts more than 1 billion predefined file signatures as part of its Global Trust Repository service. It also offers file authenticity ratings, wide platform support, extensibility through XML, and excellent documentation. SignaCert's significant weakness is that it does not natively block file executions -- the only product in InfoWorld's review that does not include this ability as a standard feature.How secure is Safari?
Apple's Safari, released for the Windows platform in June 2007, is the second newest browser on Windows, behind Google's Chrome. (Naturally, Apple's browser also runs on OS X, and on iPhone and iPod Touch devices in a mobile edition.) Safari leads the pack in anti-phishing filtering and pop-up blocking, but it also has many security weaknesses.How secure is Opera?
Opera has long been an underrated, feature-rich browser worthy of greater attention and a larger market share. It runs on Microsoft Windows, Mac, Linux, FreeBSD, Solaris, mobile phones, Nintendo gaming systems, and other now historical operating systems. Like all of the leading browsers, it supports Java and JavaScript, and its impressive, growing feature set pushes beyond today's standards such as tabbed browsing to include the likes of voice-controlled browsing, e-mail, and instant messaging. Opera has many unique security features too, and the granularity of its security controls easily beats that of most rivals, the exception being Microsoft's Internet Explorer.Good security in recessionary times
If you've had any money in the stock market, it's been a bloodbath the last few weeks. It's hard to remember that any 10-year period in stock market history has always ended up with better returns than any other investment. As financial analysts argue over whether we are already in or just headed into a deep global recession, we are facing a rough, contracting period. People with good jobs are holding on to them tighter than ever.Two tenacious exploits debunk vendor claims
Many sandbox security vendors claim that their products stop all known and unknown attacks. Even assuming the ability to curtail all known attacks could be proven, it's simply impossible to believe that any piece of software could halt all unknown attacks. Of course, that doesn't prevent the vendors from making empty promises or the malware authors from proving them wrong.Sandbox security versus the evil Web
The Internet is a scary place. Criminal malware lurks on legitimate and illegitimate Web sites alike, looking to steal your money one way or the other. Vendors have been scratching their collective heads attempting to make more consumers safer, more often. One of the results has been a class of anti-malware software that I call sandbox protection products. These items encapsulate Internet browsers (and e-mail programs and sometimes any other program you can run) within a virtual, emulated cocoon designed to keep malware from reaching and modifying the underlying host computer.
Jobs
- SAP MAM Consultant18/03/2010
Other
I.T. & T
SAP MAM Consultant - MAJOR BUSINESS DEVELOPMENT - NSW STATE GOVERNMENT VERTICAL18/03/2010
Other
I.T. & T
MAJOR BUSINESS DEVELOPMENT - NSW STATE GOVERNMENT VERTICAL - Senior Business Analyst - Financial Services- Contract to Perm18/03/2010
Other
I.T. & T
Senior Business Analyst - Financial Services- Contract to Perm - IT Security Architect - SDLC/Melbourne/3 months+/$650 per day18/03/2010
Other
I.T. & T
IT Security Architect - SDLC/Melbourne/3 months+/$650 per day - SAP OO ABAP Developer x 2 - 6 month contract - April Start!18/03/2010
Other
I.T. & T
SAP OO ABAP Developer x 2 - 6 month contract - April Start! - Senior Java Developer, Digital Media / Online, J2EE18/03/2010
Other
I.T. & T
Senior Java Developer, Digital Media / Online, J2EE - SAP Business Devlopment Manager18/03/2010
Other
I.T. & T
SAP Business Devlopment Manager
Whitepapers
-
Enhancing Worker Productivity in a Business 2.0 World -
Making the move to Ethernet | A DECISION GUIDE -
CIO Executive Guide | Unlocking the Potential of Automated Accounts Payable -
Operational Responsiveness | An Executive Guide -
Green IT | Saving Money while Saving Energy: Moving Beyond the Hype to Build a Powerful Business Case for Power Management
TechWorld Blogs
Recent blog posts
- Tim Bray joins Google, slams iPhone ecosystem
- Following social networking privacy
- All aboard the Avatar Economy
- Facebook, PayPal tie up ad payments
- Google goes for more markets: too much too quickly?
- Talk about mobile computing
- iPad arrives: can Apple crack the tablet?
- Linux.conf.au 2010 kicks off in New Zealand
- VMware jumps further into SaaS with Zimbra
- Amarok 2.2.2 released – rock on!
Techworld Australia Member Login
Good Gear Guide
Buying Guides
Latest Products
ALS
- Biotechnology Directory opens portal to the life sciences industry
- Positive results for Specialised Therapeutics Australia in lung cancer trial
- AusBiotech announces Australasian Life Science Investment Summit
- Illumina announces HumanOmniExpress+ Custom BeadChip
- Targeted antibiotics tackle bacterial resistance





Recent comments
15 min 2 sec ago
18 min 19 sec ago
4 hours 51 min ago
9 hours 13 min ago
9 hours 56 min ago
11 hours 17 min ago
12 hours 38 min ago
14 hours 16 min ago
20 hours 39 min ago
1 day 13 hours ago
2 days 3 hours ago
3 days 57 min ago
3 days 12 hours ago
4 days 4 hours ago
6 days 2 hours ago
6 days 19 hours ago
1 week 13 hours ago
1 week 21 hours ago
1 week 1 day ago
1 week 1 day ago