Stories by: Roger A. Grimes
Application whitelisting in Windows 7 and Windows Server 2008 R2
Microsoft's AppLocker, the application control feature included in Windows 7 and Windows Server 2008 R2, is an improvement on the Software Restriction Policies (SRP) introduced with Windows XP Professional. AppLocker allows application execution rules and exceptions to them to be defined based on file attributes such as path, publisher, product name, file name, file version, and so on. Policies can then be assigned to computers, users, security groups, and organizational units through Active Directory.Application whitelisting review: McAfee Application Control
McAfee Application Control 5.0 (due out Dec. 15) is the result of McAfee's acquisition of Solidcore and the integration of Solidcore S3 Control with McAfee ePolicy Orchestrator (ePO). McAfee Application Control rivals SignaCert for the broadest client support among all the products in InfoWorld's review. It also boasts write protection and ownership protection of whitelisted files, good reporting and alerting, and no significant cons.Application whitelisting review: Bit9 Parity Suite
As many product vendors can readily tell you, this reviewer is the ultimate computer security cynic and a tough writer to please. I'm unsparingly critical of overhyped products. Although I've evaluated a number of excellent products over the years, I've never given a perfect 10 in any scorecard category -- until now. Bit9 Parity is one of the few computer security products that, if deployed in your Windows environment, will radically and immediately reduce your enterprise's level of security risk. It's not perfect, and it did not score a perfect 10 in every field -- but it earned the highest score this reviewer has ever given.Application whitelisting review: CoreTrace Bouncer
CoreTrace's Bouncer 5 is application control and more. Bouncer is the only product in InfoWorld's review that successfully protected against buffer overflows. It also offers unique write protection of whitelisted files and does a nice job of handling updates to controlled applications.Application whitelisting review: Lumension Application Control
Lumension Application Control is a strong whitelisting solution with broad file coverage, excellent reporting, and a complete set of Windows file definitions that can be used to spot potentially troublesome changes to system files. Its one noteworthy shortcoming is the inability to create whitelisting rules based on the digital signatures of application publishers.Application whitelisting review: SignaCert Enterprise Trust Services
SignaCert was one of the first whitelisting products available, and it now boasts more than 1 billion predefined file signatures as part of its Global Trust Repository service. It also offers file authenticity ratings, wide platform support, extensibility through XML, and excellent documentation. SignaCert's significant weakness is that it does not natively block file executions -- the only product in InfoWorld's review that does not include this ability as a standard feature.How secure is Safari?
Apple's Safari, released for the Windows platform in June 2007, is the second newest browser on Windows, behind Google's Chrome. (Naturally, Apple's browser also runs on OS X, and on iPhone and iPod Touch devices in a mobile edition.) Safari leads the pack in anti-phishing filtering and pop-up blocking, but it also has many security weaknesses.How secure is Opera?
Opera has long been an underrated, feature-rich browser worthy of greater attention and a larger market share. It runs on Microsoft Windows, Mac, Linux, FreeBSD, Solaris, mobile phones, Nintendo gaming systems, and other now historical operating systems. Like all of the leading browsers, it supports Java and JavaScript, and its impressive, growing feature set pushes beyond today's standards such as tabbed browsing to include the likes of voice-controlled browsing, e-mail, and instant messaging. Opera has many unique security features too, and the granularity of its security controls easily beats that of most rivals, the exception being Microsoft's Internet Explorer.Good security in recessionary times
If you've had any money in the stock market, it's been a bloodbath the last few weeks. It's hard to remember that any 10-year period in stock market history has always ended up with better returns than any other investment. As financial analysts argue over whether we are already in or just headed into a deep global recession, we are facing a rough, contracting period. People with good jobs are holding on to them tighter than ever.Two tenacious exploits debunk vendor claims
Many sandbox security vendors claim that their products stop all known and unknown attacks. Even assuming the ability to curtail all known attacks could be proven, it's simply impossible to believe that any piece of software could halt all unknown attacks. Of course, that doesn't prevent the vendors from making empty promises or the malware authors from proving them wrong.Sandbox security versus the evil Web
The Internet is a scary place. Criminal malware lurks on legitimate and illegitimate Web sites alike, looking to steal your money one way or the other. Vendors have been scratching their collective heads attempting to make more consumers safer, more often. One of the results has been a class of anti-malware software that I call sandbox protection products. These items encapsulate Internet browsers (and e-mail programs and sometimes any other program you can run) within a virtual, emulated cocoon designed to keep malware from reaching and modifying the underlying host computer.
Jobs
- Infrastructure Project Manager - Speech Analytics (M4)12/03/2010
Other
I.T. & T
Infrastructure Project Manager - Speech Analytics (M4) - Solution & Test Analyst (Q8)12/03/2010
Other
I.T. & T
Solution & Test Analyst (Q8) - Solaris/Unix Systems Administrator12/03/2010
Other
I.T. & T
Solaris/Unix Systems Administrator - SIT Test Designer - Sydney CBD - 3 months - Telco (S35)12/03/2010
Other
I.T. & T
SIT Test Designer - Sydney CBD - 3 months - Telco (S35) - HEALTHCARE SECTOR - SENIOR BUSINESS DEVELOPMENT MANAGER12/03/2010
Other
I.T. & T
HEALTHCARE SECTOR - SENIOR BUSINESS DEVELOPMENT MANAGER - SECURITY ENGINEER - PENETRATION12/03/2010
Other
I.T. & T
SECURITY ENGINEER - PENETRATION - SAP MM PP Consultant12/03/2010
Other
I.T. & T
SAP MM PP Consultant
Whitepapers
-
Enterprise Management | A Computerworld Strategy Guide -
How NOT to Wreck Your Windows 7 Migration | Guidelines for Planning and Executing a Successful Windows 7 Migration -
Operational Responsiveness | An Executive Guide -
Gartner's Magic Quadrant for PC Configuration Life Cycle Management Tools -
Video Overview | Successful Migration to Windows 7
TechWorld Blogs
Recent blog posts
- All aboard the Avatar Economy
- Facebook, PayPal tie up ad payments
- Google goes for more markets: too much too quickly?
- Talk about mobile computing
- iPad arrives: can Apple crack the tablet?
- Linux.conf.au 2010 kicks off in New Zealand
- VMware jumps further into SaaS with Zimbra
- Amarok 2.2.2 released – rock on!
- Happy Nexus Year
- So long 2009, and thanks for another decade in tech
Techworld Australia Member Login
Market Place
Good Gear Guide
Buying Guides
Latest Products
ALS
- Genome sequence of whole family reveals surprises
- RNA sequencing potent tool for understanding gene expression
- Personalised medicine advanced with TGA approval of bowel cancer treatment
- Diabetes market growing, obesity market shrinking: analysts
- Living Cell Technologies implant given regulatory tick in Russia







Recent comments
1 hour 9 min ago
2 hours 55 min ago
6 hours 58 min ago
9 hours 24 min ago
18 hours 17 min ago
1 day 4 hours ago
1 day 15 hours ago
1 day 21 hours ago
2 days 10 hours ago
3 days 3 hours ago
3 days 23 hours ago
5 days 18 min ago
5 days 3 hours ago
6 days 13 hours ago
6 days 13 hours ago
1 week 3 hours ago
1 week 20 hours ago
1 week 1 day ago
1 week 1 day ago
1 week 1 day ago