Friday, August 03, 2007 7:54 AM/EST
For more from Microsoft on when/how driver certificate revocation works, see the comment section on the blog on the Atsiv revocation. Sounds like the current architecture only allows for boot-time checks, and they're just speculating that checks with VeriSign could...
Thursday, August 02, 2007 10:17 PM/EST
My current column describes Atsiv, a tool for loading unsigned kernel code in Windows Vista x64. Perhaps I was the one who alerted Microsoft, but it responded tonight pretty strongly. As described by Scott Field, Windows Security Architect, in the...
Thursday, August 02, 2007 3:12 PM/EST
For my recent column on code signing I took a close look at the Trusted Root Certificates dialog on one of my Vista systems and noticed something odd. The selected certificate is one of two Symantec certificates. Three things are...
Tuesday, May 15, 2007 9:23 PM/EST
I love Jeff Jones's Technet Security blog. He's got a lot of nerve and he asks a lot of questions that challenge conventional wisdom. Now that he has a copy of the new interesting, but also disappointing in some ways,...