| gal-sec ( @ 2006-02-15 12:33:00 |
Windows file ACL too complicated?
"Popular apps have mismanaged security" says recent research by a Princeton University team. What this reminds me is that the more complex software is the more security problems there are - both in terms of programming errors and configuration. (And by the way I always wondered why I just cannot turn off RPC service on my windows workstation).
http://www.networkworld.com/news/2006/0 20606-application-security.html?fsrc=rss-s ecurity
http://www.schneier.com/blog/archives/2 006/02/windows_access.html
Original paper: http://www.cs.princeton.edu/~sudhakar/p apers/winval.pdf
"Popular apps have mismanaged security" says recent research by a Princeton University team. What this reminds me is that the more complex software is the more security problems there are - both in terms of programming errors and configuration. (And by the way I always wondered why I just cannot turn off RPC service on my windows workstation).
http://www.networkworld.com/news/2006/0
http://www.schneier.com/blog/archives/2
Original paper: http://www.cs.princeton.edu/~sudhakar/p