The Inquirer-Home

Microsoft updates a security wrapper for dodgy code

Comes in after developers have given up
Fri Sep 03 2010, 15:56

SECURITY CONSCIOUS USERS will be given a helping hand by using a toolkit from that fortress of highly secure software, Microsoft.

The Vole has updated its Enhanced Mitigation Experience Toolkit (EMET), a piece of software that aims to plug potential security holes in third party software. This second version of the Microsoft toolkit provides two mitigation techniques that should help harried Windows systems administrators try to contain things when applications go awry.

Export address table access filtering and mandatory address space layout randomization are fairly standard security techniques and combine with others in the previous EMET release that included technologies such as dynamic data execution prevention. EMET is supposed to be particularly useful for those legacy programs that cannot be recompiled to make use of Microsoft's latest security hacks, er, techniques.

Microsoft's decision to provide a security wrapper for applications is a pretty damning indictment of the attention Windows applications developers pay to security. It's clear that software such as EMET is not the best way to implement security, however Microsoft should be given some credit for at least trying to tackle shoddy coding practices that expose the vulnerabilities in its hairball operating systems.

Some might argue that Microsoft's iffy design choices in Windows do little to mitigate security problems. That may indeed be so, but the fact remains, given Microsoft's less than stellar track record on the matter, it's hardly a glowing endorsement to say that an application has been secured using Microsoft's technology.

Nevertheless, EMET does offer those applications that are no longer officially being maintained the ability to gain the benefits of some of Microsoft's more recent attempts at security measures. µ

Share this:

Comments
partitions=Security....

one way to keep DAZE O n -=7=-,is go to system Restore. go back to Beginng & FULL 90-D Time should Ring Out,Again.
why is back up over stress'dd, to AvoidLegal MSN Complication, told you story,even once,ploy.

main prob is keeping partition onLIne. 22 days til 690 fell, told you told you, same operators listem for kill lueds, like model or serial, or cut phone line, ita'nself, for MORONIC, baSIAN hUsTLERS.aslains are lawless criminals, missing sufferings of primitive cultures is harmful,eg Tawain, bo contray to bibee' chinesesys,lan pony or walkw/abacucing scholar.iburnsin . now german concentration telco credit DAT,constantly degrades.poorest get 50% tax increase 10 to 15 in few months, wdgy point of purchse& anos. whats Woman 2dod.o.0

multi partitons can pull unit back, each partition is so diverse, thatone bad, can be reinstructed from afar second or more partition. set unit aside & usreing IS backp reteaching comp ea part, those provers ziners & turn RED light modem pwr off/ON.if RED light might remain, yet that too is learning ALL that Must be done to get SIG leds UP. multi partitions are good for scamper reset, thats ALL user Needed,internet FRE'DOM.glo w in Light of Sivery moon.. BIG Pertinatitions Today, ALLOW LONG fILL tIME & HOLD TILL NEXT NEED of usermany moore Times..
ALL You Wanted
vondrashek md

posted by : Peanuts & THEfemale...., 05 September 2010 Complain about this comment
aboutus
Advertisement
Subscribe to INQ newsletters
Advertisement
INQ Poll

Authorities in several countries raided Megaupload recently, shut down all of its services, seized hundreds of servers and arrested several of its executives on criminal charges.

Do you think the move was justified?