<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: How Design Impacts Security</title>
	<atom:link href="http://dcortesi.com/2007/10/24/how-design-impacts-security/feed/" rel="self" type="application/rss+xml" />
	<link>http://dcortesi.com/2007/10/24/how-design-impacts-security/</link>
	<description>Coding, Security, and maybe a little bit about Damon Cortesi</description>
	<pubDate>Tue, 02 Dec 2008 17:43:41 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6.2</generator>
		<item>
		<title>By: Spot — interaktion.info &#187; Blog Archive &#187; How Design Impacts Security</title>
		<link>http://dcortesi.com/2007/10/24/how-design-impacts-security/#comment-56974</link>
		<dc:creator>Spot — interaktion.info &#187; Blog Archive &#187; How Design Impacts Security</dc:creator>
		<pubDate>Wed, 02 Jan 2008 20:31:48 +0000</pubDate>
		<guid isPermaLink="false">http://dcortesi.com/2007/10/24/how-design-impacts-security/#comment-56974</guid>
		<description>[...] Link: How Design Impacts Security &#8594; [...]</description>
		<content:encoded><![CDATA[<p>[...] Link: How Design Impacts Security &rarr; [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: John</title>
		<link>http://dcortesi.com/2007/10/24/how-design-impacts-security/#comment-47976</link>
		<dc:creator>John</dc:creator>
		<pubDate>Tue, 30 Oct 2007 22:48:11 +0000</pubDate>
		<guid isPermaLink="false">http://dcortesi.com/2007/10/24/how-design-impacts-security/#comment-47976</guid>
		<description>"are there to make users “feel” better about the security, rather than implementing effective measures themselves"

This quote reminded me of the airport :)</description>
		<content:encoded><![CDATA[<p>&#8220;are there to make users “feel” better about the security, rather than implementing effective measures themselves&#8221;</p>
<p>This quote reminded me of the airport <img src='http://dcortesi.com/wp/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Damon</title>
		<link>http://dcortesi.com/2007/10/24/how-design-impacts-security/#comment-46854</link>
		<dc:creator>Damon</dc:creator>
		<pubDate>Wed, 24 Oct 2007 22:31:35 +0000</pubDate>
		<guid isPermaLink="false">http://dcortesi.com/2007/10/24/how-design-impacts-security/#comment-46854</guid>
		<description>I frequently turn to Microsoft themselves. I'd have to say they're the best example of an organization that completely turned the security of their products around through secure design and coding awareness.  They've got many docs out there showing their new Secure Development Lifecycle and just think how much more secure IIS6 is than IIS4. Not to mention halting devs for 3 months to do security reviews.

Michael Howard (Author of Writing Secure Code) and his book and blog are both great resources.</description>
		<content:encoded><![CDATA[<p>I frequently turn to Microsoft themselves. I&#8217;d have to say they&#8217;re the best example of an organization that completely turned the security of their products around through secure design and coding awareness.  They&#8217;ve got many docs out there showing their new Secure Development Lifecycle and just think how much more secure IIS6 is than IIS4. Not to mention halting devs for 3 months to do security reviews.</p>
<p>Michael Howard (Author of Writing Secure Code) and his book and blog are both great resources.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: hendo</title>
		<link>http://dcortesi.com/2007/10/24/how-design-impacts-security/#comment-46843</link>
		<dc:creator>hendo</dc:creator>
		<pubDate>Wed, 24 Oct 2007 19:14:22 +0000</pubDate>
		<guid isPermaLink="false">http://dcortesi.com/2007/10/24/how-design-impacts-security/#comment-46843</guid>
		<description>What resources do you normally turn to when explaining the importance of threat modeling and secure coding? I could use some good documentation to better explain it...</description>
		<content:encoded><![CDATA[<p>What resources do you normally turn to when explaining the importance of threat modeling and secure coding? I could use some good documentation to better explain it&#8230;</p>
]]></content:encoded>
	</item>
</channel>
</rss>

