Re: [SC-L] Microsoft SDL report card

2011-04-05 Thread Ben Laurie
On 4 April 2011 16:45, Gary McGraw g...@cigital.com wrote: In my opinion, the most interesting thing about stuxnet was the payload. So what was the huge stride made since Code Red wrt Stuxnet? See: How to p0wn a Control System with Stuxnet

Re: [SC-L] Microsoft SDL report card

2011-04-05 Thread Gary McGraw
hi ben, Strides (with an s). Take a quick look at the Microsoft report card at the beginning of this thread http://www.microsoft.com/downloads/en/details.aspx?FamilyID=918179a7-61c9- 487a-a2e2-8da73fb9eade. Then see if that sparks more specific questions. Does Microsoft make bug/flaw free