Microsoft: Ten Immutable Laws Of Security (Version 2.0) - 2011

Andrezj

Level 6
Thread author
Verified
Well-known
Nov 21, 2022
248
The 10 Laws are:

Law #1: If a bad guy can persuade you to run his program on your computer, it's not solely your computer anymore.
Law #2: If a bad guy can alter the operating system on your computer, it's not your computer anymore.
Law #3: If a bad guy has unrestricted physical access to your computer, it's not your computer anymore.
Law #4: If you allow a bad guy to run active content in your website, it's not your website any more.
Law #5: Weak passwords trump strong security.
Law #6: A computer is only as secure as the administrator is trustworthy.
Law #7: Encrypted data is only as secure as its decryption key.
Law #8: An out-of-date antimalware scanner is only marginally better than no scanner at all.
Law #9: Absolute anonymity isn't practically achievable, online or offline.
Law #10: Technology is not a panacea.

 
Last edited by a moderator:

Zero Knowledge

Level 20
Verified
Top Poster
Content Creator
Dec 2, 2016
849
Law #9: Absolute anonymity isn't practically achievable, online or offline.

This may true but it shouldn't mean we don't try to achieve anonymity and high-level privacy. You can't have security without privacy, they are intertwined.

It's a basic list but a good reminder of what every person should know. There are more complex layers to it that should be discussed, another time though.
 
F

ForgottenSeer 97327

The 10 Laws are:

Law #1: If a bad guy can persuade you to run his program on your computer, it's not solely your computer anymore.
Law #2: If a bad guy can alter the operating system on your computer, it's not your computer anymore.
Law #3: If a bad guy has unrestricted physical access to your computer, it's not your computer anymore.
Law #4: If you allow a bad guy to run active content in your website, it's not your website any more.
Law #5: Weak passwords trump strong security.
Law #6: A computer is only as secure as the administrator is trustworthy.
Law #7: Encrypted data is only as secure as its decryption key.
Law #8: An out-of-date antimalware scanner is only marginally better than no scanner at all.
Law #9: Absolute anonymity isn't practically achievable, online or offline.
Law #10: Technology is not a panacea.

Sorry, after earlier Microsoft communications with over the top woke-ism (video), I can't let this one pass addressing BAD GUY only :)

Law #11: You are catched with your pants on your ankles when a @cruelsister tests your security software



P.S. I am by no means suggesting that we should not strive to an inclusive society, but actions are more important than words in my book (in Dutch "geen woorden maar daden")
 
Last edited by a moderator:

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top