Posting has obviously been slow over the last few months. I keep meaning to post a long reflective article about why I have decided to make some big changes about what and why I blog but I just never seem to find the time. In short I have become rather bored making general security commentary; [...]
Archive for the ‘Security Blogs’ category
This Blog Is Changing – Watch This Space
February 25, 2009CISG Team Blog
August 25, 2008The CISG Team Blog is now operational. We are initially blogging about things we are doing with Anti-XSS (and related technologies) but plan to expand to cover our bigger projects over the coming months. You can expect a wide range of posts from program management, user experience and code level developer commentary. http://blogs.msdn.com/cisg/
Generating a Security Code Review Checklist in Outlook 2007
January 17, 2008My colleague and legendary Hummus eater Alik Levin (that’s my plate at lunchtime today but rumours are that he once ate two) has written an excellent post about how to use the Guidance Explorer to generate a checklist while performing security code reviews. His first post on his personal blog is here and a more [...]
Why Nice Work Environments Inspire Creativity
October 21, 2007Sure I am drinking the Microsoft “eau de vie” so don’t waste your time pointing out the obvious to me. Can’t a man still get excited by toys and life? Look for a long blog post from me on Mon – Tuesday with sneak previews (screen shots) of some software security tools and stuff I [...]
Curphey and SourceClear Turn Blue!
September 18, 2007I am extremely pleased to being able to announce that the SourceClear software (Oxygen Security Platform and the Security Life applications) will now be built at Microsoft and that I will be joining as a full-time employee heading up the ACE Services group in Europe and product managing the software. Many people often start these [...]
The Long Tail of Information Security (Part 1)
August 4, 2007I have just finished reading the Long Tail by Chris Anderson (editor of Wired). It is brilliant and the best book I have read in several years. Its in the same class as Freakonomics and The Tipping Point. I highly recommend anyone who reads my blog reads the Long Tail if they haven’t already [...]
Phishme.com – These Guys Are Good!
June 27, 2007Aaron, Rohyt and Corey are just fantastic blokes and super-smart. Their blog will be entertaining and informing, I promise you! Higbee is the guy who did the Dreamcast phone home stuff at Black hat way back. http://blog.phishme.com/
The Best Career Advice in Ages
June 25, 2007A must read blog post full of home truths.
ISM RA Methodology
June 22, 2007Michael Smith is looking for additional runners and riders here. PS If you don’t read his blog I 100% recommend it. http://www.guerilla-ciso.com

Farewell Security Buddha – Hello Curphey 2.0
March 5, 2010I openly admit I had a mis-spent youth. I was expelled from school and then went on a rampage of sex, drugs, booze and rock and roll for the best part of a decade. I lived hand to mouth and did everything from stacking yogurts in a yogurt factory (working nights), selling houses, working behind [...]
Categories: Beautiful Security, Careers, Getting Things Done, Long Tail Security, Microsoft, OWASP, Productivity, Security Blogs, Security Book Reviews, Security Bullshit, Security Industry, Software Development, Software Security, Speaking, Technology Commentary, Travel, UX, Working at Microsoft, information security, open source
Comments: 9 Comments