Slashdot Mirror


Former MS Security Strategist Joins Mozilla

Handset writes "Former Microsoft security strategist Window Snyder is joining Mozilla to lead the company's effort to protect its range of desktop applications from malicious hacker attacks. eweek.com reports that Snyder, who was responsible for security sign-off for Microsoft's Windows XP Service Pack 2 and Windows Server 2003, will spearhead Mozilla's security strategy and improve its communications with external hackers and bug finders."

51 of 248 comments (clear)

  1. MS Trojan by wardk · · Score: 5, Funny

    a human trojan has been inserted into Mozilla?

    glad Safari uses the khtml engine...

    1. Re:MS Trojan by marcello_dl · · Score: 2, Funny
      a human trojan has been inserted into Mozilla?
      Since it's called 'Window' Snyder, i guess it's not even human.
      --
      ---- MISSING MISCELLANEOUS DATA SEGMENT --- [sigdash] trolololol
    2. Re:MS Trojan by Lobais · · Score: 3, Funny

      Snyder translated from English to Danish:
        snyder (100%) (Dansk-Engelsk)
      cheat; cheater; fraudster.

  2. I can't wait to see this thread... by pookemon · · Score: 5, Insightful

    Will the Mozilla fans throw their arms up in disgust (An MS Security expert - that's a contradiction!) or will they suddenly be supportive of someone they have effectively been bagging for years? (An MS Security expert for Mozilla! - what a coup!)

    --
    dnuof eruc rof aixelsid
    1. Re:I can't wait to see this thread... by Moofie · · Score: 5, Informative

      This is gonna totally blow your mind, but....here goes.

      Two different people might have two different opinions.

      [neo]WHOA![/neo]

      --
      Why yes, I AM a rocket scientist!
    2. Re:I can't wait to see this thread... by pookemon · · Score: 3, Informative

      We do sometimes diasgree with each other!

      No we don't.

      --
      dnuof eruc rof aixelsid
  3. That time again? by ikejam · · Score: 5, Funny

    hooray..lets have it...chairs all around..here you go..two for you...Redmond Cherry or Vista White?

  4. Are you sure? by eclectro · · Score: 4, Funny


    Hey, I am for security and all, but somebody needs to call the phone numbers on his resume. I heard that Microsoft doesn't have a "security" department.

    --
    Take the cheese to sickbay, the doctor should see it as soon as possible - B'Elanna Torres, "Learning Curve"
    1. Re:Are you sure? by Soko · · Score: 3, Funny

      Sure Microsoft has a Security Department. They're the nice people who, after you've quit MS to go work at a rival orginisation, walk you from your former office, out the front door and past Steve Balmers office window. Just watch for well aimed office chairs...

      Soko

      --
      "Depression is merely anger without enthusiasm." - Anonymous
  5. So... by Umbral+Blot · · Score: 5, Insightful

    We can draw two possible conclusions from this. Either a: MS' security team was made of good people who were doing the best they could for such a large project with such a large user base and extensive backwards compatability, and thus that Windows security was the best it could have been (even if that wasn't so good). Or Mozilla's security is going to go down the tubes. It's a slashdot paradox! Clearly we can't grant #1, because that wouldn't be sufficiently critical of MS, but be can't grant #2 either because we love Mozilla. I'm just glad Mozilla doesn't think this way.

    1. Re:So... by MacDork · · Score: 5, Funny

      We can draw two possible conclusions from this.

      Ahhh, but you've overlooked the most important factor: Window Snyder is female! Therefore neither of your proposed solutions is correct. Slashdot readers, once they have discovered this will completely forget all context in the discussion. They will find pictures, fawn over teh hotness, and begin building web shrines in their basements throughout the globe.

      Gentlemen, ready your hot grits. :-P

    2. Re:So... by Kelson · · Score: 5, Funny
      Clearly we can't grant #1, because that wouldn't be sufficiently critical of MS, but be can't grant #2 either because we love Mozilla.

      For some reason I want to adapt this to the duel of wits from The Princess Bride:

      But it's so simple. All I have to do is divine from what I know of you: are you the sort of site that would approve of an enemy, or the sort of site that would reject a friend?

      A site that hates Microsoft would complain that because Microsoft's security has been notoriously poor, then Mozilla must be making a mistake. Since Slashdot tends toward favoring Mozilla, clearly I cannot choose the whine in front of you.

      A site that loves Mozilla would have to rationalize the decision, and conclude that the security expert is worth hiring. But since that speaks favorably of Microsoft's security, I can clearly not choose the whine in front of me!

      But Slashdot is known for its vindictiveness. Given a choice between reasoned discourse and pure snark, the site will go for snark every time. So clearly I cannot choose the whine in front of you!

      etc.

      I'm just glad Mozilla doesn't think this way.

      In all seriousness, I've got to agree with you here. Though there's certainly been plenty of "MS has lousy security" rhetoric from people at Mozilla over the last few years.

  6. April 1st by Anonymous Coward · · Score: 5, Funny

    Cmon Slashdot, a guy from Microsoft whose first name is "Window" and had a job implementing security at Microsoft??? These April Fools jokes get dumber every year.

  7. "Former" by kcbrown · · Score: 3, Funny

    Hmm...."former"...."security" strategist...

    Uhuh. Sure. Whatever you say.

    I think I'll grab a copy of the source code now...

    *Dons tin foil hat*

    --
    Use 'slashdot stuff' in the subject line in any email you send me if you want to get past the spam filter.
  8. Joke? by dk.r*nger · · Score: 5, Funny

    This has to be a joke. Microsoft actually employed a named Window S. ??

    1. Re:Joke? by adnonsense · · Score: 3, Funny

      Yes, they saw a Window of opportunity.

    2. Re:Joke? by Effugas · · Score: 5, Funny

      Yes, the joke between us for quite some time was that she would normally have gotten the email address windows@microsoft.com...but it seemed to have already been taken.

    3. Re:Joke? by Isotopian · · Score: 2, Funny

      It does cause me some pane in the head.

      --

      It's poetry with a beat behind it! And guns! They're like beatniks with automatic weapons.

    4. Re:Joke? by Perey · · Score: 2, Funny

      Ivan Arce

      I've one too.

  9. In a related story by krell · · Score: 3, Funny

    In a related story, Heat Miser has joined the fire department.

    --
    Where were you when the voynix came?
  10. Window Snyder? by ktakki · · Score: 5, Funny

    Is he required to change his name to Mozilla Snyder now?

    Sorry.

    k.

    --
    "In spite of everything, I still believe that people are really good at heart." - Anne Frank
    1. Re:Window Snyder? by Anonymous Coward · · Score: 3, Informative
  11. Re:As long as she replaces the useless Asa Dotzler by krell · · Score: 3, Insightful

    "Mozilla security practices are rubbish"

    Someday you might realize that you don't define a great security system by how much you have to patch gaping holes in it.

    --
    Where were you when the voynix came?
  12. Snyder joining Mozilla? by Centurix · · Score: 2, Funny

    First thing that popped into my head was the new Mozilla security slogan.

    "We're not going to take it! NO! We ain't gonna take it! We're not going to take it, anymore!"

    --
    Task Mangler
  13. Ahem.... Window is a gal by rsborg · · Score: 2, Informative
    And she's pretty hot.

    Er, eh, not that influences my perception of her value to the Mozilla corp at all...

    --
    Make sure everyone's vote counts: Verified Voting
    1. Re:Ahem.... Window is a gal by Anonymous Coward · · Score: 4, Informative
  14. His first name... by shadwwulf · · Score: 2, Funny

    ...had to be a product of hippie parents.

    I'd imagine his parents would have just completed the conception of Window and his father stumbled to his feet in a drug induced stupor and suddenly had an idea of what to name their recently created progeny as his eyes came into focus on the first thing he saw, exclaiming "Babe! I just thought of a awesome name for our kid...."

    Just a thought.

    1. Re:His first name... by Farmer+Tim · · Score: 2, Funny

      Actually, "Window" was the second choice. "Roachclip" got too many funny looks at the registrar's office...

      --
      Blank until /. makes another boneheaded UI decision.
  15. So that's how Microsoft will get us by polterbyte · · Score: 2, Funny

    ...to drop Firefox. Great strategy!

  16. First Of All, Congrats by Effugas · · Score: 4, Insightful

    Window's an old friend of mine, so let me be the first to congratulate her here. W00t!

    So the security world used to be pretty hostile to MS, before, you know, XPSP2, MSRC got taken seriously, etc. Window showed up before all of that, and pretty much took our abuse year in, year out. And then...things got better.

    She'll deny any direct cause and effect there, but she was _the_ interface between Microsoft and the various security cons for quite some time, and I think at least some of the reason we got certain concessions (like 24 hour response time out of MSRC) is that she was there to hear people say things like "I dunno, why should I warn MS, they're just gonna sit on it anyway."

    Firefox is not without problems (understatement). I'm looking forward to seeing what Window can accomplish w/ Mozilla.

    1. Re:First Of All, Congrats by JustNiz · · Score: 3, Insightful

      >> XPSP2, MSRC got taken seriously

      Yeah sure it did. Keep smoking the doobie.

    2. Re:First Of All, Congrats by EvilGrin666 · · Score: 3, Interesting

      You seem to be on the inside so I'm curious on why she'd want to leave just at the point where things were working out? Any insights on that?

    3. Re:First Of All, Congrats by Anonymous Coward · · Score: 5, Funny

      I thought your post was going to go something like this:

      Window's an old friend of mine, so let me be the first to congratulate her.

      Sincerely,
      Door

    4. Re:First Of All, Congrats by x-caiver · · Score: 4, Informative

      Window didn't just leave Microsoft to join Mozilla, she actually left awhile back to be one of the co-founders of Matasano Security, http://www.matasano.com/. Founding a company is a good reason to leave a company ;) She did a great job at Microsoft, and I'm sure she is going to do a great job at Mozilla.

  17. Follow-up news report by eric.t.f.bat · · Score: 4, Funny

    Coming soon to Mozilla: ActiveM plug-ins! Now with the exciting "FORMAT C:" functionality, and complete integration with BOTH kinds of email software - Outlook AND Outlook Express!

    --
    I have discovered a truly remarkable .sig block which this margin is too small to conta
  18. Funny? by Anonymous Coward · · Score: 4, Funny

    WTF is this? most of the first dozen or two posts are aimed ot be (and are modded) funny. I thought this was supposed to a forum for serious discussion, not a fucking comedy club wanna-be.

    1. Re:Funny? by Kelson · · Score: 5, Funny
      I thought this was supposed to a forum for serious discussion, not a fucking comedy club wanna-be.

      You must be new here.

  19. Clearly... by ezzewezza · · Score: 4, Funny

    if they're not already married to other people, Window and Linus need to get married. They could even name their first child Lindow.

    1. Re:Clearly... by geekd · · Score: 2, Funny

      And then get sued by MS, and have to change the kids name to Linspire.

    2. Re:Clearly... by MacDork · · Score: 5, Funny

      Window and Linus need to get married. They could even name their first child Lindow.

      Yeah, but the kid would do nothing but WINE. ;-)

  20. At least.... by Metroid72 · · Score: 2, Insightful

    You can't say that this captain hasn't been through a shipwreck.

  21. Wait a minute... by Admodieus · · Score: 2, Funny

    A Microsoft employee called Window? Why, that's like an ice cream man named Cone!

    --
    "It's a reverse vampire...they....they crave the sun!"
  22. Window is great, but MS security still miserable by fv · · Score: 5, Insightful

    So the security world used to be pretty hostile to MS, before, you know, XPSP2, MSRC got taken seriously, etc.

    Used to be? Maybe you see a different view of them when they hire you for security consulting and fly you out for their Blue Hat conferences and such. But from my outsider perspective, Microsoft is still a security disaster. Not only have we continued to see hundreds of serious vulnerabilities throughout 2006, but MS has in many cases made us wait weeks or months before patching widely exploited bugs. Heck, another actively exploited MS Office vulnerability was just discovered in the wild. If we're lucky, MS will cough up a patch on September 12, otherwise they'll probably leave users vulnerable until the next "patch Tuesday" on October 10.

    Meanwhile, Microsoft recently re-issued MS06-042 with a fix for a vulnerability introduced by their first attempted fix. And they openly admit that they excluded eEye from the advisory credits because eEye embarrassed MS by making their incompetence public. MS is more interested in petty vendetas against researches than actually fixing the flaws.

    Microsoft has made a few positive steps toward securing their products in that last couple of years, but I think most of their efforts and successes are more in the PR realm than anything with technical merit. They have spent so much money sponsoring conferences (their money does come with strings attached) and paying off security researches, that many people seem reluctant to criticize them.

    OK, enough anti-MS ranting from me for now :). My main point in replying is actually to agree with you about Window. She is extremely smart and talented, and her defection to Mozilla is great news for a product which really needs more security attention. We had lunch last week to discuss Mozilla security and Window has some great ideas. Mozilla may already be much more secure than IE, but we should set a much higher bar than that! Best of luck at your new position, Window!

    -Fyodor
    Insecure.Org

  23. Re:As long as she replaces the useless Asa Dotzler by Kymermosst · · Score: 2, Informative

    A few points:

    (1) Shit happens, including regressions. Yeah, it sucks. Yeah, it should have been caught. Nonetheless, shit happens.
    (2) It's none of your business who was responsible. Are you some kind of stalker?
    (3) The Mozilla team can handle their own internal affairs just fine, I imagine.
    (4) You can always not use Mozilla products.
    (5) I'm pretty sure I've been trolled, but what the hell, I haven't responded to a troll for a while. Then again, I haven't trolled for a while, either:
    (6) Does having Snyder mean we'll see a need for Symantec, McAfee, etc. products for Mozilla just to keep the malware away? That's what we need for Microsoft products...

    --
    "Alcohol, Tobacco, Firearms, and Explosives" should be a convenience store, not a government agency.
  24. Did your momma give you that name?!? by Locke2005 · · Score: 4, Interesting

    She (not he!) is such a babe, I could ALMOST forgive her for being named after Microsoft's flagship product!

    --
    I've abandoned my search for truth; now I'm just looking for some useful delusions.
  25. Mozilla, Security, and Microsoft. by Helldesk+Hound · · Score: 2, Funny

    What could *Microsoft* teach Mozilla about security...

    that is, other than what _not_ to do!!

  26. Comment removed by account_deleted · · Score: 4, Funny

    Comment removed based on user account deletion

  27. Re:The trick is... by SolitaryMan · · Score: 3, Funny
    to listen to her advice and then do the opposite of what she recommends.
    This works for every woman, btw.
    --
    May Peace Prevail On Earth
  28. There is such a thing as image. by jotaeleemeese · · Score: 2, Insightful

    Lets not beat around the bushes.

    MS has an image problem when it comes to security, it is a problem of their own making, acknoledged by Mr Gates himself and experienced day in day out with their prodcuts by IT professionals.

    Dig a bit deeper and you realize that security is still not properly realized in MS products. AD is a mess waiting to get worst for example.

    I don't care how wonderful SP2 was, that is a drop in an ocean of incompetence and procastination.

    I don't know what the Mozilla organization was thinking. Sometimes you have to take care of the PR situation as well as the technical side of things. Anybody that has worked recently around security in MS products will carry a credibility problem, specially in a highly visible position.

    I am sure that this lady is bright, intelligent and all what his pals say lovingly about her, but she brings with her a credibility problem which becomes all too evident when one reads all the comments on this thread (which are mostly bad jokes, but that drive the same point home: we can't believe it).

    Lets hope that this is a good move, but I think people should be excused for the healthy doses of skepticism.

    --
    IANAL but write like a drunk one.
  29. Like... by Anonymous Coward · · Score: 2, Funny

    Former Chernoybl saftey inspector joins Three Mile Island team...

  30. Re:The trick is... by Aqua_boy17 · · Score: 2, Funny
    This works for every woman, btw./
    Ah, that explains your user name.
    --
    What if the Hokey Pokey really is what it's all about?