May 2008

Sun Mon Tue Wed Thu Fri Sat
        1 2 3
4 5 6 7 8 9 10
11 12 13 14 15 16 17
18 19 20 21 22 23 24
25 26 27 28 29 30 31


Sedo - Buy and Sell Domain Names and Websites project info: vistajuice.com Statistics for project vistajuice.com etracker® web controlling instead of log file analysis

« Vista Pricing in UK and is Vista really overpriced? | Main | Language Packs in Vista »

Vista and UAC (User Account Control)

Digg!

Corrine has a nice find on her SecurityGarden site about Vista's UAC which can solve some of common questions and misconceptions about it:

Copy-Paste:

"UAC does not, nor is it intended to, stop malware."

What UAC does do is enable running a computer with Windows Vista installed as a standard user. The result of this is important. By following the recommendation to keep UAC running, the computer is significantly less vulnerable since currently most malware requires administrator privileges.
Does running as a standard user protect against the computer operator allowing installations? Absolutely not. However, it is certainly hoped that the average computer user will recognize the difference between an unexpected request for elevated privilege and a request when intentionally installing software.
For in depth look at User Account Control for Windows Vista, tune in to the Channel 9 interview of Jon Schwartz, UAC Architect, and Chris Corio, UAC Technical Program Manager, where they tackle UAC from various angles:
1) What problems does UAC attempt to solve?
2) How does UAC actually work?
3) Why did we implement UAC UI to be so aggressive, from a user experience point of view?
4) How will UAC evolve?

UAC - What. How. Why.

Thanks Corrine - hope you do not mind I ripped the whole post :) Hey, when it's useful, it's useful - why reinvent the wheel :)

Via: SecurityGarden


TrackBack

TrackBack URL for this entry:
http://www.vistajuice.com/cgi/mt/mt-tb.cgi/104

Comments (2)

I don't mind at all, although I did get a bit opinionated. What concerns me about UAC is what is commonly being referred to as the "social aspect" where users get immune to the prompts and click away without giving thought to what they are giving permissions to.

I find UAC helpful. I also find myself clicking through it without looking since I know what that what I am doing at that moment is safe, but it happened a number of times that I started a program or an installation which I didn't want to start just couple of moments later - then UAC came into play. Also, I had one program which was suspicious trying to gain elevated privileges - therefore it was a red flag immediately - so I clicked cancel. It's quite simple thing and people will pay attention on what they do while clicking on this. If something is out of the ordinary - our brain itself can pick that up and say hay - this is new - I never clicked OK for this before ...

Post a comment

(If you haven't left a comment here before, you may need to be approved by the site owner before your comment will appear. Until then, it won't appear on the entry. Thanks for waiting.)

About

This page contains a single entry from the blog posted on March 7, 2007 1:12 AM.

The previous post in this blog was Vista Pricing in UK and is Vista really overpriced?.

The next post in this blog is Language Packs in Vista.

Many more can be found on the main index page or by looking through the archives.



Hosted on PeconiHosting.com

Tag cloud

Powered by
Movable Type 3.34
and PeconiHosting.com

Copyright (c) 2007 - Petar Smilajkov - Peconi

"Windows Vista", the Start Orb, and related materials are trademarks of Microsoft Corp.


Sedo - Buy and Sell Domain Names and Websites project info: vistajuice.com Statistics for project vistajuice.com etracker® web controlling instead of log file analysis