Michael Howard
@michael_howard
Software security @MSFT working on Azure. Co-author of 'Designing and Developing Secure Azure Solutions' and Co-host of the Azure Security Podcast.
even though we had q's to ask, everything was unscripted!
.@shanselman and Mark took time out of their busy schedules to chat to @michael_howard and myself at #MSBuild to answer developer security questions. The answer to keeping code secure? 🦀 is a hint... youtube.com/watch?v=TuJw4s…
.@shanselman and Mark took time out of their busy schedules to chat to @michael_howard and myself at #MSBuild to answer developer security questions. The answer to keeping code secure? 🦀 is a hint... youtube.com/watch?v=TuJw4s…
Well, that's sad. After an insanely long run, the Azure Podcast has ended. :( We modeled the Azure Security Podcast on their format and Sujit (@1smartguy) was instrumental in helping us get the tech and tooling in place. @azsecpod would not exist without his help! I just…

Just had a funny call with Lee Holmes in Azure Security (ex PowerShell security lead). He sent me some text full of formatting, and then he said, "Hang on, let me 'PowerShell' that up for you" and sent a clean, unformatted version. I said I had never heard PowerShell used as a…

These were awesome and fun to record, we have lots more coming! Rust or C#? : Developer Security Quick Fire Questions @ MS Build youtube.com/shorts/VdlsiBj… @_sarahyo BTW, the correct answer is "it depends" - my rule of thumb is Rust for systems code, where you cannot risk perf…
It's all about the basics. trendmicro.com/vinfo/nl/secur…
Run SQL Server Locally in VS Code — Local SQL Server Container (MSSQL Extension v1.33) dlvr.it/TLQ6VN
At MS Build 2025, I made a comment about disliking JavaScript. Here's an example of why. Try it!

My #msbuild2025 talk is up! "Reflections on 25 years of Writing Secure Code | BRK235" youtube.com/watch?v=pd9SiU…
Who's the young fella? :)
IIS5 Security Best Practices (An Update!) - Michael Howard @michael_howard - 2000/10 youtube.com/watch?v=Qoa3dg…
It was a fun talk - now more people know that RegEx's build a Finite State Machine!
Here for hearing about 25 years of secure coding by @michael_howard ! #MSBuild Note the t-shirt 😆
I *may* have finally completed my slides and demos for tomorrow's #MSBuild session. MAYBE! Lots of stories, philosophy, soul searching, stuff you can use and 100% practical. The session is BRK235, at 0830 Thursday, across the road in the Arch building... see you there, feel…

It's always a pleasure to have coffee with this fine gentleman! @Lipner; not many people know this, but he was my manager for a decade during the early days of the Security Development Lifecycle. We sure got some stuff done back then and we wrote amazon.com/Security-Devel… together!

We are removing default admin accounts in Windows 11 - get your apps ready now blogs.windows.com/windowsdevelop…
We are removing default admin accounts in Windows 11 - get your apps ready now blogs.windows.com/windowsdevelop…
Renewing AZ-500 is so much easier than re-sitting the exam!
