Microsoft Attack Surface Analyzer – Validate Apps Before Release and Deployment

Thursday, January 20th, 2011

This sounds incredibly useful; why didn’t somebody think of this earlier?

Microsoft has released a free tool for 32-bit and 64-bit editions of Windows that they have been using internally only for some time. The Attack Surface Analyzer assists “both testers and IT Pros in assessing the security of an application”. It does so by highlighting “the changes in system state, runtime parameters and securable objects on the Windows operating system” after the installation of new programs.