Writing

Field notes on platform security, research, and how we keep products safe at Microsoft scale.

February 12, 2025

Memory Safety at Cloud Scale

Lessons from shipping memory-safe components across Windows and Azure, and what it takes to harden legacy code paths.

January 28, 2025

AI Red Teaming for Defenders

Practical tactics for breaking your own AI systems before attackers do, drawn from security research and real-world incidents.

December 15, 2024

Building Secure Defaults for Billions of Devices

How we ship secure defaults in Windows without breaking the world, and why quiet guardrails are the most effective ones.