Press

I am very pleased when people notice my work and talk about it. Part of my life as a pundit is to help cut through security baloney and explain things as clearly as possible to normal people in every day language.

Over the years, my work has been extensively covered in the popular press. I am most proud of two stories. The Wall Street Journal covered my work in a long interview published Monday July 18, 2005. And more recently in February 2007, the University of Virginia College of Arts & Science magazine did a piece on my work.

Wall Street Journal UVA Arts and Sciences Magazine

Here is a sample of some other recent stories:

05/07/08Newspapers - Yesterday's News for Yesterday's People, 1 Raindrop.
05/08In Search of Trust, Redmond Developer News.
04/29/08What tech book are you reading right now?, Blogus Maximus.
04/24/08Payment Card Industry standard under attack?, SD Times.
04/07/08Addison-Wesley Professional Showcases The New School of Information Security at RSA 2008, press release.
03/18/08The oldest debate: Cheating, Level 1 Wizard.
03/17/08Seven categories of software security flaws, ComputerWeekly.com.
03/17/08Making software secure from first principles, ComputerWeekly.com.
03/12/08Criminals step into virtual world, The Gazette (Canada).
02/19/08HiR Reading Room: Hakin9 Magazine, HiR Information Report.
02/18/08Top 10 Podcast Episodes, Eon Security Blog.
02/11/0815th Annual Network and Distributed System Security Symposium, Supported by the Internet Society, Brings Together Internet Security Experts From Around the Globe, Centre Daily Times.
02/07/08Exploiting Online Games, HiR Information Report.
02/06/08Haxx0ring 4tw, The Joshua Tree.
02/08Improving Software Quality, Software Quality Assurance Engineering.
01/31/08The Daily Incite - January 31, 2008, Security Incite.
01/28/08Do you see seven misunderstanding Zhendong network security (translated), CSDN.
01/20/08Online Game Security, UW Computer Security Course Blog.
01/18/08Information security makes the silver screen, Security Bites.
01/16/08 The State of Security in MMORPGs, Slashdot.
01/16/08MMORPG Security, WarCry Network.
01/15/08The Daily Incite, Security Incite.
01/12/08Top 10 Tricks to exploit SQL Server Systems, Hacking Truths.
01/10/08Hacking & the Academy Awards, DarkReading.
01/10/08Software Security News, System Advancements at the Monastery.
01/09/08Film highlights impact of cybercrime, Engineer Live.
01/08/08Freedom to Tinker's 2008 Predictions, Securology blog.
01/07/08The Daily Incite, Security Incite.
01/07/08Trailer: The New Face of Cybercrime
01/02/08Top IT Conversations Shows for December 2007, Phil Windley's Technometria.
01/01/08Security researchers warn of dangers in online games, Massively.
01/08Best Practices to Secure Your Code, Microsoft Certified Professional Magazine (also: Redmond Developer News).
12/27/07Software Security from a Specialist: Gary McGraw, Avi Alkalay.
12/26/07Games People Play, Network Sentry.
12/20/07Real Flaws in Virtual Worlds, SecurityFocus.
12/10/07Real Data in App Testing Poses Real Risks, Dark Reading.
12/07/07'Tis the season to buy tech books: Z Trek.
12/03/07Security Professional / CTO / Musician, informIT.
12/07Best Defense?, Redmond Developer News.
12/07Book Review: Exploiting Online Games, ;login:.
12/07Book Review: Exploiting Online Games, Game Vortex.
11/30/07Online Games Use Fraud Software to Combat Cheats, Wired.
11/30/07Gary McGraw on Exploiting Online Games, informIT.
11/27/07MMO Security: Are Players Getting Played?, TechNewsWorld.
11/27/07MMO Security: Are Players Getting Played?, TechNewsWorld.
11/09/07Online Gaming & Enterprise Security: Not Just Kid Stuff Anymore, Tech Forum Live podcast (MP3).
11/07/07Technometria: Exploiting Online Games, ITConversations (podcast).
10/31/07Hugh Thompson interviews Gary McGraw, AT&T Tech Channel.
10/22/07REVIEW: "Exploiting Online Games", Greg Hoglund/Gary McGraw, Risks.
10/18/07The Implicit Demand of Software Security, InformIT (video podcast).
10/05/07Three Angles on Security, Dr. Dobb's.
10/04/07Online computer gaming provides anti-scam groups with even more reasons to worry, Pittsburgh Post-Gazette
10/03/07Citizen of the week: McGraw completes seventh book, Clarke Times-Courier.
10/02/07Carnegie Mellon researchers fight phishing attacks with phishing tactics, Carnegie Mellon University.
10/02/07MMORPGs: CNN takes a closer look at the cost of cheating, MMORPG blog.
10/02/07Can Cheating At Warcraft Be Stopped?, VH1 Game Break.
10/02/07Can Cheating At Warcraft Be Stopped?, Video Games.
10/01/07Crackdowns on video game cheating gain currency, KTRE.
10/01/07Can Video Game Cheating Be Prevented?, ABC News.
10/01/07Video games crack down on cheating, CNN.
10/01/07Can video game cheating be prevented?, MSNBC.
10/01/07Can Video Game Cheating Be Prevented?, Washington Post.
10/01/07HTNG Announces Speakers for Second Annual European Conference, Hospitality Net.
10/01/07Can cheating in online games be prevented?, Gaming Briefs.
10/01/07Can Video Game Cheating Be Prevented?, Associated Press.
09/29/07Will the cheaters always ruin the game?, DailyBreeze.com.
09/23/07Hack Job, Video Game Generation.
09/17/07Will Users Ever Smarten Up About Phishing?, PC World.
09/13/07Books, GameDev.net.
09/11/07What's Jim Reading? Hacking WoW, RiskBloggers.com.
09/10/07Online Games, Political Campaigns Provide Opportunities for Electronic Criminals, press release.
09/03/07Hey, gamers, cheating is a science, The Grand Press.
08/29/07Another good book - Exploiting Online Games: Cheating Massively Distributed Systems, The Vanguard forum.
08/29/07The Science of Cheating, Seven Days.
08/25/07Software Engineering Radio.
08/21/07Claims that ArenaNet supports gold farmers and dupers surface, WarCry's Razorwire.
08/10/07Book Excerpt: Exploiting Online Games, Gamasutra.
08/10/07Up, Up, Down, Down, Left, Right, B, A, Slate.
08/09/07E-Voting Certification Gets Security Completely Backward, Wired.
07/27/07How cheaters are winning at online games like World of Warcraft, Network World.
07/26/07Second Life Goes Legit, Forbes.
07/23/07All's Fair In Love And Warcraft, Forbes.
07/23/07Ten Ton Hammer Book Review: Exploiting Online Games: Cheating Massively Distributed Systems, TenTonHammer.
07/18/07Security and games: exploiting online games, ebiquity group blog.
07/17/07Another Review, Another Pre-Review, TaoSecurity.
07/16/07Virtual Worlds, Real Cheaters, Information Week (also: iTnews).
07/15/07Exploiting Online Games, Hoglund/McGraw, Peter G. Neumann on The Risks Digest.
07/13/07Security and Online Games, Geeky Mom.
07/13/07Exploiting Online Games (foreword), Freedom to Tinker.
07/13/07Would you like to play a game?, 1 Raindrop.
07/12/07Preface from Exploiting Online Games, onlinesecurityblog.com.
07/12/07Exploiting online games for fun and profit, Security Bytes.
07/12/07Online Gaming's Seamy Underside, darkreading.com.
07/12/07Exploiting Online Games, The Secure Software Zone.
07/11/07Amazon.com suggests hacking Second Life, int2e blog.
07/08/07An interesting read, The Rabies Blog.
07/03/07Online Gaming and Criminality with Gary McGraw (video podcast, iTunes link; also: iTunes audio-only or online audio), OnSecurity.
07/02/07PCN Review: Exploiting Online Games: Cheating Massively Distributed Systems, PCN.
06/25/07Newsmaker podcast: Gary McGraw, Security Bytes.
06/21/07Hacking WoW and the pursuit of knowledge, The Register.
06/20/07James' USENIX 2007 notes: Exploiting Online Games, l33tskillz.org.
05/14/07Verizon Grabs Cybertrust, Light Reading.
05/07Putting Coders' Security Chops to the Test, Redmond Developer News.
04/18/07Software security practices continue to lag, SearchSoftwareQuality.com.
04/14/07Feeding the Game: Online Game Security Issues, ITConversations.
03/14/07Online game exploits threaten IT security, SearchSecurity.com.
03/12/07Thank God for Regulations, Byte and Switch.
03/01/07News: Cigital Blog, Bughunter Security blog.
03/01/07Justice League blog, 1 Raindrop blog.
02/16/07Computer Fix, University of Virginia Arts & Sciences Magazine.
02/07/07Cranky Geeks - Episode 50, Crank Geeks podcast (video).
02/07/07Spying on Users: Getting to the 'Rootkit' of the Matter, eWeek.
01/29/07Core Security Technologies CTO Ivan Arce to Present on Rootkit Technology Security at RSA Conference, Core Security Technologies.
01/22/07Security Startups Make Debut, Dark Reading.
01/16/07Software Security World Authority Gary McGraw on BankInfoSecurity.com Podcast, BankInfoSecurity.com press release.
01/16/07The secret to secure code–stop repeating old mistakes, Between the Lines.
01/12/07BankInfoSecurity.com Interviews Gary McGraw (podcast).
01/03/07Google Vulnerability A Sign Of Web 2.0 Weakness, InformationWeek.

I welcome press contact and continue to interact with the press on a regular basis.