Microsoft Discloses Ambitious New Security Effort

The effort, called Palladium, would require consumers to buy new computers and other devices equipped with ultra-secure computer chips from Intel and Advanced Micro Devices, which already are involved in the project, or other companies.

The project's success also depends on broad consumer adoption of such devices, since these highly secure computers could safely exchange information only among themselves.

Microsoft says the technology, which stemmed from early work by its engineers to deliver digital movies that couldn't be pirated, won't be available for at least 18 months. Company officials have told other executives in private briefings they do not expect to see mainstream products for at least five years.

"We're so early in the process, we're really just drawing the road map," says Mario Juarez, who is running the project for Microsoft. "This won't happen tomorrow or next year."

id
unit-1659132512259
type
Sponsored post

The project was first reported by Newsweek, although Microsoft officials have discussed their efforts privately for months in meetings with technology and civil liberties groups in Washington and elsewhere.

Supporters say the technology, to be offered as an option in an upcoming version of Windows, will be able to distinguish safe software from data containing viruses or other malicious computer code. The technology could be turned on and turned off. Customers could store within this part of Windows personal details, such as financial or medical records, that are encrypted and otherwise inaccessible even from other software running on the computer.

"Users can be assured that your intentions are properly carried out," Juarez says. "No one can masquerade as you. They're not on your computer."

Microsoft's efforts are similar to those of the Trusted Computing Platform Alliance, an industry group also working on new hardware technology to let computers distinguish trustworthy software. IBM has already shipped new laptop computers featuring such security chips.

Under Palladium, Intel and AMD, the world's largest chipmakers, will redesign computer processors to include cryptography features. Palladium also will require changes to video and keyboard technologies to ensure that a customer's typed information is displayed without changes on the screen. That would require billions of dollars in new equipment upgrades by consumers, corporations and governments.

Further, since a consumer's personal information will be scrambled within a vault and tied to a specific computer chip, that information could not readily be stored elsewhere in case of disaster or if the computer fails.

Microsoft also acknowledged that it hasn't resolved sensitive issues of permitting access by government with a court order to a person's encrypted data. The FBI has indicated it rarely encounters scrambled information during investigations, but making such technology as ubiquitous as Windows could invite use by criminals or terrorists.

"We recognize that something like this needs to be done responsibly," Juarez says.

Microsoft's name for its efforts, Palladium, comes from the statue of Pallas Athena, which was believed to protect the ancient city of Troy from invaders. In modern parlance, a palladium is considered a guarantee of integrity.

Copyright © 2002 The Associated Press. All rights reserved. The information contained in the AP News report may not be published, broadcast, rewritten or redistributed without the prior written authority of The Associated Press.