Resources regarding the use of least privilege
Aaron's Buglight tool - a MUST have LUA BugLight
Aaron Margosis' WebLog : Fixing "LUA Bugs", Part
II:
http://blogs.msdn.com/aaron_margosis/archive/2006/03/27/562091.aspx
Aaron Margosis' WebLog : Fixing "LUA bugs", Part
I:
http://blogs.msdn.com/aaron_margosis/archive/2006/02/16/533077.aspx
Incidents.org recent discussion of Phishing that was thwarted by the use of account restrictions
Develop as a non admin
Application-Specific Terminal Services
Installation Information:
http://dev.remotenetworktechnology.com/ts/app/installs.htm
Tools needed to assist you in running as user
Sysinternals Filemon
Systinternals Regmon
Listserves regarding Secure Coding Practices
Secure Coding
Other websites/blogs of interest
Dana Epp
Hall of Shame
SecureSoftwareForum