<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: I Survived BLACKHAT and DEFCON (Barely&#8230;)</title>
	<atom:link href="http://xs-sniper.com/blog/2007/08/07/i-survived-blackhat-and-defcon-barely/feed/" rel="self" type="application/rss+xml" />
	<link>http://xs-sniper.com/blog/2007/08/07/i-survived-blackhat-and-defcon-barely/</link>
	<description>Thoughts on Security in an Uncivilized World…</description>
	<lastBuildDate>Wed, 08 Sep 2010 02:39:08 -0700</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
	<item>
		<title>By: blackhat</title>
		<link>http://xs-sniper.com/blog/2007/08/07/i-survived-blackhat-and-defcon-barely/comment-page-1/#comment-200</link>
		<dc:creator>blackhat</dc:creator>
		<pubDate>Mon, 15 Oct 2007 02:01:12 +0000</pubDate>
		<guid isPermaLink="false">http://xs-sniper.com/blog/2007/08/07/i-survived-blackhat-and-defcon-barely/#comment-200</guid>
		<description>lol ugh, i spilt my coffee during reading this, good post though</description>
		<content:encoded><![CDATA[<p>lol ugh, i spilt my coffee during reading this, good post though</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: kuza55</title>
		<link>http://xs-sniper.com/blog/2007/08/07/i-survived-blackhat-and-defcon-barely/comment-page-1/#comment-72</link>
		<dc:creator>kuza55</dc:creator>
		<pubDate>Thu, 09 Aug 2007 03:08:10 +0000</pubDate>
		<guid isPermaLink="false">http://xs-sniper.com/blog/2007/08/07/i-survived-blackhat-and-defcon-barely/#comment-72</guid>
		<description>@BK:
Heh, I think any time you mention &quot;Flash&quot; and &quot;Security&quot; in the same paragraph its a bad thing, :)

But that&#039;s cool, /me looks forward to seeing the info, :)</description>
		<content:encoded><![CDATA[<p>@BK:<br />
Heh, I think any time you mention &#8220;Flash&#8221; and &#8220;Security&#8221; in the same paragraph its a bad thing, <img src='http://xs-sniper.com/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>But that&#8217;s cool, /me looks forward to seeing the info, <img src='http://xs-sniper.com/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Nate McFeters (McNasty)</title>
		<link>http://xs-sniper.com/blog/2007/08/07/i-survived-blackhat-and-defcon-barely/comment-page-1/#comment-70</link>
		<dc:creator>Nate McFeters (McNasty)</dc:creator>
		<pubDate>Wed, 08 Aug 2007 15:58:10 +0000</pubDate>
		<guid isPermaLink="false">http://xs-sniper.com/blog/2007/08/07/i-survived-blackhat-and-defcon-barely/#comment-70</guid>
		<description>I just got back to Houston... Vegas will kill a man, I swear to God.  Every year I go there I worry more about not making it back.</description>
		<content:encoded><![CDATA[<p>I just got back to Houston&#8230; Vegas will kill a man, I swear to God.  Every year I go there I worry more about not making it back.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: BK</title>
		<link>http://xs-sniper.com/blog/2007/08/07/i-survived-blackhat-and-defcon-barely/comment-page-1/#comment-69</link>
		<dc:creator>BK</dc:creator>
		<pubDate>Wed, 08 Aug 2007 14:26:54 +0000</pubDate>
		<guid isPermaLink="false">http://xs-sniper.com/blog/2007/08/07/i-survived-blackhat-and-defcon-barely/#comment-69</guid>
		<description>@kuza55 - GREAT article about crossdomain.xml issues.  This was probably one of the first papers I read about crossdomain issues in the flash player.  I&quot;m sure loadPolicyFile() is RIPE for all sorts of abuse.  Any time you put the words &quot;Security&quot; and &quot;Arbitrary&quot; in the same paragraph (as it is in the Flash Player Security document), its usually a bad thing.

My issue is different, but I would highly recommend that article to anyone looking into the (in)security of the flash player!</description>
		<content:encoded><![CDATA[<p>@kuza55 &#8211; GREAT article about crossdomain.xml issues.  This was probably one of the first papers I read about crossdomain issues in the flash player.  I&#8221;m sure loadPolicyFile() is RIPE for all sorts of abuse.  Any time you put the words &#8220;Security&#8221; and &#8220;Arbitrary&#8221; in the same paragraph (as it is in the Flash Player Security document), its usually a bad thing.</p>
<p>My issue is different, but I would highly recommend that article to anyone looking into the (in)security of the flash player!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: rcarter</title>
		<link>http://xs-sniper.com/blog/2007/08/07/i-survived-blackhat-and-defcon-barely/comment-page-1/#comment-67</link>
		<dc:creator>rcarter</dc:creator>
		<pubDate>Tue, 07 Aug 2007 14:35:30 +0000</pubDate>
		<guid isPermaLink="false">http://xs-sniper.com/blog/2007/08/07/i-survived-blackhat-and-defcon-barely/#comment-67</guid>
		<description>it was great to see you man. had a blast on wednesday and thursday night. i&#039;m looking forward to seeing the video of you and nate&#039;s presentation. kick ass at hitb.</description>
		<content:encoded><![CDATA[<p>it was great to see you man. had a blast on wednesday and thursday night. i&#8217;m looking forward to seeing the video of you and nate&#8217;s presentation. kick ass at hitb.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: kuza55</title>
		<link>http://xs-sniper.com/blog/2007/08/07/i-survived-blackhat-and-defcon-barely/comment-page-1/#comment-66</link>
		<dc:creator>kuza55</dc:creator>
		<pubDate>Tue, 07 Aug 2007 11:08:11 +0000</pubDate>
		<guid isPermaLink="false">http://xs-sniper.com/blog/2007/08/07/i-survived-blackhat-and-defcon-barely/#comment-66</guid>
		<description>Is the custom crossdomain.xml file issue you demoed by any chance similar to: http://www.hardened-php.net/library/poking_new_holes_with_flash_crossdomain_policy_files.html

If not, I eagerly await seeing the info, :D</description>
		<content:encoded><![CDATA[<p>Is the custom crossdomain.xml file issue you demoed by any chance similar to: <a href="http://www.hardened-php.net/library/poking_new_holes_with_flash_crossdomain_policy_files.html" rel="nofollow">http://www.hardened-php.net/library/poking_new_holes_with_flash_crossdomain_policy_files.html</a></p>
<p>If not, I eagerly await seeing the info, <img src='http://xs-sniper.com/blog/wp-includes/images/smilies/icon_biggrin.gif' alt=':D' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
</channel>
</rss>

<!-- Dynamic Page Served (once) in 0.336 seconds -->
