<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: CSRF pwns your box?!?!</title>
	<atom:link href="http://xs-sniper.com/blog/2008/04/21/csrf-pwns-your-box/feed/" rel="self" type="application/rss+xml" />
	<link>http://xs-sniper.com/blog/2008/04/21/csrf-pwns-your-box/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=csrf-pwns-your-box</link>
	<description>Thoughts on Security in an Uncivilized World…</description>
	<lastBuildDate>Fri, 27 Apr 2012 13:53:43 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
	<item>
		<title>By: UTorrent + CSRF = STALLOWN3D!1 &#124; www.WannaHack.com</title>
		<link>http://xs-sniper.com/blog/2008/04/21/csrf-pwns-your-box/comment-page-1/#comment-497</link>
		<dc:creator>UTorrent + CSRF = STALLOWN3D!1 &#124; www.WannaHack.com</dc:creator>
		<pubDate>Mon, 09 Jun 2008 17:59:45 +0000</pubDate>
		<guid isPermaLink="false">http://xs-sniper.com/blog/2008/04/21/csrf-pwns-your-box/#comment-497</guid>
		<description>[...] related article can be found at http://xs-sniper.com/blog/2008/04/21/csrf-pwns-your-box/    Share and Enjoy: These icons link to social bookmarking sites where readers can share and [...]</description>
		<content:encoded><![CDATA[<p>[...] related article can be found at <a href="http://xs-sniper.com/blog/2008/04/21/csrf-pwns-your-box/ " rel="nofollow">http://xs-sniper.com/blog/2008/04/21/csrf-pwns-your-box/ </a>   Share and Enjoy: These icons link to social bookmarking sites where readers can share and [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Awesome AnDrEw</title>
		<link>http://xs-sniper.com/blog/2008/04/21/csrf-pwns-your-box/comment-page-1/#comment-431</link>
		<dc:creator>Awesome AnDrEw</dc:creator>
		<pubDate>Thu, 24 Apr 2008 13:30:04 +0000</pubDate>
		<guid isPermaLink="false">http://xs-sniper.com/blog/2008/04/21/csrf-pwns-your-box/#comment-431</guid>
		<description>Beautifully orchestrated example of how Cross-Site Request Forgeries are often more useful than Cross-Site Scripting alone. This was a very clever method for manipulating the client, and possibly gaining persistent access to the victim&#039;s computer. This demonstration, and the one to snare GMail accounts, have really impressed me and should cause developers to realize why these issues are so important. On a side note: uTorrent sucks.</description>
		<content:encoded><![CDATA[<p>Beautifully orchestrated example of how Cross-Site Request Forgeries are often more useful than Cross-Site Scripting alone. This was a very clever method for manipulating the client, and possibly gaining persistent access to the victim&#8217;s computer. This demonstration, and the one to snare GMail accounts, have really impressed me and should cause developers to realize why these issues are so important. On a side note: uTorrent sucks.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sad panda</title>
		<link>http://xs-sniper.com/blog/2008/04/21/csrf-pwns-your-box/comment-page-1/#comment-430</link>
		<dc:creator>Sad panda</dc:creator>
		<pubDate>Thu, 24 Apr 2008 12:52:31 +0000</pubDate>
		<guid isPermaLink="false">http://xs-sniper.com/blog/2008/04/21/csrf-pwns-your-box/#comment-430</guid>
		<description>but it does require admin rights to write to %allusersprofile%, and who would run p2p apps as admin?</description>
		<content:encoded><![CDATA[<p>but it does require admin rights to write to %allusersprofile%, and who would run p2p apps as admin?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Austoon Daily &#187; CSRF pwns your box?!?!</title>
		<link>http://xs-sniper.com/blog/2008/04/21/csrf-pwns-your-box/comment-page-1/#comment-427</link>
		<dc:creator>Austoon Daily &#187; CSRF pwns your box?!?!</dc:creator>
		<pubDate>Tue, 22 Apr 2008 14:59:12 +0000</pubDate>
		<guid isPermaLink="false">http://xs-sniper.com/blog/2008/04/21/csrf-pwns-your-box/#comment-427</guid>
		<description>[...] CSRF pwns your box?!?! [...]</description>
		<content:encoded><![CDATA[<p>[...] CSRF pwns your box?!?! [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: pbnetworks &#187; Blog Archive &#187; Computer takeover via cross site request forgery</title>
		<link>http://xs-sniper.com/blog/2008/04/21/csrf-pwns-your-box/comment-page-1/#comment-425</link>
		<dc:creator>pbnetworks &#187; Blog Archive &#187; Computer takeover via cross site request forgery</dc:creator>
		<pubDate>Mon, 21 Apr 2008 22:02:02 +0000</pubDate>
		<guid isPermaLink="false">http://xs-sniper.com/blog/2008/04/21/csrf-pwns-your-box/#comment-425</guid>
		<description>[...] expert Billy Rios has reported a vulnerability that Rob Carter discovered in the Web UI of the popular µTorrent [...]</description>
		<content:encoded><![CDATA[<p>[...] expert Billy Rios has reported a vulnerability that Rob Carter discovered in the Web UI of the popular µTorrent [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using disk: basic
Page Caching using disk: enhanced

Served from: xs-sniper.com @ 2012-05-16 22:33:57 -->
