<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: BK on Safari, hunting Firefox&#8230;</title>
	<atom:link href="http://xs-sniper.com/blog/2008/06/20/bk-on-safari-hunting-firefox/feed/" rel="self" type="application/rss+xml" />
	<link>http://xs-sniper.com/blog/2008/06/20/bk-on-safari-hunting-firefox/</link>
	<description>Thoughts on Security in an Uncivilized World…</description>
	<lastBuildDate>Wed, 08 Sep 2010 02:39:08 -0700</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
	<item>
		<title>By: Firefox 3.0.1 fixes blended-threat vulnerability &#187; 70 Tricks</title>
		<link>http://xs-sniper.com/blog/2008/06/20/bk-on-safari-hunting-firefox/comment-page-1/#comment-576</link>
		<dc:creator>Firefox 3.0.1 fixes blended-threat vulnerability &#187; 70 Tricks</dc:creator>
		<pubDate>Sat, 19 Jul 2008 05:46:09 +0000</pubDate>
		<guid isPermaLink="false">http://xs-sniper.com/blog/?p=106#comment-576</guid>
		<description>[...] and Safari for Windows: Turns out Firefox was vulnerable, too. Security researcher Billy Rios found the problem, but disclosed it only to Mozilla. (Mac users remain [...]</description>
		<content:encoded><![CDATA[<p>[...] and Safari for Windows: Turns out Firefox was vulnerable, too. Security researcher Billy Rios found the problem, but disclosed it only to Mozilla. (Mac users remain [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Firefox 3.0.1 fixes blended-threat vulnerability &#124; applestech.com</title>
		<link>http://xs-sniper.com/blog/2008/06/20/bk-on-safari-hunting-firefox/comment-page-1/#comment-573</link>
		<dc:creator>Firefox 3.0.1 fixes blended-threat vulnerability &#124; applestech.com</dc:creator>
		<pubDate>Fri, 18 Jul 2008 18:19:03 +0000</pubDate>
		<guid isPermaLink="false">http://xs-sniper.com/blog/?p=106#comment-573</guid>
		<description>[...] and Safari for Windows: Turns out Firefox was vulnerable, too. Security researcher Billy Rios found the problem, but disclosed it only to Mozilla. (Mac users remain [...]</description>
		<content:encoded><![CDATA[<p>[...] and Safari for Windows: Turns out Firefox was vulnerable, too. Security researcher Billy Rios found the problem, but disclosed it only to Mozilla. (Mac users remain [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Rilasciato Firefox 3.0.1 &#171; marko&#8217;s weblog</title>
		<link>http://xs-sniper.com/blog/2008/06/20/bk-on-safari-hunting-firefox/comment-page-1/#comment-570</link>
		<dc:creator>Rilasciato Firefox 3.0.1 &#171; marko&#8217;s weblog</dc:creator>
		<pubDate>Fri, 18 Jul 2008 14:50:16 +0000</pubDate>
		<guid isPermaLink="false">http://xs-sniper.com/blog/?p=106#comment-570</guid>
		<description>[...] hanno corretto tre vulnerabilità: una falla che, combinata con un problema di Safari, permette la lettura dati dal disco fisso o l’esecuzione di codice, un overflow relativo al CSS reference counter (con conseguente esecuzione di codice remoto) ed un [...]</description>
		<content:encoded><![CDATA[<p>[...] hanno corretto tre vulnerabilità: una falla che, combinata con un problema di Safari, permette la lettura dati dal disco fisso o l’esecuzione di codice, un overflow relativo al CSS reference counter (con conseguente esecuzione di codice remoto) ed un [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: appleforapple.com &#187; Firefox 3.0.1 fixes blended-threat vulnerability</title>
		<link>http://xs-sniper.com/blog/2008/06/20/bk-on-safari-hunting-firefox/comment-page-1/#comment-569</link>
		<dc:creator>appleforapple.com &#187; Firefox 3.0.1 fixes blended-threat vulnerability</dc:creator>
		<pubDate>Thu, 17 Jul 2008 18:17:30 +0000</pubDate>
		<guid isPermaLink="false">http://xs-sniper.com/blog/?p=106#comment-569</guid>
		<description>[...] and Safari for Windows: Turns out Firefox was vulnerable, too. Security researcher Billy Rios found the problem, but disclosed it only to Mozilla. (Mac users remain [...]</description>
		<content:encoded><![CDATA[<p>[...] and Safari for Windows: Turns out Firefox was vulnerable, too. Security researcher Billy Rios found the problem, but disclosed it only to Mozilla. (Mac users remain [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Tech News &#187; Blog Archive &#187; Linkpost &#124; 6.22.2008</title>
		<link>http://xs-sniper.com/blog/2008/06/20/bk-on-safari-hunting-firefox/comment-page-1/#comment-544</link>
		<dc:creator>Tech News &#187; Blog Archive &#187; Linkpost &#124; 6.22.2008</dc:creator>
		<pubDate>Mon, 07 Jul 2008 11:12:52 +0000</pubDate>
		<guid isPermaLink="false">http://xs-sniper.com/blog/?p=106#comment-544</guid>
		<description>[...] BK on Safari, hunting Firefox&#8230; &#8212; Despite patching, security researcher says Safari carpet bomb blended threat is still [...]</description>
		<content:encoded><![CDATA[<p>[...] BK on Safari, hunting Firefox&#8230; &#8212; Despite patching, security researcher says Safari carpet bomb blended threat is still [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Armando</title>
		<link>http://xs-sniper.com/blog/2008/06/20/bk-on-safari-hunting-firefox/comment-page-1/#comment-535</link>
		<dc:creator>Armando</dc:creator>
		<pubDate>Mon, 23 Jun 2008 19:39:42 +0000</pubDate>
		<guid isPermaLink="false">http://xs-sniper.com/blog/?p=106#comment-535</guid>
		<description>Could Safari’s carpet bomb be used in conjunction with Opera 9.27 or 9.50?</description>
		<content:encoded><![CDATA[<p>Could Safari’s carpet bomb be used in conjunction with Opera 9.27 or 9.50?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: s9k</title>
		<link>http://xs-sniper.com/blog/2008/06/20/bk-on-safari-hunting-firefox/comment-page-1/#comment-530</link>
		<dc:creator>s9k</dc:creator>
		<pubDate>Sun, 22 Jun 2008 22:11:15 +0000</pubDate>
		<guid isPermaLink="false">http://xs-sniper.com/blog/?p=106#comment-530</guid>
		<description>nice find rios, pretty cool tie together.</description>
		<content:encoded><![CDATA[<p>nice find rios, pretty cool tie together.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: &#8220;Carpet Bomb&#8221; Still A Problem Despite Patch&#8230;. Oh Noes! &#171; The IT Nerd</title>
		<link>http://xs-sniper.com/blog/2008/06/20/bk-on-safari-hunting-firefox/comment-page-1/#comment-525</link>
		<dc:creator>&#8220;Carpet Bomb&#8221; Still A Problem Despite Patch&#8230;. Oh Noes! &#171; The IT Nerd</dc:creator>
		<pubDate>Sun, 22 Jun 2008 12:52:26 +0000</pubDate>
		<guid isPermaLink="false">http://xs-sniper.com/blog/?p=106#comment-525</guid>
		<description>[...] yeah, if you look at Billy&#8217;s blog, he also has this [...]</description>
		<content:encoded><![CDATA[<p>[...] yeah, if you look at Billy&#8217;s blog, he also has this [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: aussiebear</title>
		<link>http://xs-sniper.com/blog/2008/06/20/bk-on-safari-hunting-firefox/comment-page-1/#comment-522</link>
		<dc:creator>aussiebear</dc:creator>
		<pubDate>Sun, 22 Jun 2008 07:33:52 +0000</pubDate>
		<guid isPermaLink="false">http://xs-sniper.com/blog/?p=106#comment-522</guid>
		<description>So this is a Windows/IE problem being the root cause of this mess?

Does it occur if I use Firefox 3 under Linux?</description>
		<content:encoded><![CDATA[<p>So this is a Windows/IE problem being the root cause of this mess?</p>
<p>Does it occur if I use Firefox 3 under Linux?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: James Brown</title>
		<link>http://xs-sniper.com/blog/2008/06/20/bk-on-safari-hunting-firefox/comment-page-1/#comment-518</link>
		<dc:creator>James Brown</dc:creator>
		<pubDate>Sun, 22 Jun 2008 01:44:54 +0000</pubDate>
		<guid isPermaLink="false">http://xs-sniper.com/blog/?p=106#comment-518</guid>
		<description>Several articles that link here state there is still a vulnerability in Safari that needs to be addressed, but that&#039;s not the impression that I got from your post.  To clarify, is the new issue that you mention  a vulnerability in Firefox that could previously have been exploited via the now-fixed Safari &quot;carpet bombing&quot; and may still be exploitable via other means?  It might be worth being a bit clearer on this in your post to remove the confusion.</description>
		<content:encoded><![CDATA[<p>Several articles that link here state there is still a vulnerability in Safari that needs to be addressed, but that&#8217;s not the impression that I got from your post.  To clarify, is the new issue that you mention  a vulnerability in Firefox that could previously have been exploited via the now-fixed Safari &#8220;carpet bombing&#8221; and may still be exploitable via other means?  It might be worth being a bit clearer on this in your post to remove the confusion.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

<!-- Dynamic Page Served (once) in 1.566 seconds -->
