<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments for SamuraiNet Blog</title>
	<atom:link href="http://www.samurainet.org/blog/comments/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.samurainet.org/blog</link>
	<description>"If you cut me, I bleed binary"</description>
	<pubDate>Thu, 16 Oct 2008 01:48:00 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.5</generator>
		<item>
		<title>Comment on Google&#8217;s &#8216;Chrome&#8217; released&#8230; by Daniel</title>
		<link>http://www.samurainet.org/blog/2008/09/03/googles-chrome-released/#comment-396</link>
		<dc:creator>Daniel</dc:creator>
		<pubDate>Wed, 03 Sep 2008 19:17:20 +0000</pubDate>
		<guid isPermaLink="false">http://www.samurainet.org/blog/?p=41#comment-396</guid>
		<description>I can't remember where the article was (try Ars Technica?) but the exploit is because Google used an older version of WebKit that did not have the fix for this vulnerability.

The article went on to mention the history of the exploit and how Apple downplayed the seriousness of the issue and took close to 3 months to patch it.</description>
		<content:encoded><![CDATA[<p>I can&#8217;t remember where the article was (try Ars Technica?) but the exploit is because Google used an older version of WebKit that did not have the fix for this vulnerability.</p>
<p>The article went on to mention the history of the exploit and how Apple downplayed the seriousness of the issue and took close to 3 months to patch it.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Using RefControl by Uber0n</title>
		<link>http://www.samurainet.org/blog/2008/07/09/using-refcontrol/#comment-330</link>
		<dc:creator>Uber0n</dc:creator>
		<pubDate>Wed, 27 Aug 2008 20:24:31 +0000</pubDate>
		<guid isPermaLink="false">http://www.samurainet.org/blog/?p=29#comment-330</guid>
		<description>Sometimes sites store unfiltered referrers in .htm (or similiar) log files, which can be used to run XSS against the admins who check the logs ;)</description>
		<content:encoded><![CDATA[<p>Sometimes sites store unfiltered referrers in .htm (or similiar) log files, which can be used to run XSS against the admins who check the logs <img src='http://www.samurainet.org/blog/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /></p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Ion3 Window Manager by Darth Platypus</title>
		<link>http://www.samurainet.org/blog/2008/08/25/ion3-window-manager/#comment-324</link>
		<dc:creator>Darth Platypus</dc:creator>
		<pubDate>Tue, 26 Aug 2008 12:23:11 +0000</pubDate>
		<guid isPermaLink="false">http://www.samurainet.org/blog/?p=25#comment-324</guid>
		<description>The whole mouse thing is a fad... when will people realize that the *true* path to righteousness lies not through the point-and-grunt neanderthalic methods they've grown accustomed to, but rather through the elegant and expressive method that's been all-but-abandoned in this day and age in favor of odious touchscreens and big-ass tables!</description>
		<content:encoded><![CDATA[<p>The whole mouse thing is a fad&#8230; when will people realize that the *true* path to righteousness lies not through the point-and-grunt neanderthalic methods they&#8217;ve grown accustomed to, but rather through the elegant and expressive method that&#8217;s been all-but-abandoned in this day and age in favor of odious touchscreens and big-ass tables!</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on The return of the Tv-Links by tv links</title>
		<link>http://www.samurainet.org/blog/2008/04/26/the-return-of-the-tv-links/#comment-222</link>
		<dc:creator>tv links</dc:creator>
		<pubDate>Sun, 27 Jul 2008 13:51:55 +0000</pubDate>
		<guid isPermaLink="false">http://www.samurainet.org/blog/?p=8#comment-222</guid>
		<description>tv links cc is just a clone of the original one, it isnt actually the REAL one</description>
		<content:encoded><![CDATA[<p>tv links cc is just a clone of the original one, it isnt actually the REAL one</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Using RefControl by admin</title>
		<link>http://www.samurainet.org/blog/2008/07/09/using-refcontrol/#comment-210</link>
		<dc:creator>admin</dc:creator>
		<pubDate>Fri, 18 Jul 2008 02:35:20 +0000</pubDate>
		<guid isPermaLink="false">http://www.samurainet.org/blog/?p=29#comment-210</guid>
		<description>Yes. It was listed in the first post of this section.</description>
		<content:encoded><![CDATA[<p>Yes. It was listed in the first post of this section.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Using RefControl by Daniel Cousineau</title>
		<link>http://www.samurainet.org/blog/2008/07/09/using-refcontrol/#comment-209</link>
		<dc:creator>Daniel Cousineau</dc:creator>
		<pubDate>Fri, 18 Jul 2008 01:41:25 +0000</pubDate>
		<guid isPermaLink="false">http://www.samurainet.org/blog/?p=29#comment-209</guid>
		<description>So are you going to link to the refcontrol site or do I have to google it? :P

I'm assuming http://www.stardrifter.org/refcontrol/ is correct?</description>
		<content:encoded><![CDATA[<p>So are you going to link to the refcontrol site or do I have to google it? <img src='http://www.samurainet.org/blog/wp-includes/images/smilies/icon_razz.gif' alt=':P' class='wp-smiley' /> </p>
<p>I&#8217;m assuming <a href="http://www.stardrifter.org/refcontrol/" rel="nofollow">http://www.stardrifter.org/refcontrol/</a> is correct?</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Web Application Penetration Testing&#8230; my tools of the trade by SuperCherry</title>
		<link>http://www.samurainet.org/blog/2008/05/12/web-application-penetration-testing-my-tools-of-the-trade/#comment-185</link>
		<dc:creator>SuperCherry</dc:creator>
		<pubDate>Fri, 11 Jul 2008 13:10:10 +0000</pubDate>
		<guid isPermaLink="false">http://www.samurainet.org/blog/?p=17#comment-185</guid>
		<description>Nice collection but, if someone is doing web app testing wont use map (not that it wont give interesting information) because are running tests on the 7th
layer. To do proper Web server banner scanning you can use httpPrint, or Wikto (Wikto is using HttpPrint and HttpTrack to identify and clone the site for further analysis).

Something similar to nmap is hmap (not the best tool, but it is open source and someone can learn from it). Guy have a look at http://blog.kassaras.com.

PS: Nice post...</description>
		<content:encoded><![CDATA[<p>Nice collection but, if someone is doing web app testing wont use map (not that it wont give interesting information) because are running tests on the 7th<br />
layer. To do proper Web server banner scanning you can use httpPrint, or Wikto (Wikto is using HttpPrint and HttpTrack to identify and clone the site for further analysis).</p>
<p>Something similar to nmap is hmap (not the best tool, but it is open source and someone can learn from it). Guy have a look at <a href="http://blog.kassaras.com" rel="nofollow">http://blog.kassaras.com</a>.</p>
<p>PS: Nice post&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Cookies, Cookies, and Cookies by Nick</title>
		<link>http://www.samurainet.org/blog/2008/06/08/cookies-cookies-and-cookies/#comment-135</link>
		<dc:creator>Nick</dc:creator>
		<pubDate>Wed, 25 Jun 2008 07:40:51 +0000</pubDate>
		<guid isPermaLink="false">http://www.samurainet.org/blog/?p=27#comment-135</guid>
		<description>According to MozillaLine ( http://kb.mozillazine.org/Firefox_:_FAQs_:_About:config_Entries ), "P3P functionality is not present in Firefox and will probably be removed from Mozilla Suite".  Am I missing something?  Are you using an extension to enforce P3P?

Could you not achieve your custom policy more simply by setting network. cookie. lifetimePolicy to 2 (accept for session only) and network. cookie. cookieBehavior to 1 (allow cookies from originating server only)?</description>
		<content:encoded><![CDATA[<p>According to MozillaLine ( <a href="http://kb.mozillazine.org/Firefox_:_FAQs_:_About:config_Entries" rel="nofollow">http://kb.mozillazine.org/Firefox_:_FAQs_:_About:config_Entries</a> ), &#8220;P3P functionality is not present in Firefox and will probably be removed from Mozilla Suite&#8221;.  Am I missing something?  Are you using an extension to enforce P3P?</p>
<p>Could you not achieve your custom policy more simply by setting network. cookie. lifetimePolicy to 2 (accept for session only) and network. cookie. cookieBehavior to 1 (allow cookies from originating server only)?</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on BackTrack2 Wireless by Jon Butler</title>
		<link>http://www.samurainet.org/blog/2008/05/24/backtrack2-wireless/#comment-125</link>
		<dc:creator>Jon Butler</dc:creator>
		<pubDate>Mon, 23 Jun 2008 13:37:36 +0000</pubDate>
		<guid isPermaLink="false">http://www.samurainet.org/blog/?p=11#comment-125</guid>
		<description>Nice post samurai!

@Stuart Jones - I assume you checked out the new b43 drivers? They even support injection! What a jump! From no support to packet injection, it supports quite a few of the broadcom chipsets. You can find yours with:

lspci -nn &#124; grep Broadcom

Should be the last 4 digits in the square brackets.</description>
		<content:encoded><![CDATA[<p>Nice post samurai!</p>
<p>@Stuart Jones - I assume you checked out the new b43 drivers? They even support injection! What a jump! From no support to packet injection, it supports quite a few of the broadcom chipsets. You can find yours with:</p>
<p>lspci -nn | grep Broadcom</p>
<p>Should be the last 4 digits in the square brackets.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Cookies, Cookies, and Cookies by Kelly (Raven) Grzech</title>
		<link>http://www.samurainet.org/blog/2008/06/08/cookies-cookies-and-cookies/#comment-55</link>
		<dc:creator>Kelly (Raven) Grzech</dc:creator>
		<pubDate>Sun, 08 Jun 2008 23:13:52 +0000</pubDate>
		<guid isPermaLink="false">http://www.samurainet.org/blog/?p=27#comment-55</guid>
		<description>You ought to try the WP-Footnotes (http://www.elvery.net/drzax/more-things/wordpress-footnotes-plugin/) Wordpress plugin for your references.  'Tis very useful.</description>
		<content:encoded><![CDATA[<p>You ought to try the WP-Footnotes (http://www.elvery.net/drzax/more-things/wordpress-footnotes-plugin/) Wordpress plugin for your references.  &#8216;Tis very useful.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
