<?xml version="1.0" encoding="ISO-8859-1" ?>
<?xml-stylesheet type="text/xsl" href="/xsl/index.xsl"?>

<BODY>
<TITLE>
Welcome to the Hostsplus Security Information Center
</TITLE>
<MENU>
    <MENUOBJECT>

	<MENUTITLE>
		Vulnerability Info	
	</MENUTITLE>

	<MENUITEM>
		<menuurl>
			http://www.securityfocus.com
		</menuurl>
		<MENUBODY>
			Security Focus	
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.osvdb.org
		</menuurl>
		<MENUBODY>
			OSVDB
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://nvd.nist.gov
		</menuurl>
		<MENUBODY>
			Nist NVD
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://cve.mitre.org
		</menuurl>
		<MENUBODY>
			Mitre
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://ciac.llnl.gov
		</menuurl>
		<MENUBODY>
			CIAC
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.cert.org
		</menuurl>
		<MENUBODY>
			CERT
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://iase.disa.mil
		</menuurl>
		<MENUBODY>
			ISAE
		</MENUBODY>
	</MENUITEM>
    </MENUOBJECT>
    <MENUOBJECT>
	<MENUTITLE>
		Exploit Info	
	</MENUTITLE>
	<MENUITEM>
		<menuurl>
			http://www.milw0rm.com
		</menuurl>
		<MENUBODY>
			Milw0rm
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.packetstormsecurity.nl
		</menuurl>
		<MENUBODY>
			Packet Storm
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.elsenot.com
		</menuurl>
		<MENUBODY>
			Else Not
		</MENUBODY>
	</MENUITEM>

    </MENUOBJECT>
    <MENUOBJECT>
	<MENUTITLE>
		Active Research Groups
	</MENUTITLE>
	<MENUITEM>
		<menuurl>
			http://www.shmoo.com
		</menuurl>
		<MENUBODY>
			The Shmoo Group
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.thc.org
		</menuurl>
		<MENUBODY>
			THC
		</MENUBODY>
	</MENUITEM>



	<MENUITEM>
		<menuurl>
			http://www.phenoelit.de
		</menuurl>
		<MENUBODY>
			Phenoelit
		</MENUBODY>
	</MENUITEM>

    </MENUOBJECT>
    <MENUOBJECT>

	<MENUTITLE>
		Commercial Groups
	</MENUTITLE>
	<MENUITEM>
		<menuurl>
			http://www.ngssoftware.com
		</menuurl>
		<MENUBODY>
			NGS
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.immunitysec.com
		</menuurl>
		<MENUBODY>
			Immunitysec
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.secunia.com
		</menuurl>
		<MENUBODY>
			Secunia
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.securiteam.com
		</menuurl>
		<MENUBODY>
			Securiteam
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://xforce.iss.net
		</menuurl>
		<MENUBODY>
			Xforce
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.idefense.com
		</menuurl>
		<MENUBODY>
			Idefense
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.eeye.com
		</menuurl>
		<MENUBODY>
			Eeye
		</MENUBODY>
	</MENUITEM>


	<MENUITEM>
		<menuurl>
			http://www.2600.com
		</menuurl>
		<MENUBODY>
			2600
		</MENUBODY>
	</MENUITEM>

    </MENUOBJECT>
    <MENUOBJECT>
	<MENUTITLE>
		Security Organizations
	</MENUTITLE>
	<MENUITEM>
		<menuurl>
			http://www.owasp.org
		</menuurl>
		<MENUBODY>
			OWASP
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.isc2.org
		</menuurl>
		<MENUBODY>
			ISC2
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.isecom.org
		</menuurl>
		<MENUBODY>
			ISECOM
		</MENUBODY>
	</MENUITEM>


	<MENUITEM>
		<menuurl>
			http://www.sans.org
		</menuurl>
		<MENUBODY>
			SANS
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.infragard.com
		</menuurl>
		<MENUBODY>
			Infragard
		</MENUBODY>
	</MENUITEM>

    </MENUOBJECT>

    <MENUOBJECT>
	<MENUTITLE>
		Methodologies	
	</MENUTITLE>

	<MENUITEM>
		<menuurl>
			http://www.osissg.org
		</menuurl>
		<MENUBODY>
			OISSG
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.isecom.org/
		</menuurl>
		<MENUBODY>
			ISECOM
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.osstmm.org
		</menuurl>
		<MENUBODY>
			OSSTMM
		</MENUBODY>
	</MENUITEM>
    </MENUOBJECT>
    <MENUOBJECT>

	<MENUTITLE>
		Free "Auditing" Tools
	</MENUTITLE>
	<MENUITEM>
		<menuurl>
			http://www.nessus.org
		</menuurl>
		<MENUBODY>
			Nessus
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.insecure.org
		</menuurl>
		<MENUBODY>
			Nmap
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.cqure.net
		</menuurl>
		<MENUBODY>
			Cqure Tools
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.sqlsecurity.com/DesktopDefault.aspx?tabid=26	
		</menuurl>
		<MENUBODY>
			MS SQL Utilities
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.cirt.net
		</menuurl>
		<MENUBODY>
			Nikto
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.sysinternals.com
		</menuurl>
		<MENUBODY>
			Sysinternals Tools
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.bindview.com/services/razor/utilities/
		</menuurl>
		<MENUBODY>
			Bindview Tools
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://thc.org/releases.php
		</menuurl>
		<MENUBODY>
			THC Tools
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.metasploit.org
		</menuurl>
		<MENUBODY>
			Metasploit
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.parosproxy.org/
		</menuurl>
		<MENUBODY>
			Paros Proxy
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.portswigger.net/proxy/
		</menuurl>
		<MENUBODY>
			Burp Proxy
		</MENUBODY>
	</MENUITEM>


	<MENUITEM>
		<menuurl>
			http://www.securityforest.com
		</menuurl>
		<MENUBODY>
			Exploit Tree
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.tank.net
		</menuurl>
		<MENUBODY>
			Spork
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://ettercap.sourceforge.net/
		</menuurl>
		<MENUBODY>
			Ettercap
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.cirt.net/code/nikto.shtml
		</menuurl>
		<MENUBODY>
			nikto
		</MENUBODY>
	</MENUITEM>


	<MENUITEM>
		<menuurl>
			http://www.sensepost.com/research/wikto/
		</menuurl>
		<MENUBODY>
			wikto
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.nstalker.com/eng/products/nstealth/
		</menuurl>
		<MENUBODY>
			nStealth
		</MENUBODY>
	</MENUITEM>



	<MENUITEM>
		<menuurl>
			http://www.foofus.net/fizzgig/fgdump/
		</menuurl>
		<MENUBODY>
			fgdump (Obtain MS Hashes)
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.off-by-one.net/misc/cachedump.html
		</menuurl>
		<MENUBODY>
			Cachedump (Obtain MS Hashes)
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://studenti.unina.it/~ncuomo/syskey/
		</menuurl>
		<MENUBODY>
			samdump2
		</MENUBODY>
	</MENUITEM>



	<MENUITEM>
		<menuurl>
			http://www.ethereal.com/
		</menuurl>
		<MENUBODY>
			Ethereal
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.immunitysec.com/resources-freesoftware.shtml
		</menuurl>
		<MENUBODY>
			Free Immunitysec Tools
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.foundstone.com/resources/freetools.htm
		</menuurl>
		<MENUBODY>
			Free Foundstone Tools
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.eeye.com/html/Research/Tools/index.html
		</menuurl>
		<MENUBODY>
			Free Eeye Tools
		</MENUBODY>
	</MENUITEM>


	<MENUITEM>
		<menuurl>
			http://sectools.org/
		</menuurl>
		<MENUBODY>
			Sectools.org
		</MENUBODY>
	</MENUITEM>
    </MENUOBJECT>
    <MENUOBJECT>
	<MENUTITLE>
		Free Virtualization Tools	
	</MENUTITLE>
	<MENUITEM>
		<menuurl>
			http://www.vmware.com/products/server/
		</menuurl>
		<MENUBODY>
			VMWare Server
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://bochs.sourceforge.net/
		</menuurl>
		<MENUBODY>
			Bochs
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://pearpc.sourceforge.net/
		</menuurl>
		<MENUBODY>
			PearPC	
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>	
			http://www.microsoft.com/windows/virtualpc/default.mspx
		</menuurl>
		<MENUBODY>
			MS Virtual PC
		</MENUBODY>
	</MENUITEM>
    </MENUOBJECT>

    <MENUOBJECT>
	<MENUTITLE>
		Free Reverse Engineering/Debugging Tools	
	</MENUTITLE>
	<MENUITEM>
		<menuurl>
			http://directory.fsf.org/GNU/binutils.html
		</menuurl>
		<MENUBODY>
			binutils
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.gnu.org/software/gdb/
		</menuurl>
		<MENUBODY>
			GDB
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://directory.fsf.org/GNU/GUSS.html
		</menuurl>
		<MENUBODY>
			Guss
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.gnu.org/software/ddd/
		</menuurl>
		<MENUBODY>
			DDD
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.ollydbg.de/
		</menuurl>
		<MENUBODY>
			Ollydbg 
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://labs.idefense.com/labs-software.php
		</menuurl>
		<MENUBODY>
			iDefense Labs Tools
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://oss.coresecurity.com/projects/uhooker.htm
		</menuurl>
		<MENUBODY>
			CORE Tools
		</MENUBODY>
	</MENUITEM>
    </MENUOBJECT>
    <MENUOBJECT>
	<MENUTITLE>
		Defaced Websites
	</MENUTITLE>


	<MENUITEM>
		<menuurl>
			http://www.zone-h.org/component/option,com_attacks/Itemid,43/
		</menuurl>
		<MENUBODY>
			Zone H
		</MENUBODY>
	</MENUITEM>
    </MENUOBJECT>
    <MENUOBJECT>
	<MENUTITLE>
		Default Password Lists
	</MENUTITLE>
	<MENUITEM>
		<menuurl>
			http://www.cirt.net/cgi-bin/passwd.pl
		</menuurl>
		<MENUBODY>
			Cirt's Passwords
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.phenoelit.de/dpl/dpl.html
		</menuurl>
		<MENUBODY>
			Phenoelit's Passwords
		</MENUBODY>
	</MENUITEM>


	<MENUITEM>
		<menuurl>
			http://www.petefinnigan.com/default/default_password_list.htm
		</menuurl>
		<MENUBODY>
			Pete Finnigan's Default Oracle Passwords
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.governmentsecurity.org/articles/DefaultLoginsandPasswordsforNetworkedDevices.php
		</menuurl>
		<MENUBODY>
			GovernmentSecurity.org
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://defaultpassword.com/
		</menuurl>
		<MENUBODY>
			defaultpassword.com
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.cyxla.com/passwords/passwords.html
		</menuurl>
		<MENUBODY>
			Cyxla's Password Database
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.e-tech.ca/017-Default_Passwords_ad.asp
		</menuurl>
		<MENUBODY>
			e-tech Default Passwords
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.uktsupport.co.uk/reference/biosp.htm
		</menuurl>
		<MENUBODY>
			Bios Passwords
		</MENUBODY>
	</MENUITEM>

    </MENUOBJECT>
    <MENUOBJECT>
	<MENUTITLE>
		Technical Conferences
	</MENUTITLE>
	<MENUITEM>
		<menuurl>
			http://www.defcon.org
		</menuurl>
		<MENUBODY>
			DefCon
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.blackhat.com
		</menuurl>
		<MENUBODY>
			Blackhat
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.cansecwest.com
		</menuurl>
		<MENUBODY>
			CanSecWest
		</MENUBODY>
	</MENUITEM>


	<MENUITEM>
		<menuurl>
			http://toorcon.com
		</menuurl>
		<MENUBODY>
			Toorcon
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
		 	http://www.shmoocon.org/	
		</menuurl>
		<MENUBODY>
			ShmooCon
		</MENUBODY>
	</MENUITEM>


	<MENUITEM>
		<menuurl>
			http://www.hopenumbersix.net/
		</menuurl>
		<MENUBODY>
			H.O.P.E.
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.ccc.de/calendar/2006/23c3?language=en
		</menuurl>
		<MENUBODY>
			Chaos Computer Congress
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://conference.hackinthebox.org/
		</menuurl>
		<MENUBODY>
			Hack in the Box
		</MENUBODY>
	</MENUITEM>

    </MENUOBJECT>
    <MENUOBJECT>
	<MENUTITLE>
		CD Distros
	</MENUTITLE>
	<MENUITEM>
		<menuurl>
			http://www.remote-exploit.org/index.php/Auditor_main
		</menuurl>
		<MENUBODY>
			Auditor
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.knoppix.org
		</menuurl>
		<MENUBODY>
			Knoppix
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.whoppix.net/index.php/Tools
		</menuurl>
		<MENUBODY>
			Whoppix / Whax
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.remote-exploit.org/index.php/Main_Page
		</menuurl>
		<MENUBODY>
			BackTrack
		</MENUBODY>
	</MENUITEM>

    </MENUOBJECT>

    <MENUOBJECT>
	<MENUTITLE>
		Wireless Tools
	</MENUTITLE>
	<MENUITEM>
		<menuurl>
			http://www.netstumbler.com
		</menuurl>
		<MENUBODY>
			Netstumbler
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://prismstumbler.sourceforge.net
		</menuurl>
		<MENUBODY>
			Prismstubler
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.kismetwireless.net
		</menuurl>
		<MENUBODY>
			Kismet
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://kismac.de/
		</menuurl>
		<MENUBODY>
			Kismac (For Macs)
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://airsnort.shmoo.com
		</menuurl>
		<MENUBODY>
			Airsnort
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://wepcrack.sourceforge.net
		</menuurl>
		<MENUBODY>
			WEPCrack
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.aircrack-ng.org/doku.php
		</menuurl>
		<MENUBODY>
			Aircrack-ng
		</MENUBODY>
	</MENUITEM>


	<MENUITEM>
		<menuurl>
			http://csrc.nist.gov/publications/nistpubs/800-48/NIST_SP-48.pdf
		</menuurl>
		<MENUBODY>
			Wireless SP
		</MENUBODY>
	</MENUITEM>



	<MENUITEM>
		<menuurl>
			http://www.blackalchemy.to/project/fakeap/
		</menuurl>
		<MENUBODY>
			FakeAP
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.802.11mercenary.net/lorcon/
		</menuurl>
		<MENUBODY>
			Lorcon
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://theta44.org/karma/index.html
		</menuurl>
		<MENUBODY>
			Karma
		</MENUBODY>
	</MENUITEM>

    </MENUOBJECT>

    <MENUOBJECT>
	<MENUTITLE>
		Checklists / Hardening Guides
	</MENUTITLE>

	<MENUITEM>
		<menuurl>
			http://csrc.nist.gov
		</menuurl>
		<MENUBODY>
			NIST CSRC
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://checklists.nist.gov
		</menuurl>
		<MENUBODY>
			NIST Checklists
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.cisecurity.org
		</menuurl>
		<MENUBODY>
			Center for Internet Security
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.nsa.gov/snac/index.cfm?MenuID=scg10.3.1
		</menuurl>
		<MENUBODY>
			NSA Security Configuration Guides
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>

		<menuurl>
			http://otn.oracle.com/deploy/security/oracle9i/pdf/9i_checklist.pdf
		</menuurl>
		<MENUBODY>
			Oracle's 9i Checklist
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>

		<menuurl>
			http://www.petefinnigan.com/orasec.htm
		</menuurl>
		<MENUBODY>
			PF's Checklists
		</MENUBODY>

	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.microsoft.com/technet/archive/security/chklist/default.mspx
		</menuurl>
		<MENUBODY>
			Microsoft Checklists
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.openna.com/pdfs/Securing-Optimizing-Linux-The-Ultimate-Solution-v2.0.pdf
		</menuurl>
		<MENUBODY>
			Securing and Optimizing Linux
		</MENUBODY>
	</MENUITEM>
    </MENUOBJECT>

   <MENUOBJECT>
        <MENUTITLE>
		OS and Service Hardening Tools
        </MENUTITLE>


        <MENUITEM>
                <menuurl>
			http://www.sun.com/software/security/jass/	 
                </menuurl>
                <MENUBODY>
			Solaris - JASS
                </MENUBODY>
        </MENUITEM>
        <MENUITEM>
                <menuurl>
			http://www.sun.com/service/serviceplans/software/patchmanagement/patchmanager.html
                </menuurl>
                <MENUBODY>
			Solaris - Patch Manager
                </MENUBODY>
        </MENUITEM>
        <MENUITEM>
                <menuurl>
			http://www.bastille-linux.org/
                </menuurl>
                <MENUBODY>
			Linux - Bastille
                </MENUBODY>
        </MENUITEM>
        <MENUITEM>
                <menuurl>
			http://www.microsoft.com/technet/security/tools/default.mspx#EZE
                </menuurl>
                <MENUBODY>
			Microsoft Security Tools
                </MENUBODY>
        </MENUITEM>
   </MENUOBJECT>
   <MENUOBJECT>
	<MENUTITLE>
		Defunct Research Groups ?
	</MENUTITLE>
	<MENUITEM>
		<menuurl>
			http://www.attrition.org
		</menuurl>
		<MENUBODY>
			Attrition
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.w00w00.org
		</menuurl>
		<MENUBODY>
			w00w00
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://adm.freelsd.net/ADM/
		</menuurl>
		<MENUBODY>
			ADM
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.cultdeadcow.com
		</menuurl>
		<MENUBODY>
			CDC
		</MENUBODY>
	</MENUITEM>


	<MENUITEM>
		<menuurl>
			http://en.wikipedia.org/wiki/TESO
		</menuurl>
		<MENUBODY>
			TESO	
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://en.wikipedia.org/wiki/Gobbles
		</menuurl>
		<MENUBODY>
			Gobbles	
		</MENUBODY>
	</MENUITEM>
    </MENUOBJECT>


    <MENUOBJECT>
	<MENUTITLE>
		Professional Security Programs
	</MENUTITLE>

	<MENUITEM>
		<menuurl>
			http://corporate.visa.com/st/programs.jsp
		</menuurl>
		<MENUBODY>
		 	Visa Security Programs
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			https://sdp.mastercardintl.com/
		</menuurl>
		<MENUBODY>
		 	MasterCard Site Data Protection Program
		</MENUBODY>
	</MENUITEM>

    </MENUOBJECT>

   <MENUOBJECT>
        <MENUTITLE>
                Password Crackers/Auditors
        </MENUTITLE>


	<MENUITEM>
		<menuurl>
			http://www.insecure.org/stf/lc5-setup.exe
		</menuurl>
		<MENUBODY>
			LC5 
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.insecure.org/stf/lc5-crack.zip
		</menuurl>
		<MENUBODY>
			LC5 Keygen
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://www.oxid.it/cain.html
		</menuurl>
		<MENUBODY>
			Cain and Abel
		</MENUBODY>
	</MENUITEM>


	<MENUITEM>
		<menuurl>
			http://www.openwall.com/john/
		</menuurl>
		<MENUBODY>
			John the Ripper
		</MENUBODY>
	</MENUITEM>
	<MENUITEM>
		<menuurl>
			http://www.banquise.net/misc/patch-john.html
		</menuurl>
		<MENUBODY>
			John Bigpatch (For more hash types)
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://en.wikipedia.org/wiki/RainbowCrack
		</menuurl>
		<MENUBODY>
			RainbowCrack 
		</MENUBODY>
	</MENUITEM>

	<MENUITEM>
		<menuurl>
			http://rainbowtables.shmoo.com/
		</menuurl>
		<MENUBODY>
			Rainbow Tables
		</MENUBODY>
	</MENUITEM>
    </MENUOBJECT>


   <MENUOBJECT>
        <MENUTITLE>
                Open Source Intelligence
        </MENUTITLE>

        <MENUITEM>
                <menuurl>
                        http://johnny.ihackstuff.com/
                </menuurl>
                <MENUBODY>
                        Google Hacking
                </MENUBODY>
        </MENUITEM>

        <MENUITEM>
                <menuurl>
                        http://news.netcraft.com/
                </menuurl>
                <MENUBODY>
                        NetCraft
                </MENUBODY>
        </MENUITEM>

        <MENUITEM>
                <menuurl>
                        http://www.archive.org/
                </menuurl>
                <MENUBODY>
                        Way Back Machine
                </MENUBODY>
        </MENUITEM>


        <MENUITEM>
                <menuurl>
                        http://www.domaintools.com
                </menuurl>
                <MENUBODY>
                        DomainTools
                </MENUBODY>
        </MENUITEM>
        <MENUITEM>
                <menuurl>
                        http://whois.webhosting.info
                </menuurl>
                <MENUBODY>
                        Web Hosting dot info 
                </MENUBODY>
        </MENUITEM>

    </MENUOBJECT>

   <MENUOBJECT>
        <MENUTITLE>
		Compliance Resources
        </MENUTITLE>

        <MENUITEM>
                <menuurl>
			http://www.hhs.gov/ocr/hipaa/
                </menuurl>
                <MENUBODY>
                        HIPAA
                </MENUBODY>
        </MENUITEM>

        <MENUITEM>
                <menuurl>
			http://www.aicpa.org/info/sarbanes_oxley_summary.htm
                </menuurl>
                <MENUBODY>
			SOX
                </MENUBODY>
        </MENUITEM>

        <MENUITEM>
                <menuurl>
			http://banking.senate.gov/conf/
                </menuurl>
                <MENUBODY>
			FMA (GLBA)
                </MENUBODY>
        </MENUITEM>

        <MENUITEM>
                <menuurl>
			http://csrc.nist.gov/sec-cert/
                </menuurl>
                <MENUBODY>
			FISMA
                </MENUBODY>
        </MENUITEM>

        <MENUITEM>
                <menuurl>
			http://www.iso.org/iso/en/prods-services/popstds/informationsecurity.html
                </menuurl>
                <MENUBODY>
			ISO 17799
                </MENUBODY>
        </MENUITEM>

        <MENUITEM>
                <menuurl>
			http://csrc.nist.gov/fasp/
                </menuurl>
                <MENUBODY>
			NIST FASP Resources
                </MENUBODY>
        </MENUITEM>

        <MENUITEM>
                <menuurl>
			http://usa.visa.com/business/accepting_visa/ops_risk_management/cisp.html
                </menuurl>
                <MENUBODY>
			Visa PCI
                </MENUBODY>
        </MENUITEM>

        <MENUITEM>
                <menuurl>
			http://www.sans.org/resources/policies/
                </menuurl>
                <MENUBODY>
			SANS Security Policies
                </MENUBODY>
        </MENUITEM>

    </MENUOBJECT>

   <MENUOBJECT>
        <MENUTITLE>
		Email Lists
        </MENUTITLE>

        <MENUITEM>
                <menuurl>
			http://www.securityfocus.com/archive
                </menuurl>
                <MENUBODY>
			Security Focus E-mail Lists
                </MENUBODY>
        </MENUITEM>

        <MENUITEM>
                <menuurl>
			http://lists.grok.org.uk/mailman/listinfo/full-disclosure
                </menuurl>
                <MENUBODY>
			Full Disclosure (Unmoderated)
                </MENUBODY>
        </MENUITEM>


        <MENUITEM>
                <menuurl>
			http://www.immunitysec.com/mailman/listinfo/dailydave
                </menuurl>
                <MENUBODY>
			Daily Dave
                </MENUBODY>
        </MENUITEM>
        <MENUITEM>
                <menuurl>
			http://www.seclists.org
                </menuurl>
                <MENUBODY>
			Security List Archives
                </MENUBODY>
        </MENUITEM>


   </MENUOBJECT>

   <MENUOBJECT>
        <MENUTITLE>
		Defense / IDS
        </MENUTITLE>

        <MENUITEM>
                <menuurl>
			http://www.snort.org
                </menuurl>
                <MENUBODY>
			Snort
                </MENUBODY>
        </MENUITEM>

        <MENUITEM>
                <menuurl>
			http://www.bleedingsnort.com
                </menuurl>
                <MENUBODY>
			"Bleeding Edge" Snort
                </MENUBODY>
        </MENUITEM>

        <MENUITEM>
                <menuurl>
			http://acidlab.sourceforge.net/
                </menuurl>
                <MENUBODY>
			ACID Snort Interface
                </MENUBODY>
        </MENUITEM>
   </MENUOBJECT>





   <MENUOBJECT>
        <MENUTITLE>
		Load Testing / Denial of Service Info
        </MENUTITLE>
        <MENUITEM>
                <menuurl>
			http://staff.washington.edu/dittrich/misc/ddos/
                </menuurl>
                <MENUBODY>
			DDOS Info
                </MENUBODY>
        </MENUITEM>

   </MENUOBJECT>

   <MENUOBJECT>
        <MENUTITLE>
		IDS Testing/Tuning Tools
        </MENUTITLE>

        <MENUITEM>
                <menuurl>
			ftp://ftp.st.ryuAkoku.ac.jp/pub/security/tool/snot/
                </menuurl>
                <MENUBODY>
			Snot
                </MENUBODY>
        </MENUITEM>

        <MENUITEM>
                <menuurl>
			http://securityfocus.com/data/tools/stick.tgz
                </menuurl>
                <MENUBODY>
			Stick
                </MENUBODY>
        </MENUITEM>

   </MENUOBJECT>
   <MENUOBJECT>
        <MENUTITLE>
		Firewall Ruleset Testing Tools
        </MENUTITLE>

        <MENUITEM>
                <menuurl>
			http://www.packetfactory.net/projects/firewalk/	
                </menuurl>
                <MENUBODY>
			Firewalk
                </MENUBODY>
        </MENUITEM>
        <MENUITEM>
                <menuurl>
			http://dev.inversepath.com/trac/ftester			
                </menuurl>
                <MENUBODY>
			FTester
                </MENUBODY>
        </MENUITEM>
   </MENUOBJECT>
</MENU>
<MSG>
    <MSGARTICLE>
	<MSGTITLE>
Welcome to the HostsPlus Security Information Center.
	</MSGTITLE>
	<MSGBODY>
This is a portal site created by HostsPlus to enable our clients and other interested parties to learn more about Information Security.
	</MSGBODY>
    </MSGARTICLE>
</MSG>
>rss version="2.0">
>channel>
    >title>Bugtraq>/title>
    >link>http://seclists.org/#bugtraq>/link>
    >description>The premier general security mailing list. Vulnerabilities are often announced here first, so check frequently!>/description>
  >item>
    >title>ZDI-10-027: Skype Protocol Handler datapath Argument Injection Remote Code Execution Vulnerability>/title>
    >link>http://seclists.org/bugtraq/2010/Mar/116>/link>
    >description>&lt;p&gt;Posted by ZDI Disclosures on Mar 12&lt;/p&gt;ZDI-10-027: Skype Protocol Handler datapath Argument Injection Remote Code Execution Vulnerability&lt;br&gt;
For further product information on the TippingPoint IPS,...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>ZDI-10-028: Skype URI Processing Arbitrary XML File Deletion Vulnerability>/title>
    >link>http://seclists.org/bugtraq/2010/Mar/115>/link>
    >description>&lt;p&gt;Posted by ZDI Disclosures on Mar 12&lt;/p&gt;ZDI-10-028: Skype URI Processing Arbitrary XML File Deletion Vulnerability&lt;br&gt;
For further product information on the TippingPoint IPS, visit:...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>[SECURITY] [DSA 2012-1] New Linux 2.6.26 packages fix several issues>/title>
    >link>http://seclists.org/bugtraq/2010/Mar/114>/link>
    >description>&lt;p&gt;Posted by dann frazier on Mar 12&lt;/p&gt;----------------------------------------------------------------------&lt;br&gt;
Problem...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>VUPEN Security Research - Apple Safari ColorSync Profile Integer Overflow Vulnerability>/title>
    >link>http://seclists.org/bugtraq/2010/Mar/113>/link>
    >description>&lt;p&gt;Posted by VUPEN Security Research on Mar 12&lt;/p&gt;VUPEN Security Research - Apple Safari ColorSync Profile Integer Overflow &lt;br&gt;
VUPEN Vulnerability Research...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>[XSS] I found a xss in phpmyadmin 3.3.0 when we create new database in interface!>/title>
    >link>http://seclists.org/bugtraq/2010/Mar/112>/link>
    >description>&lt;p&gt;Posted by lis cker on Mar 12&lt;/p&gt;there is a xss in phpmyadmin 3.3.0 when we create new database in interface, the &amp;quot;new_db&amp;quot; parameter do not filter &lt;br&gt;
GET:...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>[SECURITY] [DSA 2013-1] New egroupware packages fix several vulnerabilities>/title>
    >link>http://seclists.org/bugtraq/2010/Mar/111>/link>
    >description>&lt;p&gt;Posted by Moritz Muehlenhoff on Mar 12&lt;/p&gt;------------------------------------------------------------------------&lt;br&gt;
Problem type   : remote...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>[SECURITY] [DSA 2014-1] New moin packages fix several vulnerabilities>/title>
    >link>http://seclists.org/bugtraq/2010/Mar/110>/link>
    >description>&lt;p&gt;Posted by Giuseppe Iuculano on Mar 12&lt;/p&gt;------------------------------------------------------------------------&lt;br&gt;
Problem type   : remote...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>iDefense Security Advisory 03.11.10: Multiple Vendor WebKit HTML Element Use After Free Vulnerability>/title>
    >link>http://seclists.org/bugtraq/2010/Mar/109>/link>
    >description>&lt;p&gt;Posted by iDefense Labs on Mar 12&lt;/p&gt;iDefense Security Advisory 03.11.10&lt;br&gt;
included with...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>[USN-911-1] MoinMoin vulnerabilities>/title>
    >link>http://seclists.org/bugtraq/2010/Mar/108>/link>
    >description>&lt;p&gt;Posted by Jamie Strandboge on Mar 12&lt;/p&gt;===========================================================&lt;br&gt;
Kubuntu, Edubuntu,...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>[ MDVSA-2010:061 ] ncpfs>/title>
    >link>http://seclists.org/bugtraq/2010/Mar/107>/link>
    >description>&lt;p&gt;Posted by security on Mar 12&lt;/p&gt; _______________________________________________________________________&lt;br&gt;
           Enterprise Server 5.0, Multi Network Firewall 2.0...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Multiple vulnerabilities in SUPERAntiSpyware and Super Ad Blocker>/title>
    >link>http://seclists.org/bugtraq/2010/Mar/106>/link>
    >description>&lt;p&gt;Posted by Luka Milkovic on Mar 11&lt;/p&gt; Title:                              Multiple vulnerabilities in&lt;br&gt;
&lt;a  rel=&quot;nofollow&quot; href=&quot;http://www.superantispyware.com/index.html&quot;&gt;http://www.superantispyware.com/index.html&lt;/a&gt;...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>[SECURITY] [DSA 2011-1] New dpkg packages fix path traversal>/title>
    >link>http://seclists.org/bugtraq/2010/Mar/105>/link>
    >description>&lt;p&gt;Posted by Nico Golde on Mar 11&lt;/p&gt;--------------------------------------------------------------------------&lt;br&gt;
Problem type   :...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>[ MDVSA-2010:060 ] squid>/title>
    >link>http://seclists.org/bugtraq/2010/Mar/104>/link>
    >description>&lt;p&gt;Posted by security on Mar 11&lt;/p&gt; _______________________________________________________________________&lt;br&gt;
           Enterprise Server 5.0...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Skype URI Handler Input Validation>/title>
    >link>http://seclists.org/bugtraq/2010/Mar/103>/link>
    >description>&lt;p&gt;Posted by Paul Craig on Mar 11&lt;/p&gt;     (    , )     (,&lt;br&gt;
Skype URI Handler Input Validation...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Vulnerabilities in Abton>/title>
    >link>http://seclists.org/bugtraq/2010/Mar/102>/link>
    >description>&lt;p&gt;Posted by MustLive on Mar 11&lt;/p&gt;Hello Bugtraq!&lt;br&gt;
-----------------------------...&lt;br&gt;>/description>
  >/item>
>/channel>
>/rss>
>rss version="2.0">
>channel>
    >title>Daily Dave>/title>
    >link>http://seclists.org/#dailydave>/link>
    >description>This technical discussion list covers vulnerability research, exploit development, and security events/gossip.  It was started by &lt;a href=&quot;http://www.immunitysec.com/&quot;&gt;ImmunitySec&lt;/a&gt; founder Dave Aitel and many security luminaries participate.  Many posts simply advertise Immunity products, but you can&#39;t really fault Dave for being self-promotional on a list named DailyDave.>/description>
  >item>
    >title>Wings>/title>
    >link>http://seclists.org/dailydave/2010/q1/81>/link>
    >description>&lt;p&gt;Posted by dave on Mar 11&lt;/p&gt;So kudos to team .cn for another great IE bug. Anyone burning great bugs&lt;br&gt;
it's interesting...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Mike Bailey's Flash presentation is good.>/title>
    >link>http://seclists.org/dailydave/2010/q1/80>/link>
    >description>&lt;p&gt;Posted by Florian Weimer on Mar 09&lt;/p&gt;Bugs in web application frameworks are typically not fixed in the&lt;br&gt;
that makes scanners not entirely useless.&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Mike Bailey's Flash presentation is good.>/title>
    >link>http://seclists.org/dailydave/2010/q1/79>/link>
    >description>&lt;p&gt;Posted by dave on Mar 09&lt;/p&gt;People in the web application security space are often more into&lt;br&gt;
But web application hacking can be as complex as a CLOUDBURST style...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Does anyone have video of this?>/title>
    >link>http://seclists.org/dailydave/2010/q1/78>/link>
    >description>&lt;p&gt;Posted by Nate Lawson on Mar 04&lt;/p&gt;I'm not sure why you're so excited about this. This panel is up every&lt;br&gt;
As for the NSA, crypto is such...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Perforce>/title>
    >link>http://seclists.org/dailydave/2010/q1/77>/link>
    >description>&lt;p&gt;Posted by Intevydis on Mar 04&lt;/p&gt;Hi,&lt;br&gt;
to trigger send the following data to port &amp;quot;...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Does anyone have video of this?>/title>
    >link>http://seclists.org/dailydave/2010/q1/76>/link>
    >description>&lt;p&gt;Posted by Dave Aitel on Mar 04&lt;/p&gt;Btw, for those who missed it:&lt;br&gt;
-dave&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Does anyone have video of this?>/title>
    >link>http://seclists.org/dailydave/2010/q1/75>/link>
    >description>&lt;p&gt;Posted by Dave Aitel on Mar 02&lt;/p&gt;NSA, cryptoexperts jab at RSA Conference Cryptographers' Panel&lt;br&gt;
&lt;a  rel=&quot;nofollow&quot; href=&quot;http://searchsecurity.techtarget.com/news/article/0,289142,sid14_gci1407881,00.html&quot;&gt;http://searchsecurity.techtarget.com/news/article/0,289142,sid14_gci1407881,00.html&lt;/a&gt;&lt;br&gt;>/description>
  >/item>
  >item>
    >title>FIRST 2010!>/title>
    >link>http://seclists.org/dailydave/2010/q1/74>/link>
    >description>&lt;p&gt;Posted by dave on Mar 02&lt;/p&gt;I'm giving a keynote at FIRST 2010. As you might imagine, FIRST is an&lt;br&gt;
Incident response happens when your secure...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Month of PHP Security 2010 - CALL FOR PAPERS>/title>
    >link>http://seclists.org/dailydave/2010/q1/73>/link>
    >description>&lt;p&gt;Posted by Stefan Esser on Feb 27&lt;/p&gt;Month of PHP Security 2010 - CALL FOR PAPERS&lt;br&gt;
The intention of...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>dnsmap v0.30 + embedded devices discovery trick>/title>
    >link>http://seclists.org/dailydave/2010/q1/72>/link>
    >description>&lt;p&gt;Posted by Adrian P. on Feb 25&lt;/p&gt;Hello folks,&lt;br&gt;
ranges,...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: XSS in viewstate>/title>
    >link>http://seclists.org/dailydave/2010/q1/71>/link>
    >description>&lt;p&gt;Posted by Nicolas RUFF on Feb 21&lt;/p&gt;        Hello,&lt;br&gt;
serialization logic (but it...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: XSS in viewstate>/title>
    >link>http://seclists.org/dailydave/2010/q1/70>/link>
    >description>&lt;p&gt;Posted by David Byrne on Feb 19&lt;/p&gt;We usually see MAC protection turned off on at least one page during an&lt;br&gt;
Chris Weber wrote:&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: XSS in viewstate>/title>
    >link>http://seclists.org/dailydave/2010/q1/69>/link>
    >description>&lt;p&gt;Posted by David Byrne on Feb 19&lt;/p&gt;In our original advisory, we did comment that Microsoft hinted at this vulnerability in a rather buried document &lt;br&gt;
first time (as far as we know) that the .Net framework was demonstrated to be vulnerable to XSS through the...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: XSS in viewstate>/title>
    >link>http://seclists.org/dailydave/2010/q1/68>/link>
    >description>&lt;p&gt;Posted by dave on Feb 19&lt;/p&gt;We usually see MAC protection turned off on at least one page during an&lt;br&gt;
Chris Weber wrote:&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: XSS in viewstate>/title>
    >link>http://seclists.org/dailydave/2010/q1/67>/link>
    >description>&lt;p&gt;Posted by David Byrne on Feb 19&lt;/p&gt;&lt;a  rel=&quot;nofollow&quot; href=&quot;http://www.hacking-lab.com/misc/downloads/ViewState_Afames.pdf&quot;&gt;http://www.hacking-lab.com/misc/downloads/ViewState_Afames.pdf&lt;/a&gt;&lt;br&gt;
-dave&lt;br&gt;>/description>
  >/item>
>/channel>
>/rss>
>rss version="2.0">
>channel>
    >title>Firewall Wizards>/title>
    >link>http://seclists.org/#firewall-wizards>/link>
    >description>Tips and tricks for firewall administrators>/description>
  >item>
    >title>Call for papers: ISP-10, Orlando, USA, July 2010>/title>
    >link>http://seclists.org/firewall-wizards/2010/Feb/6>/link>
    >description>&lt;p&gt;Posted by James Heralds on Feb 22&lt;/p&gt;It would be highly appreciated if you could share this announcement with&lt;br&gt;
be held during 12-14 of July 2010...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Inline 2 port POE Firewall>/title>
    >link>http://seclists.org/firewall-wizards/2010/Feb/5>/link>
    >description>&lt;p&gt;Posted by bruces on Feb 16&lt;/p&gt;What about the RouterBoard 433 series boards. Three NICs and POE,  &lt;br&gt;
Quoting Kerry Milestone &amp;lt;km4 () sanger ac uk&amp;gt;:&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Inline 2 port POE Firewall>/title>
    >link>http://seclists.org/firewall-wizards/2010/Feb/4>/link>
    >description>&lt;p&gt;Posted by Kerry Milestone on Feb 16&lt;/p&gt;Hello,&lt;br&gt;
fairly cheap price - rather than have to...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Login straight to priv mode in PIX with TACACS server>/title>
    >link>http://seclists.org/firewall-wizards/2010/Feb/3>/link>
    >description>&lt;p&gt;Posted by John Morrison on Feb 12&lt;/p&gt;Michel,&lt;br&gt;
cannot contact the TACACS+ server is to remove the network cables.&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Login straight to priv mode in PIX with TACACS server>/title>
    >link>http://seclists.org/firewall-wizards/2010/Feb/2>/link>
    >description>&lt;p&gt;Posted by Michel Ferreira on Feb 11&lt;/p&gt;Hi,&lt;br&gt;
command if I need console access I still will be...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Draft paper submission deadline is extended: ISP-10>/title>
    >link>http://seclists.org/firewall-wizards/2010/Feb/1>/link>
    >description>&lt;p&gt;Posted by James Heralds on Feb 05&lt;/p&gt;Draft paper submission deadline is extended: ISP-10&lt;br&gt;
The conference will be held at the same time and location where...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Hackito Ergo Sum 2010 - Call For Paper	- HES2010 CFP>/title>
    >link>http://seclists.org/firewall-wizards/2010/Feb/0>/link>
    >description>&lt;p&gt;Posted by endrazine on Feb 04&lt;/p&gt;Hackito Ergo Sum 2010 - Call For Paper - HES2010 CFP&lt;br&gt;
The goal of this...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Is it possible to control access between clients on same LAN with a firewall?>/title>
    >link>http://seclists.org/firewall-wizards/2010/Jan/37>/link>
    >description>&lt;p&gt;Posted by pkc_mls on Jan 28&lt;/p&gt;William Fitzgerald a écrit :&lt;br&gt;
on the LAN.&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Is it possible to control access between clients on same LAN with a firewall?>/title>
    >link>http://seclists.org/firewall-wizards/2010/Jan/36>/link>
    >description>&lt;p&gt;Posted by Paul D. Robertson on Jan 27&lt;/p&gt;I'm going to give you the non-firewall, imperfect but quick and easy &lt;br&gt;
the &amp;quot;internal&amp;quot; network on the router....&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Is it possible to control access between clients on same LAN with a firewall?>/title>
    >link>http://seclists.org/firewall-wizards/2010/Jan/35>/link>
    >description>&lt;p&gt;Posted by William Fitzgerald on Jan 27&lt;/p&gt;Hi everyone,&lt;br&gt;
Pete.LeMay wrote:&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Is it possible to control access between clients on	same LAN with a firewall?>/title>
    >link>http://seclists.org/firewall-wizards/2010/Jan/34>/link>
    >description>&lt;p&gt;Posted by Will Brickles on Jan 27&lt;/p&gt;Using DD-WRT, what comes to mind immediately is to put your devices into separate VLANs and then use iptables to &lt;br&gt;
Using other (much more...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Is it possible to control access between clients on	same LAN with a firewall?>/title>
    >link>http://seclists.org/firewall-wizards/2010/Jan/33>/link>
    >description>&lt;p&gt;Posted by K K on Jan 27&lt;/p&gt;Yes.&lt;br&gt;
Kevin&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Is it possible to control access between clients on	same LAN with a firewall?>/title>
    >link>http://seclists.org/firewall-wizards/2010/Jan/32>/link>
    >description>&lt;p&gt;Posted by Paul Melson on Jan 26&lt;/p&gt;With DD-WRT you can assign a different VLAN to each interface of the&lt;br&gt;
connected to that switch from each...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Is it possible to control access between clients on	same LAN with a firewall?>/title>
    >link>http://seclists.org/firewall-wizards/2010/Jan/31>/link>
    >description>&lt;p&gt;Posted by Mark on Jan 26&lt;/p&gt;Will:&lt;br&gt;
firewall filter the traffic, in essence you would be creating a...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Is it possible to control access between clients on	same LAN with a firewall?>/title>
    >link>http://seclists.org/firewall-wizards/2010/Jan/30>/link>
    >description>&lt;p&gt;Posted by Eric Gearhart on Jan 26&lt;/p&gt;You sound like you might already know this, but I may as well&lt;br&gt;
separate...&lt;br&gt;>/description>
  >/item>
>/channel>
>/rss>
>rss version="2.0">
>channel>
    >title>IDS Focus>/title>
    >link>http://seclists.org/#focus-ids>/link>
    >description>Technical discussion about Intrusion Detection Systems.  You can also read the archives of a &lt;A HREF=&quot;http://seclists.org/ids/&quot;&gt;previous IDS list&lt;/A&gt;>/description>
  >item>
    >title>Call for Papers: EC2ND 2010>/title>
    >link>http://seclists.org/focus-ids/2010/Mar/0>/link>
    >description>&lt;p&gt;Posted by Konrad Rieck on Mar 08&lt;/p&gt;Dear Colleagues,&lt;br&gt;
       6th European Conference on Computer...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Announcing xtractr (on pcapr)>/title>
    >link>http://seclists.org/focus-ids/2010/Feb/1>/link>
    >description>&lt;p&gt;Posted by kowsik on Feb 22&lt;/p&gt;We are happy to announce xtractr, a collaborative cloud app for&lt;br&gt;
&lt;a  rel=&quot;nofollow&quot; href=&quot;http://www.pcapr.net/&quot;&gt;http://www.pcapr.net/&lt;/a&gt;...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>CFP: Workshop on the Analysis of System Logs>/title>
    >link>http://seclists.org/focus-ids/2010/Feb/0>/link>
    >description>&lt;p&gt;Posted by Kathryn Mohror on Feb 05&lt;/p&gt;        Workshop on the Analysis of System Logs (WASL) 2010&lt;br&gt;
           AUTHOR...&lt;br&gt;>/description>
  >/item>
>/channel>
>/rss>
>rss version="2.0">
>channel>
    >title>Full Disclosure>/title>
    >link>http://seclists.org/#fulldisclosure>/link>
    >description>An unmoderated high-traffic forum for disclosure of security information.  Fresh vulnerabilities sometimes hit this list many hours before they pass through the Bugtraq moderation queue.  The relaxed atmosphere of this quirky list provides some comic relief and certain industry gossip.  Unfortunately 80% of the posts are worthless drivel, so finding the gems takes patience.>/description>
  >item>
    >title>[HITB-Announce] HITBSecConf2010 - Dubai Agenda	Released>/title>
    >link>http://seclists.org/fulldisclosure/2010/Mar/240>/link>
    >description>&lt;p&gt;Posted by Hafez Kamal on Mar 14&lt;/p&gt;Conference agenda for HITBSecConf2010 - Dubai has been announced!&lt;br&gt;
1.) Daniel Mende (ERNW GmbH) with Oliver Roeschke (ERNW GmbH) -- Attacking...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: SecurityFocus to partially shut down>/title>
    >link>http://seclists.org/fulldisclosure/2010/Mar/239>/link>
    >description>&lt;p&gt;Posted by Son of Ram on Mar 13&lt;/p&gt;Can I have a chance to be a part of n3td3v operations?&lt;br&gt;
to be the guy who defends...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: SecurityFocus to partially shut down>/title>
    >link>http://seclists.org/fulldisclosure/2010/Mar/238>/link>
    >description>&lt;p&gt;Posted by Michal Zalewski on Mar 13&lt;/p&gt;Totally!&lt;br&gt;
authors to sign up themselves and syndicate their work? This may just...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: SecurityFocus to partially shut down>/title>
    >link>http://seclists.org/fulldisclosure/2010/Mar/237>/link>
    >description>&lt;p&gt;Posted by james o' hare on Mar 13&lt;/p&gt;I see Twitter becoming the new way to disclose vulnerabilities,&lt;br&gt;
Andrew&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: SecurityFocus to partially shut down>/title>
    >link>http://seclists.org/fulldisclosure/2010/Mar/236>/link>
    >description>&lt;p&gt;Posted by bugtraq on Mar 13&lt;/p&gt;It's like hackernews and @stake all over again! &lt;br&gt;
&lt;a  rel=&quot;nofollow&quot; href=&quot;http://www.qasec.com/&quot;&gt;http://www.qasec.com/&lt;/a&gt;&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: SecurityFocus to partially shut down>/title>
    >link>http://seclists.org/fulldisclosure/2010/Mar/235>/link>
    >description>&lt;p&gt;Posted by William Warren on Mar 13&lt;/p&gt;Poopies..that's the end of securityfocus unfortunately.&lt;br&gt;>/description>
  >/item>
  >item>
    >title>New vulnerabilities in Abton>/title>
    >link>http://seclists.org/fulldisclosure/2010/Mar/234>/link>
    >description>&lt;p&gt;Posted by MustLive on Mar 13&lt;/p&gt;Hello Full-Disclosure!&lt;br&gt;
mentioned in...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>2nd CfP: ACCESS 2010 || September 20-25,	2010 - Valencia, Spain>/title>
    >link>http://seclists.org/fulldisclosure/2010/Mar/233>/link>
    >description>&lt;p&gt;Posted by Sandra Sendra on Mar 13&lt;/p&gt;=================&lt;br&gt;
General page:...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>...because you can't get enough of clickjacking>/title>
    >link>http://seclists.org/fulldisclosure/2010/Mar/232>/link>
    >description>&lt;p&gt;Posted by Michal Zalewski on Mar 12&lt;/p&gt;[ I promise to post something more interesting shortly - but in the&lt;br&gt;
source of considerable amount of...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: SecurityFocus to partially shut down>/title>
    >link>http://seclists.org/fulldisclosure/2010/Mar/231>/link>
    >description>&lt;p&gt;Posted by Randal T. Rioux on Mar 12&lt;/p&gt;Who didn't see this coming?&lt;br&gt;
Randy&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: SecurityFocus to partially shut down>/title>
    >link>http://seclists.org/fulldisclosure/2010/Mar/230>/link>
    >description>&lt;p&gt;Posted by Son of Ram on Mar 12&lt;/p&gt;Would the damages come from professional losses? (Pardon me, but I believe you said you never had a paying job) or &lt;br&gt;
----- Original Message -----...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Is Hal Turner a hero? Updates on police survellience and my life being ruined from afar. (rambling rant)>/title>
    >link>http://seclists.org/fulldisclosure/2010/Mar/229>/link>
    >description>&lt;p&gt;Posted by LeToff on Mar 12&lt;/p&gt;mrx wrote:&lt;br&gt;
Oh it's so cute...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Is Hal Turner a hero? Updates on police survellience and my life being ruined from afar. (rambling rant)>/title>
    >link>http://seclists.org/fulldisclosure/2010/Mar/228>/link>
    >description>&lt;p&gt;Posted by mrx on Mar 12&lt;/p&gt;Son of Ram wrote:&lt;br&gt;
Your private face should be visible to only those that you...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: SecurityFocus to partially shut down>/title>
    >link>http://seclists.org/fulldisclosure/2010/Mar/227>/link>
    >description>&lt;p&gt;Posted by james o' hare on Mar 12&lt;/p&gt;What would the follow up say &amp;quot;We were completely wrong sue us for&lt;br&gt;
Andrew&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: SecurityFocus to partially shut down>/title>
    >link>http://seclists.org/fulldisclosure/2010/Mar/226>/link>
    >description>&lt;p&gt;Posted by Michal Zalewski on Mar 12&lt;/p&gt;&amp;quot;While the news portal section of SecurityFocus will no longer be&lt;br&gt;
/mz&lt;br&gt;>/description>
  >/item>
>/channel>
>/rss>
>rss version="2.0">
>channel>
    >title>Honeypots>/title>
    >link>http://seclists.org/#honeypots>/link>
    >description>Discussions about tracking attackers by setting up decoy honeypots or entire &lt;A HREF=&quot;http://www.honeynet.org&quot;&gt;honeynet&lt;/A&gt; networks.>/description>
  >item>
    >title>Re: DNS honeypots?>/title>
    >link>http://seclists.org/honeypots/2010/q1/13>/link>
    >description>&lt;p&gt;Posted by Jason Ross on Mar 03&lt;/p&gt;But it would have the advantage of allowing you to capture further&lt;br&gt;
traffic for analysis through whatever tools you choose.&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: DNS honeypots?>/title>
    >link>http://seclists.org/honeypots/2010/q1/12>/link>
    >description>&lt;p&gt;Posted by Alexandre Dulaunoy on Mar 03&lt;/p&gt;We have used various techniques to make DNS honeypots. But there is&lt;br&gt;
information by doing and...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: DNS honeypots?>/title>
    >link>http://seclists.org/honeypots/2010/q1/11>/link>
    >description>&lt;p&gt;Posted by Brent Huston on Mar 03&lt;/p&gt;Likely nothing today, most malware isn't smart enough to figure that out.&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: DNS honeypots?>/title>
    >link>http://seclists.org/honeypots/2010/q1/10>/link>
    >description>&lt;p&gt;Posted by Jason Lewis on Mar 03&lt;/p&gt;Slightly related, I was wondering what might happen if I made every&lt;br&gt;
query to the honeypot resolve back to the honeypot?&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: DNS honeypots?>/title>
    >link>http://seclists.org/honeypots/2010/q1/9>/link>
    >description>&lt;p&gt;Posted by Brent Huston on Mar 03&lt;/p&gt;One of the tactics our clients use is that they stand up one of our HoneyPoint Agents on a decoy box and then send all &lt;br&gt;
Let me know if that helps!&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: DNS honeypots?>/title>
    >link>http://seclists.org/honeypots/2010/q1/8>/link>
    >description>&lt;p&gt;Posted by chr1x on Mar 02&lt;/p&gt;This post looks pretty interesting!&lt;br&gt;
open possible...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: DNS honeypots?>/title>
    >link>http://seclists.org/honeypots/2010/q1/7>/link>
    >description>&lt;p&gt;Posted by Jason Lewis on Mar 02&lt;/p&gt;I just figured I'd setup something to log access and see what shows&lt;br&gt;
up.  I wasn't planning on directing traffic to the system.&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: DNS honeypots?>/title>
    >link>http://seclists.org/honeypots/2010/q1/6>/link>
    >description>&lt;p&gt;Posted by Jason Lewis on Mar 02&lt;/p&gt;Cool, this is the kind of thing I was thinking of doing.  I was hoping&lt;br&gt;
Thanks.&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: DNS honeypots?>/title>
    >link>http://seclists.org/honeypots/2010/q1/5>/link>
    >description>&lt;p&gt;Posted by Jason Ross on Mar 02&lt;/p&gt;There's quite a lot of (bad and good) bots &amp;quot;out there&amp;quot; looking for DNS&lt;br&gt;
will collect a fair amount of queries.&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: DNS honeypots?>/title>
    >link>http://seclists.org/honeypots/2010/q1/4>/link>
    >description>&lt;p&gt;Posted by Valdis . Kletnieks on Mar 02&lt;/p&gt;On Tue, 02 Mar 2010 15:00:43 EST, Jason Lewis said:&lt;br&gt;
and hope that works?&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: DNS honeypots?>/title>
    >link>http://seclists.org/honeypots/2010/q1/3>/link>
    >description>&lt;p&gt;Posted by Jason Ross on Mar 02&lt;/p&gt;Below is how I've got BIND set up in Debian Linux for a similar purpose.&lt;br&gt;
Cheers,&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: DNS honeypots?>/title>
    >link>http://seclists.org/honeypots/2010/q1/2>/link>
    >description>&lt;p&gt;Posted by Tillmann Werner on Mar 02&lt;/p&gt;Jason,&lt;br&gt;
Tillmann&lt;br&gt;>/description>
  >/item>
  >item>
    >title>DNS honeypots?>/title>
    >link>http://seclists.org/honeypots/2010/q1/1>/link>
    >description>&lt;p&gt;Posted by Jason Lewis on Mar 02&lt;/p&gt;Anyone have any pointers to dns honeypots or maybe just BIND&lt;br&gt;
actually executing them?&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Honeynet Project Forensic Challenge 2010/2 - browsers under attack>/title>
    >link>http://seclists.org/honeypots/2010/q1/0>/link>
    >description>&lt;p&gt;Posted by christian . seifert on Feb 27&lt;/p&gt;The Honeynet Project has revived an successful program from the past: The Honeynet Project Forensic Challenge 2010. The &lt;br&gt;
individuals and organizations not only learn about threats, but also learn how to...&lt;br&gt;>/description>
  >/item>
>/channel>
>/rss>
>rss version="2.0">
>channel>
    >title>Incidents>/title>
    >link>http://seclists.org/#incidents>/link>
    >description>Lightly moderated list for dicussing actual security incidents (unexplained probes, breakins, etc).  Topics include information about new rootkits, backdoors, trojans, virii, and worms.>/description>
>/channel>
>/rss>
>rss version="2.0">
>channel>
>title>[ISN] InfoSec News Mailing List>/title>
>link>http://www.infosecnews.org/mailman/listinfo/isn>/link>
>description>InfoSecNews>/description>
>item>
>title>Change in Focus>/title>
>link>http://www.infosecnews.org/pipermail/isn/2010-March/018863.html>/link>
>description>InfoSec News: Change in Focus: http://www.securityfocus.com/news/11582
>/description>
>/item>
>item>
>title>TJX Hacking Conspirator Gets 4 Years>/title>
>link>http://www.infosecnews.org/pipermail/isn/2010-March/018862.html>/link>
>description>InfoSec News: TJX Hacking Conspirator Gets 4 Years: http://www.wired.com/threatlevel/2010/03/tjx-conspirator-sentenced-to-46-month/
was sentenced Thursday in Boston to 46 months in prison and fined  [...]>/description>
>/item>
>item>
>title>Final CFP: TrustBus'10-- Deadline Extended>/title>
>link>http://www.infosecnews.org/pipermail/isn/2010-March/018861.html>/link>
>description>InfoSec News: Final CFP: TrustBus'10-- Deadline Extended: Forwarded from: &amp;quot;M. Carmen Fern&amp;aacute;ndez Gago&amp;quot; &amp;lt;mcgago@ (at) cc.uma.es&amp;gt;
http://www.isac.uma. [...]>/description>
>/item>
>item>
>title>State Web site breach tied to foreign attacker>/title>
>link>http://www.infosecnews.org/pipermail/isn/2010-March/018860.html>/link>
>description>InfoSec News: State Web site breach tied to foreign attacker: http://www.desmoinesregister.com/article/20100311/NEWS10/3110351/-1/networking/State-Web-site-breach-tied-to-foreign-attacker
A hacking incident on an Iowa homeland security Web site last week has  [...]>/description>
>/item>
>item>
>title>ZeuS botnet code keeps getting better... for criminals>/title>
>link>http://www.infosecnews.org/pipermail/isn/2010-March/018859.html>/link>
>description>InfoSec News: ZeuS botnet code keeps getting better... for criminals: http://www.networkworld.com/news/2010/031110-zeus-botnet.html
to steal financial credentials and execute unauthorized transactions in  [...]>/description>
>/item>
>item>
>title>Secunia Weekly Summary - Issue: 2010-10>/title>
>link>http://www.infosecnews.org/pipermail/isn/2010-March/018858.html>/link>
>description>InfoSec News: Secunia Weekly Summary - Issue: 2010-10: ========================================================================
 [...]>/description>
>/item>
>item>
>title>Why Bob Maley's Firing is Bad for All of Us>/title>
>link>http://www.infosecnews.org/pipermail/isn/2010-March/018857.html>/link>
>description>InfoSec News: Why Bob Maley's Firing is Bad for All of Us: http://threatpost.com/en_us/blogs/why-bob-maleys-firing-bad-all-us-031110
shouldn't come as a surprise, but it does. [...]>/description>
>/item>
>item>
>title>Pennsylvania's Web security officer leaves post a week after talking about PennDOT hacking incident>/title>
>link>http://www.infosecnews.org/pipermail/isn/2010-March/018856.html>/link>
>description>InfoSec News: Pennsylvania's Web security officer leaves post a week after talking about PennDOT hacking incident: http://www.pennlive.com/midstate/index.ssf/2010/03/pennsylvanias_web_security_off.html
Maley was at an information security conference in San Francisco talking  [...]>/description>
>/item>
>item>
>title>The FBI supply chain illustrated>/title>
>link>http://www.infosecnews.org/pipermail/isn/2010-March/018855.html>/link>
>description>InfoSec News: The FBI supply chain illustrated: http://blogs.csoonline.com/the_fbi_supply_chain_illustrated
the U.S. supply chain at the RSA Conference last week, staffers at the  [...]>/description>
>/item>
>item>
>title>Colorado Springs man allegedly sabotaged TSA computers>/title>
>link>http://www.infosecnews.org/pipermail/isn/2010-March/018854.html>/link>
>description>InfoSec News: Colorado Springs man allegedly sabotaged TSA computers: http://www.denverpost.com/ci_14648083
>/description>
>/item>
>item>
>title>Zeus botnets suffer mighty blow after ISP taken offline>/title>
>link>http://www.infosecnews.org/pipermail/isn/2010-March/018853.html>/link>
>description>InfoSec News: Zeus botnets suffer mighty blow after ISP taken offline: http://www.theregister.co.uk/2010/03/10/massive_zeus_takedown/
Zeus-related botnets have suddenly gone quiet, continuing a recent trend  [...]>/description>
>/item>
>item>
>title>WhitePages.com halts ad networks over malware>/title>
>link>http://www.infosecnews.org/pipermail/isn/2010-March/018852.html>/link>
>description>InfoSec News: WhitePages.com halts ad networks over malware: http://news.cnet.com/8301-27080_3-10466753-245.html
>/description>
>/item>
>item>
>title>Thailand approves extradition of credit card hack suspect>/title>
>link>http://www.infosecnews.org/pipermail/isn/2010-March/018851.html>/link>
>description>InfoSec News: Thailand approves extradition of credit card hack suspect: http://www.theregister.co.uk/2010/03/08/thailand_extradites_hacking_suspect/
Malaysian man suspected of participating in credit card thefts of more  [...]>/description>
>/item>
>item>
>title>RSA: Cybersecurity A Joint Fed, Industry Effort>/title>
>link>http://www.infosecnews.org/pipermail/isn/2010-March/018850.html>/link>
>description>InfoSec News: RSA: Cybersecurity A Joint Fed, Industry Effort: http://www.informationweek.com/news/government/security/showArticle.jhtml?articleID=223200125
last week, laying out their plans for government cybersecurity,  [...]>/description>
>/item>
>item>
>title>Cybersecurity program has serious defects, GAO says>/title>
>link>http://www.infosecnews.org/pipermail/isn/2010-March/018849.html>/link>
>description>InfoSec News: Cybersecurity program has serious defects, GAO says: http://gcn.com/articles/2010/03/08/cnci-assessment-030810.aspx
>/description>
>/item>
>item>
>title>Ford Motor Rolls Out New Security Features To Prevent Car-Hacking>/title>
>link>http://www.infosecnews.org/pipermail/isn/2010-March/018848.html>/link>
>description>InfoSec News: Ford Motor Rolls Out New Security Features To Prevent Car-Hacking: http://www.darkreading.com/vulnerability_management/security/client/showArticle.jhtml?articleID=223200163
>/description>
>/item>
>item>
>title>Backdoor found in Energizer Duo USB battery charger>/title>
>link>http://www.infosecnews.org/pipermail/isn/2010-March/018847.html>/link>
>description>InfoSec News: Backdoor found in Energizer Duo USB battery charger: http://news.cnet.com/8301-27080_3-10465429-245.html
>/description>
>/item>
>item>
>title>FDIC: Hackers took more than $120M in three months>/title>
>link>http://www.infosecnews.org/pipermail/isn/2010-March/018846.html>/link>
>description>InfoSec News: FDIC: Hackers took more than $120M in three months: http://www.computerworld.com/s/article/9167598/FDIC_Hackers_took_more_than_120M_in_three_months?taxonomyId=17
$25 million in the third quarter of 2009, according to the U.S. [...]>/description>
>/item>
>item>
>title>Tokyo's Cyber Emergency Centre at the vanguard of hacking defence>/title>
>link>http://www.infosecnews.org/pipermail/isn/2010-March/018845.html>/link>
>description>InfoSec News: Tokyo's Cyber Emergency Centre at the vanguard of hacking defence: http://technology.timesonline.co.uk/tol/news/tech_and_web/article7053320.ece
world keeps a running log of global cyber-attacks. Bloodcurdling names  [...]>/description>
>/item>
>item>
>title>The Corporate Side of Snooping>/title>
>link>http://www.infosecnews.org/pipermail/isn/2010-March/018844.html>/link>
>description>InfoSec News: The Corporate Side of Snooping: http://www.nytimes.com/2010/03/07/business/07shelf.html
are constantly being spun by the same gang of politicians and lobbyists  [...]>/description>
>/item>
>item>
>title>Microsoft's tax-for-hacks 'horrible' idea, say security experts>/title>
>link>http://www.infosecnews.org/pipermail/isn/2010-March/018843.html>/link>
>description>InfoSec News: Microsoft's tax-for-hacks 'horrible' idea, say security experts: http://www.computerworld.com/s/article/9166458/Microsoft_s_tax_for_hacks_horrible_idea_say_security_experts?taxonomyId=17
>/description>
>/item>
>item>
>title>Facebook founder Mark Zuckerberg 'hacked into emails of rivals and journalists'>/title>
>link>http://www.infosecnews.org/pipermail/isn/2010-March/018842.html>/link>
>description>InfoSec News: Facebook founder Mark Zuckerberg 'hacked into emails of rivals and journalists': http://www.dailymail.co.uk/news/worldnews/article-1255888/Facebook-founder-Mark-Zuckerberg-hacked-emails-rivals-journalists.html
email accounts of rivals and journalists. [...]>/description>
>/item>
>item>
>title>Westin Bonaventure Los Angeles latest victim of hotel hackers>/title>
>link>http://www.infosecnews.org/pipermail/isn/2010-March/018841.html>/link>
>description>InfoSec News: Westin Bonaventure Los Angeles latest victim of hotel hackers: http://content.usatoday.com/communities/hotelcheckin/post/2010/03/hackers-breach-westin-bonaventure-los-angeles-networks-cybercriminal/1
You may have to monitor your credit card statements - and even place a  [...]>/description>
>/item>
>item>
>title>Linux Advisory Watch: March 6th, 2010>/title>
>link>http://www.infosecnews.org/pipermail/isn/2010-March/018840.html>/link>
>description>InfoSec News: Linux Advisory Watch: March 6th, 2010: +----------------------------------------------------------------------+
|                                                                      | [...]>/description>
>/item>
>item>
>title>At RSA, Some Security Pros Don't Practice What They Preach>/title>
>link>http://www.infosecnews.org/pipermail/isn/2010-March/018839.html>/link>
>description>InfoSec News: At RSA, Some Security Pros Don't Practice What They Preach: http://www.darkreading.com/vulnerability_management/security/encryption/showArticle.jhtml?articleID=223101624
wireless users at one of the industry's biggest security conferences  [...]>/description>
>/item>
>/channel>
>/rss>
>rss version="2.0">
>channel>
    >title>MS Sec Notification>/title>
    >link>http://seclists.org/#microsoft>/link>
    >description>Beware that MS often uses these security bulletins as marketing propaganda to downplay serious vulnerabilities in their products -- note how most have a prominent and often-misleading &quot;mitigating factors&quot; section.>/description>
  >item>
    >title>Microsoft Security Bulletin Major Revisions>/title>
    >link>http://seclists.org/microsoft/2010/q1/6>/link>
    >description>&lt;p&gt;Posted by Microsoft on Mar 09&lt;/p&gt;********************************************************************&lt;br&gt;
 -...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Microsoft Security Bulletin Summary for March 2010>/title>
    >link>http://seclists.org/microsoft/2010/q1/5>/link>
    >description>&lt;p&gt;Posted by Microsoft on Mar 09&lt;/p&gt;********************************************************************&lt;br&gt;
With...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Microsoft Security Bulletin Summary for February 2010>/title>
    >link>http://seclists.org/microsoft/2010/q1/4>/link>
    >description>&lt;p&gt;Posted by Microsoft on Feb 09&lt;/p&gt;********************************************************************&lt;br&gt;
February 2010 can be found at...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Microsoft Security Bulletin Summary for January 2010>/title>
    >link>http://seclists.org/microsoft/2010/q1/3>/link>
    >description>&lt;p&gt;Posted by Microsoft on Jan 21&lt;/p&gt;********************************************************************&lt;br&gt;
January 2010 can be found at...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Microsoft Security Bulletin Major Revision>/title>
    >link>http://seclists.org/microsoft/2010/q1/2>/link>
    >description>&lt;p&gt;Posted by Microsoft on Jan 14&lt;/p&gt;********************************************************************&lt;br&gt;
 -...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Microsoft Security Bulletin Summary for January 2010>/title>
    >link>http://seclists.org/microsoft/2010/q1/1>/link>
    >description>&lt;p&gt;Posted by Microsoft on Jan 12&lt;/p&gt;********************************************************************&lt;br&gt;
&lt;a  rel=&quot;nofollow&quot; href=&quot;http://www.microsoft.com/technet/security/bulletin/ms10-jan.mspx&quot;&gt;http://www.microsoft.com/technet/security/bulletin/ms10-jan.mspx&lt;/a&gt;....&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Microsoft Security Bulletin Re-Release>/title>
    >link>http://seclists.org/microsoft/2010/q1/0>/link>
    >description>&lt;p&gt;Posted by Microsoft on Jan 12&lt;/p&gt;********************************************************************&lt;br&gt;
 -...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Microsoft Security Bulletin Major Revisions>/title>
    >link>http://seclists.org/microsoft/2009/q4/9>/link>
    >description>&lt;p&gt;Posted by Microsoft on Dec 08&lt;/p&gt;********************************************************************&lt;br&gt;
* MS08-037 - Important...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Microsoft Security Bulletin Summary for December 2009>/title>
    >link>http://seclists.org/microsoft/2009/q4/8>/link>
    >description>&lt;p&gt;Posted by Microsoft on Dec 08&lt;/p&gt;********************************************************************&lt;br&gt;
December 2009 can be found at...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Microsoft Security Bulletin Major Revisions>/title>
    >link>http://seclists.org/microsoft/2009/q4/7>/link>
    >description>&lt;p&gt;Posted by Microsoft on Nov 24&lt;/p&gt;********************************************************************&lt;br&gt;
* MS08-076 - Important...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Microsoft Security Bulletin Major Revisions>/title>
    >link>http://seclists.org/microsoft/2009/q4/6>/link>
    >description>&lt;p&gt;Posted by Microsoft on Nov 10&lt;/p&gt;********************************************************************&lt;br&gt;
*...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Microsoft Security Bulletin Summary for November 2009>/title>
    >link>http://seclists.org/microsoft/2009/q4/5>/link>
    >description>&lt;p&gt;Posted by Microsoft on Nov 10&lt;/p&gt;********************************************************************&lt;br&gt;
November 2009 can be found at...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Microsoft Security Bulletin Advance Notification for November 2009>/title>
    >link>http://seclists.org/microsoft/2009/q4/4>/link>
    >description>&lt;p&gt;Posted by Microsoft on Nov 05&lt;/p&gt;********************************************************************&lt;br&gt;
Notification for November 2009 can be found...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Microsoft Security Bulletin Major Revisions>/title>
    >link>http://seclists.org/microsoft/2009/q4/3>/link>
    >description>&lt;p&gt;Posted by Microsoft on Nov 03&lt;/p&gt;********************************************************************&lt;br&gt;
 -...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Microsoft Security Bulletin Major Revisions>/title>
    >link>http://seclists.org/microsoft/2009/q4/2>/link>
    >description>&lt;p&gt;Posted by Microsoft on Oct 28&lt;/p&gt;********************************************************************&lt;br&gt;
 -...&lt;br&gt;>/description>
  >/item>
>/channel>
>/rss>
>rss version="2.0">
>channel>
                 >title>NANOG@merit.edu>/title>
                >link>http://www.merit.edu/mail.archives/nanog/index.html>/link>
                >description>Latest posts to NANOG Mailing List>/description>
	>item>
		>title>Re: 4bytes ASn and RFC1745>/title>
		>link>http://www.merit.edu/mail.archives/nanog/msg06510.html>/link>
		>description>Nathan Ward (03/14/10)>/description>
	>/item>
	>item>
		>title>4bytes ASn and RFC1745>/title>
		>link>http://www.merit.edu/mail.archives/nanog/msg06509.html>/link>
		>description>Bit Gossip (03/14/10)>/description>
	>/item>
	>item>
		>title>Re: IPv6, multihoming, and customer allo>/title>
		>link>http://www.merit.edu/mail.archives/nanog/msg06508.html>/link>
		>description>Owen DeLong (03/14/10)>/description>
	>/item>
	>item>
		>title>Re: IPv6, multihoming, and customer allo>/title>
		>link>http://www.merit.edu/mail.archives/nanog/msg06507.html>/link>
		>description>Antonio Querubin (03/14/10)>/description>
	>/item>
	>item>
		>title>IPv6, multihoming, and customer allocati>/title>
		>link>http://www.merit.edu/mail.archives/nanog/msg06506.html>/link>
		>description>Rick Ernst (03/14/10)>/description>
	>/item>
	>item>
		>title>RE: security questions>/title>
		>link>http://www.merit.edu/mail.archives/nanog/msg06505.html>/link>
		>description>Brandon Kim (03/13/10)>/description>
	>/item>
	>item>
		>title>Re: security questions>/title>
		>link>http://www.merit.edu/mail.archives/nanog/msg06504.html>/link>
		>description>Larry Brower (03/13/10)>/description>
	>/item>
	>item>
		>title>security questions>/title>
		>link>http://www.merit.edu/mail.archives/nanog/msg06503.html>/link>
		>description>adrian kok (03/13/10)>/description>
	>/item>
	>item>
		>title>=?GB2312?B?aVBob25lIEFwcGxpY2F0aW9uIERld>/title>
		>link>http://www.merit.edu/mail.archives/nanog/msg06502.html>/link>
		>description>Garrison (03/13/10)>/description>
	>/item>
	>item>
		>title>Re: Network Naming Conventions>/title>
		>link>http://www.merit.edu/mail.archives/nanog/msg06501.html>/link>
		>description>Leo Bicknell (03/13/10)>/description>
	>/item>
	>item>
		>title>Re: Network Naming Conventions>/title>
		>link>http://www.merit.edu/mail.archives/nanog/msg06500.html>/link>
		>description>Ravi Pina (03/13/10)>/description>
	>/item>
	>item>
		>title>RE: Network Naming Conventions>/title>
		>link>http://www.merit.edu/mail.archives/nanog/msg06499.html>/link>
		>description>Paul Stewart (03/13/10)>/description>
	>/item>
	>item>
		>title>RE: Network Naming Conventions>/title>
		>link>http://www.merit.edu/mail.archives/nanog/msg06498.html>/link>
		>description>Paul Stewart (03/13/10)>/description>
	>/item>
	>item>
		>title>Re: Network Naming Conventions>/title>
		>link>http://www.merit.edu/mail.archives/nanog/msg06497.html>/link>
		>description>Barry Shein (03/13/10)>/description>
	>/item>
	>item>
		>title>Re: Network Naming Conventions>/title>
		>link>http://www.merit.edu/mail.archives/nanog/msg06496.html>/link>
		>description>Barry Shein (03/13/10)>/description>
	>/item>
>/channel>
>/rss>
>rss version="2.0">
>channel>
                 >title>netsec@merit.edu>/title>
                >link>http://www.merit.edu/mail.archives/netsec/index.html>/link>
                >description>Latest posts to netsec mailing list>/description>
	>item>
		>title>SANS NewsBites Vol. 12 Num. 20 : Inter-a>/title>
		>link>http://www.merit.edu/mail.archives/netsec/msg03532.html>/link>
		>description>The SANS Institute (03/12/10)>/description>
	>/item>
	>item>
		>title>Security industry faces attacks it canno>/title>
		>link>http://www.merit.edu/mail.archives/netsec/msg03531.html>/link>
		>description>Howell, Paul (03/12/10)>/description>
	>/item>
	>item>
		>title>FW: [ISN] Why Bob Maley's Firing is Bad>/title>
		>link>http://www.merit.edu/mail.archives/netsec/msg03530.html>/link>
		>description>Howell, Paul (03/12/10)>/description>
	>/item>
	>item>
		>title>AnAnalysisoftheSkypeIMBotLogicand>/title>
		>link>http://www.merit.edu/mail.archives/netsec/msg03529.html>/link>
		>description>Howell, Paul (03/12/10)>/description>
	>/item>
	>item>
		>title>Update: LifeLock to pay $12M to settle F>/title>
		>link>http://www.merit.edu/mail.archives/netsec/msg03528.html>/link>
		>description>Howell, Paul (03/10/10)>/description>
	>/item>
	>item>
		>title>FW: US-CERT Technical Cyber Security Ale>/title>
		>link>http://www.merit.edu/mail.archives/netsec/msg03527.html>/link>
		>description>Howell, Paul (03/10/10)>/description>
	>/item>
	>item>
		>title>1024-bit RSA encryption cracked by caref>/title>
		>link>http://www.merit.edu/mail.archives/netsec/msg03526.html>/link>
		>description>Howell, Paul (03/10/10)>/description>
	>/item>
	>item>
		>title>SANS NewsBites Vol. 12 Num. 19 : $120 Mi>/title>
		>link>http://www.merit.edu/mail.archives/netsec/msg03525.html>/link>
		>description>The SANS Institute (03/09/10)>/description>
	>/item>
	>item>
		>title>FW: [ISN] FDIC: Hackers took more than $>/title>
		>link>http://www.merit.edu/mail.archives/netsec/msg03524.html>/link>
		>description>Howell, Paul (03/09/10)>/description>
	>/item>
	>item>
		>title>HTC Phones Pre-installed With Mariposa B>/title>
		>link>http://www.merit.edu/mail.archives/netsec/msg03523.html>/link>
		>description>Howell, Paul (03/09/10)>/description>
	>/item>
	>item>
		>title>Ford Motor Rolls Out New Security Featur>/title>
		>link>http://www.merit.edu/mail.archives/netsec/msg03522.html>/link>
		>description>Howell, Paul (03/09/10)>/description>
	>/item>
	>item>
		>title>What's in a Name?>/title>
		>link>http://www.merit.edu/mail.archives/netsec/msg03521.html>/link>
		>description>Howell, Paul (03/09/10)>/description>
	>/item>
	>item>
		>title>FW: US-CERT Cyber Security Bulletin SB10>/title>
		>link>http://www.merit.edu/mail.archives/netsec/msg03520.html>/link>
		>description>Howell, Paul (03/08/10)>/description>
	>/item>
	>item>
		>title>SANS NewsBites Vol. 12 Num. 18 : Source>/title>
		>link>http://www.merit.edu/mail.archives/netsec/msg03519.html>/link>
		>description>The SANS Institute (03/05/10)>/description>
	>/item>
	>item>
		>title>The Myth of iPhone App Piracy>/title>
		>link>http://www.merit.edu/mail.archives/netsec/msg03518.html>/link>
		>description>Howell, Paul (03/03/10)>/description>
	>/item>
>/channel>
>/rss>
>rss version="2.0">
>channel>
  >title>      SANS ISC SecNewsFeed>/title>
  >link>       http://isc.sans.org>/link>
  >description>>![CDATA[]]>>/description>
             >image>
               >title>SANS ISC SecNewsFeed>/title>
               >url>http://isc.sans.org/images/status.gif>/url>
               >link>http://isc.sans.org>/link>
             >/image>
  >item>
    >title>SQL Injection, Active X on decline: IBM X-Force (NetworkWorld Security)>/title>
    >link>http://www.networkworld.com/news/2010/031210-sql-injection-active-x-on.html>/link>
  >/item>
  >item>
    >title>A new version of Safari is out. Looks like for Mac and Windows. Plenty of security fixes (mostly for Windows Safari users  http://support.apple.com/kb/HT4070 ), (Thu, Mar 11th) (InternetStormCenter)>/title>
    >link>http://isc.sans.org/diary.html?storyid=8416&amp;rss>/link>
  >/item>
  >item>
    >title>The H Week - Faster password cracking and Linux 2.6.34 in testing (Heise Security News)>/title>
    >link>http://rss.feedsportal.com/c/32569/f/491736/s/97cf580/l/0L0Sh0Eonline0N0Csecurity0Cnews0Citem0CThe0EH0EWeek0EFaster0Epassword0Ecracking0Eand0ELinux0E20E60E340Ein0Etesting0E9535530Bhtml0Cfrom0Crss/story01.htm>/link>
  >/item>
  >item>
    >title>CVE-2010-0962 (airportexpress, airportextreme, timecapsule) (Natl. Vulnerability Database)>/title>
    >link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2010-0962>/link>
  >/item>
  >item>
    >title>Exploit Code Released for Critical IE Flaw (March 9, 10 &amp;amp; 11, 2010) (SANS Newsbites)>/title>
    >link>http://www.sans.org/newsletters/newsbites/newsbites.php?vol=12&amp;issue=20&amp;rss=Y#sID310>/link>
  >/item>
  >item>
    >title>Cybercrime surge pushes 2009 losses to 559 million dollars     (AFP) (Yahoo Security)>/title>
    >link>http://us.rd.yahoo.com/dailynews/rss/security/*http://news.yahoo.com/s/afp/20100312/ts_alt_afp/usonlinecrime>/link>
  >/item>
  >item>
    >title>Trojan armed with hardware-based anti-piracy control (The Register)>/title>
    >link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/12/new_zeus_features/>/link>
  >/item>
  >item>
    >title>Friday Squid Blogging: Cipherlopods (Schneier blog)>/title>
    >link>http://www.schneier.com/blog/archives/2010/03/friday_squid_bl_223.html>/link>
  >/item>
  >item>
    >title>Bugtraq: SECURITY DSA 2014-1 New moin packages fix several vulnerabilities (SecurityFocus Vulnerabilities)>/title>
    >link>http://www.securityfocus.com/archive/1/510051>/link>
  >/item>
  >item>
    >title>10.11.11 WinSmMuPl &amp;amp;quot;.mp3&amp;amp;quot; File Remote Buffer Overflow (SANS @Risk)>/title>
    >link>http://www.sans.org/newsletters/risk/display.php?v=9&amp;i=11&amp;rss=Y#10.11.11>/link>
  >/item>
>/channel>
>/rss>
>rss version="2.0">
>channel>
>title>SecurityFocus News>/title>
>link>http://www.securityfocus.com>/link>
>description>
>/description>
>image> 
>title>SecurityFocus>/title> 
>url>http://www.securityfocus.com/rss/SFLogo_v1.gif>/url> 
>link>http://www.securityfocus.com>/link> 
>/image>
>item>
>title>News: Change in Focus>/title>
>link>http://www.securityfocus.com/news/11582?ref=rss>/link>
>description>Change in Focus>/description>
>/item>
>item>
>title>News: Twitter attacker had proper credentials>/title>
>link>http://www.securityfocus.com/news/11569?ref=rss>/link>
>description>Twitter attacker had proper credentials>/description>
>/item>
>item>
>title>News: PhotoDNA scans images for child abuse>/title>
>link>http://www.securityfocus.com/news/11570?ref=rss>/link>
>description>>![CDATA[ PhotoDNA scans images for child abuse>br/>>br/>
]]>>/description>
>/item>
>item>
>title>News: Conficker data highlights infected networks>/title>
>link>http://www.securityfocus.com/news/11568?ref=rss>/link>
>description>Conficker data highlights infected networks>/description>
>/item>
>item>
>title>Brief: Google offers bounty on browser bugs>/title>
>link>http://www.securityfocus.com/brief/1067?ref=rss>/link>
>description>Google offers bounty on browser bugs>/description>
>/item>
>item>
>title>Brief: Cyberattacks from U.S. &quot;greatest concern&quot;>/title>
>link>http://www.securityfocus.com/brief/1066?ref=rss>/link>
>description>>![CDATA[ Cyberattacks from U.S. &quot;greatest concern&quot;>br/>>br/>
]]>>/description>
>/item>
>item>
>title>Brief: Microsoft patches as fraudsters target IE flaw>/title>
>link>http://www.securityfocus.com/brief/1065?ref=rss>/link>
>description>Microsoft patches as fraudsters target IE flaw>/description>
>/item>
>item>
>title>Brief: Attack on IE 0-day refined by researchers>/title>
>link>http://www.securityfocus.com/brief/1064?ref=rss>/link>
>description>Attack on IE 0-day refined by researchers>/description>
>/item>
>item>
>title>News: Monster botnet held 800,000 people's details>/title>
>link>http://www.securityfocus.com/news/11580?ref=rss>/link>
>description>>![CDATA[ Monster botnet held 800,000 people's details>br/>>br/>
]]>>/description>
>/item>
>item>
>title>News: Google: 'no timetable' on China talks>/title>
>link>http://www.securityfocus.com/news/11581?ref=rss>/link>
>description>Google: 'no timetable' on China talks>/description>
>/item>
>item>
>title>News: Latvian hacker tweets hard on banking whistle>/title>
>link>http://www.securityfocus.com/news/11577?ref=rss>/link>
>description>Latvian hacker tweets hard on banking whistle>/description>
>/item>
>item>
>title>News: MS uses court order to take out Waledac botnet>/title>
>link>http://www.securityfocus.com/news/11578?ref=rss>/link>
>description>>![CDATA[ MS uses court order to take out Waledac botnet>br/>>br/>
]]>>/description>
>/item>
>item>
>title>Infocus: Enterprise Intrusion Analysis, Part One>/title>
>link>http://www.securityfocus.com/infocus/1904?ref=rss>/link>
>description>Enterprise Intrusion Analysis, Part One>/description>
>/item>
>item>
>title>Infocus: Responding to a Brute Force SSH Attack>/title>
>link>http://www.securityfocus.com/infocus/1903?ref=rss>/link>
>description>Responding to a Brute Force SSH Attack>/description>
>/item>
>item>
>title>Infocus: Data Recovery on Linux and &lt;i&gt;ext3&lt;/i&gt;>/title>
>link>http://www.securityfocus.com/infocus/1902?ref=rss>/link>
>description>>![CDATA[ Data Recovery on Linux and &lt;i&gt;ext3&lt;/i&gt;>br/>>br/>
]]>>/description>
>/item>
>item>
>title>Infocus: WiMax: Just Another Security Challenge?>/title>
>link>http://www.securityfocus.com/infocus/1901?ref=rss>/link>
>description>WiMax: Just Another Security Challenge?>/description>
>/item>
>item>
>title>Gunter Ollmann: Time to Squish SQL Injection>/title>
>link>http://www.securityfocus.com/columnists/505?ref=rss>/link>
>description>Time to Squish SQL Injection>/description>
>/item>
>item>
>title>Mark Rasch: Lazy Workers May Be Deemed Hackers>/title>
>link>http://www.securityfocus.com/columnists/504?ref=rss>/link>
>description>>![CDATA[ Lazy Workers May Be Deemed Hackers>br/>>br/>
]]>>/description>
>/item>
>item>
>title>Adam O'Donnell: The Scale of Security>/title>
>link>http://www.securityfocus.com/columnists/503?ref=rss>/link>
>description>The Scale of Security>/description>
>/item>
>item>
>title>Mark Rasch: Hacker-Tool Law Still Does Little>/title>
>link>http://www.securityfocus.com/columnists/502?ref=rss>/link>
>description>Hacker-Tool Law Still Does Little>/description>
>/item>
>item>
>title>More rss feeds from SecurityFocus>/title>
>link>http://www.securityfocus.com/rss/index.shtml>/link>
>description>News, Infocus, Columns, Vulnerabilities, Bugtraq ...>/description>
>/item>
>/channel>
>/rss>
>rss version="2.0">
>channel>
    >title>Nmap Development>/title>
    >link>http://seclists.org/#nmap-dev>/link>
    >description>Unmoderated technical development forum for debating ideas, patches, and suggestions regarding proposed changes to &lt;A HREF=&quot;http://nmap.org&quot;&gt;Nmap&lt;/A&gt; and related projects.>/description>
  >item>
    >title>Re: Nping/gthostbynameCached>/title>
    >link>http://seclists.org/nmap-dev/2010/q1/890>/link>
    >description>&lt;p&gt;Posted by Gisle Vanem on Mar 14&lt;/p&gt;Any progress? The problem is still there.&lt;br&gt;
--gv&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Nmap SoC Ideas?>/title>
    >link>http://seclists.org/nmap-dev/2010/q1/889>/link>
    >description>&lt;p&gt;Posted by Chip Panarchy on Mar 14&lt;/p&gt;Progress status bar &amp;amp;/or estimated time of scan completion&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Nmap SoC Ideas?>/title>
    >link>http://seclists.org/nmap-dev/2010/q1/888>/link>
    >description>&lt;p&gt;Posted by Daniel Roethlisberger on Mar 14&lt;/p&gt;Fyodor &amp;lt;fyodor () insecure org&amp;gt; 2010-03-13:&lt;br&gt;
scanning of networks is infeasible.&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Comments on smtp-open-relay and smtp-enum-users>/title>
    >link>http://seclists.org/nmap-dev/2010/q1/887>/link>
    >description>&lt;p&gt;Posted by Duarte Silva on Mar 14&lt;/p&gt;The changes have been made to smtp-open-relay.nse. It is also now&lt;br&gt;
Thanks for the suggestions :P&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: smtp-enum-users.nse>/title>
    >link>http://seclists.org/nmap-dev/2010/q1/886>/link>
    >description>&lt;p&gt;Posted by Duarte Silva on Mar 14&lt;/p&gt;The script had to change a bit. I think it will need some more testing&lt;br&gt;
--script-args smtp-enum-users.method={RCPT,EXPN}&lt;br&gt;>/description>
  >/item>
  >item>
    >title>[NSE] RPC library new version and scripts>/title>
    >link>http://seclists.org/nmap-dev/2010/q1/885>/link>
    >description>&lt;p&gt;Posted by Patrik Karlsson on Mar 14&lt;/p&gt;Hi all,&lt;br&gt;
can be found at the top of rpc.lua. I've also tried to document as much of the known limitations as possible...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Request to translators: profile editor strings>/title>
    >link>http://seclists.org/nmap-dev/2010/q1/884>/link>
    >description>&lt;p&gt;Posted by Henri Doreau on Mar 14&lt;/p&gt;Hi,&lt;br&gt;
Nice work Gutek!&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Nmap SoC Ideas?>/title>
    >link>http://seclists.org/nmap-dev/2010/q1/883>/link>
    >description>&lt;p&gt;Posted by Ron on Mar 13&lt;/p&gt;I've been keeping a wishlist lately, here's mine (let me know if you need clarification on anything):&lt;br&gt;
often realize way too late in a...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Nmap SoC Ideas?>/title>
    >link>http://seclists.org/nmap-dev/2010/q1/882>/link>
    >description>&lt;p&gt;Posted by Fyodor on Mar 13&lt;/p&gt;Hi Folks.  It is that time of the year again for the Summer of Code!&lt;br&gt;
That...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Request to translators: profile editor strings>/title>
    >link>http://seclists.org/nmap-dev/2010/q1/881>/link>
    >description>&lt;p&gt;Posted by David Fifield on Mar 13&lt;/p&gt;Okay, that's a good explanation.&lt;br&gt;
David Fifield&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Request to translators: profile editor strings>/title>
    >link>http://seclists.org/nmap-dev/2010/q1/880>/link>
    >description>&lt;p&gt;Posted by Gutek on Mar 13&lt;/p&gt;Btw, please find attached the list of those untranslated words, with my&lt;br&gt;
This way, anyone can give its own opinion on each point.&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Request to translators: profile editor strings>/title>
    >link>http://seclists.org/nmap-dev/2010/q1/879>/link>
    >description>&lt;p&gt;Posted by Gutek on Mar 13&lt;/p&gt;Well, in fact it's on purpose : i've choosen not to translate some&lt;br&gt;
- as you said, &amp;quot;PDF, TTL&amp;quot; but also &amp;quot;IPv4&amp;quot; are *common...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Problems writing a nmap-service-probe for jdwp (Java debug wire	protocol)>/title>
    >link>http://seclists.org/nmap-dev/2010/q1/878>/link>
    >description>&lt;p&gt;Posted by Michael Schierl on Mar 13&lt;/p&gt;Am 13.03.2010 02:43, schrieb Brandon Enright:&lt;br&gt;
so using any magic port numbers will not work...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Request to translators: profile editor strings>/title>
    >link>http://seclists.org/nmap-dev/2010/q1/877>/link>
    >description>&lt;p&gt;Posted by David Fifield on Mar 13&lt;/p&gt;This is great! Running Zenmap with LANG=fr_FR looks so good that I'm now&lt;br&gt;
$ msgattrib...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Request to translators: profile editor strings>/title>
    >link>http://seclists.org/nmap-dev/2010/q1/876>/link>
    >description>&lt;p&gt;Posted by Gutek on Mar 13&lt;/p&gt;Done !&lt;br&gt;
A.G.&lt;br&gt;>/description>
  >/item>
>/channel>
>/rss>
>rss version="2.0">
>channel>
    >title>Nmap Hackers>/title>
    >link>http://seclists.org/#nmap-hackers>/link>
    >description>Moderated list for the most important new releases and announcements regarding the &lt;A HREF=&quot;http://nmap.org&quot;&gt;Nmap Security Scanner&lt;/A&gt; and related projects. We recommend that all Nmap users &lt;a href=&quot;http://cgi.insecure.org/mailman/listinfo/nmap-hackers&quot;&gt;subscribe&lt;/a&gt;.>/description>
  >item>
    >title>Nmap 5.21 released>/title>
    >link>http://seclists.org/nmap-hackers/2010/2>/link>
    >description>&lt;p&gt;Posted by Fyodor on Jan 27&lt;/p&gt;Hello everyone.  I'm pleased to release Nmap 5.21, which contains zero&lt;br&gt;
development projects.  If you want to know...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Lots of Nmap News>/title>
    >link>http://seclists.org/nmap-hackers/2010/1>/link>
    >description>&lt;p&gt;Posted by Fyodor on Jan 22&lt;/p&gt;Hi folks.  I'm happy to report that the 5.20 release went well.  But&lt;br&gt;
If you're running from a build of the latest SVN checkout, you...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Nmap 5.20 Released>/title>
    >link>http://seclists.org/nmap-hackers/2010/0>/link>
    >description>&lt;p&gt;Posted by Fyodor on Jan 20&lt;/p&gt;Happy new year, everyone.  I'm happy to announce Nmap 5.20--our first&lt;br&gt;
The...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Nmap 5.00 Released!>/title>
    >link>http://seclists.org/nmap-hackers/2009/3>/link>
    >description>&lt;p&gt;Posted by Fyodor on Jul 16&lt;/p&gt;Hello everyone.  I'm delighted to announce the release of Nmap 5.00!&lt;br&gt;
1) The new Ncat tool aims to be your Swiss Army Knife...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Nmap news: stable release candidate 4.90RC1, SoC team,	and new translations>/title>
    >link>http://seclists.org/nmap-hackers/2009/2>/link>
    >description>&lt;p&gt;Posted by Fyodor on Jun 26&lt;/p&gt;Hi Folks.  I'm pleased to announce some exciting Nmap news:&lt;br&gt;
Please test it out, and let us know if you find any problems...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Nmap 4.85BETA6 now avail w/Conficker detection>/title>
    >link>http://seclists.org/nmap-hackers/2009/1>/link>
    >description>&lt;p&gt;Posted by Fyodor on Apr 01&lt;/p&gt;Hi Folks!  In case you missed all the news reports yesterday, a couple&lt;br&gt;
millions of infections, and this massive botnet...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Nmap News: 4.84BETA4 release, Nmap book news, Summer of Code, Twitter,	etc.>/title>
    >link>http://seclists.org/nmap-hackers/2009/0>/link>
    >description>&lt;p&gt;Posted by Fyodor on Mar 27&lt;/p&gt;Hello everyone.  We've seen 848 messages on nmap-dev this year, but&lt;br&gt;
4.85BETA4 release,...&lt;br&gt;>/description>
  >/item>
>/channel>
>/rss>
>rss version="2.0">
>channel>
>/channel>
>/rss>
>rss version="2.0">
>channel>
    >title>Penetration Testing>/title>
    >link>http://seclists.org/#pen-test>/link>
    >description>While this list is intended for &quot;professionals&quot;, participants frequenly disclose techniques and strategies that would be useful to anyone with a practical interest in security and network auditing.>/description>
  >item>
    >title>Re: proposed pen-test>/title>
    >link>http://seclists.org/pen-test/2010/Mar/71>/link>
    >description>&lt;p&gt;Posted by Matt Gardenghi on Mar 11&lt;/p&gt;I'd vote that you didn't do this.  It's cool, but a waste of your time.  &lt;br&gt;
you need to cover those, but what is...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Professional Scrpt Kiddies vs Real Talent>/title>
    >link>http://seclists.org/pen-test/2010/Mar/70>/link>
    >description>&lt;p&gt;Posted by Mike on Mar 11&lt;/p&gt;Good discussion, but I feel both are equally important.  I mean when I&lt;br&gt;
intelligently interpret the data and we don't...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>RE: Evaluating pentesters>/title>
    >link>http://seclists.org/pen-test/2010/Mar/69>/link>
    >description>&lt;p&gt;Posted by Frye, Dan on Mar 11&lt;/p&gt;Does anyone know if a &amp;quot;bakeoff&amp;quot; of pentest vendors has ever been done?&lt;br&gt;
test network then publish the results of who scored the highest (%...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Professional Scrpt Kiddies vs Real Talent>/title>
    >link>http://seclists.org/pen-test/2010/Mar/68>/link>
    >description>&lt;p&gt;Posted by 5.K1dd on Mar 11&lt;/p&gt;Translation: &amp;quot;0ur cR3w 1$ l33t HaX0rz - 3v3ry0n3 3l$3 r l4m3rz +&lt;br&gt;
I guess the white hats are...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Evaluating pentesters>/title>
    >link>http://seclists.org/pen-test/2010/Mar/67>/link>
    >description>&lt;p&gt;Posted by Daniel Clemens on Mar 11&lt;/p&gt;ASV's and Pentesters are two different animals all together. &lt;br&gt;
Prove to peers and...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Evaluating pentesters>/title>
    >link>http://seclists.org/pen-test/2010/Mar/66>/link>
    >description>&lt;p&gt;Posted by Mohamed Farid on Mar 11&lt;/p&gt;There is a lot of Pen test firms - but my advise is to check with your&lt;br&gt;
better if you let them penetrate your system their selves..&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Controlled DoS>/title>
    >link>http://seclists.org/pen-test/2010/Mar/65>/link>
    >description>&lt;p&gt;Posted by Tibor Kaskoto on Mar 11&lt;/p&gt;Respected Members,&lt;br&gt;
anything? What is the approach to a 99.99% availability...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Evaluating pentesters>/title>
    >link>http://seclists.org/pen-test/2010/Mar/64>/link>
    >description>&lt;p&gt;Posted by Brent Huston on Mar 11&lt;/p&gt;Obtain and check references, do a Google search on the company name and the names of the principles. Check for real &lt;br&gt;
time and energy. 15 mins per vendor and a browser will make it all make sense....&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: DNS Pen-Test Tools>/title>
    >link>http://seclists.org/pen-test/2010/Mar/63>/link>
    >description>&lt;p&gt;Posted by gigi sulli on Mar 11&lt;/p&gt; I want to suggest hostmap: &lt;a  rel=&quot;nofollow&quot; href=&quot;http://hostmap.lonerunners.net&quot;&gt;http://hostmap.lonerunners.net&lt;/a&gt;&lt;br&gt;
&lt;a  rel=&quot;nofollow&quot; href=&quot;http://www.iacertification.org&quot;&gt;http://www.iacertification.org&lt;/a&gt;...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Professional Scrpt Kiddies vs Real Talent>/title>
    >link>http://seclists.org/pen-test/2010/Mar/62>/link>
    >description>&lt;p&gt;Posted by Eric Milam on Mar 11&lt;/p&gt;I think it is important to note that these days there is beginning to be&lt;br&gt;
tools.  I have written only one...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: proposed pen-test>/title>
    >link>http://seclists.org/pen-test/2010/Mar/61>/link>
    >description>&lt;p&gt;Posted by Steve Friedl on Mar 11&lt;/p&gt;Nobody, because a pen-test is not *actual* fraud, and there is no&lt;br&gt;
This may...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Evaluating pentesters>/title>
    >link>http://seclists.org/pen-test/2010/Mar/60>/link>
    >description>&lt;p&gt;Posted by Rudra Kamal Sinha Roy on Mar 11&lt;/p&gt;Hi Tony,&lt;br&gt;
Tip 2: Focus on the vendor’s real knowledge and not just on certifications...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: RE: Wireless Encryption Methods (eg; WPA2) vs Forced Secure Proxy Redirects>/title>
    >link>http://seclists.org/pen-test/2010/Mar/59>/link>
    >description>&lt;p&gt;Posted by Cedric Blancher on Mar 11&lt;/p&gt;Le vendredi 05 mars 2010 à 10:31 +0100, Malick Sy a écrit : &lt;br&gt;
and that will...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>RE: Professional Scrpt Kiddies vs Real Talent>/title>
    >link>http://seclists.org/pen-test/2010/Mar/58>/link>
    >description>&lt;p&gt;Posted by Craig S. Wright on Mar 11&lt;/p&gt;The entire notion that security is about pen testing is flawed.&lt;br&gt;
getting the site pen...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Fwd: Evaluating pentesters>/title>
    >link>http://seclists.org/pen-test/2010/Mar/57>/link>
    >description>&lt;p&gt;Posted by Daniel Hood on Mar 11&lt;/p&gt;I'm usually on the otherside of the fence with this sort of stuff&lt;br&gt;
department. Not a product RnD...&lt;br&gt;>/description>
  >/item>
>/channel>
>/rss>
>rss version="2.0">
>channel>
  >title>digg.com: Stories / Popular>/title>
  >description>digg.com: Stories / Popular>/description>
  >link>http://digg.com/>/link>
   >title>Fatal wolf attack shows wisdom of national park gun rule ...>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/2oTyCyXtzHA/Fatal_wolf_attack_shows_wisdom_of_national_park_gun_rule>/link>
   >description>The anti-self-defense lobby derisively dismissed the idea of needing to defend oneself in national parks, saying that such places were "too peaceful" for such a need.  A jogger fatally mauled by wolves in Alaska shows one of the flaws with such "logic."
&lt;a href="http://feedads.g.doubleclick.net/~at/lCDIPFQpPIVPMJ-oXycg13j1rmU/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/lCDIPFQpPIVPMJ-oXycg13j1rmU/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/2oTyCyXtzHA" height="1" width="1"/&gt;>/description>
  >item>
   >title>How to: Make Potato Chips in the Microwave >/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/2kVZsNXajtI/How_to_Make_Potato_Chips_in_the_Microwave>/link>
   >description>Microwaves have gotten a bad rap with some people because they just don't cook some things as they should be cooked. However, according to Savory Sweet Life, it is possible to make potato chips in the microwave that taste great. Try these out some night for a midnight snack.
&lt;a href="http://feedads.g.doubleclick.net/~at/r5uqOuFCln8bLLAIq3TsKKSp6to/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/r5uqOuFCln8bLLAIq3TsKKSp6to/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/2kVZsNXajtI" height="1" width="1"/&gt;>/description>
  >item>
   >title>The New Rove-Cheney Assault On Reality>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/XkX_ajDUI4M/The_New_Rove_Cheney_Assault_On_Reality>/link>
   >description>The revisionist history peddled by Liz Cheney and Karl Rove must be aggressively refuted, and we must remember who really failed to keep America safe.
&lt;a href="http://feedads.g.doubleclick.net/~at/Z9WQyH-KP9GrIwZw8GEuEIaR1jc/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/Z9WQyH-KP9GrIwZw8GEuEIaR1jc/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/XkX_ajDUI4M" height="1" width="1"/&gt;>/description>
  >item>
   >title>Manny Pacquiao Dominates Joshua Clottey for Decision>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/8tMib0tQvaA/Manny_Pacquiao_Dominates_Joshua_Clottey_for_Decision>/link>
   >description>With the biggest fight crowd in the U.S. in 17 years cheering him on at Cowboys Stadium, Pacquiao dominated a strangely passive Joshua Clottey from the opening bell Saturday night to retain his welterweight title and cement his status as the best pound-for-pound fighter in the world.
&lt;a href="http://feedads.g.doubleclick.net/~at/BXm8YPATqomkEnL0JgYFVjjWMIU/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/BXm8YPATqomkEnL0JgYFVjjWMIU/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/8tMib0tQvaA" height="1" width="1"/&gt;>/description>
  >item>
   >title> 7 Cat Species Found in 1 Forest—A Record (Gallery)>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/F9dLPBi6jTw/7_Cat_Species_Found_in_1_ForestmA_Record_Gallery_2>/link>
   >description>Released in February, the picture was taken during a two-year survey by the Wildlife Conservation Society (WCS). The research found seven cat species in a 354-square-mile (570-square-kilometer) range—the highest diversity of cat species yet photographed in a single area.
&lt;a href="http://feedads.g.doubleclick.net/~at/mWynQRFu_5zi7GxvZ4w0T0RB-ok/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/mWynQRFu_5zi7GxvZ4w0T0RB-ok/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/F9dLPBi6jTw" height="1" width="1"/&gt;>/description>
  >item>
   >title>Could GPS devices create a world without signs? >/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/vCx8bfvpVys/Could_GPS_devices_create_a_world_without_signs>/link>
   >description>These tools are inexorably changing the way we navigate highways. It's true that we use signs in tandem with personal navigation systems today, but that may not always be the case. Experts envision a future in which we trust digital directions so completely that we no longer make much use of real-world cues.
&lt;a href="http://feedads.g.doubleclick.net/~at/wM63hpbsjBOoD0CP6wM4LGIQ928/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/wM63hpbsjBOoD0CP6wM4LGIQ928/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/vCx8bfvpVys" height="1" width="1"/&gt;>/description>
  >item>
   >title>Kissinger admitted to South Korean hospital >/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/Ryz9GUoYDdo/Kissinger_admitted_to_South_Korean_hospital>/link>
   >description>Former U.S. Secretary of State Henry Kissinger was admitted to a hospital in Seoul, South Korea, on Saturday with a stomach virus, a doctor told CNN.
&lt;a href="http://feedads.g.doubleclick.net/~at/_ehv8PGvodoLOTPuSCYhKmyLGCg/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/_ehv8PGvodoLOTPuSCYhKmyLGCg/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/Ryz9GUoYDdo" height="1" width="1"/&gt;>/description>
  >item>
   >title>Will London 2012 Be ‘The Green Olympics’?>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/LR0rsrJYJWY/Will_London_2012_Be_The_Green_Olympics_2>/link>
   >description>London looks set to raise the bar even higher with plans to blow Vancouver’s achievements out of the water in 2012. The London Olympic Authority have stated that they are aiming to make London 2012 the first sustainable Olympic Games, setting a precedent for future events.
&lt;a href="http://feedads.g.doubleclick.net/~at/lTVft3sB1BOrFKRjDdJDPEjl3b4/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/lTVft3sB1BOrFKRjDdJDPEjl3b4/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/LR0rsrJYJWY" height="1" width="1"/&gt;>/description>
  >item>
   >title>How Apple Blew Its Chance To Own AdMob For $600 Million>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/VFMtQQFfHq0/How_Apple_Blew_Its_Chance_To_Own_AdMob_For_600_Million>/link>
   >description>Apple had a chance to own mobile advertising company AdMob for $600 million, but blew it, the New York Times reports.
&lt;a href="http://feedads.g.doubleclick.net/~at/J9Plc2tn2pZBAhdg9OVyr2OGApI/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/J9Plc2tn2pZBAhdg9OVyr2OGApI/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/VFMtQQFfHq0" height="1" width="1"/&gt;>/description>
  >item>
   >title>Genius Promotion Campaign : IKEA Subway Display in Paris >/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/9oT3ZOI3q3w/Genius_Promotion_Campaign_IKEA_Subway_Display_in_Paris>/link>
   >description>From 10 to 24 March 2010, IKEA develops an interesting event in four important metro stations in Paris. Furniture collections are currently displayed in high-traffic spots, giving the potential customers a chance to interact with the brand by checking out the products.
&lt;a href="http://feedads.g.doubleclick.net/~at/PzfMIaeFIO0Z9dLnhTB_5KDyvzU/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/PzfMIaeFIO0Z9dLnhTB_5KDyvzU/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/9oT3ZOI3q3w" height="1" width="1"/&gt;>/description>
  >item>
   >title>Leaving The Screen: Adapting Movie Franchises for Video Game>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/9d4l2C7endo/Leaving_The_Screen_Adapting_Movie_Franchises_for_Video_Game>/link>
   >description>Games based on film licenses tend to be pretty wretched. Yet given the arrival of "Aliens vs. Predator," a film-based game that not only works but actually makes sense, it's clear that some films are just a better fit for the interactive realm.
&lt;a href="http://feedads.g.doubleclick.net/~at/aMA61_GzDVdmCzZD6jayel-r9B8/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/aMA61_GzDVdmCzZD6jayel-r9B8/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/9d4l2C7endo" height="1" width="1"/&gt;>/description>
  >item>
   >title>Another Prius Accelerates Unintentionally in NYC and Crashes>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/ix0xLozHhF0/Another_Prius_Accelerates_Unintentionally_in_NYC_and_Crashes>/link>
   >description>Not one day after a high-profile incident involving a Prius taking off on its owner in Southern California, we're hearing reports that another one of Toyota's popular hybrids has suffered unintended acceleration in New York.
&lt;a href="http://feedads.g.doubleclick.net/~at/My6OGCXQtNxi2Pam8Ww7MHO7_hQ/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/My6OGCXQtNxi2Pam8Ww7MHO7_hQ/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/ix0xLozHhF0" height="1" width="1"/&gt;>/description>
  >item>
   >title>Human Cells 'Forage' Like Amoebae, Bacteria>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/loHfKwxJYDw/Human_Cells_Forage_Like_Amoebae_Bacteria>/link>
   >description>When cells move about in the body, they follow a complex pattern similar to that which amoebae and bacteria use when searching for food, researchers have found. The discovery has a practical value for drug development: Incorporating this basic behavior into computer simulations of biological processes that involve cell migration...
&lt;a href="http://feedads.g.doubleclick.net/~at/5wyKNu2fa-U8w7zcoFqk0ub1Uu4/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/5wyKNu2fa-U8w7zcoFqk0ub1Uu4/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/loHfKwxJYDw" height="1" width="1"/&gt;>/description>
  >item>
   >title>Hitler Without A Mustache [PIC]>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/o47QLh71xtQ/Hitler_Without_A_Mustache_PIC>/link>
   >description>And look at that purple suit...
&lt;a href="http://feedads.g.doubleclick.net/~at/Re0Lkdp6_436x8pK371R-vUKyB8/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/Re0Lkdp6_436x8pK371R-vUKyB8/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/o47QLh71xtQ" height="1" width="1"/&gt;>/description>
  >item>
   >title>It Was The Cars Fault (PIC) >/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/yR3f_mYCv_I/It_Was_The_Cars_Fault_PIC>/link>
   >description>*****
&lt;a href="http://feedads.g.doubleclick.net/~at/MdO0kifVFqNryBAEYiyjpnv4B0U/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/MdO0kifVFqNryBAEYiyjpnv4B0U/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/yR3f_mYCv_I" height="1" width="1"/&gt;>/description>
  >item>
   >title>Homework before Hoops (pic)>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/b8K1jX7OmPc/Homework_before_Hoops_pic>/link>
   >description>*****
&lt;a href="http://feedads.g.doubleclick.net/~at/6IHhI2HMbmx9y0p_njvWvsZ78Sw/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/6IHhI2HMbmx9y0p_njvWvsZ78Sw/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/b8K1jX7OmPc" height="1" width="1"/&gt;>/description>
  >item>
   >title>Leo Laporte crowd surfing while live streaming @ Diggnation>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/cOTWtCaehpg/Leo_Laporte_crowd_surfing_while_live_streaming_Diggnation>/link>
   >description>Leo Laporte crowd surfing while live streaming on the Internet at Diggnation Live case. As seen at SXSW 2010 at Stubbs BBQ in Austin, TX!
&lt;a href="http://feedads.g.doubleclick.net/~at/k-4FayrsEIDA9gP4bsyybdOytfU/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/k-4FayrsEIDA9gP4bsyybdOytfU/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/cOTWtCaehpg" height="1" width="1"/&gt;>/description>
  >item>
   >title>Man claims he caught girlfriend in a threesome, killed all>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/1xqsFMEzVco/Man_claims_he_caught_girlfriend_in_a_threesome_killed_all>/link>
   >description>Cops say story is a lie.  The 50-year-old told cops he killed the woman and two men and had already chopped up his rivals' bodies and dumped them in New Jersey. Cops found the body of Deborah Blount, 51, in her Brownsville apartment Friday morning and arrested her boyfriend, John Brandon, at the scene.
&lt;a href="http://feedads.g.doubleclick.net/~at/YWOD_iEDGOWO5ZuU6wTFEwUff_M/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/YWOD_iEDGOWO5ZuU6wTFEwUff_M/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/1xqsFMEzVco" height="1" width="1"/&gt;>/description>
  >item>
   >title>Should We Be Trying to Save the Dodo?>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/32p72ulqhe0/Should_We_Be_Trying_to_Save_the_Dodo>/link>
   >description>Declaring a species extinct is no trivial matter. A team of Australian researchers are trying to bring a more rigorous approach to this area with the help of the dodo.
&lt;a href="http://feedads.g.doubleclick.net/~at/egwAARx3k_Jm-nHvW0Ql8kSoeMg/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/egwAARx3k_Jm-nHvW0Ql8kSoeMg/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/32p72ulqhe0" height="1" width="1"/&gt;>/description>
  >item>
   >title>The Frame: Hunting for "The Hobbit" (PICS)>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/FF75klQqd0c/The_Frame_Hunting_for_The_Hobbit_PICS>/link>
   >description>The discovery of ***** floresiensis shocked and divided scientists. Here apparently was a band of distant relatives that exhibited features not seen for millions of years but were living at the same time as much more modern humans
&lt;a href="http://feedads.g.doubleclick.net/~at/t-bLI6Lg7VmUX4f15SOIU0dVJH4/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/t-bLI6Lg7VmUX4f15SOIU0dVJH4/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/FF75klQqd0c" height="1" width="1"/&gt;>/description>
  >item>
   >title>New Version of Digg Revealed>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/vgdkd9fGFlI/New_Version_of_Digg_Revealed>/link>
   >description>At the “Bigg Digg Shindigg” event at the South by Southwest Interactive Conference (SXSWi), Digg CEO Jay Adelson revealed that the popular social bookmarking site is getting a major overhaul, teasing the audience about new features such as personalized feeds and the return of the Digg leaderboard.
&lt;a href="http://feedads.g.doubleclick.net/~at/bdkLn7Rb7qGEC55k5xGAdzKVWKk/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/bdkLn7Rb7qGEC55k5xGAdzKVWKk/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/vgdkd9fGFlI" height="1" width="1"/&gt;>/description>
  >item>
   >title>When malware strikes via bad ads on good sites >/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/PKbU0KqZadA/When_malware_strikes_via_bad_ads_on_good_sites>/link>
   >description>Who is responsible for malware in ads, Web site owners or ad networks and delivery firms? Matt Drudge and Michael Arrington found themselves this week in an unpleasant position when visitors to their respective Drudge Report and TechCrunch sites were targeted by malware that appeared to have come from ads...
&lt;a href="http://feedads.g.doubleclick.net/~at/u6HUhv0Y8KAlb4Rm-IOoZLpLiO0/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/u6HUhv0Y8KAlb4Rm-IOoZLpLiO0/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/PKbU0KqZadA" height="1" width="1"/&gt;>/description>
  >item>
   >title>Burrito the Golfing Chihuahua! [video]>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/V2zCj2FdJ1s/Burrito_the_Golfing_Chihuahua_video>/link>
   >description>This is Burrito, and although he’s not very good at golf, I love him because he at least dresses the part. Where did his owner find such tiny golf clubs? I don’t care: all that matters is that he has them.
&lt;a href="http://feedads.g.doubleclick.net/~at/zo984FJ89gbBRgTN2WWpgB8EzGs/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/zo984FJ89gbBRgTN2WWpgB8EzGs/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/V2zCj2FdJ1s" height="1" width="1"/&gt;>/description>
  >item>
   >title>NFL: Verizon In, Sprint Out >/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/AFb2rSyzdz4/NFL_Verizon_In_Sprint_Out>/link>
   >description>There's bad news for NFL fans on the Sprint network. The NFL has officially taken on rival Verizon as the official wireless
&lt;a href="http://feedads.g.doubleclick.net/~at/yOno2IySHxKewwUmu8-WqbK-C_s/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/yOno2IySHxKewwUmu8-WqbK-C_s/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/AFb2rSyzdz4" height="1" width="1"/&gt;>/description>
  >item>
   >title>Seven Improved Security Features in Windows 7>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/Tkkv8-qDoog/Seven_Improved_Security_Features_in_Windows_7>/link>
   >description>While no operating system is perfect, Microsoft appears to have made significant security improvements with the release of Windows 7.
&lt;a href="http://feedads.g.doubleclick.net/~at/WYLMjPXoIMO00z4fakZUPAQMc5s/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/WYLMjPXoIMO00z4fakZUPAQMc5s/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/Tkkv8-qDoog" height="1" width="1"/&gt;>/description>
  >item>
   >title>Senators resist Obama over projects in health bill>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/x1hGvAU_i7U/Senators_resist_Obama_over_projects_in_health_bill>/link>
   >description>President Barack Obama says he wants projects helping specific states yanked from the health care bill Congress is writing. Democratic senators, being senators, beg to differ.
&lt;a href="http://feedads.g.doubleclick.net/~at/5EGUp4qMZYPsL6MvRUNoXD0tqeo/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/5EGUp4qMZYPsL6MvRUNoXD0tqeo/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/x1hGvAU_i7U" height="1" width="1"/&gt;>/description>
  >item>
   >title>Final Fantasy XIII Sells 450K Units in the Americas in 1 day>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/KowkUwUGN7M/Final_Fantasy_XIII_Sells_450K_Units_in_the_Americas_in_1_day>/link>
   >description>A very strong start for the latest Final Fantasy title with two thirds of sales on PS3 - now updated with the figures for Other Regions as well.
&lt;a href="http://feedads.g.doubleclick.net/~at/7NDBeIt0NINtJR_vzgsn_v1iYpo/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/7NDBeIt0NINtJR_vzgsn_v1iYpo/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/KowkUwUGN7M" height="1" width="1"/&gt;>/description>
  >item>
   >title>Driverless car to test out Pikes Peak climb>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/hNZfjS7G59g/Driverless_car_to_test_out_Pikes_Peak_climb>/link>
   >description>Guiding a car through the treacherous turns and switchbacks of the Pikes Peak Hill Climb course is a test for top professionals, but a team of Stanford researchers is preparing to tackle that challenge with a driverless car guided by GPS tracking.
&lt;a href="http://feedads.g.doubleclick.net/~at/p88tJ8Lx_LPYXNMYL2gsBHJFs64/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/p88tJ8Lx_LPYXNMYL2gsBHJFs64/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/hNZfjS7G59g" height="1" width="1"/&gt;>/description>
  >item>
   >title>Things Get Ugly Between Agassi And Sampras (VIDEO)>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/GliXcB03Kp4/Things_Get_Ugly_Between_Agassi_And_Sampras_VIDEO>/link>
   >description>Andre Agassi is kind of an ass
&lt;a href="http://feedads.g.doubleclick.net/~at/sxAxcGIEyyS8wFmo1nOZN2eA-ck/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/sxAxcGIEyyS8wFmo1nOZN2eA-ck/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/GliXcB03Kp4" height="1" width="1"/&gt;>/description>
  >item>
   >title>My New Teeth Cleaner (pic)>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/72jqTiKKMls/My_New_Teeth_Cleaner_pic>/link>
   >description>*****
&lt;a href="http://feedads.g.doubleclick.net/~at/6mTU6PsgaM_4YfNhDWUan7j2zz4/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/6mTU6PsgaM_4YfNhDWUan7j2zz4/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/72jqTiKKMls" height="1" width="1"/&gt;>/description>
  >item>
   >title>Cupcakes! 25 Photos of Sugary Goodness>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/DpI7kfP0rew/Cupcakes_25_Photos_of_Sugary_Goodness>/link>
   >description>Cupcakes may be the perfect dessert. Which one is your favorite?
&lt;a href="http://feedads.g.doubleclick.net/~at/ja5zUddrXVITJLyUnp-6p_ByVUM/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/ja5zUddrXVITJLyUnp-6p_ByVUM/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/DpI7kfP0rew" height="1" width="1"/&gt;>/description>
  >item>
   >title>More Democrats come out against health care bill >/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/I0q5QKdr8xE/More_Democrats_come_out_against_health_care_bill_3>/link>
   >description>As House Democratic leaders advised their members Friday to prepare for a legislative battle over health care that could stretch through next weekend, four additional rank-and-file Democrats have come out against the Obama administration's signature domestic priority.
&lt;a href="http://feedads.g.doubleclick.net/~at/ZZMDneEzZjDWbV6wxO6mngmCE5U/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/ZZMDneEzZjDWbV6wxO6mngmCE5U/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/I0q5QKdr8xE" height="1" width="1"/&gt;>/description>
  >item>
   >title>This is why we don't have the next Half-Life game yet.>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/qxCbvkXPy3c/This_is_why_we_don_t_have_the_next_Half_Life_game_yet>/link>
   >description>*****
&lt;a href="http://feedads.g.doubleclick.net/~at/n1LBMttcpcObgwjvJxPNqt_kN9s/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/n1LBMttcpcObgwjvJxPNqt_kN9s/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/qxCbvkXPy3c" height="1" width="1"/&gt;>/description>
  >item>
   >title>Top 10 Google Apps Marketplace Apps >/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/Czjc39xZV20/Top_10_Google_Apps_Marketplace_Apps>/link>
   >description>Google's Apps suite for domain owners and businesses has finally received some star treatment with the launch of the Apps Marketplace. Which Google-friendly apps are free, worth the cost, and entirely useful? These 10 are definitely worth a look.
&lt;a href="http://feedads.g.doubleclick.net/~at/xsl5PD3Hkniv1_2VSKwSUKbuhGo/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/xsl5PD3Hkniv1_2VSKwSUKbuhGo/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/Czjc39xZV20" height="1" width="1"/&gt;>/description>
  >item>
   >title>Comcast-NBCU merger: how the regulators will decide>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/kWEcLb5dfHQ/Comcast_NBCU_merger_how_the_regulators_will_decide>/link>
   >description>Representatives from the Department of Justice and FCC were low-key about what they thought about the proposed Comcast-NBC Universal merger at yesterday's Senate hearing. But they offered a road map of how they're going to evaluate the deal. We've got details.
&lt;a href="http://feedads.g.doubleclick.net/~at/ubgDuL1kSVIT6NskPdoDdDUkNe8/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/ubgDuL1kSVIT6NskPdoDdDUkNe8/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/kWEcLb5dfHQ" height="1" width="1"/&gt;>/description>
  >item>
   >title>Members of Congress Boosted their budgets 5% last Year>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/S1lc4XavAnc/Members_of_Congress_Boosted_their_budgets_5_last_Year>/link>
   >description>Job losses, home foreclosures and the worst economy in decades have forced many Americans to cut back or do without. But not members of Congress, who voted themselves a 5 percent increase in their own budgets last year.
&lt;a href="http://feedads.g.doubleclick.net/~at/x1IovVOQ-uWjF_AwusaMGJrnD58/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/x1IovVOQ-uWjF_AwusaMGJrnD58/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/S1lc4XavAnc" height="1" width="1"/&gt;>/description>
  >item>
   >title>Barack Obama's approval rating drops to 46% >/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/acUYDqz-7SI/Barack_Obama_s_approval_rating_drops_to_46>/link>
   >description>President Barack Obama yesterday delayed a trip to Asia amid falling approval ratings and grave doubts that his 11th hour attempt to push health care reform through Congress will succeed. A new poll by Gallup showed Mr Obama's approval rating at a record low of 46% since taking office. In the optimistic early days of his presidency 69%
&lt;a href="http://feedads.g.doubleclick.net/~at/hMsH0zPHXo0OyTIwJXXm_IbvzmM/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/hMsH0zPHXo0OyTIwJXXm_IbvzmM/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/acUYDqz-7SI" height="1" width="1"/&gt;>/description>
  >item>
   >title>9 Lame Vampires Much Cooler than the Vampires in Twilight>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/9mrHxuTbQpg/9_Lame_Vampires_Much_Cooler_than_the_Vampires_in_Twilight>/link>
   >description>These vampires suck (no pun intended). However, they still kick the ***** out of Twilight's sorry excuse for the bloodsucking undead.
&lt;a href="http://feedads.g.doubleclick.net/~at/pFwSAI4mS59qaa9Y1jk0kzuZxPY/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/pFwSAI4mS59qaa9Y1jk0kzuZxPY/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/9mrHxuTbQpg" height="1" width="1"/&gt;>/description>
  >item>
   >title>Quite the Distraction (PIC)>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/WUWCuowMIxo/Quite_the_Distraction_PIC>/link>
   >description>Females are capable of providing quite the distraction for any male athlete.
&lt;a href="http://feedads.g.doubleclick.net/~at/apbHmeIKsDCzhyVBEAvFNvgkzHY/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/apbHmeIKsDCzhyVBEAvFNvgkzHY/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/WUWCuowMIxo" height="1" width="1"/&gt;>/description>
  >item>
   >title>Sex being AWESOME helps sell condoms in SouthEast Asia>/title>
   >link>http://feeds.digg.com/~r/digg/popular/~3/pR8NQ709k1s/Sex_being_AWESOME_helps_sell_condoms_in_SouthEast_Asia>/link>
   >description>With more Southeast Asians flouting cultural prudishness by speaking openly about sex, condom companies in Indonsia and Thailand, such as Thai Nippon Rubber hope to raise revenues here in 2010. But that's proving to be a challenge due to deeply engrained social and cultural views that associate condoms with extramarital sex, prostitution and sin.
&lt;a href="http://feedads.g.doubleclick.net/~at/cFY7EN7GMARt2IUh80lDLd9zoHY/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~at/cFY7EN7GMARt2IUh80lDLd9zoHY/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/digg/popular/~4/pR8NQ709k1s" height="1" width="1"/&gt;>/description>
>/channel>
>/rss>
>rss version="2.0">
>channel>
    >title>The RISKS Forum>/title>
    >link>http://seclists.org/#risks>/link>
    >description>Peter G. Neumann moderates this regular digest of current events which demonstrate risks to the public in computers and related systems.  Security risks are often discussed.>/description>
  >item>
    >title>Risks Digest 25.96>/title>
    >link>http://seclists.org/risks/2010/q1/7>/link>
    >description>&lt;p&gt;Posted by RISKS List Owner on Mar 13&lt;/p&gt;RISKS-LIST: Risks-Forum Digest  Saturday 13 March 2010  Volume 25 : Issue 96&lt;br&gt;
The current issue can be...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Risks Digest 25.95>/title>
    >link>http://seclists.org/risks/2010/q1/6>/link>
    >description>&lt;p&gt;Posted by RISKS List Owner on Feb 28&lt;/p&gt;RISKS-LIST: Risks-Forum Digest  Sunday 28 February 2010  Volume 25 : Issue 95&lt;br&gt;
The current issue can be...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Risks Digest 25.94>/title>
    >link>http://seclists.org/risks/2010/q1/5>/link>
    >description>&lt;p&gt;Posted by RISKS List Owner on Feb 14&lt;/p&gt;RISKS-LIST: Risks-Forum Digest  Sunday 14 February 2010  Volume 25 : Issue 94&lt;br&gt;
The current issue can be...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Risks Digest 25.93>/title>
    >link>http://seclists.org/risks/2010/q1/4>/link>
    >description>&lt;p&gt;Posted by RISKS List Owner on Jan 29&lt;/p&gt;RISKS-LIST: Risks-Forum Digest  Friday 29 January 2010  Volume 25 : Issue 93&lt;br&gt;
The current issue can be...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Risks Digest 25.92>/title>
    >link>http://seclists.org/risks/2010/q1/3>/link>
    >description>&lt;p&gt;Posted by RISKS List Owner on Jan 26&lt;/p&gt;RISKS-LIST: Risks-Forum Digest  Tuesday 26 January 2010  Volume 25 : Issue 92&lt;br&gt;
The current issue can be...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Risks Digest 25.91>/title>
    >link>http://seclists.org/risks/2010/q1/2>/link>
    >description>&lt;p&gt;Posted by RISKS List Owner on Jan 19&lt;/p&gt;RISKS-LIST: Risks-Forum Digest  Tuesday 19 January 2010  Volume 25 : Issue 91&lt;br&gt;
The current issue can be...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Risks Digest 25.90>/title>
    >link>http://seclists.org/risks/2010/q1/1>/link>
    >description>&lt;p&gt;Posted by RISKS List Owner on Jan 08&lt;/p&gt;RISKS-LIST: Risks-Forum Digest  Friday 8 January 2010  Volume 25 : Issue 90&lt;br&gt;
The current issue can be...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Risks Digest 25.89>/title>
    >link>http://seclists.org/risks/2010/q1/0>/link>
    >description>&lt;p&gt;Posted by RISKS List Owner on Jan 07&lt;/p&gt;RISKS-LIST: Risks-Forum Digest  Thursday 7 January 2010  Volume 25 : Issue 89&lt;br&gt;
The current issue can be...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Risks Digest 25.88>/title>
    >link>http://seclists.org/risks/2009/q4/8>/link>
    >description>&lt;p&gt;Posted by RISKS List Owner on Dec 26&lt;/p&gt;RISKS-LIST: Risks-Forum Digest  Saturday 26 December 2009  Volume 25 : Issue 88&lt;br&gt;
The current issue can...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Risks Digest 25.87>/title>
    >link>http://seclists.org/risks/2009/q4/7>/link>
    >description>&lt;p&gt;Posted by RISKS List Owner on Dec 15&lt;/p&gt;RISKS-LIST: Risks-Forum Digest  Tuesday 15 December 2009  Volume 25 : Issue 87&lt;br&gt;
The current issue can...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Risks Digest 25.86>/title>
    >link>http://seclists.org/risks/2009/q4/6>/link>
    >description>&lt;p&gt;Posted by RISKS List Owner on Dec 14&lt;/p&gt;RISKS-LIST: Risks-Forum Digest  Monday 14 December 2009  Volume 25 : Issue 86&lt;br&gt;
The current issue can be...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Risks Digest 25.85>/title>
    >link>http://seclists.org/risks/2009/q4/5>/link>
    >description>&lt;p&gt;Posted by RISKS List Owner on Nov 28&lt;/p&gt;RISKS-LIST: Risks-Forum Digest  Saturday 28 November 2009  Volume 25 : Issue 85&lt;br&gt;
The current issue can...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Risks Digest 25.84>/title>
    >link>http://seclists.org/risks/2009/q4/4>/link>
    >description>&lt;p&gt;Posted by RISKS List Owner on Nov 25&lt;/p&gt;RISKS-LIST: Risks-Forum Digest  Weds 25 November 2009  Volume 25 : Issue 84&lt;br&gt;
The current issue can be...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Risks Digest 25.83>/title>
    >link>http://seclists.org/risks/2009/q4/3>/link>
    >description>&lt;p&gt;Posted by RISKS List Owner on Nov 06&lt;/p&gt;RISKS-LIST: Risks-Forum Digest  Friday 6 November 2009  Volume 25 : Issue 83&lt;br&gt;
The current issue can be...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Risks Digest 25.82>/title>
    >link>http://seclists.org/risks/2009/q4/2>/link>
    >description>&lt;p&gt;Posted by RISKS List Owner on Oct 20&lt;/p&gt;RISKS-LIST: Risks-Forum Digest  Tuesday 20 October 2009  Volume 25 : Issue 82&lt;br&gt;
The current issue can be...&lt;br&gt;>/description>
  >/item>
>/channel>
>/rss>
>rss version="2.0">
>channel>
  >title>      SANS Internet Storm Center, InfoCON: green>/title>
  >link>       http://isc.sans.org>/link>
  >description>>![CDATA[]]>>/description>
             >image>
               >title>SANS Internet Storm Center, InfoCON: green>/title>
               >url>http://isc.sans.org/images/status.gif>/url>
               >link>http://isc.sans.org>/link>
             >/image>
  >item>
    >title>Infocon: green>/title>
    >link>http://isc.sans.org/diary.html?rss>/link>
    >description>>![CDATA[Reminder:  Daylight Saving Time starts tonight in several countries.  See http://www.timeanddate.com/time/dst2010.html  for more details.]]>>/description>
  >/item>
  >item>
    >title>Reminder:  Daylight Saving Time starts tonight in several countries.  See http://www.timeanddate.com/time/dst2010.html  for more details., (Sun, Mar 14th)>/title>
    >link>http://isc.sans.org/diary.html?storyid=8428&amp;rss>/link>
    >description>>![CDATA[ ...(more)... ]]>>/description>
  >/item>
  >item>
    >title>
Evil Sports Sites, (Sat, Mar 13th)>/title>
    >link>http://isc.sans.org/diary.html?storyid=8425&amp;rss>/link>
    >description>>![CDATA[One of our regular readers submitted a Google query to us that points to yet another temptation that ...(more)... ]]>>/description>
  >/item>
  >item>
    >title>
Firebug 1.5.3 is out.  See http://blog.getfirebug.com/2010/03/12/firebug-1-5-3/ , (Sat, Mar 13th)>/title>
    >link>http://isc.sans.org/diary.html?storyid=8422&amp;rss>/link>
    >description>>![CDATA[ ...(more)... ]]>>/description>
  >/item>
  >item>
    >title>
A new version of Safari is out. Looks like for Mac and Windows. Plenty of security fixes (mostly for Windows Safari users  http://support.apple.com/kb/HT4070 ), (Thu, Mar 11th)>/title>
    >link>http://isc.sans.org/diary.html?storyid=8416&amp;rss>/link>
    >description>>![CDATA[ ...(more)... ]]>>/description>
  >/item>
  >item>
    >title>
Firefox 3.6 is being pushed out to users.  http://www.mozilla.com/en-US/firefox/3.6/releasenotes/, (Fri, Mar 12th)>/title>
    >link>http://isc.sans.org/diary.html?storyid=8419&amp;rss>/link>
    >description>>![CDATA[ ...(more)... ]]>>/description>
  >/item>
  >item>
    >title>
Interesting SKYPE SPIM., (Thu, Mar 11th)>/title>
    >link>http://isc.sans.org/diary.html?storyid=8413&amp;rss>/link>
    >description>>![CDATA[Earlier this week Jared sent us an interesting SKYPE spim. Isuspect this was sent using the Sk ...(more)... ]]>>/description>
  >/item>
  >item>
    >title>
New version of foxit pdf reader available. http://www.foxitsoftware.com/downloads/index.php, (Thu, Mar 11th)>/title>
    >link>http://isc.sans.org/diary.html?storyid=8410&amp;rss>/link>
    >description>>![CDATA[ ...(more)... ]]>>/description>
  >/item>
  >item>
    >title>
Cert write up on Skype IMBot Logic and Functionality., (Thu, Mar 11th)>/title>
    >link>http://isc.sans.org/diary.html?storyid=8407&amp;rss>/link>
    >description>>![CDATA[CERT.at has provided a good technical analysis of a Skype IMBot ...(more)... ]]>>/description>
  >/item>
  >item>
    >title>
One a day keeps the hackers away. Read our discussion of the top 25 coding errors in the appsec streetfighter blog http://appsecstreetfighter.com ., (Thu, Mar 11th)>/title>
    >link>http://isc.sans.org/diary.html?storyid=8404&amp;rss>/link>
    >description>>![CDATA[------
Johannes B. Ullrich, Ph ...(more)... ]]>>/description>
  >/item>
  >item>
    >title>
What's My Firewall Telling Me? (Part 4), (Wed, Mar 10th)>/title>
    >link>http://isc.sans.org/diary.html?storyid=8395&amp;rss>/link>
    >description>>![CDATA[Theres been a lot of discussion about the recent stories on parsing firewall logs - Mar ...(more)... ]]>>/description>
  >/item>
>/channel>
>/rss>
>rss version="2.0">
>channel>
>title>Nessus.org Plugins>/title>
>link>http://www.nessus.org/scripts.php>/link>
>description>All the newest security checks for the Nessus scanner>/description>
>image about="http://www.nessus.org/images/RssLogo.jpg">
>title>Nessus Plugins>/title>
>url>http://www.nessus.org/images/RssLogo.jpg>/url>
>link>http://www.nessus.org/>/link>
>/image>
>item about="http://www.nessus.org/plugins/index.php?view=single&amp;id=45052">
>title>WMI Firewall Enumeration>/title>
>description>>![CDATA[Synopsis :>br />
]]>>/description>
>link>http://www.nessus.org/plugins/index.php?view=single&amp;id=45052>/link>
>/item>
>item about="http://www.nessus.org/plugins/index.php?view=single&amp;id=45051">
>title>WMI Anti-virus Enumeration>/title>
>description>>![CDATA[Synopsis :>br />
]]>>/description>
>link>http://www.nessus.org/plugins/index.php?view=single&amp;id=45051>/link>
>/item>
>item about="http://www.nessus.org/plugins/index.php?view=single&amp;id=45050">
>title>WMI Anti-spyware Enumeration>/title>
>description>>![CDATA[Synopsis :>br />
]]>>/description>
>link>http://www.nessus.org/plugins/index.php?view=single&amp;id=45050>/link>
>/item>
>item about="http://www.nessus.org/plugins/index.php?view=single&amp;id=45049">
>title>Google Picasa &lt; 3.6 Build 105.41>/title>
>description>>![CDATA[Synopsis :>br />
]]>>/description>
>link>http://www.nessus.org/plugins/index.php?view=single&amp;id=45049>/link>
>/item>
>item about="http://www.nessus.org/plugins/index.php?view=single&amp;id=45048">
>title>Google Picasa Detection (Windows)>/title>
>description>>![CDATA[Synopsis :>br />
]]>>/description>
>link>http://www.nessus.org/plugins/index.php?view=single&amp;id=45048>/link>
>/item>
>item about="http://www.nessus.org/plugins/index.php?view=single&amp;id=45047">
>title>Samba 'CAP_DAC_OVERRIDE' File Permission Security Bypass>/title>
>description>>![CDATA[Synopsis :>br />
]]>>/description>
>link>http://www.nessus.org/plugins/index.php?view=single&amp;id=45047>/link>
>/item>
>item about="http://www.nessus.org/plugins/index.php?view=single&amp;id=45046">
>title>Samba 'CAP_DAC_OVERRIDE' File Permission Security Bypass (version check)>/title>
>description>>![CDATA[Synopsis :>br />
]]>>/description>
>link>http://www.nessus.org/plugins/index.php?view=single&amp;id=45046>/link>
>/item>
>item about="http://www.nessus.org/plugins/index.php?view=single&amp;id=45045">
>title>Safari &lt; 4.0.5 Multiple Vulnerabilities>/title>
>description>>![CDATA[Synopsis :>br />
]]>>/description>
>link>http://www.nessus.org/plugins/index.php?view=single&amp;id=45045>/link>
>/item>
>item about="http://www.nessus.org/plugins/index.php?view=single&amp;id=45044">
>title>Mac OS X : Safari &lt; 4.0.5>/title>
>description>>![CDATA[Synopsis :>br />
]]>>/description>
>link>http://www.nessus.org/plugins/index.php?view=single&amp;id=45044>/link>
>/item>
>item about="http://www.nessus.org/plugins/index.php?view=single&amp;id=45043">
>title>CSS Web Installer CSSWEBLib.Installer ActiveX InstallProduct1 Method Overflow>/title>
>description>>![CDATA[Synopsis :>br />
]]>>/description>
>link>http://www.nessus.org/plugins/index.php?view=single&amp;id=45043>/link>
>/item>
>item about="http://www.nessus.org/plugins/index.php?view=single&amp;id=45042">
>title>USN911-1 : moin vulnerabilities>/title>
>description>>![CDATA[Synopsis :>br />
]]>>/description>
>link>http://www.nessus.org/plugins/index.php?view=single&amp;id=45042>/link>
>/item>
>item about="http://www.nessus.org/plugins/index.php?view=single&amp;id=45041">
>title>MDVSA-2010:061: ncpfs>/title>
>description>>![CDATA[Synopsis :>br />
]]>>/description>
>link>http://www.nessus.org/plugins/index.php?view=single&amp;id=45041>/link>
>/item>
>item about="http://www.nessus.org/plugins/index.php?view=single&amp;id=45040">
>title>FreeBSD : egroupware -- two vulnerabilities (5231)>/title>
>description>>![CDATA[Synopsis :>br />
]]>>/description>
>link>http://www.nessus.org/plugins/index.php?view=single&amp;id=45040>/link>
>/item>
>item about="http://www.nessus.org/plugins/index.php?view=single&amp;id=45039">
>title>OpenSSL &lt; 0.9.8m Multiple Vulnerabilities>/title>
>description>>![CDATA[Synopsis :>br />
]]>>/description>
>link>http://www.nessus.org/plugins/index.php?view=single&amp;id=45039>/link>
>/item>
>item about="http://www.nessus.org/plugins/index.php?view=single&amp;id=45038">
>title>USN909-1 : dpkg vulnerability>/title>
>description>>![CDATA[Synopsis :>br />
]]>>/description>
>link>http://www.nessus.org/plugins/index.php?view=single&amp;id=45038>/link>
>/item>
>item about="http://www.nessus.org/plugins/index.php?view=single&amp;id=45037">
>title>USN908-1 : apache2 vulnerabilities>/title>
>description>>![CDATA[Synopsis :>br />
]]>>/description>
>link>http://www.nessus.org/plugins/index.php?view=single&amp;id=45037>/link>
>/item>
>item about="http://www.nessus.org/plugins/index.php?view=single&amp;id=45036">
>title>SuSE Security Update:  evolution-data-server (2010-02-08)>/title>
>description>>![CDATA[Synopsis :>br />
]]>>/description>
>link>http://www.nessus.org/plugins/index.php?view=single&amp;id=45036>/link>
>/item>
>item about="http://www.nessus.org/plugins/index.php?view=single&amp;id=45035">
>title>SuSE 11.2 Security Update:  rubygem-actionpack-2_3 (2010-02-05)>/title>
>description>>![CDATA[Synopsis :>br />
]]>>/description>
>link>http://www.nessus.org/plugins/index.php?view=single&amp;id=45035>/link>
>/item>
>item about="http://www.nessus.org/plugins/index.php?view=single&amp;id=45034">
>title>SuSE 11.2 Security Update:  MozillaThunderbird (2010-03-05)>/title>
>description>>![CDATA[Synopsis :>br />
]]>>/description>
>link>http://www.nessus.org/plugins/index.php?view=single&amp;id=45034>/link>
>/item>
>item about="http://www.nessus.org/plugins/index.php?view=single&amp;id=45033">
>title>Solaris 9 (x86) : 117144-02>/title>
>description>>![CDATA[Synopsis :>br />
]]>>/description>
>link>http://www.nessus.org/plugins/index.php?view=single&amp;id=45033>/link>
>/item>
>/channel>
>/rss>
>rss version="2.0">
>channel>
 >title>SecuriTeam>/title>
 >link>http://www.securiteam.com>/link>
 >description>Welcome to the SecuriTeam RSS Feed - sponsored by Beyond Security. Know Your Vulnerabilities! Visit BeyondSecurity.com for your web site, network and code security audit and scanning needs.>/description>
 >image>
  >title>SecuriTeam.com>/title>
  >url>http://www.securiteam.com/beyond-logo-small.png>/url>
  >link>http://www.securiteam.com>/link>
 >/image>
 >item>
  >title>LedgerSMB Multiple Vulnerabilities>/title>
  >link>http://www.securiteam.com/securitynews/5EP3H1P0AU.html>/link>
  >description>>![CDATA[It has been brought to our attention that a number of security vulnerabilities have been noted in SQL-Ledger.  Several of these affect earlier versions of LedgerSMB, and three hotfixes have been released for problems that continue to affect the LedgerSMB codebase.]]>>/description>
 >/item>
 >item>
  >title>Kaspersky Lab Multiple Products Local Privilege Escalation Vulnerability>/title>
  >link>http://www.securiteam.com/securitynews/5RP2W150AC.html>/link>
  >description>>![CDATA[Insecure permissions have been detected in the multiple Kaspersky Lab antivirus products.]]>>/description>
 >/item>
 >item>
  >title>Piwik Cookie Unserialize Vulnerability>/title>
  >link>http://www.securiteam.com/securitynews/6H00B0AQAS.html>/link>
  >description>>![CDATA[Piwik unserializes() user input which allows an attacker to send a carefully crafted cookie that when unserialized utilizes Piwik's classes to upload arbitrary files or execute arbitrary PHP code.]]>>/description>
 >/item>
 >item>
  >title>Invision Power Board SQL PHP File Inclusion and SQL Injection>/title>
  >link>http://www.securiteam.com/securitynews/6T0022AQAC.html>/link>
  >description>>![CDATA[Invision Power Board has a PHP file inclusion vulnerability that is trivial to exploit with a web browser and a known location of a php file residing on the target system. Authorisation is not required. The SQL injection vulnerability is somewhat tricky to exploit as there are quite a few restrictions that make creating a successful sql attack vector difficult. Nevertheless a crafty attacker might issue a series of requests that might allow him to gain some information about the target system or even read files from the disk depending on permissions granted to the db account that is used by the forum.]]>>/description>
 >/item>
 >item>
  >title>U.S. Defense Information Systems Agency (DISA) Unix Security Readiness Review (SRR) Vulnerability>/title>
  >link>http://www.securiteam.com/securitynews/6E00420QAS.html>/link>
  >description>>![CDATA[The U.S. Defense Information Systems Agency (DISA) publishes Security Readiness Review scripts (SRRs) to ensure systems and software meet security baselines required by the Department of Defense.  Unprivileged local users can obtain root access on Unix systems where the DISA SRR scripts are run.]]>>/description>
 >/item>
 >item>
  >title>Netifera - Modular Open Source Platform for Security Tools>/title>
  >link>http://www.securiteam.com/tools/5QP0B0KQUE.html>/link>
  >description>>![CDATA[]]>>/description>
 >/item>
 >item>
  >title>WarVOX -  Tools for Exploring, Classifying, and Auditing Telephone Systems>/title>
  >link>http://www.securiteam.com/tools/5RP012KQKA.html>/link>
  >description>>![CDATA[]]>>/description>
 >/item>
 >item>
  >title>Webshag - Web Server Audit Tool>/title>
  >link>http://www.securiteam.com/tools/5QP0L0UQAI.html>/link>
  >description>>![CDATA[]]>>/description>
 >/item>
 >item>
  >title>Browser Fuzzer>/title>
  >link>http://www.securiteam.com/tools/5OP0L00Q0Y.html>/link>
  >description>>![CDATA[]]>>/description>
 >/item>
 >item>
  >title>FSpy - Linux Filesystem Activity Monitoring>/title>
  >link>http://www.securiteam.com/tools/6D00V0ANFY.html>/link>
  >description>>![CDATA[]]>>/description>
 >/item>
 >item>
  >title>Publique! CMS and SQL Injection Vulnerabilities>/title>
  >link>http://www.securiteam.com/unixfocus/5FP3I1P0AO.html>/link>
  >description>>![CDATA[A remotely exploitable vulnerability was found in the framework core component. Exploitation of this bug does not require authentication and will lead to remotely exposed potentially sensitive information from the Publique! database. Particularly, an attacker can extract usernames and passwords needed to authenticate to the administrative interface and gain full control of the web site and (depending on certain conditions) the server itself.]]>>/description>
 >/item>
 >item>
  >title>Files2Links F2L-3000 SQL Injection Vulnerability>/title>
  >link>http://www.securiteam.com/unixfocus/5DP3G1P0AA.html>/link>
  >description>>![CDATA[The login page of the F2L-3000 version 4.0.0 is vulnerable to SQL Injection. Exploitation of the vulnerability may allow attackers to bypass authentication and access sensitive information stored on the device.]]>>/description>
 >/item>
 >item>
  >title>HP-UX Running Apache Data Injection and DoS Vulnerability>/title>
  >link>http://www.securiteam.com/unixfocus/5QP2V150AO.html>/link>
  >description>>![CDATA[A potential security vulnerability has been identified with HP-UX running Apache v2.0.59.12 and earlier. The vulnerability could be exploited remotely to inject unauthorized data or to create a Denial of Service (DoS).]]>>/description>
 >/item>
 >item>
  >title>MIT krb5 KDC denial of service in cross-realm referral processing>/title>
  >link>http://www.securiteam.com/unixfocus/5MP2W0K0AK.html>/link>
  >description>>![CDATA[An unauthenticated remote attacker could cause the KDC to crash due to a null pointer dereference.  Legitimate requests can also cause this crash to occur.]]>>/description>
 >/item>
 >item>
  >title>AproxEngine Multiple Vulnerabilities>/title>
  >link>http://www.securiteam.com/unixfocus/5BP2V0A0AG.html>/link>
  >description>>![CDATA[Vulnerabilities have been discovered in AproxEngine, which can be exploited by malicious users to manipulate certain data, conduct spoofing, SQL injection, and script insertion attacks and by malicious people to conduct SQL injection and script insertion attacks.]]>>/description>
 >/item>
 >item>
  >title>Microsoft Indeo Codec Memory Corruption Vulnerability>/title>
  >link>http://www.securiteam.com/windowsntfocus/6S00D00QAW.html>/link>
  >description>>![CDATA[The Indeo codec on systems running Microsoft Windows 2000, Windows XP, and Windows Server 2003 could allow code to run on users systems when opening specially crafted content.]]>>/description>
 >/item>
 >item>
  >title>HP DDMI Execution of Arbitrary Code>/title>
  >link>http://www.securiteam.com/windowsntfocus/6T00C2AQ0Y.html>/link>
  >description>>![CDATA[A potential security vulnerability has been identified with HP Discovery & Dependency Mapping Inventory (DDMI) running on Windows. The vulnerability could be exploited remotely by an authorized user to execute arbitrary code.]]>>/description>
 >/item>
 >item>
  >title>Microsoft Windows License Logging Service Heap Corruption Vulnerability>/title>
  >link>http://www.securiteam.com/windowsntfocus/6M00D0UQ0W.html>/link>
  >description>>![CDATA[This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Microsoft Windows. Authentication is not required on certain configurations to exploit this vulnerability.]]>>/description>
 >/item>
 >item>
  >title>Microsoft Office Excel Code Execution Vulnerabilities>/title>
  >link>http://www.securiteam.com/windowsntfocus/6K00B0UQ0K.html>/link>
  >description>>![CDATA[Attackers using specially crafted XLS files can execute arbitrary code via memory corruptions, invalid index, and invalid pointer errors.]]>>/description>
 >/item>
 >item>
  >title>Microsoft SharePoint 2007 ASP.NET Source Code Disclosure>/title>
  >link>http://www.securiteam.com/windowsntfocus/6W0040UQ0W.html>/link>
  >description>>![CDATA[It was found that the download facility of Microsoft SharePoint Team Services can be abused to reveal the source code of ASP.NET files.]]>>/description>
 >/item>
 >item>
  >title>Trango Broadband Wireless Rogue SU Authentication Bug>/title>
  >link>http://www.securiteam.com/exploits/5LP2V0K0AG.html>/link>
  >description>>![CDATA[Currently there is a flaw in the authentication mechanism of these radios which, if an attacker knows some details, can allow interception of ethernet packets broadcast from the Access Point to the Subscriber Unit and potentially allows injection into the communication from the Subscriber Unit to the Access Point.]]>>/description>
 >/item>
 >item>
  >title>Exposing HMS HICP Protocol and Intellicom NetBiterConfig.exe Remote Buffer Overflow>/title>
  >link>http://www.securiteam.com/exploits/5CP2W0A0AU.html>/link>
  >description>>![CDATA[SCADA weaknesses created by HICP Protocol and NetBiter WebSCADA.]]>>/description>
 >/item>
 >item>
  >title>Family Connections Multiple Remote Vulnerabilities>/title>
  >link>http://www.securiteam.com/exploits/6U00D20QAQ.html>/link>
  >description>>![CDATA[Many fields are not properly sanitised and some checks can be bypassed.]]>>/description>
 >/item>
 >item>
  >title>VideoCache vccleaner Root Vulnerability>/title>
  >link>http://www.securiteam.com/exploits/6T00C20QAY.html>/link>
  >description>>![CDATA[VideoCache is a Squid URL rewriter plugin written in Python for bandwidth optimization while browsing video sharing websites. Version 1.9.2 allows a user with the privileges of the Squid proxy server to append semi-arbitrary data to arbitrary files with root privileges, upon the administrator's execution of the 'vccleaner' utility.]]>>/description>
 >/item>
 >item>
  >title>QuickHeal Antivirus 2010 Local Privilege Escalation>/title>
  >link>http://www.securiteam.com/exploits/6S00B20QAQ.html>/link>
  >description>>![CDATA[All files under the install folder have Full control for BUILTIN\users and can be replace with malicious files.]]>>/description>
 >/item>
 >item>
  >title>Why Silent Updates Boost Security>/title>
  >link>http://www.securiteam.com/securityreviews/5NP0E00R5A.html>/link>
  >description>>![CDATA[Thomas Duebendorfer Google Switzerland GmbH and Stefan Frei Communication Systems Group, ETH Zurich, Switzerland looked into the performance of Web browser update mechanisms. The analysis of anonymized Google Web server logs allowed us to compare and rank the update strategies deployed by Google Chrome, Mozilla Firefox, Apple Safari, and Opera.]]>>/description>
 >/item>
 >item>
  >title>PDF Silent HTTP Form Repurposing Attacks>/title>
  >link>http://www.securiteam.com/securityreviews/5MP0D00R5G.html>/link>
  >description>>![CDATA[This paper sheds light on a modified approach to triggering web attacks through JavaScript protocol handler in the context of opening a PDF in a browser.]]>>/description>
 >/item>
 >item>
  >title>Frame Pointer Overwrite Demonstration (Linux)>/title>
  >link>http://www.securiteam.com/securityreviews/6M0010UNFQ.html>/link>
  >description>>![CDATA[This paper assumes you have read the proper background information and/or technical details about the above subject. If not, please do so, because this read does not include key concepts but instead technical exploitation examples. That being said, enjoy. Knowledge is power.]]>>/description>
 >/item>
 >item>
  >title>Format String Exploitation Demonstration (Linux)>/title>
  >link>http://www.securiteam.com/securityreviews/6E0030KNFO.html>/link>
  >description>>![CDATA[This paper assumes you have read the proper background information and/or technical details about the above subject. If not, please do so, because this read does not include key concepts but instead technical exploitation examples. That being said, enjoy. Knowledge is power.]]>>/description>
 >/item>
 >item>
  >title>Hacking SOHO Routers>/title>
  >link>http://www.securiteam.com/securityreviews/6D00C0KN5S.html>/link>
  >description>>![CDATA[The purpose of this paper is to outline the security measures being taken by vendors to prevent such attacks in their home routing products, what those security measures accomplish, and where they fall short. We will use existing network tools to examine common vulnerabilities in a range of popular devices and demonstrate weaknesses in the security of those devices; additionally,  we will examine common trends in security measures that have been duplicated across vendors, and examine how those trends help and hinder the security of their devices. In particular, we will examine the following home routers, which are some of the latest offerings from their respective vendors at the time of this writing:&nbsp;* Linksys WRT160N]]>>/description>
 >/item>
>/channel>
>/rss>
>rss version="2.0">
>channel>
    >title>Security Basics>/title>
    >link>http://seclists.org/#basics>/link>
    >description>A high-volume list which permits people to ask &quot;stupid questions&quot; without being derided as &quot;n00bs&quot;.  I recommend this list to network security newbies, but be sure to read Bugtraq and other lists as well.>/description>
  >item>
    >title>Re: Reporting SSH abuse>/title>
    >link>http://seclists.org/basics/2010/Mar/49>/link>
    >description>&lt;p&gt;Posted by James Bensley on Mar 10&lt;/p&gt;I find in these situations, who is it you should actually tell? In the&lt;br&gt;
a damn?&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Help hardening router>/title>
    >link>http://seclists.org/basics/2010/Mar/48>/link>
    >description>&lt;p&gt;Posted by Dave LaDuke on Mar 10&lt;/p&gt;Thanks for telling him, I had planned to have some fun later.&lt;br&gt;
Securing Apache Web Server with thawte...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>RE: Reporting SSH abuse>/title>
    >link>http://seclists.org/basics/2010/Mar/47>/link>
    >description>&lt;p&gt;Posted by Dan Lynch on Mar 10&lt;/p&gt;I could swear I once read an &amp;quot;authoritative&amp;quot; source doc on this subject, maybe an RFC (Site Security Handbook?), or &lt;br&gt;
&lt;a  rel=&quot;nofollow&quot; href=&quot;http://blog.anta.net/2007/04/18/composing-abuse-reports/&quot;&gt;http://blog.anta.net/2007/04/18/composing-abuse-reports/&lt;/a&gt;...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Reporting SSH abuse>/title>
    >link>http://seclists.org/basics/2010/Mar/46>/link>
    >description>&lt;p&gt;Posted by Liquid on Mar 10&lt;/p&gt;Dan Pilcheck wrote:&lt;br&gt;
the IP and what its hammering against. (ssh in this case). Hope this...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Help hardening router>/title>
    >link>http://seclists.org/basics/2010/Mar/45>/link>
    >description>&lt;p&gt;Posted by doug schmidt on Mar 10&lt;/p&gt;&lt;a  rel=&quot;nofollow&quot; href=&quot;http://www.cymru.com/Documents/secure-ios-template.html&quot;&gt;http://www.cymru.com/Documents/secure-ios-template.html&lt;/a&gt;&lt;br&gt;
install and use a...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Reporting SSH abuse>/title>
    >link>http://seclists.org/basics/2010/Mar/44>/link>
    >description>&lt;p&gt;Posted by Dan Pilcheck on Mar 09&lt;/p&gt;Hello list,&lt;br&gt;
up with. I suppose there's not much else to...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Help hardening router>/title>
    >link>http://seclists.org/basics/2010/Mar/43>/link>
    >description>&lt;p&gt;Posted by Mike Hale on Mar 09&lt;/p&gt;Wouldn't you want to encrypt your passwords in 5?  Level 7 can be&lt;br&gt;
cracked in seconds online.&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Help hardening router>/title>
    >link>http://seclists.org/basics/2010/Mar/42>/link>
    >description>&lt;p&gt;Posted by Curt Shaffer on Mar 09&lt;/p&gt;Step one is to now change all of your passwords unless you put bogus hashes in there when you posted this. Otherwise, &lt;br&gt;
it benefits your...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Help hardening router>/title>
    >link>http://seclists.org/basics/2010/Mar/41>/link>
    >description>&lt;p&gt;Posted by Alex on Mar 09&lt;/p&gt;Hi you&lt;br&gt;
the...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>RE: Help hardening router>/title>
    >link>http://seclists.org/basics/2010/Mar/40>/link>
    >description>&lt;p&gt;Posted by Jatmoko, Arif (ID - Jakarta) on Mar 09&lt;/p&gt;If this is a Cisco Catalyst, that should be support SSH. Just enable SSH by entering the command :&lt;br&gt;
You should, at least learn some basic command or consults about configuring Catalyst IOS to someone has...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: securing a segment of a network>/title>
    >link>http://seclists.org/basics/2010/Mar/39>/link>
    >description>&lt;p&gt;Posted by krymson on Mar 09&lt;/p&gt;Would that be a primary concern about the current state of audits and checklists? Basically, there is a *lot* of effort &lt;br&gt;
applicatiions, shares and/or privileges. Splitting the network does not address this in any way, at best it...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>FW: Help hardening router>/title>
    >link>http://seclists.org/basics/2010/Mar/38>/link>
    >description>&lt;p&gt;Posted by Craig S. Wright on Mar 09&lt;/p&gt;ARGGG!&lt;br&gt;
        Nipper, (Network Infrastructure Parser)...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Help hardening router>/title>
    >link>http://seclists.org/basics/2010/Mar/37>/link>
    >description>&lt;p&gt;Posted by John Morrison on Mar 09&lt;/p&gt;Joe,&lt;br&gt;
Download and installed the latest...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Help hardening router>/title>
    >link>http://seclists.org/basics/2010/Mar/36>/link>
    >description>&lt;p&gt;Posted by David Goldsmith on Mar 09&lt;/p&gt;Did you change the various encrypted passwords before posting the&lt;br&gt;
be sure to fully...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: securing a segment of a network>/title>
    >link>http://seclists.org/basics/2010/Mar/35>/link>
    >description>&lt;p&gt;Posted by Adam Pal on Mar 08&lt;/p&gt;Hi Roger,&lt;br&gt;
&amp;quot;Keep the same, maintain the...&lt;br&gt;>/description>
  >/item>
>/channel>
>/rss>
>rss version="2.0">
>channel>
>link>http://seclists.org/#jobs>/link>
>description>A popular list for advertising or finding jobs in the security field.  Employers post openings and job seekers post resumes (run by SecurityFocus).  For privacy reasons, only the current year is archived.>/description>
>/channel>
>/rss>
>rss version="2.0">
>channel>
>link>http://seclists.org/#vuln-dev>/link>
>description>A moderated list for discussing possible security issues and devising exploits for them.>/description>
>/channel>
>/rss>
>rss version="2.0">
>channel>
>title>SecurityFocus Vulnerabilities>/title>
>link>http://www.securityfocus.com>/link>
>description>
>/description>
>image> 
>title>SecurityFocus>/title> 
>url>http://www.securityfocus.com/rss/SFLogo_v1.gif>/url> 
>link>http://www.securityfocus.com>/link> 
>/image>
>item>
>title>Vuln: Microsoft Internet Explorer 'iepeers.dll' Remote Code Execution Vulnerability>/title>
>link>http://www.securityfocus.com/bid/38615>/link>
>description>>![CDATA[ Microsoft Internet Explorer 'iepeers.dll' Remote Code Execution Vulnerability ]]>>/description>
>/item>
>item>
>title>Vuln: MoinMoin Multiple Unspecified Security Vulnerabilities>/title>
>link>http://www.securityfocus.com/bid/38023>/link>
>description>>![CDATA[ MoinMoin Multiple Unspecified Security Vulnerabilities ]]>>/description>
>/item>
>item>
>title>Vuln: Linux Kernel Subsystem Connector Missing Capability Check Security Bypass Vulnerabilities>/title>
>link>http://www.securityfocus.com/bid/36834>/link>
>description>>![CDATA[ Linux Kernel Subsystem Connector Missing Capability Check Security Bypass Vulnerabilities ]]>>/description>
>/item>
>item>
>title>Vuln: Linux Kernel PI Futex Invalid Pointer Dereference Local Denial of Service Vulnerability>/title>
>link>http://www.securityfocus.com/bid/38165>/link>
>description>>![CDATA[ Linux Kernel PI Futex Invalid Pointer Dereference Local Denial of Service Vulnerability ]]>>/description>
>/item>
>item>
>title>Bugtraq: VUPEN Security Research - Apple Safari ColorSync Profile Integer Overflow Vulnerability>/title>
>link>http://www.securityfocus.com/archive/1/510053>/link>
>description>>![CDATA[ VUPEN Security Research - Apple Safari ColorSync Profile Integer Overflow Vulnerability ]]>>/description>
>/item>
>item>
>title>Bugtraq: [XSS] I found a xss in phpmyadmin 3.3.0 when we create new database in interface!>/title>
>link>http://www.securityfocus.com/archive/1/510052>/link>
>description>>![CDATA[ [XSS] I found a xss in phpmyadmin 3.3.0 when we create new database in interface! ]]>>/description>
>/item>
>item>
>title>Bugtraq: [SECURITY] [DSA 2014-1] New moin packages fix several vulnerabilities>/title>
>link>http://www.securityfocus.com/archive/1/510051>/link>
>description>>![CDATA[ [SECURITY] [DSA 2014-1] New moin packages fix several vulnerabilities ]]>>/description>
>/item>
>item>
>title>Bugtraq: [USN-911-1] MoinMoin vulnerabilities>/title>
>link>http://www.securityfocus.com/archive/1/510049>/link>
>description>>![CDATA[ [USN-911-1] MoinMoin vulnerabilities ]]>>/description>
>/item>
>item>
>title>More rss feeds from SecurityFocus>/title>
>link>http://www.securityfocus.com/rss/index.shtml>/link>
>description>News, Infocus, Columns, Vulnerabilities, Bugtraq ...>/description>
>/item>
>/channel>
>/rss>
>rss version="2.0">
>channel>
    >title>VulnWatch>/title>
    >link>http://seclists.org/#vulnwatch>/link>
    >description>A non-discussion, non-patch, all-vulnerability annoucement list supported and run by a community of volunteer moderators distributed around the world.>/description>
>/channel>
>/rss>
>rss version="2.0">
>channel>
    >title>Web App Security>/title>
    >link>http://seclists.org/#webappsec>/link>
    >description>Provides insights on the unique challenges which make web applications notoriously hard to secure, as well as attack methods including SQL injection, cross-site scripting (XSS), cross-site request forgery, and more.>/description>
  >item>
    >title>Re: Need a real Java web application with vulnerabilities>/title>
    >link>http://seclists.org/webappsec/2010/q1/42>/link>
    >description>&lt;p&gt;Posted by Yu Qu on Mar 08&lt;/p&gt;Hi, Peine and others:&lt;br&gt;
Ministry of Education Key Lab for Intelligent...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>RE: [WEB SECURITY] Re: Need a real Java web application with vulnerabilities>/title>
    >link>http://seclists.org/webappsec/2010/q1/41>/link>
    >description>&lt;p&gt;Posted by Calderon, Juan Carlos (GE, Corporate, consultant) on Mar 08&lt;/p&gt;Yeah, Steve's is just a nice approach, my experience is the same, you&lt;br&gt;
To:...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Need a real Java web application with vulnerabilities>/title>
    >link>http://seclists.org/webappsec/2010/q1/40>/link>
    >description>&lt;p&gt;Posted by Morgan Reed on Mar 08&lt;/p&gt;Sounds like the right approach, though I'm not aware of any Java based CMS.&lt;br&gt;
&lt;a  rel=&quot;nofollow&quot; href=&quot;http://www.cenzic.com/2009HClaunch_Securityfocus&quot;&gt;http://www.cenzic.com/2009HClaunch_Securityfocus&lt;/a&gt;...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: [WEB SECURITY] Re: Need a real Java web application with vulnerabilities>/title>
    >link>http://seclists.org/webappsec/2010/q1/39>/link>
    >description>&lt;p&gt;Posted by Steve Pinkham on Mar 08&lt;/p&gt;Rogan Dawes wrote:&lt;br&gt;
 &amp;gt;...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Security BSides Austin - sponsors needed!>/title>
    >link>http://seclists.org/webappsec/2010/q1/38>/link>
    >description>&lt;p&gt;Posted by Benjamin Tomhave on Mar 08&lt;/p&gt;Hi folks,&lt;br&gt;
become officially...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Need a real Java web application with vulnerabilities>/title>
    >link>http://seclists.org/webappsec/2010/q1/37>/link>
    >description>&lt;p&gt;Posted by Marc-André Laverdière on Mar 08&lt;/p&gt;You can have a try at Securibench. Some of the apps in there don't run without &lt;br&gt;
It's Finally Here - The Cenzic Website HealthCheck....&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Need a real Java web application with vulnerabilities>/title>
    >link>http://seclists.org/webappsec/2010/q1/36>/link>
    >description>&lt;p&gt;Posted by Federico Maggi on Mar 08&lt;/p&gt;        OWASP's WebGoat Project has designed a non-trivial web application in Java, exactly for this purpose.&lt;br&gt;
--------------------------------------&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Need a real Java web application with vulnerabilities>/title>
    >link>http://seclists.org/webappsec/2010/q1/35>/link>
    >description>&lt;p&gt;Posted by Kvetch on Mar 08&lt;/p&gt;Check out Daffodil CRM - &lt;a  rel=&quot;nofollow&quot; href=&quot;http://sourceforge.net/projects/daffodilcrm/&quot;&gt;http://sourceforge.net/projects/daffodilcrm/&lt;/a&gt;&lt;br&gt;
--------------------------------------&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Need a real Java web application with vulnerabilities>/title>
    >link>http://seclists.org/webappsec/2010/q1/34>/link>
    >description>&lt;p&gt;Posted by Wagner Elias on Mar 08&lt;/p&gt;OWASP Broken Web App Project contains WebGoat an app vulnerable in Java.&lt;br&gt;
2010/3/8 Holger Peine &amp;lt;Holger.Peine () fh-hannover de&amp;gt;:&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Need a real Java web application with vulnerabilities>/title>
    >link>http://seclists.org/webappsec/2010/q1/33>/link>
    >description>&lt;p&gt;Posted by Holger Peine on Mar 08&lt;/p&gt;Hello,&lt;br&gt;
-...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>SamuraiWTF 0.8 released>/title>
    >link>http://seclists.org/webappsec/2010/q1/32>/link>
    >description>&lt;p&gt;Posted by Kevin Johnson on Mar 05&lt;/p&gt;Hi all,&lt;br&gt;
cell: 904.403.8024&lt;br&gt;>/description>
  >/item>
  >item>
    >title>removing version identifying attribution data>/title>
    >link>http://seclists.org/webappsec/2010/q1/31>/link>
    >description>&lt;p&gt;Posted by Robin Wood on Mar 04&lt;/p&gt;With a lot of open source web apps there is usually some kind of file&lt;br&gt;
rather not expose my clients to data leakage which I...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Vulnerabilities Animated Clips>/title>
    >link>http://seclists.org/webappsec/2010/q1/30>/link>
    >description>&lt;p&gt;Posted by Maty Siman on Mar 03&lt;/p&gt;One of the biggest challenges of the security community is to build true&lt;br&gt;
help developers understand a...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Advanced PHP Hacking>/title>
    >link>http://seclists.org/webappsec/2010/q1/29>/link>
    >description>&lt;p&gt;Posted by Laurent OUDOT at TEHTRI-Security on Mar 03&lt;/p&gt;Hi,&lt;br&gt;
deeper down to your...&lt;br&gt;>/description>
  >/item>
  >item>
    >title>Re: Cookie Secure Attribute - Clarification>/title>
    >link>http://seclists.org/webappsec/2010/q1/28>/link>
    >description>&lt;p&gt;Posted by 51l3n73y3s on Mar 01&lt;/p&gt;I would make the attribute as Secure and then also set the requireSSL of the &lt;br&gt;
This list is...&lt;br&gt;>/description>
  >/item>
>/channel>
>/rss>
>rss version="2.0">
>channel>
>/channel>
>/rss>
</BODY>
