<?xml version="1.0" encoding="UTF-8"?><!-- generator="wordpress/2.2.3" -->
<rss version="2.0" 
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	>
<channel>
	<title>Comments on: Replace What?!</title>
	<link>http://hackademix.net/2008/06/21/replace-what/</link>
	<description>Giorgio Maone's answers to the Web, the Universe, and Everything</description>
	<pubDate>Wed, 19 Nov 2008 01:00:18 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.2.3</generator>

	<item>
		<title>By: Aerik</title>
		<link>http://hackademix.net/2008/06/21/replace-what/#comment-8347</link>
		<dc:creator>Aerik</dc:creator>
		<pubDate>Sun, 22 Jun 2008 18:13:56 +0000</pubDate>
		<guid>http://hackademix.net/2008/06/21/replace-what/#comment-8347</guid>
		<description>&lt;blockquote cite="idiot"&gt;Update: My mistake in reading the minutes, we aren't removing NoScript, we're disabling NoScript script/plugin blocking for VPN users, in addition to playing with adding SSP. &lt;/blockquote&gt;</description>
		<content:encoded><![CDATA[<blockquote cite="idiot"><p>Update: My mistake in reading the minutes, we aren&#8217;t removing NoScript, we&#8217;re disabling NoScript script/plugin blocking for VPN users, in addition to playing with adding SSP. </p></blockquote>
]]></content:encoded>
	</item>
	<item>
		<title>By: Giorgio</title>
		<link>http://hackademix.net/2008/06/21/replace-what/#comment-8331</link>
		<dc:creator>Giorgio</dc:creator>
		<pubDate>Sat, 21 Jun 2008 16:47:59 +0000</pubDate>
		<guid>http://hackademix.net/2008/06/21/replace-what/#comment-8331</guid>
		<description>&lt;blockquote&gt; is now corrected to SSP (site security policy)&lt;/blockquote&gt;
... making his statements even more problematic :)</description>
		<content:encoded><![CDATA[<blockquote><p> is now corrected to SSP (site security policy)</p></blockquote>
<p>&#8230; making his statements even more problematic :)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ben</title>
		<link>http://hackademix.net/2008/06/21/replace-what/#comment-8330</link>
		<dc:creator>Ben</dc:creator>
		<pubDate>Sat, 21 Jun 2008 16:33:53 +0000</pubDate>
		<guid>http://hackademix.net/2008/06/21/replace-what/#comment-8330</guid>
		<description>The site in it's comments is now corrected to SSP (site security policy).</description>
		<content:encoded><![CDATA[<p>The site in it&#8217;s comments is now corrected to SSP (site security policy).</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Giorgio</title>
		<link>http://hackademix.net/2008/06/21/replace-what/#comment-8328</link>
		<dc:creator>Giorgio</dc:creator>
		<pubDate>Sat, 21 Jun 2008 14:22:44 +0000</pubDate>
		<guid>http://hackademix.net/2008/06/21/replace-what/#comment-8328</guid>
		<description>@&lt;b&gt;.mario&lt;/b&gt;:
ROTFL, &lt;strong&gt;Cross Medium Scripting&#174;&lt;/strong&gt; FTW!</description>
		<content:encoded><![CDATA[<p>@<b>.mario</b>:<br />
ROTFL, <strong>Cross Medium Scripting&reg;</strong> FTW!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: .mario</title>
		<link>http://hackademix.net/2008/06/21/replace-what/#comment-8327</link>
		<dc:creator>.mario</dc:creator>
		<pubDate>Sat, 21 Jun 2008 14:13:53 +0000</pubDate>
		<guid>http://hackademix.net/2008/06/21/replace-what/#comment-8327</guid>
		<description>I think it means Standard Parallel Port - as to be seen here: http://de.wikipedia.org/wiki/Standard_Parallel_Port. Try to execute on a website that has been printed out - quite a quest.</description>
		<content:encoded><![CDATA[<p>I think it means Standard Parallel Port - as to be seen here: <a href="http://de.wikipedia.org/wiki/Standard_Parallel_Port." rel="nofollow">http://de.wikipedia.org/wiki/Standard_Parallel_Port.</a> Try to execute on a website that has been printed out - quite a quest.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Giorgio</title>
		<link>http://hackademix.net/2008/06/21/replace-what/#comment-8326</link>
		<dc:creator>Giorgio</dc:creator>
		<pubDate>Sat, 21 Jun 2008 13:21:47 +0000</pubDate>
		<guid>http://hackademix.net/2008/06/21/replace-what/#comment-8326</guid>
		<description>@&lt;b&gt;sirdarckcat&lt;/b&gt;:
I could not sniff any X-SSP header on their site (maybe they're in some restricted area only?)
Anyway, &lt;a href="https://activate.xerobank.com/auth/login?username=%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E%3Cspan" target="_blank" rel="nofollow external" rel="nofollow"&gt;they definitely need something here&lt;/a&gt;.</description>
		<content:encoded><![CDATA[<p>@<b>sirdarckcat</b>:<br />
I could not sniff any X-SSP header on their site (maybe they&#8217;re in some restricted area only?)<br />
Anyway, <a href="https://activate.xerobank.com/auth/login?username=%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E%3Cspan" target="_blank" rel="nofollow external" rel="nofollow">they definitely need something here</a>.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: sirdarckcat</title>
		<link>http://hackademix.net/2008/06/21/replace-what/#comment-8325</link>
		<dc:creator>sirdarckcat</dc:creator>
		<pubDate>Sat, 21 Jun 2008 12:48:41 +0000</pubDate>
		<guid>http://hackademix.net/2008/06/21/replace-what/#comment-8325</guid>
		<description>I think he is saying that the users of xerobank dont need NoScript because XeroBank's website has their own anti-xss measures.</description>
		<content:encoded><![CDATA[<p>I think he is saying that the users of xerobank dont need NoScript because XeroBank&#8217;s website has their own anti-xss measures.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
