<?xml version="1.0" encoding="UTF-8"?><!-- generator="wordpress/2.2.3" -->
<rss version="2.0" 
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	>
<channel>
	<title>Comments on: You Don&#8217;t Know What My Twitter Leaks</title>
	<link>http://hackademix.net/2009/01/13/you-dont-know-what-my-twitter-leaks/</link>
	<description>Giorgio Maone's answers to the Web, the Universe, and Everything</description>
	<pubDate>Thu, 09 Sep 2010 15:23:49 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.2.3</generator>

	<item>
		<title>By: JSONP (yIII): Cuestiones de seguridad y ASP.NET rompiendo la compatibilidad en 3.5 - Blog de José Manuel Alarcón Aguín en Geeks.ms (alternativo a www.JASoft.org) - Geeks•ms</title>
		<link>http://hackademix.net/2009/01/13/you-dont-know-what-my-twitter-leaks/#comment-15276</link>
		<dc:creator>JSONP (yIII): Cuestiones de seguridad y ASP.NET rompiendo la compatibilidad en 3.5 - Blog de José Manuel Alarcón Aguín en Geeks.ms (alternativo a www.JASoft.org) - Geeks•ms</dc:creator>
		<pubDate>Mon, 12 Oct 2009 13:49:53 +0000</pubDate>
		<guid>http://hackademix.net/2009/01/13/you-dont-know-what-my-twitter-leaks/#comment-15276</guid>
		<description>[...] utilizar (muchas de las cuales ni siquiera son conocidas hoy, pero pueden surgir). Por ejemplo, Twitter fue crackeado no hace mucho usando técnicas avanzadas de JavaScript y el acceso a los datos JSON remotos [...]</description>
		<content:encoded><![CDATA[<p>[&#8230;] utilizar (muchas de las cuales ni siquiera son conocidas hoy, pero pueden surgir). Por ejemplo, Twitter fue crackeado no hace mucho usando técnicas avanzadas de JavaScript y el acceso a los datos JSON remotos [&#8230;]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: JSON Hijacking &#124; Test Blog</title>
		<link>http://hackademix.net/2009/01/13/you-dont-know-what-my-twitter-leaks/#comment-13500</link>
		<dc:creator>JSON Hijacking &#124; Test Blog</dc:creator>
		<pubDate>Fri, 26 Jun 2009 04:02:38 +0000</pubDate>
		<guid>http://hackademix.net/2009/01/13/you-dont-know-what-my-twitter-leaks/#comment-13500</guid>
		<description>[...] However, there’s another related exploit that seems to affect many more browsers. It was brought to my attention recently by someone at Microsoft and Scott Hanselman and I demonstrated it at the Norwegian Developers Conference last week, though it has been demonstrated against Twitter in the past. [...]</description>
		<content:encoded><![CDATA[<p>[&#8230;] However, there’s another related exploit that seems to affect many more browsers. It was brought to my attention recently by someone at Microsoft and Scott Hanselman and I demonstrated it at the Norwegian Developers Conference last week, though it has been demonstrated against Twitter in the past. [&#8230;]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Firefox Add-On NoScript Updated to Version 1.9.0.6 &#124; Infosecurity.US</title>
		<link>http://hackademix.net/2009/01/13/you-dont-know-what-my-twitter-leaks/#comment-11161</link>
		<dc:creator>Firefox Add-On NoScript Updated to Version 1.9.0.6 &#124; Infosecurity.US</dc:creator>
		<pubDate>Mon, 23 Feb 2009 19:05:57 +0000</pubDate>
		<guid>http://hackademix.net/2009/01/13/you-dont-know-what-my-twitter-leaks/#comment-11161</guid>
		<description>[...] New exclusive protection against JSON and E4X hijacking. [...]</description>
		<content:encoded><![CDATA[<p>[&#8230;] New exclusive protection against JSON and E4X hijacking. [&#8230;]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: wawadave</title>
		<link>http://hackademix.net/2009/01/13/you-dont-know-what-my-twitter-leaks/#comment-10603</link>
		<dc:creator>wawadave</dc:creator>
		<pubDate>Mon, 26 Jan 2009 15:13:44 +0000</pubDate>
		<guid>http://hackademix.net/2009/01/13/you-dont-know-what-my-twitter-leaks/#comment-10603</guid>
		<description>though you say writing a filter is easy i do not know how as i,m sure many do not.
Plus there is allso the need to know what sites would have to be added again i do not know. So others will not ether.</description>
		<content:encoded><![CDATA[<p>though you say writing a filter is easy i do not know how as i,m sure many do not.<br />
Plus there is allso the need to know what sites would have to be added again i do not know. So others will not ether.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Woot! What’s Buzzing Now? » Blog Archive » This is What I’M Looking At Today. « Shades’ Trades &#38; More</title>
		<link>http://hackademix.net/2009/01/13/you-dont-know-what-my-twitter-leaks/#comment-10562</link>
		<dc:creator>Woot! What’s Buzzing Now? » Blog Archive » This is What I’M Looking At Today. « Shades’ Trades &#38; More</dc:creator>
		<pubDate>Sat, 24 Jan 2009 11:20:37 +0000</pubDate>
		<guid>http://hackademix.net/2009/01/13/you-dont-know-what-my-twitter-leaks/#comment-10562</guid>
		<description>[...] hackademix.net » You Don't Know What My Twitter Leaks [...]</description>
		<content:encoded><![CDATA[<p>[&#8230;] hackademix.net » You Don&#8217;t Know What My Twitter Leaks [&#8230;]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: links for 2009-01-13 &#124; Yostivanich.com</title>
		<link>http://hackademix.net/2009/01/13/you-dont-know-what-my-twitter-leaks/#comment-10383</link>
		<dc:creator>links for 2009-01-13 &#124; Yostivanich.com</dc:creator>
		<pubDate>Tue, 13 Jan 2009 15:06:34 +0000</pubDate>
		<guid>http://hackademix.net/2009/01/13/you-dont-know-what-my-twitter-leaks/#comment-10383</guid>
		<description>[...] hackademix.net » You Don't Know What My Twitter Leaks Another Twitter security hole. (tags: twitter security programming webdevelopment) [...]</description>
		<content:encoded><![CDATA[<p>[&#8230;] hackademix.net » You Don&#8217;t Know What My Twitter Leaks Another Twitter security hole. (tags: twitter security programming webdevelopment) [&#8230;]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Gareth Heyes</title>
		<link>http://hackademix.net/2009/01/13/you-dont-know-what-my-twitter-leaks/#comment-10382</link>
		<dc:creator>Gareth Heyes</dc:creator>
		<pubDate>Tue, 13 Jan 2009 15:06:00 +0000</pubDate>
		<guid>http://hackademix.net/2009/01/13/you-dont-know-what-my-twitter-leaks/#comment-10382</guid>
		<description>@Giorgio

maone-20rc1 takes priority :)
Congrats btw!</description>
		<content:encoded><![CDATA[<p>@Giorgio</p>
<p>maone-20rc1 takes priority :)<br />
Congrats btw!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Giorgio</title>
		<link>http://hackademix.net/2009/01/13/you-dont-know-what-my-twitter-leaks/#comment-10381</link>
		<dc:creator>Giorgio</dc:creator>
		<pubDate>Tue, 13 Jan 2009 12:21:44 +0000</pubDate>
		<guid>http://hackademix.net/2009/01/13/you-dont-know-what-my-twitter-leaks/#comment-10381</guid>
		<description>@&lt;b&gt;Gareth&lt;/b&gt;:
ABE should be ready for general consumption by June (there's even a formal project plan), but I should have something testable by the end of February, unless &lt;a href="http://hackademix.net/2008/09/20/maone-20rc1/" rel="nofollow"&gt;a more important release&lt;/a&gt; interferes too much.</description>
		<content:encoded><![CDATA[<p>@<b>Gareth</b>:<br />
ABE should be ready for general consumption by June (there&#8217;s even a formal project plan), but I should have something testable by the end of February, unless <a href="http://hackademix.net/2008/09/20/maone-20rc1/" rel="nofollow">a more important release</a> interferes too much.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Gareth Heyes</title>
		<link>http://hackademix.net/2009/01/13/you-dont-know-what-my-twitter-leaks/#comment-10378</link>
		<dc:creator>Gareth Heyes</dc:creator>
		<pubDate>Tue, 13 Jan 2009 11:09:08 +0000</pubDate>
		<guid>http://hackademix.net/2009/01/13/you-dont-know-what-my-twitter-leaks/#comment-10378</guid>
		<description>@Giorgio

Cool I like this feature:-
Site www.somesite.com/logout
Accept GET, POST from SELF
Deny

When is it ready? Also is there gonna be a UI for the rules creation?</description>
		<content:encoded><![CDATA[<p>@Giorgio</p>
<p>Cool I like this feature:-<br />
Site <a href="http://www.somesite.com/logout" rel="nofollow">www.somesite.com/logout</a><br />
Accept GET, POST from SELF<br />
Deny</p>
<p>When is it ready? Also is there gonna be a UI for the rules creation?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Giorgio</title>
		<link>http://hackademix.net/2009/01/13/you-dont-know-what-my-twitter-leaks/#comment-10375</link>
		<dc:creator>Giorgio</dc:creator>
		<pubDate>Tue, 13 Jan 2009 10:39:12 +0000</pubDate>
		<guid>http://hackademix.net/2009/01/13/you-dont-know-what-my-twitter-leaks/#comment-10375</guid>
		<description>@&lt;b&gt;Gareth&lt;/b&gt;:
As I told you, &lt;a href="http://hackademix.net/2008/12/20/introducing-abe/" rel="nofollow"&gt;the ultimate client-side protection against CSRF will be ABE&lt;/a&gt;.</description>
		<content:encoded><![CDATA[<p>@<b>Gareth</b>:<br />
As I told you, <a href="http://hackademix.net/2008/12/20/introducing-abe/" rel="nofollow">the ultimate client-side protection against CSRF will be ABE</a>.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
