Web 2.0 (Really Simple Syndication) RSS, Atom, and Feed Security and Hacking

简介: Below is a collection of resources that I've gathered that I've decided to stick in one central location.

Below is a collection of resources that I've gathered that I've decided to stick in one central location. If I'm missing a link please let me know by filling out our Contact Form.


Articles

Vulnerability Scanning Web 2.0 Client-Side Components
08/08/06 Microsoft Team RSS Blog discusses more RSS Risks
Feed Injection In Web 2.0: Hacking RSS and Atom Feed Implementations, Robert Auger 2006
RSS Security, FeedForAll 2005
RSS Security, Greg Reinacker 2005
RSS security issues and useful reading, 2004
Private RSS Feeds: Support for security in aggregators, 2003
How to consume RSS safely
Slightly more secure RSS-to-local-HTML
RSS Security, September 23, 2005


News Articles:

Web 2.0 Means Re-examining IT Security Approach (08/07)
02/21/07 Read RSS, get hacked
Blogs could spread malicious code as they spread news
09/11/2006 More RSS Security Issues Discovered
09/08/2006 RSS Security Issues Discovered in ICQ
Blog Feeds Vulnerable To Embedded Malware
RSS, Atom feeds ripe for attack
RSS For Hackers?
RSS offers opportunities, risks
Blog feeds may carry security risk
French Window: Secure RSS
RSS: The next malware target?, 2006
Do RSS feeds come equipped with security risks?
RSS malware plague predicted for 2006
Microsoft ready to discuss RSS Security
Secure RSS Courts Enterprise Adoption, 2005
Security: The Missing Ingredient in Buzz About RSS
Sharon Housely on RSS Security


Forum Posts and Other Random Links:

Zero Day Subscriptions: Using RSS and Atom Feeds As Attack Delivery Systems (Power Point)
Taking RSS security seriously
Secure RSS, 2003
.NET Buzz Forum Secure RSS
RSS: Really Simple Syndication, Microsoft
RSS Security: Password Protection
Secure RSS Feeds?
RSS Security, cote's Drunk and Retired
RSS Security, S. Housley
RSS Security, MillionPostsBlog


RSS Documentation & Other

Zero Day Subscriptions: Using RSS and Atom feeds As Attack Delivery Systems
What is RSS?, XML.com
Wikipedia RSS Entry
RSS 2.0 Specification


RSS Newsgroups

comp.text.xml
microsoft.public.xml
microsoft.public.dotnet.framework.aspnet
netscape.public.mozilla.xml

目录
相关文章
|
存储 安全 前端开发
第6章 Spring Security 的 Web 安全性(2024 最新版)(上)
第6章 Spring Security 的 Web 安全性(2024 最新版)
412 0
|
存储 安全 网络协议
Web Security 之 CSRF
Web Security 之 CSRF
429 0
|
移动开发 负载均衡 安全
Web Security 之 HTTP request smuggling(上)
Web Security 之 HTTP request smuggling
795 0
|
安全 网络协议 Unix
Web Security 之 OS command injection
Web Security 之 OS command injection
604 0
|
安全 Java Go
第6章 Spring Security 的 Web 安全性(2024 最新版)(下)
第6章 Spring Security 的 Web 安全性(2024 最新版)
480 1
|
安全 Java Go
使用Spring Security保障你的Web应用安全
使用Spring Security保障你的Web应用安全
334 0
|
SQL 安全 Java
Web Security 之 Server-side template injection
Web Security 之 Server-side template injection
560 0
|
存储 安全 Java
Web Security 之 Insecure deserialization
Web Security 之 Insecure deserialization
281 0
|
存储 SQL JavaScript
Web Security 之 DOM-based vulnerabilities
Web Security 之 DOM-based vulnerabilities
388 0
|
缓存 安全 网络协议
Web Security 之 HTTP Host header attacks(下)
Web Security 之 HTTP Host header attacks
541 0