<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"
    xmlns:dc="http://purl.org/dc/elements/1.1/"
     xmlns:admin="http://webns.net/mvcb/"
     xmlns:content="http://purl.org/rss/1.0/modules/content/"
     xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#">
	<channel>
	<title>MetaFilter posts tagged with vulnerability</title>
	<link>http://www.metafilter.com/tags/vulnerability</link>
	<description>Posts tagged with 'vulnerability' at MetaFilter.</description>
	<pubDate>Wed, 09 Jul 2008 18:57:48 -0800</pubDate> <lastBuildDate>Wed, 09 Jul 2008 18:57:48 -0800</lastBuildDate>

	<language>en-us</language>
	<docs>http://blogs.law.harvard.edu/tech/rss</docs>
	<ttl>60</ttl>
	<item>
		<title>And DJB&apos;s $500 is safe for another day</title>
		<link>http://www.metafilter.com/73180/And%2DDJBs%2D500%2Dis%2Dsafe%2Dfor%2Danother%2Dday</link>
		<description> &lt;a href=&apos;http://blogs.zdnet.com/security/?p=1460&apos;&gt;A major flaw in the DNS system&lt;/a&gt; is promised to be revealed at the next &lt;a href=&apos;http://www.blackhat.com/&apos;&gt;Black Hat conference&lt;/a&gt;. Convinced it was too important to wait, security researcher &lt;a href=&apos;http://video.google.com/videoplay?docid=3470502418262982787&apos;&gt;Dan Kaminsky&lt;/a&gt; &lt;small&gt;(video, autoplays)&lt;/small&gt; convinced &lt;a href=&apos;http://www.microsoft.com/technet/security/Bulletin/MS08-037.mspx&apos;&gt;several&lt;/a&gt; &lt;a href=&apos;http://www.cisco.com/warp/public/707/cisco-sa-20080708-dns.shtml&apos;&gt;software&lt;/a&gt; &lt;a href=&apos;http://sunsolve.sun.com/search/document.do?assetkey=1-26-239392-1&apos;&gt;vendors&lt;/a&gt; to issue emergency patches today, before publicizing details of the attack. &lt;a href=&apos;http://blogs.zdnet.com/security/?p=1466&apos;&gt;It can&apos;t be that serious though, can it&lt;/a&gt;? &lt;a href=&apos;http://www.matasano.com/log/1093/patch-your-non-djbdns-server-now-dan-was-right-i-was-wrong/&apos;&gt;Oh yes it can&lt;/a&gt;.  </description>
		<guid isPermaLink="false">tag:metafilter.com,2008:site.73180</guid>
		<pubDate>Wed, 09 Jul 2008 18:57:48 -0800</pubDate>
		<category>attack</category>
		<category>dankaminsky</category>
		<category>dns</category>
		<category>exploit</category>
		<category>flaw</category>
		<category>hack</category>
		<category>vulnerability</category>
		<dc:creator>Skorgu</dc:creator>
	</item>
      <item>
		<title>Fear(less)</title>
		<link>http://www.metafilter.com/68938/Fearless</link>
		<description> &lt;a href=&quot;http://www.heart-2-heart.ca/men/page4.html&quot;&gt;Why&lt;/a&gt; &lt;a href=&quot;http://gleez.com/blog/flickalanie/mens-fear&quot;&gt;Real&lt;/a&gt; &lt;a href=&quot;http://www.students.haverford.edu/masar/documents/Fear_of_Men.pdf&quot;&gt;Men&lt;/a&gt; &lt;a href=&quot;http://newscafe.ansci.usu.edu/archive/feb2001/0205_violence1.html&quot;&gt;Don&apos;t&lt;/a&gt; &lt;a href=&quot;http://www.apa.org/monitor/julaug99/youth.html&quot;&gt;Cry&lt;/a&gt; &lt;small&gt;[&lt;a href=&quot;http://www.youtube.com/watch?v=gXR3YdA3cjc&quot;&gt;YouTube&lt;/a&gt;]&lt;/small&gt; On &lt;a href=&quot;http://blogs.usatoday.com/onpolitics/2007/12/maybe-men-can-c.html&quot;&gt; the&lt;/a&gt; other &lt;a href=&quot;http://www.womensmedia.com/new/Clark-Nancy-New-York-Times.shtml&quot;&gt; hand&lt;/a&gt;. </description>
		<guid isPermaLink="false">tag:metafilter.com,2008:site.68938</guid>
		<pubDate>Sat, 09 Feb 2008 12:25:05 -0800</pubDate>
		<category>Boys</category>
		<category>Emotions</category>
		<category>Expressions</category>
		<category>Feelings</category>
		<category>gender</category>
		<category>Men</category>
		<category>psychology</category>
		<category>Sensitivity</category>
		<category>sterotyping</category>
		<category>Vulnerability</category>
		<category>Women</category>
		<dc:creator>hadjiboy</dc:creator>
	</item>
      <item>
		<title>Introducing Jikto</title>
		<link>http://www.metafilter.com/59820/Introducing%2DJikto</link>
		<description>&lt;a href="http://news.com.com/Tool+turns+unsuspecting+surfers+into+hacking+help/2100-1002_3-6169034.html?tag=nefd.lede"&gt;Klaatu barada...Jikto?&lt;/a&gt; First there was &lt;a href=&quot;http://www.cirt.net/code/nikto.shtml&quot;&gt;Nikto&lt;/a&gt;.  Then along came &lt;a href=&quot;http://www.sensepost.com/research/wikto/&quot;&gt;Wikto&lt;/a&gt;. Last Saturday at &lt;a href=&quot;http://www.shmoocon.org/&quot;&gt;Shmoocon&lt;/a&gt; &lt;a href=&quot;http://portal.spidynamics.com/blogs/spilabs/archive/2007/03/22/Speaking-at-Shmoo.aspx&quot;&gt;Billy Hoffman&lt;/a&gt; &lt;a href=&quot;http://www.nytimes.com/cnet/CNET_2100-1002_3-6170223.html?_r=1&amp;oref=slogin&quot;&gt;introduced&lt;/a&gt; the world to &lt;a href=&quot;http://news.com.com/Tool+turns+unsuspecting+surfers+into+hacking+help/2100-1002_3-6169034.html?tag=nefd.lede&quot;&gt;Jitko&lt;/a&gt;, a client-side vulnerability scanner that exploits your browser &amp;amp; turns your PC into a platform for finding holes in computers across the Internet (or behind your firewall).  &lt;a href=&quot;http://www.memestreams.net/thread/bid29678/&quot;&gt;Reactions were mixed&lt;/a&gt;.  &lt;a href=&quot;http://jeremiahgrossman.blogspot.com/2007/03/jikto-crossing-line.html&quot;&gt;Does Jikto go too far?&lt;/a&gt;  </description>
		<guid isPermaLink="false">tag:metafilter.com,2007:site.59820</guid>
		<pubDate>Wed, 28 Mar 2007 13:40:05 -0800</pubDate>
		<category>ajax</category>
		<category>application</category>
		<category>client-side</category>
		<category>computer</category>
		<category>hacking</category>
		<category>javascript</category>
		<category>pentest</category>
		<category>scanner</category>
		<category>security</category>
		<category>vulnerability</category>
		<category>xss</category>
		<dc:creator>scalefree</dc:creator>
	</item>
      <item>
		<title>Tinfoil wallets anyone?</title>
		<link>http://www.metafilter.com/53528/Tinfoil%2Dwallets%2Danyone</link>
		<description>&lt;a href="http://www.youtube.com/watch?v=-XXaqraF7pI&amp;amp;eurl="&gt;&lt;a href=&quot;http://travel.state.gov/passport/eppt/eppt_2788.html#One&quot;&gt;Technological convenience&lt;/a&gt; or &lt;a href=&quot;http://eecue.com/RFID_tech.pdf&quot;&gt;target identifier?&lt;/a&gt;&lt;/a&gt; In the most recent chapter in the RFID + US Passport story, LA-based security analysts &lt;a href=&quot;http://www.flexilis.com/&quot;&gt;Flexilis&lt;/a&gt;--those of the &lt;a href=&quot;http://www.makezine.com/blog/archive/2005/07/_defcon_rfid_wo.html&quot;&gt;world record attempt RFID read&lt;/a&gt; at last year&apos;s &lt;a href=&quot;http://www.defcon.org/&quot;&gt;DEFCON&lt;/a&gt;--noticed a security vulnerability in the RF shielding being proposed for the October release of the next generation US passport. And they made a hell of a &lt;a href=&quot;http://www.youtube.com/watch?v=-XXaqraF7pI&amp;eurl=&quot;&gt;proof of concept video&lt;/a&gt; showing a possible exploit of the vulnerability.  </description>
		<guid isPermaLink="false">tag:metafilter.com,2006:site.53528</guid>
		<pubDate>Thu, 03 Aug 2006 04:42:33 -0800</pubDate>
		<category>defcon</category>
		<category>flexilis</category>
		<category>rfid</category>
		<category>vulnerability</category>
		<dc:creator>quite unimportant</dc:creator>
	</item>
      <item>
		<title>Signaling Vulnerabilities in Wiretapping Systems</title>
		<link>http://www.metafilter.com/47134/Signaling%2DVulnerabilities%2Din%2DWiretapping%2DSystems</link>
		<description>&lt;a href="http://www.crypto.com/papers/wiretapping/"&gt;Signaling Vulnerabilities in Wiretapping Systems.&lt;/a&gt; The technology used for decades by law enforcement agents to wiretap telephones has a security flaw that &lt;a href=&quot;http://www.nytimes.com/2005/11/30/national/30tap.html&quot;&gt;allows the person being wiretapped to stop the recorder remotely&lt;/a&gt; [&lt;a href=&quot;http://www.bugmenot.com/view.php?url=www.nytimes.com&quot;&gt;bugmenot&lt;/a&gt;].    It is also possible to &lt;a href=&quot;http://www.crypto.com/papers/wiretap.pdf&quot;&gt;falsify the numbers dialed&lt;/a&gt; [pdf].  </description>
		<guid isPermaLink="false">tag:metafilter.com,2005:site.47134</guid>
		<pubDate>Wed, 30 Nov 2005 12:59:09 -0800</pubDate>
		<category>calea</category>
		<category>fbi</category>
		<category>security</category>
		<category>vulnerability</category>
		<category>wiretap</category>
		<category>wiretapping</category>
		<dc:creator>event</dc:creator>
	</item>
      
	</channel>
</rss>


