<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: wp-scanner online v1.2 released</title>
	<atom:link href="http://blogsecurity.net/news/news-250607/feed" rel="self" type="application/rss+xml" />
	<link>http://blogsecurity.net/news/news-250607</link>
	<description>Always something worth reading...</description>
	<lastBuildDate>Fri, 12 Mar 2010 11:09:45 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Votre Wordpress est-il sûr?</title>
		<link>http://blogsecurity.net/news/news-250607/comment-page-1#comment-199</link>
		<dc:creator>Votre Wordpress est-il sûr?</dc:creator>
		<pubDate>Tue, 10 Jul 2007 10:33:22 +0000</pubDate>
		<guid isPermaLink="false">http://blogsecurity.net/?p=31#comment-199</guid>
		<description>[...] Son nom? wp-scanner online  [...]</description>
		<content:encoded><![CDATA[<p>[...] Son nom? wp-scanner online  [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Votre Wordpress est-il sûr?</title>
		<link>http://blogsecurity.net/news/news-250607/comment-page-1#comment-184</link>
		<dc:creator>Votre Wordpress est-il sûr?</dc:creator>
		<pubDate>Thu, 05 Jul 2007 08:13:56 +0000</pubDate>
		<guid isPermaLink="false">http://blogsecurity.net/?p=31#comment-184</guid>
		<description>[...] Son nom? wp-scanner online  [...]</description>
		<content:encoded><![CDATA[<p>[...] Son nom? wp-scanner online  [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: David Kierznowski</title>
		<link>http://blogsecurity.net/news/news-250607/comment-page-1#comment-197</link>
		<dc:creator>David Kierznowski</dc:creator>
		<pubDate>Tue, 03 Jul 2007 19:36:06 +0000</pubDate>
		<guid isPermaLink="false">http://blogsecurity.net/?p=31#comment-197</guid>
		<description>fwolf, wp-2.0.10 is the latest stable release for 2.0.x trunk, wp-scanner just doesn&#039;t identify this as yet. I think you&#039;ll be just fine if you maintain the latest release within the 2.0.x trunk.</description>
		<content:encoded><![CDATA[<p>fwolf, wp-2.0.10 is the latest stable release for 2.0.x trunk, wp-scanner just doesn&#8217;t identify this as yet. I think you&#8217;ll be just fine if you maintain the latest release within the 2.0.x trunk.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: fwolf</title>
		<link>http://blogsecurity.net/news/news-250607/comment-page-1#comment-183</link>
		<dc:creator>fwolf</dc:creator>
		<pubDate>Fri, 29 Jun 2007 12:24:29 +0000</pubDate>
		<guid isPermaLink="false">http://blogsecurity.net/?p=31#comment-183</guid>
		<description>doesnt help me a lot. it suggests updating to the latest WP version, but I &lt;strong&gt;WONT&lt;/strong&gt; do that, because I dont like some stuff WP 2.2+ does different from 2.0.x.

a better way to help me would be to point out possible security flaws in this version so I&#039;m able to fix it myself.

cu, w0lf.</description>
		<content:encoded><![CDATA[<p>doesnt help me a lot. it suggests updating to the latest WP version, but I <strong>WONT</strong> do that, because I dont like some stuff WP 2.2+ does different from 2.0.x.</p>
<p>a better way to help me would be to point out possible security flaws in this version so I&#8217;m able to fix it myself.</p>
<p>cu, w0lf.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: iKA&#8217;s Blog &#187; WordPress Scanner</title>
		<link>http://blogsecurity.net/news/news-250607/comment-page-1#comment-195</link>
		<dc:creator>iKA&#8217;s Blog &#187; WordPress Scanner</dc:creator>
		<pubDate>Tue, 26 Jun 2007 22:33:09 +0000</pubDate>
		<guid isPermaLink="false">http://blogsecurity.net/?p=31#comment-195</guid>
		<description>[...] BlogSecurity wurde ein neuer Scanner in Version 1.2b ver&#246;ffentlicht. Es handelt sich dabei um ein [...]</description>
		<content:encoded><![CDATA[<p>[...] BlogSecurity wurde ein neuer Scanner in Version 1.2b ver&#246;ffentlicht. Es handelt sich dabei um ein [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: David Kierznowski</title>
		<link>http://blogsecurity.net/news/news-250607/comment-page-1#comment-194</link>
		<dc:creator>David Kierznowski</dc:creator>
		<pubDate>Tue, 26 Jun 2007 13:25:36 +0000</pubDate>
		<guid isPermaLink="false">http://blogsecurity.net/?p=31#comment-194</guid>
		<description>Hendrik,

I based the concept around a paper I released on &lt;a href=&quot;http://www.gnucitizen.org/blog/the-generic-xss-worm&quot; rel=&quot;nofollow&quot;&gt;GNUCITIZEN titled generic XSS worms.&lt;/a&gt;

In short, we basically attack generic vulnerabilities in PHP&#039;s environment variables (i.e. PHPSELF). We don&#039;t do any URL manipulation.. we may in future releases, although this might be out of the scope of what we are trying to achieve.

Thanks for your feedback, its the first in over 300 blogs tested so far :)</description>
		<content:encoded><![CDATA[<p>Hendrik,</p>
<p>I based the concept around a paper I released on <a href="http://www.gnucitizen.org/blog/the-generic-xss-worm" rel="nofollow">GNUCITIZEN titled generic XSS worms.</a></p>
<p>In short, we basically attack generic vulnerabilities in PHP&#8217;s environment variables (i.e. PHPSELF). We don&#8217;t do any URL manipulation.. we may in future releases, although this might be out of the scope of what we are trying to achieve.</p>
<p>Thanks for your feedback, its the first in over 300 blogs tested so far :)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Hendrik Lennarz</title>
		<link>http://blogsecurity.net/news/news-250607/comment-page-1#comment-193</link>
		<dc:creator>Hendrik Lennarz</dc:creator>
		<pubDate>Tue, 26 Jun 2007 13:12:51 +0000</pubDate>
		<guid isPermaLink="false">http://blogsecurity.net/?p=31#comment-193</guid>
		<description>Seams to be very cool staff.
I´m interested in the automatic test of XSS vulnerabilities? What do you test, only the search form or also URL manipulation?

Regards
H. Lennarz</description>
		<content:encoded><![CDATA[<p>Seams to be very cool staff.<br />
I´m interested in the automatic test of XSS vulnerabilities? What do you test, only the search form or also URL manipulation?</p>
<p>Regards<br />
H. Lennarz</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Watching the World above the SKY</title>
		<link>http://blogsecurity.net/news/news-250607/comment-page-1#comment-192</link>
		<dc:creator>Watching the World above the SKY</dc:creator>
		<pubDate>Tue, 26 Jun 2007 07:31:29 +0000</pubDate>
		<guid isPermaLink="false">http://blogsecurity.net/?p=31#comment-192</guid>
		<description>&lt;strong&gt;WP Scanner online...&lt;/strong&gt;

Um die Sicherheit seiner Wordpress Installation/Blogs zu testen, bietet BlogSecurity einen Online WP-Scanner an. Um keine böse Überraschungen zur erleben, nutzt diesen Scanner Leute und testet eure WP Blogs.
(Via: bueltge.de &#124; SW-Guide &#124; BlogSecurit...</description>
		<content:encoded><![CDATA[<p><strong>WP Scanner online&#8230;</strong></p>
<p>Um die Sicherheit seiner Wordpress Installation/Blogs zu testen, bietet BlogSecurity einen Online WP-Scanner an. Um keine böse Überraschungen zur erleben, nutzt diesen Scanner Leute und testet eure WP Blogs.<br />
(Via: bueltge.de | SW-Guide | BlogSecurit&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Testez la sécurité de votre WordPress en ligne</title>
		<link>http://blogsecurity.net/news/news-250607/comment-page-1#comment-191</link>
		<dc:creator>Testez la sécurité de votre WordPress en ligne</dc:creator>
		<pubDate>Mon, 25 Jun 2007 22:09:31 +0000</pubDate>
		<guid isPermaLink="false">http://blogsecurity.net/?p=31#comment-191</guid>
		<description>[...] Un petit utilitaire a fait son apparition aujourd&#8217;hui. Il s&#8217;agit de wp-scanner online [...]</description>
		<content:encoded><![CDATA[<p>[...] Un petit utilitaire a fait son apparition aujourd&#8217;hui. Il s&#8217;agit de wp-scanner online [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: David Kierznowski</title>
		<link>http://blogsecurity.net/news/news-250607/comment-page-1#comment-190</link>
		<dc:creator>David Kierznowski</dc:creator>
		<pubDate>Mon, 25 Jun 2007 21:48:59 +0000</pubDate>
		<guid isPermaLink="false">http://blogsecurity.net/?p=31#comment-190</guid>
		<description>Chris, no problem, thanks for the feedback.</description>
		<content:encoded><![CDATA[<p>Chris, no problem, thanks for the feedback.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
