<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments for SecureThoughts.com</title>
	<atom:link href="http://securethoughts.com/comments/feed/" rel="self" type="application/rss+xml" />
	<link>http://securethoughts.com</link>
	<description>Inferno&#039;s Blog on Application Security</description>
	<lastBuildDate>Fri, 02 Apr 2010 17:28:55 -0700</lastBuildDate>
	<generator>http://wordpress.org/?v=abc</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>Comment on Hacking CSRF Tokens using CSS History Hack by donb</title>
		<link>http://securethoughts.com/2009/07/hacking-csrf-tokens-using-css-history-hack/comment-page-1/#comment-322</link>
		<dc:creator>donb</dc:creator>
		<pubDate>Fri, 02 Apr 2010 17:28:55 +0000</pubDate>
		<guid isPermaLink="false">http://securethoughts.com/?p=581#comment-322</guid>
		<description>All of this discussion is very interesting.  It looks like the world is still safe when CSRF is implemented with long tokens.</description>
		<content:encoded><![CDATA[<p>All of this discussion is very interesting.  It looks like the world is still safe when CSRF is implemented with long tokens.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Millions of PDF invisibly embedded with your internal disk paths by Falha no Internet Explorer permite o vazamento de 50 milhões de arquivos confidenciais &#124; D. G. Na Web</title>
		<link>http://securethoughts.com/2009/11/millions-of-pdf-invisibly-embedded-with-your-internal-disk-paths/comment-page-1/#comment-321</link>
		<dc:creator>Falha no Internet Explorer permite o vazamento de 50 milhões de arquivos confidenciais &#124; D. G. Na Web</dc:creator>
		<pubDate>Sat, 13 Mar 2010 01:00:54 +0000</pubDate>
		<guid isPermaLink="false">http://securethoughts.com/?p=1027#comment-321</guid>
		<description>[...] como prefere ser chamado o pesquisador do blog SecureThoughts, explica que documentos &#8216;impressos&#8217; em PDF, a partir do IE, usando ferramentas como [...]</description>
		<content:encoded><![CDATA[<p>[...] como prefere ser chamado o pesquisador do blog SecureThoughts, explica que documentos &lsquo;impressos&rsquo; em PDF, a partir do IE, usando ferramentas como [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Hacking for XSS inside noscript html tags by anwar</title>
		<link>http://securethoughts.com/2009/02/hacking-for-xss-inside-noscript-html-tags/comment-page-1/#comment-319</link>
		<dc:creator>anwar</dc:creator>
		<pubDate>Tue, 09 Mar 2010 19:42:02 +0000</pubDate>
		<guid isPermaLink="false">http://securethoughts.com/?p=112#comment-319</guid>
		<description>Encoding will work. Nice work.</description>
		<content:encoded><![CDATA[<p>Encoding will work. Nice work.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Millions of PDF invisibly embedded with your internal disk paths by PDF&#8217;s op websites lekken privégegevens - Paone Techinfo</title>
		<link>http://securethoughts.com/2009/11/millions-of-pdf-invisibly-embedded-with-your-internal-disk-paths/comment-page-1/#comment-312</link>
		<dc:creator>PDF&#8217;s op websites lekken privégegevens - Paone Techinfo</dc:creator>
		<pubDate>Thu, 17 Dec 2009 00:27:19 +0000</pubDate>
		<guid isPermaLink="false">http://securethoughts.com/?p=1027#comment-312</guid>
		<description>[...] met verwijzingen naar interne schijflocaties, stelt beveiligingsbureau Inferno op basis van een eigen onderzoek. Volgens Inferno betekent dit een privacyrisico. Schijflocaties bevatten immers vaak de namen van [...]</description>
		<content:encoded><![CDATA[<p>[...] met verwijzingen naar interne schijflocaties, stelt beveiligingsbureau Inferno op basis van een eigen onderzoek. Volgens Inferno betekent dit een privacyrisico. Schijflocaties bevatten immers vaak de namen van [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Millions of PDF invisibly embedded with your internal disk paths by Bookmarks for November 3rd through December 16th at Ed Smiley&#8217;s Blog</title>
		<link>http://securethoughts.com/2009/11/millions-of-pdf-invisibly-embedded-with-your-internal-disk-paths/comment-page-1/#comment-311</link>
		<dc:creator>Bookmarks for November 3rd through December 16th at Ed Smiley&#8217;s Blog</dc:creator>
		<pubDate>Thu, 17 Dec 2009 00:10:29 +0000</pubDate>
		<guid isPermaLink="false">http://securethoughts.com/?p=1027#comment-311</guid>
		<description>[...] Millions of PDF invisibly embedded with your internal disk paths &#124; SecureThoughts.com &#8211; [...]</description>
		<content:encoded><![CDATA[<p>[...] Millions of PDF invisibly embedded with your internal disk paths | SecureThoughts.com &#8211; [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Millions of PDF invisibly embedded with your internal disk paths by blog index</title>
		<link>http://securethoughts.com/2009/11/millions-of-pdf-invisibly-embedded-with-your-internal-disk-paths/comment-page-1/#comment-309</link>
		<dc:creator>blog index</dc:creator>
		<pubDate>Fri, 11 Dec 2009 21:29:19 +0000</pubDate>
		<guid isPermaLink="false">http://securethoughts.com/?p=1027#comment-309</guid>
		<description>&lt;strong&gt;PDF Speedlinking—A Few Noteworthy Articles...&lt;/strong&gt;

It’s that time again. 
Every year, from around late November to the end of December, I usually start getting that “rushed” feeling where everything gets busier.&#160;&#160; You’re trying to fit in some extra Christmas shopping on your lunch break, try...</description>
		<content:encoded><![CDATA[<p><strong>PDF Speedlinking—A Few Noteworthy Articles&#8230;</strong></p>
<p>It’s that time again.<br />
Every year, from around late November to the end of December, I usually start getting that “rushed” feeling where everything gets busier.&nbsp;&nbsp; You’re trying to fit in some extra Christmas shopping on your lunch break, try&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Millions of PDF invisibly embedded with your internal disk paths by Galameth</title>
		<link>http://securethoughts.com/2009/11/millions-of-pdf-invisibly-embedded-with-your-internal-disk-paths/comment-page-1/#comment-307</link>
		<dc:creator>Galameth</dc:creator>
		<pubDate>Sat, 05 Dec 2009 11:28:29 +0000</pubDate>
		<guid isPermaLink="false">http://securethoughts.com/?p=1027#comment-307</guid>
		<description>I had forgotten how fun google hack searching could be till I did your suggested search with .gov, .mil, etc.

filetype:pdf file c .gov
filetype:pdf file c .mil

and so on.</description>
		<content:encoded><![CDATA[<p>I had forgotten how fun google hack searching could be till I did your suggested search with .gov, .mil, etc.</p>
<p>filetype:pdf file c .gov<br />
filetype:pdf file c .mil</p>
<p>and so on.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Millions of PDF invisibly embedded with your internal disk paths by David</title>
		<link>http://securethoughts.com/2009/11/millions-of-pdf-invisibly-embedded-with-your-internal-disk-paths/comment-page-1/#comment-306</link>
		<dc:creator>David</dc:creator>
		<pubDate>Tue, 01 Dec 2009 15:02:48 +0000</pubDate>
		<guid isPermaLink="false">http://securethoughts.com/?p=1027#comment-306</guid>
		<description>I found my userID in a PDF that I printed to the Adobe PDF printer from our corporate web site. This was not a html file on my local machine. It was embedded as myuserID</description>
		<content:encoded><![CDATA[<p>I found my userID in a PDF that I printed to the Adobe PDF printer from our corporate web site. This was not a html file on my local machine. It was embedded as myuserID</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Exploiting IE8 UTF-7 XSS Vulnerability using Local Redirection by hacky</title>
		<link>http://securethoughts.com/2009/05/exploiting-ie8-utf-7-xss-vulnerability-using-local-redirection/comment-page-1/#comment-303</link>
		<dc:creator>hacky</dc:creator>
		<pubDate>Sat, 28 Nov 2009 16:33:08 +0000</pubDate>
		<guid isPermaLink="false">http://securethoughts.com/?p=223#comment-303</guid>
		<description>To make things worse MS put the same IE code on windows 7 too... latest IE still vulnerable...</description>
		<content:encoded><![CDATA[<p>To make things worse MS put the same IE code on windows 7 too&#8230; latest IE still vulnerable&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Millions of PDF invisibly embedded with your internal disk paths by Falla en Internet Explorer expone a usuarios de archivos PDF : Blogografia</title>
		<link>http://securethoughts.com/2009/11/millions-of-pdf-invisibly-embedded-with-your-internal-disk-paths/comment-page-1/#comment-296</link>
		<dc:creator>Falla en Internet Explorer expone a usuarios de archivos PDF : Blogografia</dc:creator>
		<pubDate>Thu, 26 Nov 2009 01:21:38 +0000</pubDate>
		<guid isPermaLink="false">http://securethoughts.com/?p=1027#comment-296</guid>
		<description>[...] Pese a que sus versiones posteriores son mucho más confiables, la ignota firma de seguridad Inferno reveló que todas las ediciones de IE son vulnerables a una falla que involucra a los archivos PDF. &#8220;Encontré un interesante problema de privacidad, que ocurre cuando se usa Internet Explorer para imprimir páginas web guardadas en el disco duro como PDF y afecta a todas las versiones, incluida IE8&#8243;, explicó esta desconocida empresa en su blog. [...]</description>
		<content:encoded><![CDATA[<p>[...] Pese a que sus versiones posteriores son mucho más confiables, la ignota firma de seguridad Inferno reveló que todas las ediciones de IE son vulnerables a una falla que involucra a los archivos PDF. &#8220;Encontré un interesante problema de privacidad, que ocurre cuando se usa Internet Explorer para imprimir páginas web guardadas en el disco duro como PDF y afecta a todas las versiones, incluida IE8&#8243;, explicó esta desconocida empresa en su blog. [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>

