<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet href="http://feeds.feedburner.com/~d/styles/rss2full.xsl" type="text/xsl" media="screen"?><?xml-stylesheet href="http://feeds.feedburner.com/~d/styles/itemcontent.css" type="text/css" media="screen"?><rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0">
<channel>
	<title>Comments for Security Related</title>
	
	<link>http://guymizrahi.com</link>
	<description>Guy Mizrahi about Security and Technology.</description>
	<pubDate>Sat, 08 Nov 2008 11:44:57 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6.2</generator>
		<atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" href="http://feeds.feedburner.com/commentsforsecurityrelated" type="application/rss+xml" /><item>
		<title>Comment on how to regenerate phpbb_topics by תיקון או בניה מחדש של phpbb_topics | ZuLL, יומנו של האקר.</title>
		<link>http://guymizrahi.com/2008/08/20/how-to-regenerate-phpbb_topics/#comment-27</link>
		<dc:creator>תיקון או בניה מחדש של phpbb_topics | ZuLL, יומנו של האקר.</dc:creator>
		<pubDate>Thu, 21 Aug 2008 18:03:28 +0000</pubDate>
		<guid isPermaLink="false">http://guymizrahi.com/2008/08/20/how-to-regenerate-phpbb_topics/#comment-27</guid>
		<description>[...] http://guymizrahi.com/2008/08/20/how-to-regenerate-phpbb_topics/ [...]</description>
		<content:encoded><![CDATA[<p>[...] <a href="http://guymizrahi.com/2008/08/20/how-to-regenerate-phpbb_topics/" rel="nofollow">http://guymizrahi.com/2008/08/20/how-to-regenerate-phpbb_topics/</a> [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Isn’t it cool to see e-mule working like this ? by amit</title>
		<link>http://guymizrahi.com/2008/05/02/isnt-it-cool-to-see-e-mule-working-like-this/#comment-15</link>
		<dc:creator>amit</dc:creator>
		<pubDate>Thu, 07 Aug 2008 03:22:39 +0000</pubDate>
		<guid isPermaLink="false">http://guymizrahi.com/2008/05/02/isnt-it-cool-to-see-e-mule-working-like-this/#comment-15</guid>
		<description>The Best of The Blues - Great Album ;)

it's the little details that will hurt us..</description>
		<content:encoded><![CDATA[<p>The Best of The Blues - Great Album <img src='http://guymizrahi.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> </p>
<p>it&#8217;s the little details that will hurt us..</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Isn’t it cool to see e-mule working like this ? by Qhckz</title>
		<link>http://guymizrahi.com/2008/05/02/isnt-it-cool-to-see-e-mule-working-like-this/#comment-14</link>
		<dc:creator>Qhckz</dc:creator>
		<pubDate>Mon, 21 Jul 2008 10:19:25 +0000</pubDate>
		<guid isPermaLink="false">http://guymizrahi.com/2008/05/02/isnt-it-cool-to-see-e-mule-working-like-this/#comment-14</guid>
		<description>You try out  to censor your download but you forgot the Lower Part

Garry Moore - The Best Of The Blues.rar

Next TIme put attention to the small details :P</description>
		<content:encoded><![CDATA[<p>You try out  to censor your download but you forgot the Lower Part</p>
<p>Garry Moore - The Best Of The Blues.rar</p>
<p>Next TIme put attention to the small details <img src='http://guymizrahi.com/wp-includes/images/smilies/icon_razz.gif' alt=':P' class='wp-smiley' /></p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on How to Steal DreamHost accounts? by ___the</title>
		<link>http://guymizrahi.com/2008/06/14/how-to-steal-dreamhost-accounts/#comment-13</link>
		<dc:creator>___the</dc:creator>
		<pubDate>Wed, 09 Jul 2008 22:20:47 +0000</pubDate>
		<guid isPermaLink="false">http://guymizrahi.com/2008/06/14/how-to-steal-dreamhost-accounts/#comment-13</guid>
		<description>i think that csrf is very easy to secure one way is to create a security_token
and this is the best secure form csrf...</description>
		<content:encoded><![CDATA[<p>i think that csrf is very easy to secure one way is to create a security_token<br />
and this is the best secure form csrf&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on How to Steal DreamHost accounts? by Guy Mizrahi</title>
		<link>http://guymizrahi.com/2008/06/14/how-to-steal-dreamhost-accounts/#comment-12</link>
		<dc:creator>Guy Mizrahi</dc:creator>
		<pubDate>Tue, 08 Jul 2008 10:24:32 +0000</pubDate>
		<guid isPermaLink="false">http://guymizrahi.com/2008/06/14/how-to-steal-dreamhost-accounts/#comment-12</guid>
		<description>I think you are all missing the point here.
It is obvious you can secure this operation (change details) in many different ways.
The point is that DreamHost didn't think that there is a need to secure it.
That is whats bothering me.</description>
		<content:encoded><![CDATA[<p>I think you are all missing the point here.<br />
It is obvious you can secure this operation (change details) in many different ways.<br />
The point is that DreamHost didn&#8217;t think that there is a need to secure it.<br />
That is whats bothering me.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on How to Steal DreamHost accounts? by mark</title>
		<link>http://guymizrahi.com/2008/06/14/how-to-steal-dreamhost-accounts/#comment-11</link>
		<dc:creator>mark</dc:creator>
		<pubDate>Sun, 06 Jul 2008 12:13:09 +0000</pubDate>
		<guid isPermaLink="false">http://guymizrahi.com/2008/06/14/how-to-steal-dreamhost-accounts/#comment-11</guid>
		<description>you can also add some small text box with random password that the user need to fill.</description>
		<content:encoded><![CDATA[<p>you can also add some small text box with random password that the user need to fill.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on How to Steal DreamHost accounts? by cp77fk4r</title>
		<link>http://guymizrahi.com/2008/06/14/how-to-steal-dreamhost-accounts/#comment-10</link>
		<dc:creator>cp77fk4r</dc:creator>
		<pubDate>Fri, 04 Jul 2008 11:26:43 +0000</pubDate>
		<guid isPermaLink="false">http://guymizrahi.com/2008/06/14/how-to-steal-dreamhost-accounts/#comment-10</guid>
		<description>L[s]D - it's not so difficult to secure that. you just need to make sure that all the user that want to make a new changes his account must type his password in the form...</description>
		<content:encoded><![CDATA[<p>L[s]D - it&#8217;s not so difficult to secure that. you just need to make sure that all the user that want to make a new changes his account must type his password in the form&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Isn’t it cool to see e-mule working like this ? by Guy Mizrahi</title>
		<link>http://guymizrahi.com/2008/05/02/isnt-it-cool-to-see-e-mule-working-like-this/#comment-9</link>
		<dc:creator>Guy Mizrahi</dc:creator>
		<pubDate>Wed, 02 Jul 2008 19:52:10 +0000</pubDate>
		<guid isPermaLink="false">http://guymizrahi.com/2008/05/02/isnt-it-cool-to-see-e-mule-working-like-this/#comment-9</guid>
		<description>nope, just my home network in that day :-)</description>
		<content:encoded><![CDATA[<p>nope, just my home network in that day <img src='http://guymizrahi.com/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /></p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Isn’t it cool to see e-mule working like this ? by yigber</title>
		<link>http://guymizrahi.com/2008/05/02/isnt-it-cool-to-see-e-mule-working-like-this/#comment-8</link>
		<dc:creator>yigber</dc:creator>
		<pubDate>Wed, 02 Jul 2008 10:41:17 +0000</pubDate>
		<guid isPermaLink="false">http://guymizrahi.com/2008/05/02/isnt-it-cool-to-see-e-mule-working-like-this/#comment-8</guid>
		<description>Is this your home connection ?  Are you using all your neighbors' bandwidth as well ?
:)</description>
		<content:encoded><![CDATA[<p>Is this your home connection ?  Are you using all your neighbors&#8217; bandwidth as well ?<br />
 <img src='http://guymizrahi.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /></p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on How to Steal DreamHost accounts? by L[s]D</title>
		<link>http://guymizrahi.com/2008/06/14/how-to-steal-dreamhost-accounts/#comment-7</link>
		<dc:creator>L[s]D</dc:creator>
		<pubDate>Tue, 17 Jun 2008 08:20:48 +0000</pubDate>
		<guid isPermaLink="false">http://guymizrahi.com/2008/06/14/how-to-steal-dreamhost-accounts/#comment-7</guid>
		<description>well, this method isn't new.. 
it is called XSRF (cross site request forgery).
I really like this sec hole cuz almost every site has it, it is very difficult to secure.</description>
		<content:encoded><![CDATA[<p>well, this method isn&#8217;t new..<br />
it is called XSRF (cross site request forgery).<br />
I really like this sec hole cuz almost every site has it, it is very difficult to secure.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
