<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: Ad-Jacking - XSSing for Fun and Profit</title>
	<atom:link href="http://www.gnucitizen.org/blog/ad-jacking-xssing-for-fun-and-profit/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.gnucitizen.org/blog/ad-jacking-xssing-for-fun-and-profit/</link>
	<description>Information Security Think Tank</description>
	<pubDate>Fri, 21 Nov 2008 22:01:45 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6.3</generator>
		<item>
		<title>By: Ad Jacking XSSing for Fun and Profit &#8212; Search engine Google Tricks and Google Help</title>
		<link>http://www.gnucitizen.org/blog/ad-jacking-xssing-for-fun-and-profit/#comment-33582</link>
		<dc:creator>Ad Jacking XSSing for Fun and Profit &#8212; Search engine Google Tricks and Google Help</dc:creator>
		<pubDate>Tue, 03 Jul 2007 16:12:58 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ad-jacking-xssing-for-fun-and-profit#comment-33582</guid>
		<description>[...] and punish click fraud offenders. I believe Ads are also moving away for PPC schemes    source: Ad Jacking XSSing for Fun and Profit, GNUCITIZEN &#124; [...]</description>
		<content:encoded><![CDATA[<p>[...] and punish click fraud offenders. I believe Ads are also moving away for PPC schemes    source: Ad Jacking XSSing for Fun and Profit, GNUCITIZEN | [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: David Kierznowski</title>
		<link>http://www.gnucitizen.org/blog/ad-jacking-xssing-for-fun-and-profit/#comment-33158</link>
		<dc:creator>David Kierznowski</dc:creator>
		<pubDate>Sun, 01 Jul 2007 09:34:58 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ad-jacking-xssing-for-fun-and-profit#comment-33158</guid>
		<description>pdp, thanks for the comment. I was thinking how future spyware might utilise attacks along these lines. Definately an area for progressive badness :)</description>
		<content:encoded><![CDATA[<p>pdp, thanks for the comment. I was thinking how future spyware might utilise attacks along these lines. Definately an area for progressive badness :)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: pdp</title>
		<link>http://www.gnucitizen.org/blog/ad-jacking-xssing-for-fun-and-profit/#comment-33151</link>
		<dc:creator>pdp</dc:creator>
		<pubDate>Sun, 01 Jul 2007 08:47:19 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ad-jacking-xssing-for-fun-and-profit#comment-33151</guid>
		<description>I agree. The further we go the more we are going to see stuff along these lines. Usually, there is no profit from attacking the user directly. I mean, what's the worse thing that can happen? Maybe steal their account and probably find some sensitive information. Although, sure, this is not a good thing, it usually involves a lot of effort mainly because the attacker needs to look for this information and then find a way to use it. Unless the attacker is really dedicated they wont do it. They need a framework. Ad programs have already this framework. All attackers need to do is start using it and eventually abusing it. Ad-Jacking is definitely here to come.</description>
		<content:encoded><![CDATA[<p>I agree. The further we go the more we are going to see stuff along these lines. Usually, there is no profit from attacking the user directly. I mean, what&#8217;s the worse thing that can happen? Maybe steal their account and probably find some sensitive information. Although, sure, this is not a good thing, it usually involves a lot of effort mainly because the attacker needs to look for this information and then find a way to use it. Unless the attacker is really dedicated they wont do it. They need a framework. Ad programs have already this framework. All attackers need to do is start using it and eventually abusing it. Ad-Jacking is definitely here to come.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
