<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Ad-Jacking &#8211; XSSing for Fun and Profit</title>
	<atom:link href="http://www.gnucitizen.org/blog/ad-jacking-xssing-for-fun-and-profit/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.gnucitizen.org/blog/ad-jacking-xssing-for-fun-and-profit/</link>
	<description>Information Security Think Tank</description>
	<lastBuildDate>Sat, 02 Feb 2013 17:50:40 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.4.1</generator>
	<item>
		<title>By: Ad Jacking XSSing for Fun and Profit &#8212; Search engine Google Tricks and Google Help</title>
		<link>http://www.gnucitizen.org/blog/ad-jacking-xssing-for-fun-and-profit/comment-page-1/#comment-33582</link>
		<dc:creator>Ad Jacking XSSing for Fun and Profit &#8212; Search engine Google Tricks and Google Help</dc:creator>
		<pubDate>Tue, 03 Jul 2007 16:12:58 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ad-jacking-xssing-for-fun-and-profit#comment-33582</guid>
		<description>[...] and punish click fraud offenders. I believe Ads are also moving away for PPC schemes    source: Ad Jacking XSSing for Fun and Profit, GNUCITIZEN &#124; [...]</description>
		<content:encoded><![CDATA[<p>[...] and punish click fraud offenders. I believe Ads are also moving away for PPC schemes    source: Ad Jacking XSSing for Fun and Profit, GNUCITIZEN | [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: David Kierznowski</title>
		<link>http://www.gnucitizen.org/blog/ad-jacking-xssing-for-fun-and-profit/comment-page-1/#comment-33158</link>
		<dc:creator>David Kierznowski</dc:creator>
		<pubDate>Sun, 01 Jul 2007 09:34:58 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ad-jacking-xssing-for-fun-and-profit#comment-33158</guid>
		<description>pdp, thanks for the comment. I was thinking how future spyware might utilise attacks along these lines. Definately an area for progressive badness :)</description>
		<content:encoded><![CDATA[<p>pdp, thanks for the comment. I was thinking how future spyware might utilise attacks along these lines. Definately an area for progressive badness :)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: pdp</title>
		<link>http://www.gnucitizen.org/blog/ad-jacking-xssing-for-fun-and-profit/comment-page-1/#comment-33151</link>
		<dc:creator>pdp</dc:creator>
		<pubDate>Sun, 01 Jul 2007 08:47:19 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ad-jacking-xssing-for-fun-and-profit#comment-33151</guid>
		<description>I agree. The further we go the more we are going to see stuff along these lines. Usually, there is no profit from attacking the user directly. I mean, what&#039;s the worse thing that can happen? Maybe steal their account and probably find some sensitive information. Although, sure, this is not a good thing, it usually involves a lot of effort mainly because the attacker needs to look for this information and then find a way to use it. Unless the attacker is really dedicated they wont do it. They need a framework. Ad programs have already this framework. All attackers need to do is start using it and eventually abusing it. Ad-Jacking is definitely here to come.</description>
		<content:encoded><![CDATA[<p>I agree. The further we go the more we are going to see stuff along these lines. Usually, there is no profit from attacking the user directly. I mean, what&#8217;s the worse thing that can happen? Maybe steal their account and probably find some sensitive information. Although, sure, this is not a good thing, it usually involves a lot of effort mainly because the attacker needs to look for this information and then find a way to use it. Unless the attacker is really dedicated they wont do it. They need a framework. Ad programs have already this framework. All attackers need to do is start using it and eventually abusing it. Ad-Jacking is definitely here to come.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
