<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: CITRIX: Owning the Legitimate Backdoor</title>
	<atom:link href="http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/</link>
	<description>Information Security Think Tank</description>
	<lastBuildDate>Sat, 02 Feb 2013 17:50:40 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.4.1</generator>
	<item>
		<title>By: anon</title>
		<link>http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/comment-page-1/#comment-134215</link>
		<dc:creator>anon</dc:creator>
		<pubDate>Mon, 07 Jan 2013 17:05:46 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/#comment-134215</guid>
		<description>The video works by clicking the download link at the bottom of the post: http://www.gnucitizen.org/static/blog/2007/10/hc01.wmv</description>
		<content:encoded><![CDATA[<p>The video works by clicking the download link at the bottom of the post: <a href="http://www.gnucitizen.org/static/blog/2007/10/hc01.wmv" rel="nofollow">http://www.gnucitizen.org/stat.....0/hc01.wmv</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Citrix Ã  la peine ? â€” SecurityVibes Magazine</title>
		<link>http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/comment-page-1/#comment-129782</link>
		<dc:creator>Citrix Ã  la peine ? â€” SecurityVibes Magazine</dc:creator>
		<pubDate>Mon, 28 Mar 2011 10:10:48 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/#comment-129782</guid>
		<description>[...] http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/La rÃ©dactionL&#039;Ã©quipe rÃ©dactionnelle de SecurityVibes Magazine France.Website - Twitter - Facebook - More Posts  A lire Ã©galement [...]</description>
		<content:encoded><![CDATA[<p>[...] <a href="http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/La" rel="nofollow">http://www.gnucitizen.org/blog.....ackdoor/La</a> rÃ©dactionL&#039;Ã©quipe rÃ©dactionnelle de SecurityVibes Magazine France.Website &#8211; Twitter &#8211; Facebook &#8211; More Posts  A lire Ã©galement [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Citrix Ã  la peine ? â€” SecurityVibes Magazine</title>
		<link>http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/comment-page-1/#comment-129777</link>
		<dc:creator>Citrix Ã  la peine ? â€” SecurityVibes Magazine</dc:creator>
		<pubDate>Wed, 23 Mar 2011 15:17:11 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/#comment-129777</guid>
		<description>[...] http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/La rÃ©dactionL&#039;Ã©quipe rÃ©dactionnelle de SecurityVibes Magazine France.Website - Twitter - Facebook - More Posts  &#160;   Notez l&#039;article!   Soyez le premier Ã  Ã©valuer cet article! A lire [...]</description>
		<content:encoded><![CDATA[<p>[...] <a href="http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/La" rel="nofollow">http://www.gnucitizen.org/blog.....ackdoor/La</a> rÃ©dactionL&#039;Ã©quipe rÃ©dactionnelle de SecurityVibes Magazine France.Website &#8211; Twitter &#8211; Facebook &#8211; More Posts  &nbsp;   Notez l&#039;article!   Soyez le premier Ã  Ã©valuer cet article! A lire [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: pdp</title>
		<link>http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/comment-page-1/#comment-129273</link>
		<dc:creator>pdp</dc:creator>
		<pubDate>Sat, 13 Nov 2010 01:47:57 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/#comment-129273</guid>
		<description>it is not difficult to learn how to hack... use google... or sign up for a course :)</description>
		<content:encoded><![CDATA[<p>it is not difficult to learn how to hack&#8230; use google&#8230; or sign up for a course :)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: john</title>
		<link>http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/comment-page-1/#comment-129223</link>
		<dc:creator>john</dc:creator>
		<pubDate>Wed, 20 Oct 2010 02:23:25 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/#comment-129223</guid>
		<description>looking for mentors...i need to learn how to hack</description>
		<content:encoded><![CDATA[<p>looking for mentors&#8230;i need to learn how to hack</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: nod32å‡çº§id &#187; Hacking Citrix</title>
		<link>http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/comment-page-1/#comment-128439</link>
		<dc:creator>nod32å‡çº§id &#187; Hacking Citrix</dc:creator>
		<pubDate>Thu, 01 Apr 2010 12:39:49 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/#comment-128439</guid>
		<description>[...] http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/ [...]</description>
		<content:encoded><![CDATA[<p>[...] <a href="http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/" rel="nofollow">http://www.gnucitizen.org/blog.....ceful-way/</a> [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Souvenez vous ;) Ne laissez pas de porte ouverte Citrix sur le Net &#124; tescitrixoupas</title>
		<link>http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/comment-page-1/#comment-127675</link>
		<dc:creator>Souvenez vous ;) Ne laissez pas de porte ouverte Citrix sur le Net &#124; tescitrixoupas</dc:creator>
		<pubDate>Thu, 06 Aug 2009 13:48:51 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/#comment-127675</guid>
		<description>[...] http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/ [...]</description>
		<content:encoded><![CDATA[<p>[...] <a href="http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/" rel="nofollow">http://www.gnucitizen.org/blog.....-backdoor/</a> [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Hacking CITRIX - the forceful way &#124; GNUCITIZEN</title>
		<link>http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/comment-page-1/#comment-125573</link>
		<dc:creator>Hacking CITRIX - the forceful way &#124; GNUCITIZEN</dc:creator>
		<pubDate>Sun, 25 Jan 2009 07:40:19 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/#comment-125573</guid>
		<description>[...] CITRIX - the forceful way published: October 5th, 2007 Yesterday I briefly covered how CITIRX hacking works by performing simple enumeration exercises. Today, I [...]</description>
		<content:encoded><![CDATA[<p>[...] CITRIX &#8211; the forceful way published: October 5th, 2007 Yesterday I briefly covered how CITIRX hacking works by performing simple enumeration exercises. Today, I [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Virüs Güvenlik Haberleri &#187; Citrix Prezantasyon Sunucusu</title>
		<link>http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/comment-page-1/#comment-124669</link>
		<dc:creator>Virüs Güvenlik Haberleri &#187; Citrix Prezantasyon Sunucusu</dc:creator>
		<pubDate>Tue, 09 Dec 2008 22:40:27 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/#comment-124669</guid>
		<description>[...] güvenlik aç??? duyurusu: http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/ Citrix güvenlik bülteni: [...]</description>
		<content:encoded><![CDATA[<p>[...] güvenlik aç??? duyurusu: <a href="http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/" rel="nofollow">http://www.gnucitizen.org/blog.....-backdoor/</a> Citrix güvenlik bülteni: [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: free dlls</title>
		<link>http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/comment-page-1/#comment-124051</link>
		<dc:creator>free dlls</dc:creator>
		<pubDate>Tue, 14 Oct 2008 07:54:17 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/#comment-124051</guid>
		<description>the video can&#039;t be play , it says it may removed. Please check.</description>
		<content:encoded><![CDATA[<p>the video can&#8217;t be play , it says it may removed. Please check.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: ikkuhqhp</title>
		<link>http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/comment-page-1/#comment-122075</link>
		<dc:creator>ikkuhqhp</dc:creator>
		<pubDate>Sun, 18 May 2008 09:57:47 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/#comment-122075</guid>
		<description>pdp, I was reading this post but found that the youtube link doesn&#039;t work. Could you explain &quot;escaping windows GUI&quot; again please?</description>
		<content:encoded><![CDATA[<p>pdp, I was reading this post but found that the youtube link doesn&#8217;t work. Could you explain &#8220;escaping windows GUI&#8221; again please?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Citrix Prezantasyon Sunucusu iÃ§in Yama &#124; VirÃ¼s GÃ¼venlik Haberleri</title>
		<link>http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/comment-page-1/#comment-86876</link>
		<dc:creator>Citrix Prezantasyon Sunucusu iÃ§in Yama &#124; VirÃ¼s GÃ¼venlik Haberleri</dc:creator>
		<pubDate>Sat, 15 Dec 2007 10:17:36 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/#comment-86876</guid>
		<description>[...] gÃ¼venlik aÃ§Ä±ÄŸÄ± duyurusu: http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/ Citrix gÃ¼venlik bÃ¼lteni: [...]</description>
		<content:encoded><![CDATA[<p>[...] gÃ¼venlik aÃ§Ä±ÄŸÄ± duyurusu: <a href="http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/" rel="nofollow">http://www.gnucitizen.org/blog.....-backdoor/</a> Citrix gÃ¼venlik bÃ¼lteni: [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: TesCitrixOuPas &#187; Blog Archive &#187; Citrix, trou de sÃ©curitÃ© ou mauvaise gestion des administrateurs Citrix ?</title>
		<link>http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/comment-page-1/#comment-78422</link>
		<dc:creator>TesCitrixOuPas &#187; Blog Archive &#187; Citrix, trou de sÃ©curitÃ© ou mauvaise gestion des administrateurs Citrix ?</dc:creator>
		<pubDate>Wed, 28 Nov 2007 22:03:02 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/#comment-78422</guid>
		<description>[...] le site GNUCITIZEN, un chercheur en sÃ©curitÃ© en faisant une simple recherche sur Google est tombÃ© sur une floppÃ© [...]</description>
		<content:encoded><![CDATA[<p>[...] le site GNUCITIZEN, un chercheur en sÃ©curitÃ© en faisant une simple recherche sur Google est tombÃ© sur une floppÃ© [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: newKid</title>
		<link>http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/comment-page-1/#comment-73277</link>
		<dc:creator>newKid</dc:creator>
		<pubDate>Mon, 19 Nov 2007 03:30:40 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/#comment-73277</guid>
		<description>I am not a hacker, just a college kid, studying networking, programming, security, the like. I am researching Citrix for a security paper. I clicked on some of these links, to see what would happen, as the read is seriously intriguing to me. Most of them you can&#039;t actually get to. One came up but gave me an error and did not display. Please explain; are you telling me that by clicking the links that are returned in the search, that you are actually accessing information running on the server? There is no one on the other end that can see or be alerted of the fact that some remote user is actually getting in unauthenticated? I don&#039;t understand. How does this actually work out?</description>
		<content:encoded><![CDATA[<p>I am not a hacker, just a college kid, studying networking, programming, security, the like. I am researching Citrix for a security paper. I clicked on some of these links, to see what would happen, as the read is seriously intriguing to me. Most of them you can&#8217;t actually get to. One came up but gave me an error and did not display. Please explain; are you telling me that by clicking the links that are returned in the search, that you are actually accessing information running on the server? There is no one on the other end that can see or be alerted of the fact that some remote user is actually getting in unauthenticated? I don&#8217;t understand. How does this actually work out?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: pdp</title>
		<link>http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/comment-page-1/#comment-63063</link>
		<dc:creator>pdp</dc:creator>
		<pubDate>Tue, 30 Oct 2007 07:21:04 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/#comment-63063</guid>
		<description>Intrigued, absolutely!</description>
		<content:encoded><![CDATA[<p>Intrigued, absolutely!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Intrigued</title>
		<link>http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/comment-page-1/#comment-62957</link>
		<dc:creator>Intrigued</dc:creator>
		<pubDate>Tue, 30 Oct 2007 00:56:30 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/#comment-62957</guid>
		<description>I found it interesting that some of the servers have user names and domain names in the config files. After looking around I found that some of them give you a remote desktop without authentication with full access by using a user name and domain name (could be dead wrong and it just gives you the remote desktop anyways but none the less its still a blatant hole)</description>
		<content:encoded><![CDATA[<p>I found it interesting that some of the servers have user names and domain names in the config files. After looking around I found that some of them give you a remote desktop without authentication with full access by using a user name and domain name (could be dead wrong and it just gives you the remote desktop anyways but none the less its still a blatant hole)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Network Security Podcast, Episode 81 &#124; securosis.com</title>
		<link>http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/comment-page-1/#comment-59431</link>
		<dc:creator>Network Security Podcast, Episode 81 &#124; securosis.com</dc:creator>
		<pubDate>Thu, 18 Oct 2007 16:23:42 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/#comment-59431</guid>
		<description>[...] Citrix; Owning the legitimate backdoor [...]</description>
		<content:encoded><![CDATA[<p>[...] Citrix; Owning the legitimate backdoor [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Bbb</title>
		<link>http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/comment-page-1/#comment-58567</link>
		<dc:creator>Bbb</dc:creator>
		<pubDate>Mon, 15 Oct 2007 15:06:32 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/#comment-58567</guid>
		<description>Absolutely very concerning, the fact that you can get Numb-Nut administrators. 

As I mentioned above....

http://search.yahoo.com/search.....ension:rdp

http://www.google.com/search?q=ext:rdp

.....you get the same numb-nuts administrating plain old Terminal services as well as any other product.

The first line of your article &#039;The Internet is full of wide open CITRIX gateways&#039; probably put the Sh$ts up many a CITRIX administrator because they implement true CITRIX gateways (that only open for the correct people). I hope people reading this article realise that this is not the way to implement CITRIX for remote access.

I can&#039;t believe the amount of people who don&#039;t follow simple IT Security recommended practices. This is probably why your article should be entitled &#039;Beware There are Numb-Nut Administrators everywhere!!&#039; ;-)

Bbb</description>
		<content:encoded><![CDATA[<p>Absolutely very concerning, the fact that you can get Numb-Nut administrators. </p>
<p>As I mentioned above&#8230;.</p>
<p><a href="http://search.yahoo.com/search" rel="nofollow">http://search.yahoo.com/search</a>&#8230;..ension:rdp</p>
<p><a href="http://www.google.com/search?q=ext:rdp" rel="nofollow">http://www.google.com/search?q=ext:rdp</a></p>
<p>&#8230;..you get the same numb-nuts administrating plain old Terminal services as well as any other product.</p>
<p>The first line of your article &#8216;The Internet is full of wide open CITRIX gateways&#8217; probably put the Sh$ts up many a CITRIX administrator because they implement true CITRIX gateways (that only open for the correct people). I hope people reading this article realise that this is not the way to implement CITRIX for remote access.</p>
<p>I can&#8217;t believe the amount of people who don&#8217;t follow simple IT Security recommended practices. This is probably why your article should be entitled &#8216;Beware There are Numb-Nut Administrators everywhere!!&#8217; ;-)</p>
<p>Bbb</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Citrix holes endanger Government and Military systems - spyware news</title>
		<link>http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/comment-page-1/#comment-58562</link>
		<dc:creator>Citrix holes endanger Government and Military systems - spyware news</dc:creator>
		<pubDate>Mon, 15 Oct 2007 14:05:16 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/#comment-58562</guid>
		<description>[...] into Citrix GUIs and playing with .ica files. He kindly posted the results of this rampage on his blog. What he did was he tried searching for public .ICAs in google and yahoo and found &quot;tons&quot; [...]</description>
		<content:encoded><![CDATA[<p>[...] into Citrix GUIs and playing with .ica files. He kindly posted the results of this rampage on his blog. What he did was he tried searching for public .ICAs in google and yahoo and found &quot;tons&quot; [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: The Day Today &#187; Blog Archive &#187; Citrix backdoors easy to find</title>
		<link>http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/comment-page-1/#comment-58560</link>
		<dc:creator>The Day Today &#187; Blog Archive &#187; Citrix backdoors easy to find</dc:creator>
		<pubDate>Mon, 15 Oct 2007 13:47:37 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/#comment-58560</guid>
		<description>[...] gateways, which are often unsecured - allowing a hacker to get a command prompt on the servers. This article explains how, and includes a video showing how to get a command prompt from the calculator [...]</description>
		<content:encoded><![CDATA[<p>[...] gateways, which are often unsecured &#8211; allowing a hacker to get a command prompt on the servers. This article explains how, and includes a video showing how to get a command prompt from the calculator [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>
