<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: For my next trick&#8230; hacking Web2.0</title>
	<atom:link href="http://www.gnucitizen.org/blog/for-my-next-trick-hacking-web20/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.gnucitizen.org/blog/for-my-next-trick-hacking-web20/</link>
	<description>Information Security Think Tank</description>
	<pubDate>Fri, 21 Nov 2008 21:28:08 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6.3</generator>
		<item>
		<title>By: Facebook, Worms and RSS Feeds - Hacking The Web2.0 Way and Beyond &#124; GNUCITIZEN</title>
		<link>http://www.gnucitizen.org/blog/for-my-next-trick-hacking-web20/#comment-124221</link>
		<dc:creator>Facebook, Worms and RSS Feeds - Hacking The Web2.0 Way and Beyond &#124; GNUCITIZEN</dc:creator>
		<pubDate>Wed, 29 Oct 2008 17:10:19 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/for-my-next-trick%e2%80%a6-hacking-web20#comment-124221</guid>
		<description>[...] been describing the numerous web2.0 attack strategies countless of times. Perhaps you remember my paper on hacking Web2.0? It sounds very similar to Ryan&#8217;s article, doesn&#8217;t [...]</description>
		<content:encoded><![CDATA[<p>[...] been describing the numerous web2.0 attack strategies countless of times. Perhaps you remember my paper on hacking Web2.0? It sounds very similar to Ryan&#8217;s article, doesn&#8217;t [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: J. Dameure</title>
		<link>http://www.gnucitizen.org/blog/for-my-next-trick-hacking-web20/#comment-117655</link>
		<dc:creator>J. Dameure</dc:creator>
		<pubDate>Sat, 29 Mar 2008 15:35:10 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/for-my-next-trick%e2%80%a6-hacking-web20#comment-117655</guid>
		<description>Awesome work and great overview this article gives. Got to read it serveral times though to get all the details :-)</description>
		<content:encoded><![CDATA[<p>Awesome work and great overview this article gives. Got to read it serveral times though to get all the details :-)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: pdp</title>
		<link>http://www.gnucitizen.org/blog/for-my-next-trick-hacking-web20/#comment-115737</link>
		<dc:creator>pdp</dc:creator>
		<pubDate>Thu, 28 Feb 2008 16:56:30 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/for-my-next-trick%e2%80%a6-hacking-web20#comment-115737</guid>
		<description>tanu &#038; tanessa, thanks. I am glad that you have enjoyed it.</description>
		<content:encoded><![CDATA[<p>tanu &#038; tanessa, thanks. I am glad that you have enjoyed it.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: tanessa</title>
		<link>http://www.gnucitizen.org/blog/for-my-next-trick-hacking-web20/#comment-115734</link>
		<dc:creator>tanessa</dc:creator>
		<pubDate>Thu, 28 Feb 2008 10:11:04 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/for-my-next-trick%e2%80%a6-hacking-web20#comment-115734</guid>
		<description>lovely work very well reaserched. I agree with Tanu(another person who gave her comments) that this should be told to each person who uses the internet it is ggggggreat. I think fantastic keep up the good work. i enjoyed every nuk-and-corner of this website. It was an eye-opener</description>
		<content:encoded><![CDATA[<p>lovely work very well reaserched. I agree with Tanu(another person who gave her comments) that this should be told to each person who uses the internet it is ggggggreat. I think fantastic keep up the good work. i enjoyed every nuk-and-corner of this website. It was an eye-opener</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: tanu</title>
		<link>http://www.gnucitizen.org/blog/for-my-next-trick-hacking-web20/#comment-115732</link>
		<dc:creator>tanu</dc:creator>
		<pubDate>Thu, 28 Feb 2008 10:04:10 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/for-my-next-trick%e2%80%a6-hacking-web20#comment-115732</guid>
		<description>excellent work should be published in newspapers worldwide or published in books or anything. bassiccally it should be conveyed to each human being using the internet</description>
		<content:encoded><![CDATA[<p>excellent work should be published in newspapers worldwide or published in books or anything. bassiccally it should be conveyed to each human being using the internet</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: &#187; You Suck at Web Security riahmat1c</title>
		<link>http://www.gnucitizen.org/blog/for-my-next-trick-hacking-web20/#comment-109695</link>
		<dc:creator>&#187; You Suck at Web Security riahmat1c</dc:creator>
		<pubDate>Tue, 05 Feb 2008 01:39:35 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/for-my-next-trick%e2%80%a6-hacking-web20#comment-109695</guid>
		<description>[...] nothing! This is something that doesn&#8217;t happen quickly, either. Despite hours of reading papers and discussions, my first reaction to seeing a new technology is still &#8220;Wow, that would be a [...]</description>
		<content:encoded><![CDATA[<p>[...] nothing! This is something that doesn&#8217;t happen quickly, either. Despite hours of reading papers and discussions, my first reaction to seeing a new technology is still &#8220;Wow, that would be a [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Inking&#8217;s Blog &#187; Google GMail E-mail Hijack Technique</title>
		<link>http://www.gnucitizen.org/blog/for-my-next-trick-hacking-web20/#comment-108295</link>
		<dc:creator>Inking&#8217;s Blog &#187; Google GMail E-mail Hijack Technique</dc:creator>
		<pubDate>Sun, 03 Feb 2008 04:56:42 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/for-my-next-trick%e2%80%a6-hacking-web20#comment-108295</guid>
		<description>[...] The technique used in this example is known as Cross-site request forgery, or simply put CSRF. I am not planning to go into details how it works. Just look it up on Google or better yet, Yahoo. Yes Yahoo is a lot better these days, especially when it comes to hardcore Web2.0 API hacking. For more information, check out the following white paper. [...]</description>
		<content:encoded><![CDATA[<p>[...] The technique used in this example is known as Cross-site request forgery, or simply put CSRF. I am not planning to go into details how it works. Just look it up on Google or better yet, Yahoo. Yes Yahoo is a lot better these days, especially when it comes to hardcore Web2.0 API hacking. For more information, check out the following white paper. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: rajsekhaar</title>
		<link>http://www.gnucitizen.org/blog/for-my-next-trick-hacking-web20/#comment-96512</link>
		<dc:creator>rajsekhaar</dc:creator>
		<pubDate>Mon, 07 Jan 2008 17:40:05 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/for-my-next-trick%e2%80%a6-hacking-web20#comment-96512</guid>
		<description>Good site</description>
		<content:encoded><![CDATA[<p>Good site</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Blogging in the name of&#8230;. &#187; Blog Archive &#187; Watch your Gmail Filters</title>
		<link>http://www.gnucitizen.org/blog/for-my-next-trick-hacking-web20/#comment-92125</link>
		<dc:creator>Blogging in the name of&#8230;. &#187; Blog Archive &#187; Watch your Gmail Filters</dc:creator>
		<pubDate>Thu, 27 Dec 2007 14:29:39 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/for-my-next-trick%e2%80%a6-hacking-web20#comment-92125</guid>
		<description>[...] forwarding your mail to an unknown address. But don&#8217;t relax just yet. With Web 2.0 being the new favorite playground for hackers, the tech savvy user will probably have to think twice before using online applications. Be it [...]</description>
		<content:encoded><![CDATA[<p>[...] forwarding your mail to an unknown address. But don&#8217;t relax just yet. With Web 2.0 being the new favorite playground for hackers, the tech savvy user will probably have to think twice before using online applications. Be it [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Web 2.0 security &#171; Continuous improvement</title>
		<link>http://www.gnucitizen.org/blog/for-my-next-trick-hacking-web20/#comment-89744</link>
		<dc:creator>Web 2.0 security &#171; Continuous improvement</dc:creator>
		<pubDate>Fri, 21 Dec 2007 13:51:39 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/for-my-next-trick%e2%80%a6-hacking-web20#comment-89744</guid>
		<description>[...] Next Line of Defence: Web2.0! You must read this!: Do you remember my words from my Web2.0 hacking talk: Data in the Cloud, Applications on demand, but for malware! Well it is happening! And I know [...]</description>
		<content:encoded><![CDATA[<p>[...] Next Line of Defence: Web2.0! You must read this!: Do you remember my words from my Web2.0 hacking talk: Data in the Cloud, Applications on demand, but for malware! Well it is happening! And I know [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: The Next Line of Defence: Web2.0! You must read this! &#124; GNUCITIZEN</title>
		<link>http://www.gnucitizen.org/blog/for-my-next-trick-hacking-web20/#comment-85468</link>
		<dc:creator>The Next Line of Defence: Web2.0! You must read this! &#124; GNUCITIZEN</dc:creator>
		<pubDate>Wed, 12 Dec 2007 16:32:12 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/for-my-next-trick%e2%80%a6-hacking-web20#comment-85468</guid>
		<description>[...] Web2.0! You must read this! published: December 12th, 2007 Do you remember my words from my Web2.0 hacking talk: Data in the Cloud, Applications on demand, but for malware! Well it is happening! And I know [...]</description>
		<content:encoded><![CDATA[<p>[...] Web2.0! You must read this! published: December 12th, 2007 Do you remember my words from my Web2.0 hacking talk: Data in the Cloud, Applications on demand, but for malware! Well it is happening! And I know [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: GEO Tracking Online Personas &#124; GNUCITIZEN</title>
		<link>http://www.gnucitizen.org/blog/for-my-next-trick-hacking-web20/#comment-79356</link>
		<dc:creator>GEO Tracking Online Personas &#124; GNUCITIZEN</dc:creator>
		<pubDate>Fri, 30 Nov 2007 14:37:50 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/for-my-next-trick%e2%80%a6-hacking-web20#comment-79356</guid>
		<description>[...] Tracking Online Personas published: November 30th, 2007 After I have released the paper on Web2.0 hacking/security, I&#8217;ve been asked, on a numerous occasion, to come up with some tools that can be use to [...]</description>
		<content:encoded><![CDATA[<p>[...] Tracking Online Personas published: November 30th, 2007 After I have released the paper on Web2.0 hacking/security, I&#8217;ve been asked, on a numerous occasion, to come up with some tools that can be use to [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Smart Utility Computer with WebDAV: the stuff Google should implement &#124; Hakiri</title>
		<link>http://www.gnucitizen.org/blog/for-my-next-trick-hacking-web20/#comment-74549</link>
		<dc:creator>Smart Utility Computer with WebDAV: the stuff Google should implement &#124; Hakiri</dc:creator>
		<pubDate>Tue, 20 Nov 2007 16:47:42 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/for-my-next-trick%e2%80%a6-hacking-web20#comment-74549</guid>
		<description>[...] about all these, not until yesterday when I was working on some advance Web2.0 attack models (check Web2.0 hacking for more information). I&#8217;ve released that in order to build a tangled attack infrastructure, [...]</description>
		<content:encoded><![CDATA[<p>[...] about all these, not until yesterday when I was working on some advance Web2.0 attack models (check Web2.0 hacking for more information). I&#8217;ve released that in order to build a tangled attack infrastructure, [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: OWASP USA 2007 AppSec Conference &#124; GNUCITIZEN</title>
		<link>http://www.gnucitizen.org/blog/for-my-next-trick-hacking-web20/#comment-73077</link>
		<dc:creator>OWASP USA 2007 AppSec Conference &#124; GNUCITIZEN</dc:creator>
		<pubDate>Sun, 18 Nov 2007 20:51:41 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/for-my-next-trick%e2%80%a6-hacking-web20#comment-73077</guid>
		<description>[...] was honored to present my research on Web2.0 hacking, which I&#8217;ve also talked about over here. The slides were slightly adjusted to suit the [...]</description>
		<content:encoded><![CDATA[<p>[...] was honored to present my research on Web2.0 hacking, which I&#8217;ve also talked about over here. The slides were slightly adjusted to suit the [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Neo in making</title>
		<link>http://www.gnucitizen.org/blog/for-my-next-trick-hacking-web20/#comment-60880</link>
		<dc:creator>Neo in making</dc:creator>
		<pubDate>Tue, 23 Oct 2007 19:26:28 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/for-my-next-trick%e2%80%a6-hacking-web20#comment-60880</guid>
		<description>Great job man! I appreciate it :)</description>
		<content:encoded><![CDATA[<p>Great job man! I appreciate it :)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Renaissance &#124; GNUCITIZEN</title>
		<link>http://www.gnucitizen.org/blog/for-my-next-trick-hacking-web20/#comment-58294</link>
		<dc:creator>Renaissance &#124; GNUCITIZEN</dc:creator>
		<pubDate>Sun, 14 Oct 2007 07:55:40 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/for-my-next-trick%e2%80%a6-hacking-web20#comment-58294</guid>
		<description>[...] purposes as well. The project is still at development stage. We recommend you to have a look at the For my next trick&#8230; hacking Web2.0 purple paper for some insights how to use the [...]</description>
		<content:encoded><![CDATA[<p>[...] purposes as well. The project is still at development stage. We recommend you to have a look at the For my next trick&#8230; hacking Web2.0 purple paper for some insights how to use the [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Google Gmail: &#8220;E-mail Hijack&#8221; via CSRF &#171; Simply Security</title>
		<link>http://www.gnucitizen.org/blog/for-my-next-trick-hacking-web20/#comment-53399</link>
		<dc:creator>Google Gmail: &#8220;E-mail Hijack&#8221; via CSRF &#171; Simply Security</dc:creator>
		<pubDate>Fri, 28 Sep 2007 12:01:44 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/for-my-next-trick%e2%80%a6-hacking-web20#comment-53399</guid>
		<description>[...] Web2.0 API hacking&#8217;. Per maggiori informazioni date un&#8217;occhiata a questo white paper&#8220;. E conclude con una interessante notazione: &#8220;Se trovate da soli questa vulnerabilitÃ , [...]</description>
		<content:encoded><![CDATA[<p>[...] Web2.0 API hacking&#8217;. Per maggiori informazioni date un&#8217;occhiata a questo white paper&#8220;. E conclude con una interessante notazione: &#8220;Se trovate da soli questa vulnerabilitÃ , [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Kiril</title>
		<link>http://www.gnucitizen.org/blog/for-my-next-trick-hacking-web20/#comment-53052</link>
		<dc:creator>Kiril</dc:creator>
		<pubDate>Thu, 27 Sep 2007 07:58:59 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/for-my-next-trick%e2%80%a6-hacking-web20#comment-53052</guid>
		<description>I'm proud to be Bulgarian ciitzen, the author of the article is fellow-countryman :)</description>
		<content:encoded><![CDATA[<p>I&#8217;m proud to be Bulgarian ciitzen, the author of the article is fellow-countryman :)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Daniel</title>
		<link>http://www.gnucitizen.org/blog/for-my-next-trick-hacking-web20/#comment-52879</link>
		<dc:creator>Daniel</dc:creator>
		<pubDate>Wed, 26 Sep 2007 11:59:44 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/for-my-next-trick%e2%80%a6-hacking-web20#comment-52879</guid>
		<description>Really, I pretty like the picture!</description>
		<content:encoded><![CDATA[<p>Really, I pretty like the picture!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Google GMail E-mail Hijack Technique &#124; GNUCITIZEN</title>
		<link>http://www.gnucitizen.org/blog/for-my-next-trick-hacking-web20/#comment-52575</link>
		<dc:creator>Google GMail E-mail Hijack Technique &#124; GNUCITIZEN</dc:creator>
		<pubDate>Tue, 25 Sep 2007 18:50:39 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/for-my-next-trick%e2%80%a6-hacking-web20#comment-52575</guid>
		<description>[...] The technique used in this example is known as Cross-site request forgery, or simply put CSRF. I am not planning to go into details how it works. Just look it up on Google or better yet, Yahoo. Yes Yahoo is a lot better these days, especially when it comes to hardcore Web2.0 API hacking. For more information, check out the following white paper. [...]</description>
		<content:encoded><![CDATA[<p>[...] The technique used in this example is known as Cross-site request forgery, or simply put CSRF. I am not planning to go into details how it works. Just look it up on Google or better yet, Yahoo. Yes Yahoo is a lot better these days, especially when it comes to hardcore Web2.0 API hacking. For more information, check out the following white paper. [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>
