<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: PWN2OWN Rehashed</title>
	<atom:link href="http://www.gnucitizen.org/blog/pwn2own-rehashed/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.gnucitizen.org/blog/pwn2own-rehashed/</link>
	<description>Information Security Think Tank</description>
	<lastBuildDate>Tue, 09 Mar 2010 03:24:34 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.1</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Kishfellow</title>
		<link>http://www.gnucitizen.org/blog/pwn2own-rehashed/comment-page-1/#comment-117806</link>
		<dc:creator>Kishfellow</dc:creator>
		<pubDate>Thu, 03 Apr 2008 12:04:51 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/pwn2own-rehashed/#comment-117806</guid>
		<description>Alex sotirov, the bid&#039;s already been removed :(</description>
		<content:encoded><![CDATA[<p>Alex sotirov, the bid&#8217;s already been removed :(</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Awesome AnDrEw</title>
		<link>http://www.gnucitizen.org/blog/pwn2own-rehashed/comment-page-1/#comment-117776</link>
		<dc:creator>Awesome AnDrEw</dc:creator>
		<pubDate>Wed, 02 Apr 2008 17:50:25 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/pwn2own-rehashed/#comment-117776</guid>
		<description>I figured it would only be a matter of time until eBay pulled the auction, but I did get a chance to read about it from the interview with Alexander.</description>
		<content:encoded><![CDATA[<p>I figured it would only be a matter of time until eBay pulled the auction, but I did get a chance to read about it from the interview with Alexander.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: PWN to OWN Reading &#171; Iqag Notes</title>
		<link>http://www.gnucitizen.org/blog/pwn2own-rehashed/comment-page-1/#comment-117734</link>
		<dc:creator>PWN to OWN Reading &#171; Iqag Notes</dc:creator>
		<pubDate>Tue, 01 Apr 2008 14:34:54 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/pwn2own-rehashed/#comment-117734</guid>
		<description>[...] Planet Websecurity (links to original blogs): 1, 2 (the real winner? NoScript!), 3 (is a Flash flaw Microsoft&#8217;s fault? Would it work [...]</description>
		<content:encoded><![CDATA[<p>[...] Planet Websecurity (links to original blogs): 1, 2 (the real winner? NoScript!), 3 (is a Flash flaw Microsoft&#8217;s fault? Would it work [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: pdp</title>
		<link>http://www.gnucitizen.org/blog/pwn2own-rehashed/comment-page-1/#comment-117725</link>
		<dc:creator>pdp</dc:creator>
		<pubDate>Tue, 01 Apr 2008 07:19:48 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/pwn2own-rehashed/#comment-117725</guid>
		<description>zer0,

I am aware of a few vulns around the Java sockets which affect JVM at the moment. However, there were even some in the past which could allow access to localhost services, via the use of the relatively unknown URL handler. I hope that the JVM was patched :) for the contest.

Alexander,

current bid US $202.51, that&#039;s kind of cheep for this laptop + bonus exploit.</description>
		<content:encoded><![CDATA[<p>zer0,</p>
<p>I am aware of a few vulns around the Java sockets which affect JVM at the moment. However, there were even some in the past which could allow access to localhost services, via the use of the relatively unknown URL handler. I hope that the JVM was patched :) for the contest.</p>
<p>Alexander,</p>
<p>current bid US $202.51, that&#8217;s kind of cheep for this laptop + bonus exploit.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Alexander Sotirov</title>
		<link>http://www.gnucitizen.org/blog/pwn2own-rehashed/comment-page-1/#comment-117718</link>
		<dc:creator>Alexander Sotirov</dc:creator>
		<pubDate>Tue, 01 Apr 2008 04:40:31 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/pwn2own-rehashed/#comment-117718</guid>
		<description>You have a chance to find out for yourself, we&#039;re selling the pwned Vista box on eBay. The exploit might still be in the IE cache :-)

http://cgi.ebay.ca/ws/eBayISAPI.dll?ViewItem&amp;item=280214168502</description>
		<content:encoded><![CDATA[<p>You have a chance to find out for yourself, we&#8217;re selling the pwned Vista box on eBay. The exploit might still be in the IE cache :-)</p>
<p><a href="http://cgi.ebay.ca/ws/eBayISAPI.dll?ViewItem&amp;item=280214168502" rel="nofollow">http://cgi.ebay.ca/ws/eBayISAP.....0214168502</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: zer0</title>
		<link>http://www.gnucitizen.org/blog/pwn2own-rehashed/comment-page-1/#comment-117716</link>
		<dc:creator>zer0</dc:creator>
		<pubDate>Tue, 01 Apr 2008 04:30:10 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/pwn2own-rehashed/#comment-117716</guid>
		<description>I think you might want to have a look at java socket handling.</description>
		<content:encoded><![CDATA[<p>I think you might want to have a look at java socket handling.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
