<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: Vulnerabilities in Skype</title>
	<atom:link href="http://www.gnucitizen.org/blog/vulnerabilities-in-skype/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.gnucitizen.org/blog/vulnerabilities-in-skype/</link>
	<description>Cutting-edge Think tank &#124; Ethical Hacker Outfit</description>
	<pubDate>Fri, 04 Jul 2008 17:27:18 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.5.1</generator>
		<item>
		<title>By: A Technocrat&#8217;s Blog &#187; Skype Trojan wiretap plan leaks onto the net</title>
		<link>http://www.gnucitizen.org/blog/vulnerabilities-in-skype/#comment-105773</link>
		<dc:creator>A Technocrat&#8217;s Blog &#187; Skype Trojan wiretap plan leaks onto the net</dc:creator>
		<pubDate>Wed, 30 Jan 2008 10:15:04 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/vulnerabilities-in-skype#comment-105773</guid>
		<description>[...] movie peril also expressed concerns about Skype&#8217;s security architecture more generally. He suggested that unencrypted data within Skype&#8217;s ads created a means for hackers to taint ad traffic with [...]</description>
		<content:encoded><![CDATA[<p>[...] movie peril also expressed concerns about Skype&#8217;s security architecture more generally. He suggested that unencrypted data within Skype&#8217;s ads created a means for hackers to taint ad traffic with [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Skype trojan wiretap plan leaks onto the net &#124; Rochak Chauhan::Unpredictably Exciting</title>
		<link>http://www.gnucitizen.org/blog/vulnerabilities-in-skype/#comment-105723</link>
		<dc:creator>Skype trojan wiretap plan leaks onto the net &#124; Rochak Chauhan::Unpredictably Exciting</dc:creator>
		<pubDate>Wed, 30 Jan 2008 08:35:06 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/vulnerabilities-in-skype#comment-105723</guid>
		<description>[...] movie peril also expressed concerns about Skype&#8217;s security architecture more generally. He suggested that unencrypted data within Skype&#8217;s ads created a means for hackers to taint ad traffic with [...]</description>
		<content:encoded><![CDATA[<p>[...] movie peril also expressed concerns about Skype&#8217;s security architecture more generally. He suggested that unencrypted data within Skype&#8217;s ads created a means for hackers to taint ad traffic with [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Bug na busca de vídeo pelo Skype permite instalação de malware</title>
		<link>http://www.gnucitizen.org/blog/vulnerabilities-in-skype/#comment-103808</link>
		<dc:creator>Bug na busca de vídeo pelo Skype permite instalação de malware</dc:creator>
		<pubDate>Fri, 25 Jan 2008 23:08:37 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/vulnerabilities-in-skype#comment-103808</guid>
		<description>[...] disco local, além de executá-los&#8221; alertou o pesquisador de segurança Petko Petkov, em um post na quinta-feira [...]</description>
		<content:encoded><![CDATA[<p>[...] disco local, além de executá-los&#8221; alertou o pesquisador de segurança Petko Petkov, em um post na quinta-feira [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Bug na busca de vídeo pelo Skype permite instalação de malware &#124; Convergência VoIP</title>
		<link>http://www.gnucitizen.org/blog/vulnerabilities-in-skype/#comment-103754</link>
		<dc:creator>Bug na busca de vídeo pelo Skype permite instalação de malware &#124; Convergência VoIP</dc:creator>
		<pubDate>Fri, 25 Jan 2008 21:14:17 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/vulnerabilities-in-skype#comment-103754</guid>
		<description>[...] disco local, além de executá-los&#8221; alertou o pesquisador de segurança Petko Petkov, em um post na quinta-feira [...]</description>
		<content:encoded><![CDATA[<p>[...] disco local, além de executá-los&#8221; alertou o pesquisador de segurança Petko Petkov, em um post na quinta-feira [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Skype: Vulnerabilità Cross-Zone Scripting &#171; Simply Security</title>
		<link>http://www.gnucitizen.org/blog/vulnerabilities-in-skype/#comment-102584</link>
		<dc:creator>Skype: Vulnerabilità Cross-Zone Scripting &#171; Simply Security</dc:creator>
		<pubDate>Wed, 23 Jan 2008 08:39:17 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/vulnerabilities-in-skype#comment-102584</guid>
		<description>[...] D. Petkov, fondatore della security consultancy GnuCitzen.org, commenta in un intervento dedicato: &#8220;L&#8217;utente deve solo visitare DailyMotion da &#8216;Add video to chat&#8217; di Skype e [...]</description>
		<content:encoded><![CDATA[<p>[...] D. Petkov, fondatore della security consultancy GnuCitzen.org, commenta in un intervento dedicato: &#8220;L&#8217;utente deve solo visitare DailyMotion da &#8216;Add video to chat&#8217; di Skype e [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Info World &#187; Blog Archive &#187; Worm fears shut down Skype video feature</title>
		<link>http://www.gnucitizen.org/blog/vulnerabilities-in-skype/#comment-102493</link>
		<dc:creator>Info World &#187; Blog Archive &#187; Worm fears shut down Skype video feature</dc:creator>
		<pubDate>Wed, 23 Jan 2008 00:44:03 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/vulnerabilities-in-skype#comment-102493</guid>
		<description>[...] security researcher who has been studying the flaw [...]</description>
		<content:encoded><![CDATA[<p>[...] security researcher who has been studying the flaw [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Google Search Brasil &#187; Blog Archive &#187; Skype trabalha em vulnerabilidade de segurança de software VoI</title>
		<link>http://www.gnucitizen.org/blog/vulnerabilities-in-skype/#comment-102491</link>
		<dc:creator>Google Search Brasil &#187; Blog Archive &#187; Skype trabalha em vulnerabilidade de segurança de software VoI</dc:creator>
		<pubDate>Wed, 23 Jan 2008 00:30:38 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/vulnerabilities-in-skype#comment-102491</guid>
		<description>[...] consultor de segurança Petko Petkov explicou em um artigo que, ainda que um tanto complexo, o ataque é muito possível e razoavelmente prático. O hacker [...]</description>
		<content:encoded><![CDATA[<p>[...] consultor de segurança Petko Petkov explicou em um artigo que, ainda que um tanto complexo, o ataque é muito possível e razoavelmente prático. O hacker [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Skype flaw turns videos into weapons</title>
		<link>http://www.gnucitizen.org/blog/vulnerabilities-in-skype/#comment-102064</link>
		<dc:creator>Skype flaw turns videos into weapons</dc:creator>
		<pubDate>Mon, 21 Jan 2008 11:26:34 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/vulnerabilities-in-skype#comment-102064</guid>
		<description>[...] from the local disc and launching executables,&#8221; wrote security researcher Petko Petkov, in a Thursday blog post about the [...]</description>
		<content:encoded><![CDATA[<p>[...] from the local disc and launching executables,&#8221; wrote security researcher Petko Petkov, in a Thursday blog post about the [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Skype blocks poison movie peril : Welcome To Tech-Dump</title>
		<link>http://www.gnucitizen.org/blog/vulnerabilities-in-skype/#comment-101937</link>
		<dc:creator>Skype blocks poison movie peril : Welcome To Tech-Dump</dc:creator>
		<pubDate>Mon, 21 Jan 2008 03:02:34 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/vulnerabilities-in-skype#comment-101937</guid>
		<description>[...] criticised Skype&#8217;s security architecture more generally. He suggested that unencrypted data within [...]</description>
		<content:encoded><![CDATA[<p>[...] criticised Skype&#8217;s security architecture more generally. He suggested that unencrypted data within [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: share and upload blogs &#187; Skype Block Evil Movie</title>
		<link>http://www.gnucitizen.org/blog/vulnerabilities-in-skype/#comment-101497</link>
		<dc:creator>share and upload blogs &#187; Skype Block Evil Movie</dc:creator>
		<pubDate>Sun, 20 Jan 2008 01:08:51 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/vulnerabilities-in-skype#comment-101497</guid>
		<description>[...] criticised Skype&#8217;s security architecture more generally. He suggested that unencrypted data within [...]</description>
		<content:encoded><![CDATA[<p>[...] criticised Skype&#8217;s security architecture more generally. He suggested that unencrypted data within [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Gravi problemi di sicurezza per Skype. Immediati i rimedi ma forse non ancora sufficienti. &#124; VoipBlog.it</title>
		<link>http://www.gnucitizen.org/blog/vulnerabilities-in-skype/#comment-101270</link>
		<dc:creator>Gravi problemi di sicurezza per Skype. Immediati i rimedi ma forse non ancora sufficienti. &#124; VoipBlog.it</dc:creator>
		<pubDate>Sat, 19 Jan 2008 12:33:16 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/vulnerabilities-in-skype#comment-101270</guid>
		<description>[...] Fonte: Gnucitizen [...]</description>
		<content:encoded><![CDATA[<p>[...] Fonte: Gnucitizen [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: HTA Team.info</title>
		<link>http://www.gnucitizen.org/blog/vulnerabilities-in-skype/#comment-101223</link>
		<dc:creator>HTA Team.info</dc:creator>
		<pubDate>Sat, 19 Jan 2008 09:07:35 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/vulnerabilities-in-skype#comment-101223</guid>
		<description>[...] по сетевой безопасности Петко Петков (Petko Petkov) в своем блоге, описывая данную [...]</description>
		<content:encoded><![CDATA[<p>[...] по сетевой безопасности Петко Петков (Petko Petkov) в своем блоге, описывая данную [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Global PWD &#187; Blog Archive &#187; &#187; Skype flaw turns videos into weapons</title>
		<link>http://www.gnucitizen.org/blog/vulnerabilities-in-skype/#comment-101075</link>
		<dc:creator>Global PWD &#187; Blog Archive &#187; &#187; Skype flaw turns videos into weapons</dc:creator>
		<pubDate>Fri, 18 Jan 2008 22:24:18 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/vulnerabilities-in-skype#comment-101075</guid>
		<description>[...] from the local disc and launching executables,&#8221; wrote security researcher Petko Petkov, in a Thursday blog post about the [...]</description>
		<content:encoded><![CDATA[<p>[...] from the local disc and launching executables,&#8221; wrote security researcher Petko Petkov, in a Thursday blog post about the [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: WebMilk.ru - молочные новости Интернета &#187; Скайп превращает видео в оружие для хакеров!</title>
		<link>http://www.gnucitizen.org/blog/vulnerabilities-in-skype/#comment-101008</link>
		<dc:creator>WebMilk.ru - молочные новости Интернета &#187; Скайп превращает видео в оружие для хакеров!</dc:creator>
		<pubDate>Fri, 18 Jan 2008 18:59:58 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/vulnerabilities-in-skype#comment-101008</guid>
		<description>[...] по сетевой безопасности Петко Петков (Petko Petkov) в своем блоге, описывая данную [...]</description>
		<content:encoded><![CDATA[<p>[...] по сетевой безопасности Петко Петков (Petko Petkov) в своем блоге, описывая данную [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Chaim Haas</title>
		<link>http://www.gnucitizen.org/blog/vulnerabilities-in-skype/#comment-100941</link>
		<dc:creator>Chaim Haas</dc:creator>
		<pubDate>Fri, 18 Jan 2008 14:12:16 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/vulnerabilities-in-skype#comment-100941</guid>
		<description>Skype provides a full description of the vulnerability on its &lt;a href="http://share.skype.com/sites/security/2008/01/skype_cross_zone_scripting_vul.html" rel="nofollow"&gt;Security Blog&lt;/a&gt; and the steps that have been taken to neutralize the problem so it doesn't affect users.</description>
		<content:encoded><![CDATA[<p>Skype provides a full description of the vulnerability on its <a href="http://share.skype.com/sites/security/2008/01/skype_cross_zone_scripting_vul.html" rel="nofollow">Security Blog</a> and the steps that have been taken to neutralize the problem so it doesn&#8217;t affect users.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Security Tips &#187; Skype Vulnerability Threatens Video Searchers</title>
		<link>http://www.gnucitizen.org/blog/vulnerabilities-in-skype/#comment-100937</link>
		<dc:creator>Security Tips &#187; Skype Vulnerability Threatens Video Searchers</dc:creator>
		<pubDate>Fri, 18 Jan 2008 13:48:18 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/vulnerabilities-in-skype#comment-100937</guid>
		<description>[...] GNU Citizen, PDP said some parts of Skype traffic, like ads, are not encrypted, and likewise travel over an [...]</description>
		<content:encoded><![CDATA[<p>[...] GNU Citizen, PDP said some parts of Skype traffic, like ads, are not encrypted, and likewise travel over an [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Info World &#187; Blog Archive &#187; Skype flaw turns videos into weapons</title>
		<link>http://www.gnucitizen.org/blog/vulnerabilities-in-skype/#comment-100918</link>
		<dc:creator>Info World &#187; Blog Archive &#187; Skype flaw turns videos into weapons</dc:creator>
		<pubDate>Fri, 18 Jan 2008 11:52:54 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/vulnerabilities-in-skype#comment-100918</guid>
		<description>[...] from the local disc and launching executables,&#34; wrote security researcher Petko Petkov, in a Thursday blog post about the [...]</description>
		<content:encoded><![CDATA[<p>[...] from the local disc and launching executables,&quot; wrote security researcher Petko Petkov, in a Thursday blog post about the [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: pdp</title>
		<link>http://www.gnucitizen.org/blog/vulnerabilities-in-skype/#comment-100906</link>
		<dc:creator>pdp</dc:creator>
		<pubDate>Fri, 18 Jan 2008 11:04:02 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/vulnerabilities-in-skype#comment-100906</guid>
		<description>LiquidIce, I think that you commented on the wrong post. This one has nothing to do with UPnP. :)</description>
		<content:encoded><![CDATA[<p>LiquidIce, I think that you commented on the wrong post. This one has nothing to do with UPnP. :)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: LiquidIce</title>
		<link>http://www.gnucitizen.org/blog/vulnerabilities-in-skype/#comment-100813</link>
		<dc:creator>LiquidIce</dc:creator>
		<pubDate>Fri, 18 Jan 2008 03:09:20 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/vulnerabilities-in-skype#comment-100813</guid>
		<description>There are a few devices that I have seen which cause Windows XP to popup a little tooltip in the task tray saying 'a new device has been detected'. And sometiems when I click on that bubble it opens a webpage. 
I have not been able to reproduce this, and have not seen it occur lately... Was it fixed in a windows update? Does this have anything to do with SSDP? I was wondering if it is possible to craft an SSDP packet that will signal other XP computers on the network to show that tooltip. Some of the devices that I have seen do this are the Infrant Readynas and a DLink wifi router. I've also noticed that Sonos causes Windows Media Player to popup a tooltip sometimes as well asking to allow it to share it's media.

Speaking of sonos... this device runs off upnp. Has anyone here been able to do any interesting things with it?</description>
		<content:encoded><![CDATA[<p>There are a few devices that I have seen which cause Windows XP to popup a little tooltip in the task tray saying &#8216;a new device has been detected&#8217;. And sometiems when I click on that bubble it opens a webpage.<br />
I have not been able to reproduce this, and have not seen it occur lately&#8230; Was it fixed in a windows update? Does this have anything to do with SSDP? I was wondering if it is possible to craft an SSDP packet that will signal other XP computers on the network to show that tooltip. Some of the devices that I have seen do this are the Infrant Readynas and a DLink wifi router. I&#8217;ve also noticed that Sonos causes Windows Media Player to popup a tooltip sometimes as well asking to allow it to share it&#8217;s media.</p>
<p>Speaking of sonos&#8230; this device runs off upnp. Has anyone here been able to do any interesting things with it?</p>
]]></content:encoded>
	</item>
</channel>
</rss>
