<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>ethicalhack3r</title>
	<atom:link href="http://www.ethicalhack3r.co.uk/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.ethicalhack3r.co.uk</link>
	<description></description>
	<lastBuildDate>Thu, 05 Aug 2010 19:01:20 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=abc</generator>
		<item>
		<title>DropBox Security</title>
		<link>http://www.ethicalhack3r.co.uk/security/dropbox-security/</link>
		<comments>http://www.ethicalhack3r.co.uk/security/dropbox-security/#comments</comments>
		<pubDate>Tue, 03 Aug 2010 12:29:06 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://www.ethicalhack3r.co.uk/?p=756</guid>
		<description><![CDATA[For those of you new to Dropbox: &#8220;Dropbox is a Web-based file hosting service operated by Dropbox, Inc. which uses cloud computing to enable users to store and share files and folders with others across the Internet using file synchronization.&#8221; http://en.wikipedia.org/wiki/Dropbox_%28service%29 Dropbox has become very popular and widely used as it has so many different [...]]]></description>
		<wfw:commentRss>http://www.ethicalhack3r.co.uk/security/dropbox-security/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
		<item>
		<title>[Interview] The Jester</title>
		<link>http://www.ethicalhack3r.co.uk/security/interview-the-jester/</link>
		<comments>http://www.ethicalhack3r.co.uk/security/interview-the-jester/#comments</comments>
		<pubDate>Sat, 03 Jul 2010 22:35:19 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Interviews]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://www.ethicalhack3r.co.uk/?p=742</guid>
		<description><![CDATA[It&#8217;s not often I interview people for the blog however when some one catches my eye and raises my interest I like to find out more about them and share it with my readers. This time I interviewed &#8216;The Jester&#8217;. The Jester has been in the media spotlight recently for taking down Jihadist terrorist web [...]]]></description>
		<wfw:commentRss>http://www.ethicalhack3r.co.uk/security/interview-the-jester/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Why Johnny Can’t Pentest</title>
		<link>http://www.ethicalhack3r.co.uk/security/738/</link>
		<comments>http://www.ethicalhack3r.co.uk/security/738/#comments</comments>
		<pubDate>Sat, 03 Jul 2010 15:48:40 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://www.ethicalhack3r.co.uk/?p=738</guid>
		<description><![CDATA[A white paper released recently (not dated) by the University of California titled ‘Why Johnny Can’t Pentest: An Analysis of Black-box Web Vulnerability Scanners’ evaluates eleven commercial and open-source black-box web vulnerability scanners. The three authors of the paper (Adoupe, Marco, Vigna) test the black-box scanners against their custom vulnerable web application they called WackoPicko. [...]]]></description>
		<wfw:commentRss>http://www.ethicalhack3r.co.uk/security/738/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Web server zombies</title>
		<link>http://www.ethicalhack3r.co.uk/security/web-server-zombies/</link>
		<comments>http://www.ethicalhack3r.co.uk/security/web-server-zombies/#comments</comments>
		<pubDate>Sun, 27 Jun 2010 20:21:26 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://www.ethicalhack3r.co.uk/?p=723</guid>
		<description><![CDATA[Every now and then I like to visit black-hat community forums for a number of legitimate reasons. I like to see what the other side are up to, what they are buying/selling, at what price, who they are targeting, the skill level of the attackers, what exploitation techniques they use, etc. Visiting these underground community [...]]]></description>
		<wfw:commentRss>http://www.ethicalhack3r.co.uk/security/web-server-zombies/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Weponising Web bugs</title>
		<link>http://www.ethicalhack3r.co.uk/security/weponising-web-bugs/</link>
		<comments>http://www.ethicalhack3r.co.uk/security/weponising-web-bugs/#comments</comments>
		<pubDate>Mon, 31 May 2010 15:27:12 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://www.ethicalhack3r.co.uk/?p=697</guid>
		<description><![CDATA[Back in March 2009 I wrote a blog post about using web bugs in information gathering, found here. For those unfamiliar with web bugs; &#8220;A web bug is an object that is embedded in a web page or e-mail and is usually invisible to the user but allows checking that a user has viewed the [...]]]></description>
		<wfw:commentRss>http://www.ethicalhack3r.co.uk/security/weponising-web-bugs/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>DevBUG &#8211; Keeping track so you don&#8217;t have to</title>
		<link>http://www.ethicalhack3r.co.uk/security/devbug-keeping-track-so-you-dont-have-to/</link>
		<comments>http://www.ethicalhack3r.co.uk/security/devbug-keeping-track-so-you-dont-have-to/#comments</comments>
		<pubDate>Fri, 21 May 2010 15:05:21 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://www.ethicalhack3r.co.uk/?p=695</guid>
		<description><![CDATA[DevBUG is an idea that came to me while conducting a Vulnerability Assessment for University a few months back. We did a service scan on a web server and found that way too many ports and services were running! But that wasn&#8217;t the problem, well, not for us anyway. The problem was, is that we [...]]]></description>
		<wfw:commentRss>http://www.ethicalhack3r.co.uk/security/devbug-keeping-track-so-you-dont-have-to/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>UK Security Clearance 101</title>
		<link>http://www.ethicalhack3r.co.uk/security/uk-security-clearance-101/</link>
		<comments>http://www.ethicalhack3r.co.uk/security/uk-security-clearance-101/#comments</comments>
		<pubDate>Sun, 16 May 2010 13:16:10 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://www.ethicalhack3r.co.uk/?p=684</guid>
		<description><![CDATA[In the Information Security industry it is said that if you have security clearance you can earn significantly more income and work on exiting secret projects for government agencies. So what is security clearance and how do I get it? Security clearance is a way to prove your trustworthiness at a particular point in time [...]]]></description>
		<wfw:commentRss>http://www.ethicalhack3r.co.uk/security/uk-security-clearance-101/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Month of PHP Security</title>
		<link>http://www.ethicalhack3r.co.uk/security/month-of-php-security/</link>
		<comments>http://www.ethicalhack3r.co.uk/security/month-of-php-security/#comments</comments>
		<pubDate>Wed, 28 Apr 2010 13:29:34 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://www.ethicalhack3r.co.uk/?p=677</guid>
		<description><![CDATA[In 2007 the Hardened-PHP Project setup by three German Security Researchers organised the Month of PHP Bugs (MOPB). The &#8216;Month of Bugs&#8217; concept was started by non other than HD Moore back in 2006 with his Month of Browser Bugs (MoBB) which found security holes within most of the popular browsers. Since then there have [...]]]></description>
		<wfw:commentRss>http://www.ethicalhack3r.co.uk/security/month-of-php-security/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Skipfish &#8211; Automated web security scanner</title>
		<link>http://www.ethicalhack3r.co.uk/security/skipfish-automated-web-security-scanner/</link>
		<comments>http://www.ethicalhack3r.co.uk/security/skipfish-automated-web-security-scanner/#comments</comments>
		<pubDate>Sun, 21 Mar 2010 02:49:44 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Toolz]]></category>

		<guid isPermaLink="false">http://www.ethicalhack3r.co.uk/?p=633</guid>
		<description><![CDATA[A couple of days ago (March 19th) Michal Zalewski famous for tools such as p0f and his excellent book 'Silence on the wire' announced the release of an open source automated web security scanner called Skipfish from the <a href="http://googleonlinesecurity.blogspot.com/">Google Online Security Blog</a>.

<strong>
</strong>

<img src="http://www.ethicalhack3r.co.uk/wp-content/uploads/2010/03/sf_name.png" alt="" title="sf_name" width="203" height="93" class="alignnone size-full wp-image-638" />

<strong>
</strong>

<blockquote>Key features:

<strong>High speed:</strong> pure C code, highly optimized HTTP handling, minimal CPU footprint - easily achieving 2000 requests per second with responsive targets. 

<strong>Ease of use:</strong> heuristics to support a variety of quirky web frameworks and mixed-technology sites, with automatic learning capabilities, on-the-fly wordlist creation, and form autocompletion. 

<strong>Cutting-edge security logic:</strong> high quality, low false positive, differential security checks, capable of spotting a range of subtle flaws, including blind injection vectors. </blockquote>]]></description>
		<wfw:commentRss>http://www.ethicalhack3r.co.uk/security/skipfish-automated-web-security-scanner/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>OWASP Testing Methodology</title>
		<link>http://www.ethicalhack3r.co.uk/security/owasp-testing-methodology/</link>
		<comments>http://www.ethicalhack3r.co.uk/security/owasp-testing-methodology/#comments</comments>
		<pubDate>Mon, 08 Mar 2010 13:47:38 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://www.ethicalhack3r.co.uk/?p=614</guid>
		<description><![CDATA[It is very easy for some one to find an XSS vulnerability within a web application and write a report about it. According to WhiteHat Security (2007) there is a 73% chance that you will find an XSS vulnerability within a web application. Does finding one of these mean you have assessed the security of [...]]]></description>
		<wfw:commentRss>http://www.ethicalhack3r.co.uk/security/owasp-testing-methodology/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
