<?xml version="1.0" encoding="iso-8859-1" ?>
<rss version="2.0" xmlns:s="http://updates.zdnet.com/">
<channel>
	<title><![CDATA[exploit code Resources | ZDNet]]></title>
	<link><![CDATA[http://updates.zdnet.com/tags/exploit+code.html]]></link>
	<description><![CDATA[White papers, case studies, technical articles, and blog posts relating to exploit code]]></description>
	<s:counts start="0" returned="20" found="245" />
	<language>en-us</language>
	<item>
		<title><![CDATA[Microsoft confirms IIS zero-day flaw; Exploit code published]]></title>
		<link><![CDATA[http://talkback.zdnet.com/5208-12691-0.html?forumID=1&threadID=68631&messageID=1310492&start=0]]></link>
		<description><![CDATA[Can I summarize?First you need to not only install IIS, you also need to install the FTP functionality in IIS. Got it.[i]Also, remember that only servers that allow untrusted users to log on and create arbitrary directories are vulnerable.[/i]Then you have to configure your FTP server to allow anyone to...]]></description>
		<s:doctype><![CDATA[Discussion threads]]></s:doctype>
		<pubDate>Tue, 01 Sep 2009 20:22:00 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[SECURITY]]></category>
		<category domain="http://updates.zdnet.com/tags/zero-day+bug.html"><![CDATA[zero-day bug]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft+corp..html"><![CDATA[Microsoft Corp.]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft+iis+server.html"><![CDATA[Microsoft IIS Server]]></category>
		<category domain="http://updates.zdnet.com/tags/exploit+code.html"><![CDATA[exploit code]]></category>
		<category domain="http://rss.financialcontent.com/stocksymbol">MSFT</category>
		<category domain="tickers">MSFT</category>
	</item>
	<item>
		<title><![CDATA[Microsoft confirms IIS zero-day flaw; Exploit code published]]></title>
		<link><![CDATA[http://blogs.zdnet.com/security/?p=4170]]></link>
		<description><![CDATA[Microsoft late Tuesday confirmed the publication of exploit code for a serious code execution vulnerability in the FTP Service in Microsoft Internet Information Services IIS 5.0, 5.1, and 6.0. by Ryan Naraine]]></description>
		<s:doctype><![CDATA[Blog posts]]></s:doctype>
		<pubDate>Tue, 01 Sep 2009 19:48:24 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/exploit+code.html"><![CDATA[Exploit Code]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft+corp..html"><![CDATA[Microsoft Corp.]]></category>
		<category domain="http://updates.zdnet.com/tags/zero-day+bug.html"><![CDATA[Zero-day Bug]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft+iis+server.html"><![CDATA[Microsoft IIS Server]]></category>
		<category domain="http://updates.zdnet.com/tags/ryan+naraine.html"><![CDATA[Ryan Naraine]]></category>
		<category domain="http://rss.financialcontent.com/stocksymbol">MSFT</category>
		<category domain="tickers">MSFT</category>
	</item>
	<item>
		<title><![CDATA[Microsoft: Exploits likely for 'critical' Windows vulnerabilities]]></title>
		<link><![CDATA[http://blogs.zdnet.com/security/?p=4015]]></link>
		<description><![CDATA[Microsoft today dropped a mega patch bundle with fixes for several "critical" vulnerabilities affecting the Windows platform and warned that "consistent, reliable exploit code" was likely to be released within 30 days.    The Redmond, Wash. software maker released nine bulletins -- five rated critical -- to provide...]]></description>
		<s:doctype><![CDATA[Blog posts]]></s:doctype>
		<pubDate>Tue, 11 Aug 2009 13:01:50 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/windows+vulnerability.html"><![CDATA[Windows Vulnerability]]></category>
		<category domain="http://updates.zdnet.com/tags/vulnerability.html"><![CDATA[Vulnerability]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft+windows.html"><![CDATA[Microsoft Windows]]></category>
		<category domain="http://updates.zdnet.com/tags/exploit+code.html"><![CDATA[Exploit Code]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft+corp..html"><![CDATA[Microsoft Corp.]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
		<category domain="http://updates.zdnet.com/tags/ryan+naraine.html"><![CDATA[Ryan Naraine]]></category>
		<category domain="http://rss.financialcontent.com/stocksymbol">MSFT</category>
		<category domain="tickers">MSFT</category>
	</item>
	<item>
		<title><![CDATA[Exploit code sends Mozilla scrambling to fix Firefox]]></title>
		<link><![CDATA[http://talkback.zdnet.com/5208-12691-0.html?forumID=1&threadID=62513&messageID=1152513&start=0]]></link>
		<description><![CDATA[Exploit code sends Mozilla scrambling to fix FirefoxNot intended to be flame-bait butWhere are the howls of outrage that we'd see if this were IE8? RE: Exploit code sends Mozilla scrambling to fix FirefoxYou don't get howls cause it gets fixed too quick! That my friend is the difference. The...]]></description>
		<s:doctype><![CDATA[Discussion threads]]></s:doctype>
		<pubDate>Thu, 26 Mar 2009 07:48:00 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/web+browsers.html"><![CDATA[Web browsers]]></category>
		<category domain="http://updates.zdnet.com/tags/mozilla+firefox.html"><![CDATA[Mozilla Firefox]]></category>
		<category domain="http://updates.zdnet.com/tags/mozilla+corp..html"><![CDATA[Mozilla Corp.]]></category>
		<category domain="http://updates.zdnet.com/tags/exploit+code.html"><![CDATA[exploit code]]></category>
		<category domain="http://updates.zdnet.com/tags/novell+apparmor.html"><![CDATA[Novell AppArmor]]></category>
		<category domain="http://updates.zdnet.com/tags/web+browser.html"><![CDATA[Web browser]]></category>
	</item>
	<item>
		<title><![CDATA[Exploit code sends Mozilla scrambling to fix Firefox]]></title>
		<link><![CDATA[http://blogs.zdnet.com/security/?p=3013]]></link>
		<description><![CDATA[    [ UPDATE:Â  Mozilla has shipped a patch for this vulnerability ]    Mozilla's security response team is scrambling to ready a patch for what appears to be a serious security flaw affecting its flagship Firefox browser.    The vulnerability, released alongside proof-of-concept...]]></description>
		<s:doctype><![CDATA[Blog posts]]></s:doctype>
		<pubDate>Thu, 26 Mar 2009 06:48:52 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/mozilla+firefox.html"><![CDATA[Mozilla Firefox]]></category>
		<category domain="http://updates.zdnet.com/tags/vulnerability.html"><![CDATA[Vulnerability]]></category>
		<category domain="http://updates.zdnet.com/tags/exploit+code.html"><![CDATA[Exploit Code]]></category>
		<category domain="http://updates.zdnet.com/tags/mozilla+corp..html"><![CDATA[Mozilla Corp.]]></category>
		<category domain="http://updates.zdnet.com/tags/patch.html"><![CDATA[Patch]]></category>
		<category domain="http://updates.zdnet.com/tags/web+browsers.html"><![CDATA[Web Browsers]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
		<category domain="http://updates.zdnet.com/tags/internet.html"><![CDATA[Internet]]></category>
		<category domain="http://updates.zdnet.com/tags/ryan+naraine.html"><![CDATA[Ryan Naraine]]></category>
	</item>
	<item>
		<title><![CDATA[Microsoft: &#8216;Consistent exploit code likely&#8217; for IE vulnerabilities]]></title>
		<link><![CDATA[http://talkback.zdnet.com/5208-12691-0.html?forumID=1&threadID=60657&messageID=1115981&start=0]]></link>
		<description><![CDATA[Microsoft: &#8216;Consistent exploit code likely&#8217; for IE vulnerabilitiesIE8 and Windows 7 aren't mentioned[i]This security update is rated Critical for Internet Explorer 7 running on supported editions of Windows XP and Windows Vista.[/i]I notice there is no mention anywhere of IE8 and Windows 7. Does that mean they aren't affected or...]]></description>
		<s:doctype><![CDATA[Discussion threads]]></s:doctype>
		<pubDate>Tue, 10 Feb 2009 12:13:00 -0800</pubDate>
		<category domain="http://updates.zdnet.com/tags/web+browsers.html"><![CDATA[Web browsers]]></category>
		<category domain="http://updates.zdnet.com/tags/patches.html"><![CDATA[Patches]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[SECURITY]]></category>
		<category domain="http://updates.zdnet.com/tags/mac+system.html"><![CDATA[Mac System]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft+corp..html"><![CDATA[Microsoft Corp.]]></category>
		<category domain="http://updates.zdnet.com/tags/consistent+exploit+code.html"><![CDATA[Consistent exploit code]]></category>
		<category domain="http://updates.zdnet.com/tags/exploit+code.html"><![CDATA[exploit code]]></category>
		<category domain="http://updates.zdnet.com/tags/ie+vulnerability.html"><![CDATA[IE vulnerability]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft+internet+explorer.html"><![CDATA[Microsoft Internet Explorer]]></category>
		<category domain="http://updates.zdnet.com/tags/vulnerability.html"><![CDATA[vulnerability]]></category>
		<category domain="http://updates.zdnet.com/tags/patch+management.html"><![CDATA[patch management]]></category>
		<category domain="http://rss.financialcontent.com/stocksymbol">MSFT</category>
		<category domain="tickers">MSFT</category>
	</item>
	<item>
		<title><![CDATA[Microsoft: 'Consistent exploit code likely' for IE vulnerabilities]]></title>
		<link><![CDATA[http://blogs.zdnet.com/security/?p=2521]]></link>
		<description><![CDATA[Microsoft today shipped four bulletins with patches for at least 8 documented security vulnerabilities affecting Windows users and warned that "consistent exploit code could be easily crafted" to launch attacks via the Internet Explorer browser.    The Patch Tuesday batch includes fixes for a pair of code execution...]]></description>
		<s:doctype><![CDATA[Blog posts]]></s:doctype>
		<pubDate>Tue, 10 Feb 2009 11:48:17 -0800</pubDate>
		<category domain="http://updates.zdnet.com/tags/vulnerability.html"><![CDATA[Vulnerability]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft+exchange+server.html"><![CDATA[Microsoft Exchange Server]]></category>
		<category domain="http://updates.zdnet.com/tags/server.html"><![CDATA[Server]]></category>
		<category domain="http://updates.zdnet.com/tags/exploit+code.html"><![CDATA[Exploit Code]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft+internet+explorer.html"><![CDATA[Microsoft Internet Explorer]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft+corp..html"><![CDATA[Microsoft Corp.]]></category>
		<category domain="http://updates.zdnet.com/tags/e-mail+servers.html"><![CDATA[E-mail Servers]]></category>
		<category domain="http://updates.zdnet.com/tags/groupware.html"><![CDATA[Groupware]]></category>
		<category domain="http://updates.zdnet.com/tags/web+browsers.html"><![CDATA[Web Browsers]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
		<category domain="http://updates.zdnet.com/tags/enterprise+software.html"><![CDATA[Enterprise Software]]></category>
		<category domain="http://updates.zdnet.com/tags/software.html"><![CDATA[Software]]></category>
		<category domain="http://updates.zdnet.com/tags/internet.html"><![CDATA[Internet]]></category>
		<category domain="http://updates.zdnet.com/tags/ryan+naraine.html"><![CDATA[Ryan Naraine]]></category>
		<category domain="http://updates.zdnet.com/tags/ryan+naraine.html"><![CDATA[Ryan Naraine]]></category>
		<category domain="http://rss.financialcontent.com/stocksymbol">MSFT</category>
		<category domain="tickers">MSFT</category>
	</item>
	<item>
		<title><![CDATA[Microsoft confirms critical SQL Server vulnerability]]></title>
		<link><![CDATA[http://blogs.zdnet.com/security/?p=2333]]></link>
		<description><![CDATA[Microsoft late Monday issued a pre-patch advisory confirming a remote code execution vulnerability affecting its SQL Server line.    The vulnerability, publicly disclosed with exploit code more than two weeks ago, affects Microsoft SQL Server 2000, Microsoft SQL Server 2005, Microsoft SQL Server 2005 Express Edition, Microsoft SQL...]]></description>
		<s:doctype><![CDATA[Blog posts]]></s:doctype>
		<pubDate>Mon, 22 Dec 2008 17:00:55 -0800</pubDate>
		<category domain="http://updates.zdnet.com/tags/microsoft+sql+server.html"><![CDATA[Microsoft SQL Server]]></category>
		<category domain="http://updates.zdnet.com/tags/vulnerability.html"><![CDATA[Vulnerability]]></category>
		<category domain="http://updates.zdnet.com/tags/server.html"><![CDATA[Server]]></category>
		<category domain="http://updates.zdnet.com/tags/exploit+code.html"><![CDATA[Exploit Code]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft+corp..html"><![CDATA[Microsoft Corp.]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft+sql+server+2005.html"><![CDATA[Microsoft SQL Server 2005]]></category>
		<category domain="http://updates.zdnet.com/tags/databases.html"><![CDATA[Databases]]></category>
		<category domain="http://updates.zdnet.com/tags/enterprise+software.html"><![CDATA[Enterprise Software]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
		<category domain="http://updates.zdnet.com/tags/software.html"><![CDATA[Software]]></category>
		<category domain="http://updates.zdnet.com/tags/data+management.html"><![CDATA[Data Management]]></category>
		<category domain="http://updates.zdnet.com/tags/ryan+naraine.html"><![CDATA[Ryan Naraine]]></category>
		<category domain="http://updates.zdnet.com/tags/ryan+naraine.html"><![CDATA[Ryan Naraine]]></category>
		<category domain="http://rss.financialcontent.com/stocksymbol">MSFT</category>
		<category domain="tickers">MSFT</category>
	</item>
	<item>
		<title><![CDATA[MS Patch Tuesday heads-up: 11 bulletins, 4 critical]]></title>
		<link><![CDATA[http://blogs.zdnet.com/security/?p=2019]]></link>
		<description><![CDATA[It will be a very busy Patch Tuesday for administrators managing Microsoft Windows computer systems.    According to Microsoft's advance notice mechanism, 11 security bulletins will drop next Tuesday (October 14, 2008), covering a wide range of serious vulnerabilities.    Four of the 11 bulletins are...]]></description>
		<s:doctype><![CDATA[Blog posts]]></s:doctype>
		<pubDate>Thu, 09 Oct 2008 16:12:50 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/vulnerability.html"><![CDATA[Vulnerability]]></category>
		<category domain="http://updates.zdnet.com/tags/exploit+code.html"><![CDATA[Exploit Code]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft+corp..html"><![CDATA[Microsoft Corp.]]></category>
		<category domain="http://updates.zdnet.com/tags/bulletin.html"><![CDATA[Bulletin]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
		<category domain="http://updates.zdnet.com/tags/ryan+naraine.html"><![CDATA[Ryan Naraine]]></category>
		<category domain="http://rss.financialcontent.com/stocksymbol">MSFT</category>
		<category domain="tickers">MSFT</category>
	</item>
	<item>
		<title><![CDATA[Whoâ€™s Dumber: Bad Guys â€¦ Or Good Guys?]]></title>
		<link><![CDATA[http://talkback.zdnet.com/5208-10532-0.html?forumID=1&threadID=51288&messageID=963505&start=0]]></link>
		<description><![CDATA[Whoâ€™s Dumber: Bad Guys â€¦ Or Good Guys?Bad guys don't need applauseJust money.  So they'll modestly attempt to avoid receiving their due when they compromise systems.  I wouldn't assume that not hearing about a success means the success has not occurred.Also, this statement is confusing:Now, we have the...]]></description>
		<s:doctype><![CDATA[Discussion threads]]></s:doctype>
		<pubDate>Wed, 27 Aug 2008 08:14:00 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[SECURITY]]></category>
		<category domain="http://updates.zdnet.com/tags/flaw.html"><![CDATA[flaw]]></category>
		<category domain="http://updates.zdnet.com/tags/exploit+code.html"><![CDATA[exploit code]]></category>
		<category domain="http://updates.zdnet.com/tags/bad+guys.html"><![CDATA[Bad Guys]]></category>
		<category domain="http://updates.zdnet.com/tags/exploit.html"><![CDATA[exploit]]></category>
	</item>
	<item>
		<title><![CDATA[Exploit code published for Apache Tomcat flaw]]></title>
		<link><![CDATA[http://talkback.zdnet.com/5208-12691-0.html?forumID=1&threadID=51124&messageID=960042&start=0]]></link>
		<description><![CDATA[Exploit code published for Apache Tomcat flawand just how long will it take to get 98% of these servers patched?When I read the % of un-patched open source machines out there..... All I can say is, where is the FUDGuess what, it's software, it'll FUBARSoftware is NOT a Religion!!!!How many...]]></description>
		<s:doctype><![CDATA[Discussion threads]]></s:doctype>
		<pubDate>Thu, 21 Aug 2008 10:06:00 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/open+source.html"><![CDATA[OPEN SOURCE]]></category>
		<category domain="http://updates.zdnet.com/tags/application+servers.html"><![CDATA[Application servers]]></category>
		<category domain="http://updates.zdnet.com/tags/middleware.html"><![CDATA[Middleware]]></category>
		<category domain="http://updates.zdnet.com/tags/apache+software+foundation.html"><![CDATA[Apache Software Foundation]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft+iis+server.html"><![CDATA[Microsoft IIS Server]]></category>
		<category domain="http://updates.zdnet.com/tags/apache+tomcat.html"><![CDATA[Apache Tomcat]]></category>
		<category domain="http://updates.zdnet.com/tags/exploit+code.html"><![CDATA[exploit code]]></category>
	</item>
	<item>
		<title><![CDATA[Exploit code published for Apache Tomcat flaw]]></title>
		<link><![CDATA[http://blogs.zdnet.com/security/?p=1768]]></link>
		<description><![CDATA[The United States Computer Emergency Response Team (US-CERT) has raised an alarm for a serious vulnerability in Apache Tomcat, warning that a proof-of-concept exploit is publicly available.    The code, posted to Milw0rm.com, exploits a directory traversal vulnerability vulnerability in the way Apache Tomcat handles malformed requests. ...]]></description>
		<s:doctype><![CDATA[Blog posts]]></s:doctype>
		<pubDate>Thu, 21 Aug 2008 09:22:01 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/http.html"><![CDATA[HTTP]]></category>
		<category domain="http://updates.zdnet.com/tags/xss.html"><![CDATA[XSS]]></category>
		<category domain="http://updates.zdnet.com/tags/apache+software+foundation.html"><![CDATA[Apache Software Foundation]]></category>
		<category domain="http://updates.zdnet.com/tags/exploit+code.html"><![CDATA[Exploit Code]]></category>
		<category domain="http://updates.zdnet.com/tags/apache+tomcat.html"><![CDATA[Apache Tomcat]]></category>
		<category domain="http://updates.zdnet.com/tags/flaw.html"><![CDATA[Flaw]]></category>
		<category domain="http://updates.zdnet.com/tags/open+source.html"><![CDATA[Open Source]]></category>
		<category domain="http://updates.zdnet.com/tags/application+servers.html"><![CDATA[Application Servers]]></category>
		<category domain="http://updates.zdnet.com/tags/middleware.html"><![CDATA[Middleware]]></category>
		<category domain="http://updates.zdnet.com/tags/enterprise+software.html"><![CDATA[Enterprise Software]]></category>
		<category domain="http://updates.zdnet.com/tags/software.html"><![CDATA[Software]]></category>
		<category domain="http://updates.zdnet.com/tags/ryan+naraine.html"><![CDATA[Ryan Naraine]]></category>
	</item>
	<item>
		<title><![CDATA[Microsoft makes daring vulnerability sharing move]]></title>
		<link><![CDATA[http://blogs.zdnet.com/security/?p=1646]]></link>
		<description><![CDATA[LAS VEGAS -- Starting in October, Microsoft will start sharing details on software vulnerabilities with security vendors ahead of Patch Tuesday under a daring new program aimed at reducing the window of exposure to hacker attacks.    The new Microsoft Active Protections Program MAPP, which will be formally...]]></description>
		<s:doctype><![CDATA[Blog posts]]></s:doctype>
		<pubDate>Tue, 05 Aug 2008 05:40:32 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/vulnerability.html"><![CDATA[Vulnerability]]></category>
		<category domain="http://updates.zdnet.com/tags/security+company.html"><![CDATA[Security Company]]></category>
		<category domain="http://updates.zdnet.com/tags/exploit+code.html"><![CDATA[Exploit Code]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft+corp..html"><![CDATA[Microsoft Corp.]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
		<category domain="http://updates.zdnet.com/tags/ryan+naraine.html"><![CDATA[Ryan Naraine]]></category>
		<category domain="http://rss.financialcontent.com/stocksymbol">MSFT</category>
		<category domain="tickers">MSFT</category>
	</item>
	<item>
		<title><![CDATA[Microsoft joins 'patch DNS now' chant; Apple patch missing]]></title>
		<link><![CDATA[http://blogs.zdnet.com/security/?p=1569]]></link>
		<description><![CDATA[On the heels of the release of weaponized exploit code for the DNS cache poisoning vulnerability, Microsoft has joined the chorus of security pros pleading with DNS server providers to immediately apply patches to protect users from malicious attacks.        The Redmond, Wash. security...]]></description>
		<s:doctype><![CDATA[Blog posts]]></s:doctype>
		<pubDate>Fri, 25 Jul 2008 11:02:43 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/apple+macintosh.html"><![CDATA[Apple Macintosh]]></category>
		<category domain="http://updates.zdnet.com/tags/dns.html"><![CDATA[DNS]]></category>
		<category domain="http://updates.zdnet.com/tags/vulnerability.html"><![CDATA[Vulnerability]]></category>
		<category domain="http://updates.zdnet.com/tags/apple+inc..html"><![CDATA[Apple Inc.]]></category>
		<category domain="http://updates.zdnet.com/tags/exploit+code.html"><![CDATA[Exploit Code]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft+corp..html"><![CDATA[Microsoft Corp.]]></category>
		<category domain="http://updates.zdnet.com/tags/attack.html"><![CDATA[Attack]]></category>
		<category domain="http://updates.zdnet.com/tags/dan+kaminsky.html"><![CDATA[Dan Kaminsky]]></category>
		<category domain="http://updates.zdnet.com/tags/domain+names.html"><![CDATA[Domain Names]]></category>
		<category domain="http://updates.zdnet.com/tags/apple+mac+os+x.html"><![CDATA[Apple Mac OS X]]></category>
		<category domain="http://updates.zdnet.com/tags/networking.html"><![CDATA[Networking]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
		<category domain="http://updates.zdnet.com/tags/internet.html"><![CDATA[Internet]]></category>
		<category domain="http://updates.zdnet.com/tags/operating+systems.html"><![CDATA[Operating Systems]]></category>
		<category domain="http://updates.zdnet.com/tags/software.html"><![CDATA[Software]]></category>
		<category domain="http://updates.zdnet.com/tags/apple+mac+os.html"><![CDATA[Apple Mac OS]]></category>
		<category domain="http://updates.zdnet.com/tags/ryan+naraine.html"><![CDATA[Ryan Naraine]]></category>
		<category domain="http://rss.financialcontent.com/stocksymbol">AAPL</category>
		<category domain="http://rss.financialcontent.com/stocksymbol">MSFT</category>
		<category domain="tickers">AAPL,MSFT</category>
	</item>
	<item>
		<title><![CDATA[Code Diffs for DNS Exploit Code]]></title>
		<link><![CDATA[http://content.zdnet.com/2346-12691_22-212022.html]]></link>
		<description><![CDATA[Diffs between revisions of the exploit code released by HDM and |)ruid.  Generated by Billy Rios. by Nathan McFeters]]></description>
		<s:doctype><![CDATA[Image galleries]]></s:doctype>
		<pubDate>Wed, 23 Jul 2008 23:18:17 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/billy.html"><![CDATA[Billy]]></category>
		<category domain="http://updates.zdnet.com/tags/code.html"><![CDATA[code]]></category>
		<category domain="http://updates.zdnet.com/tags/diffs.html"><![CDATA[diffs]]></category>
		<category domain="http://updates.zdnet.com/tags/dns.html"><![CDATA[DNS]]></category>
		<category domain="http://updates.zdnet.com/tags/domain+names.html"><![CDATA[Domain Names]]></category>
		<category domain="http://updates.zdnet.com/tags/exploit.html"><![CDATA[Exploit]]></category>
		<category domain="http://updates.zdnet.com/tags/exploit+code.html"><![CDATA[Exploit Code]]></category>
		<category domain="http://updates.zdnet.com/tags/hdm.html"><![CDATA[HDM]]></category>
		<category domain="http://updates.zdnet.com/tags/internet.html"><![CDATA[Internet]]></category>
		<category domain="http://updates.zdnet.com/tags/mcfeters.html"><![CDATA[McFeters]]></category>
		<category domain="http://updates.zdnet.com/tags/nate.html"><![CDATA[Nate]]></category>
		<category domain="http://updates.zdnet.com/tags/nathan+mcfeters.html"><![CDATA[Nathan McFeters]]></category>
		<category domain="http://updates.zdnet.com/tags/networking.html"><![CDATA[Networking]]></category>
		<category domain="http://updates.zdnet.com/tags/revision.html"><![CDATA[Revision]]></category>
		<category domain="http://updates.zdnet.com/tags/rios.html"><![CDATA[Rios]]></category>
		<category domain="http://updates.zdnet.com/tags/screenshots.html"><![CDATA[screenshots]]></category>
		<category domain="http://updates.zdnet.com/tags/%257c%2529ruid.html"><![CDATA[|)ruid]]></category>
	</item>
	<item>
		<title><![CDATA[Exploit code released for unpatched IE 7 vulnerability]]></title>
		<link><![CDATA[http://talkback.zdnet.com/5208-12691-0.html?forumID=1&threadID=49236&messageID=921102&start=0]]></link>
		<description><![CDATA[Exploit code released for unpatched IE 7 vulnerabilityYour picture looks like Google hacked MicrosoftGoogle pages enter unannounced.Can this happen if another window isn't open?or a tab?There has to be somebody looking at the doc model, right?So if one uses IE one window, one website at a time, is this safe?I...]]></description>
		<s:doctype><![CDATA[Discussion threads]]></s:doctype>
		<pubDate>Mon, 30 Jun 2008 13:29:00 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/web+browsers.html"><![CDATA[Web browsers]]></category>
		<category domain="http://updates.zdnet.com/tags/construction.html"><![CDATA[Construction]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft+internet+explorer.html"><![CDATA[Microsoft Internet Explorer]]></category>
		<category domain="http://updates.zdnet.com/tags/exploit+code.html"><![CDATA[exploit code]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft+internet+explorer+7.html"><![CDATA[Microsoft Internet Explorer 7]]></category>
	</item>
	<item>
		<title><![CDATA[Exploit code released for unpatched IE 7 vulnerability]]></title>
		<link><![CDATA[http://blogs.zdnet.com/security/?p=1370]]></link>
		<description><![CDATA[Another day, another gaping hole affecting fully patched versions of Microsoft's Internet Explorer browser.    According to a warning from US-CERT, proof-of-concept exploit code has been published for a new zero-day bug that can be used for a variety of malicious attacks against Windows users running IE 6,...]]></description>
		<s:doctype><![CDATA[Blog posts]]></s:doctype>
		<pubDate>Mon, 30 Jun 2008 11:59:40 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/attacker.html"><![CDATA[Attacker]]></category>
		<category domain="http://updates.zdnet.com/tags/vulnerability.html"><![CDATA[Vulnerability]]></category>
		<category domain="http://updates.zdnet.com/tags/frame.html"><![CDATA[Frame]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft+internet+explorer+7.html"><![CDATA[Microsoft Internet Explorer 7]]></category>
		<category domain="http://updates.zdnet.com/tags/domain.html"><![CDATA[Domain]]></category>
		<category domain="http://updates.zdnet.com/tags/exploit+code.html"><![CDATA[Exploit Code]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft+internet+explorer.html"><![CDATA[Microsoft Internet Explorer]]></category>
		<category domain="http://updates.zdnet.com/tags/web+page.html"><![CDATA[Web Page]]></category>
		<category domain="http://updates.zdnet.com/tags/web+browsers.html"><![CDATA[Web Browsers]]></category>
		<category domain="http://updates.zdnet.com/tags/internet.html"><![CDATA[Internet]]></category>
		<category domain="http://updates.zdnet.com/tags/ryan+naraine.html"><![CDATA[Ryan Naraine]]></category>
	</item>
	<item>
		<title><![CDATA[Protecting Web Services From Remote Exploit Code: A Static Analysis Approach]]></title>
		<link><![CDATA[http://whitepapers.zdnet.com/abstract.aspx?docid=395745]]></link>
		<description><![CDATA[This paper proposes STILL, a real-time, out-of-the-box, signature-free, remote exploit binary code injection attack blocker to protect web servers. STILL is motivated by an important observation that the request messages to web servers are exclusively data and not binary executable code. Since remote exploits are typically binary executable code, this...]]></description>
		<s:doctype><![CDATA[White papers]]></s:doctype>
		<pubDate>Fri, 25 Apr 2008 00:00:00 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/web+server.html"><![CDATA[Web Server]]></category>
		<category domain="http://updates.zdnet.com/tags/web.html"><![CDATA[Web]]></category>
		<category domain="http://updates.zdnet.com/tags/web+service.html"><![CDATA[Web Service]]></category>
		<category domain="http://updates.zdnet.com/tags/server.html"><![CDATA[Server]]></category>
		<category domain="http://updates.zdnet.com/tags/association+for+computing+machinery.html"><![CDATA[Association For Computing Machinery]]></category>
		<category domain="http://updates.zdnet.com/tags/exploit+code.html"><![CDATA[Exploit Code]]></category>
		<category domain="http://updates.zdnet.com/tags/analysis.html"><![CDATA[Analysis]]></category>
		<category domain="http://updates.zdnet.com/tags/web+servers.html"><![CDATA[Web Servers]]></category>
		<category domain="http://updates.zdnet.com/tags/internet.html"><![CDATA[Internet]]></category>
	</item>
	<item>
		<title><![CDATA[A Data Mining Technique to Detect Remote Exploits]]></title>
		<link><![CDATA[http://whitepapers.zdnet.com/abstract.aspx?docid=388772]]></link>
		<description><![CDATA[This paper designed and implemented DExtor, a Data Mining based Exploit code detector, to protect network services. The main assumption of the work is that normal traffic into the network services contain only data, whereas exploit code contains code. Thus, the "Exploit code detection" problem reduces to "Code detection" problem....]]></description>
		<s:doctype><![CDATA[White papers]]></s:doctype>
		<pubDate>Thu, 20 Dec 2007 00:00:00 -0800</pubDate>
		<category domain="http://updates.zdnet.com/tags/network.html"><![CDATA[Network]]></category>
		<category domain="http://updates.zdnet.com/tags/network+service.html"><![CDATA[Network Service]]></category>
		<category domain="http://updates.zdnet.com/tags/data+mining.html"><![CDATA[Data Mining]]></category>
		<category domain="http://updates.zdnet.com/tags/exploit+code.html"><![CDATA[Exploit Code]]></category>
		<category domain="http://updates.zdnet.com/tags/training.html"><![CDATA[Training]]></category>
		<category domain="http://updates.zdnet.com/tags/dextor.html"><![CDATA[DExtor]]></category>
		<category domain="http://updates.zdnet.com/tags/workforce+management.html"><![CDATA[Workforce Management]]></category>
		<category domain="http://updates.zdnet.com/tags/training+and+certification.html"><![CDATA[Training And Certification]]></category>
		<category domain="http://updates.zdnet.com/tags/human+resources.html"><![CDATA[Human Resources]]></category>
	</item>
	<item>
		<title><![CDATA[Blue Pill Project extends VM rootkit cat-and-mouse tussle]]></title>
		<link><![CDATA[http://blogs.zdnet.com/security/?p=419]]></link>
		<description><![CDATA[LAS VEGAS - The intellectual cat-and-mouse tussle over hiding and finding virtual machine rootkits has hit a new gear with a team of researchers dismissing the notion of "100 percent undetectable" malware and the release of source code for a new "Blue Pill" rootkit.As previously reported, Thomas Ptacek, co-founder of...]]></description>
		<s:doctype><![CDATA[Blog posts]]></s:doctype>
		<pubDate>Thu, 02 Aug 2007 11:11:03 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/zero-day+attacks.html"><![CDATA[Zero-day attacks]]></category>
		<category domain="http://updates.zdnet.com/tags/windows+vista.html"><![CDATA[Windows Vista]]></category>
		<category domain="http://updates.zdnet.com/tags/vulnerability+research.html"><![CDATA[Vulnerability research]]></category>
		<category domain="http://updates.zdnet.com/tags/viruses+and+worms.html"><![CDATA[Viruses and Worms]]></category>
		<category domain="http://updates.zdnet.com/tags/spyware+and+adware.html"><![CDATA[Spyware and Adware]]></category>
		<category domain="http://updates.zdnet.com/tags/rootkits.html"><![CDATA[Rootkits]]></category>
		<category domain="http://updates.zdnet.com/tags/responsible+disclosure.html"><![CDATA[Responsible disclosure]]></category>
		<category domain="http://updates.zdnet.com/tags/pen+testing.html"><![CDATA[Pen testing]]></category>
		<category domain="http://updates.zdnet.com/tags/patch+watch.html"><![CDATA[Patch Watch]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft.html"><![CDATA[Microsoft]]></category>
		<category domain="http://updates.zdnet.com/tags/metasploit.html"><![CDATA[Metasploit]]></category>
		<category domain="http://updates.zdnet.com/tags/hackers.html"><![CDATA[Hackers]]></category>
		<category domain="http://updates.zdnet.com/tags/exploit+code.html"><![CDATA[Exploit code]]></category>
		<category domain="http://updates.zdnet.com/tags/data+theft.html"><![CDATA[Data theft]]></category>
		<category domain="http://updates.zdnet.com/tags/browsers.html"><![CDATA[Browsers]]></category>
		<category domain="http://updates.zdnet.com/tags/botnets.html"><![CDATA[Botnets]]></category>
		<category domain="http://updates.zdnet.com/tags/black+hat.html"><![CDATA[Black Hat]]></category>
	</item>
</channel>
</rss>
