<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Persistent XSS on Twitter.com</title>
	<atom:link href="http://praetorianprefect.com/archives/2010/06/persistent-xss-on-twitter-com/feed/" rel="self" type="application/rss+xml" />
	<link>http://praetorianprefect.com/archives/2010/06/persistent-xss-on-twitter-com/</link>
	<description>Information security, a little slower...a little deeper</description>
	<lastBuildDate>Thu, 17 May 2012 08:33:26 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: This Month in the Threat Webscape &#8211; June 2010 &#124; HackerSafe Security Related Blog for all</title>
		<link>http://praetorianprefect.com/archives/2010/06/persistent-xss-on-twitter-com/comment-page-1/#comment-12203</link>
		<dc:creator>This Month in the Threat Webscape &#8211; June 2010 &#124; HackerSafe Security Related Blog for all</dc:creator>
		<pubDate>Thu, 29 Jul 2010 21:18:11 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4423#comment-12203</guid>
		<description>&lt;p&gt;[...] A persistent cross-site scripting (XSS) vulnerability was discovered on Twitter. You may recall a similar&#160;incident&#160;some time ago, but whereas the previous case involved the application URL, this time around it&#160;involves the application name. [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] A persistent cross-site scripting (XSS) vulnerability was discovered on Twitter. You may recall a similar&nbsp;incident&nbsp;some time ago, but whereas the previous case involved the application URL, this time around it&nbsp;involves the application name. [...]</p>]]></content:encoded>
	</item>
	<item>
		<title>By: This Month in the Threat Webscape &#8211; June 2010 : CU*Secure</title>
		<link>http://praetorianprefect.com/archives/2010/06/persistent-xss-on-twitter-com/comment-page-1/#comment-11504</link>
		<dc:creator>This Month in the Threat Webscape &#8211; June 2010 : CU*Secure</dc:creator>
		<pubDate>Sun, 11 Jul 2010 09:51:47 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4423#comment-11504</guid>
		<description>&lt;p&gt;[...] A persistent cross-site scripting (XSS) vulnerability was discovered on Twitter. You may recall a similar&#160;incident&#160;some time ago, but whereas the previous case involved the application URL, this time around it&#160;involves the application name. [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] A persistent cross-site scripting (XSS) vulnerability was discovered on Twitter. You may recall a similar&nbsp;incident&nbsp;some time ago, but whereas the previous case involved the application URL, this time around it&nbsp;involves the application name. [...]</p>]]></content:encoded>
	</item>
	<item>
		<title>By: Social Media Security &#187; Social Media Security Podcast 16 &#8211; Diaspora News, FTC and Twitter, Twitter XSS, Facebook App Permissions</title>
		<link>http://praetorianprefect.com/archives/2010/06/persistent-xss-on-twitter-com/comment-page-1/#comment-11309</link>
		<dc:creator>Social Media Security &#187; Social Media Security Podcast 16 &#8211; Diaspora News, FTC and Twitter, Twitter XSS, Facebook App Permissions</dc:creator>
		<pubDate>Mon, 05 Jul 2010 16:35:49 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4423#comment-11309</guid>
		<description>&lt;p&gt;[...] Persistent XSS on Twitter.com [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] Persistent XSS on Twitter.com [...]</p>]]></content:encoded>
	</item>
	<item>
		<title>By: famous666</title>
		<link>http://praetorianprefect.com/archives/2010/06/persistent-xss-on-twitter-com/comment-page-1/#comment-11079</link>
		<dc:creator>famous666</dc:creator>
		<pubDate>Tue, 29 Jun 2010 01:03:55 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4423#comment-11079</guid>
		<description>&lt;p&gt;wow , he&#039;s my friend .
i don&#039;t believe it .&lt;/p&gt;

&lt;p&gt;good job my friend .
thumbs up ....&lt;/p&gt;

&lt;p&gt;LOL ;D&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>wow , he&#8217;s my friend .
i don&#8217;t believe it .</p>

<p>good job my friend .
thumbs up &#8230;.</p>

<p>LOL ;D</p>]]></content:encoded>
	</item>
	<item>
		<title>By: Twitter security backlash - Nerin Online</title>
		<link>http://praetorianprefect.com/archives/2010/06/persistent-xss-on-twitter-com/comment-page-1/#comment-11025</link>
		<dc:creator>Twitter security backlash - Nerin Online</dc:creator>
		<pubDate>Sat, 26 Jun 2010 19:17:27 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4423#comment-11025</guid>
		<description>&lt;p&gt;[...] Write Web had the story on Thursday: Information security blog Praetorian Prefect has dug deep into what looks like a new persistent cross-site scripting (XSS) vulnerability on [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] Write Web had the story on Thursday: Information security blog Praetorian Prefect has dug deep into what looks like a new persistent cross-site scripting (XSS) vulnerability on [...]</p>]]></content:encoded>
	</item>
	<item>
		<title>By: 트위터, Persistent XSS 취약점 발견돼 &#124; WebSanitizer</title>
		<link>http://praetorianprefect.com/archives/2010/06/persistent-xss-on-twitter-com/comment-page-1/#comment-11003</link>
		<dc:creator>트위터, Persistent XSS 취약점 발견돼 &#124; WebSanitizer</dc:creator>
		<pubDate>Fri, 25 Jun 2010 14:15:21 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4423#comment-11003</guid>
		<description>&lt;p&gt;[...] http://praetorianprefect.com/archives/2010/06/persistent-xss-on-twitter-com/ [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] <a href="http://praetorianprefect.com/archives/2010/06/persistent-xss-on-twitter-com/" rel="nofollow">http://praetorianprefect.com/archives/2010/06/persistent-xss-on-twitter-com/</a> [...]</p>]]></content:encoded>
	</item>
	<item>
		<title>By: al3x 0wn5</title>
		<link>http://praetorianprefect.com/archives/2010/06/persistent-xss-on-twitter-com/comment-page-1/#comment-10987</link>
		<dc:creator>al3x 0wn5</dc:creator>
		<pubDate>Fri, 25 Jun 2010 06:57:51 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4423#comment-10987</guid>
		<description>&lt;p&gt;Good Job Brothers&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Good Job Brothers</p>]]></content:encoded>
	</item>
	<item>
		<title>By: The Pathetic Punishment Of Twitter &#124; Defamer Australia</title>
		<link>http://praetorianprefect.com/archives/2010/06/persistent-xss-on-twitter-com/comment-page-1/#comment-10964</link>
		<dc:creator>The Pathetic Punishment Of Twitter &#124; Defamer Australia</dc:creator>
		<pubDate>Fri, 25 Jun 2010 00:14:03 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4423#comment-10964</guid>
		<description>&lt;p&gt;[...] within hours of the announcement, a brand-new security hole was discovered, on Twitter.com. Your tax dollars at [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] within hours of the announcement, a brand-new security hole was discovered, on Twitter.com. Your tax dollars at [...]</p>]]></content:encoded>
	</item>
	<item>
		<title>By: Prefect</title>
		<link>http://praetorianprefect.com/archives/2010/06/persistent-xss-on-twitter-com/comment-page-1/#comment-10960</link>
		<dc:creator>Prefect</dc:creator>
		<pubDate>Thu, 24 Jun 2010 22:02:50 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4423#comment-10960</guid>
		<description>&lt;p&gt;Not fully fixed, at least for existing applications, I guess.&lt;/p&gt;

&lt;p&gt;Twitter stated the application registration form part itself was corrected.&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Not fully fixed, at least for existing applications, I guess.</p>

<p>Twitter stated the application registration form part itself was corrected.</p>]]></content:encoded>
	</item>
	<item>
		<title>By: indonesia hackers</title>
		<link>http://praetorianprefect.com/archives/2010/06/persistent-xss-on-twitter-com/comment-page-1/#comment-10957</link>
		<dc:creator>indonesia hackers</dc:creator>
		<pubDate>Thu, 24 Jun 2010 21:37:17 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4423#comment-10957</guid>
		<description>&lt;p&gt;how about these http://twitter.com/marahmerah&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>how about these <a href="http://twitter.com/marahmerah" rel="nofollow">http://twitter.com/marahmerah</a></p>]]></content:encoded>
	</item>
	<item>
		<title>By: Twitter Security Hole Found, Being Fixed, Company Says&#160;&#124;&#160;Partip News</title>
		<link>http://praetorianprefect.com/archives/2010/06/persistent-xss-on-twitter-com/comment-page-1/#comment-10945</link>
		<dc:creator>Twitter Security Hole Found, Being Fixed, Company Says&#160;&#124;&#160;Partip News</dc:creator>
		<pubDate>Thu, 24 Jun 2010 19:22:58 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4423#comment-10945</guid>
		<description>&lt;p&gt;[...] all you out there in the Twitterverse &#8211; it looks like a new vulnerability has hit the troubled microblogging site and this time it has nothing to do with a man howling [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] all you out there in the Twitterverse &#8211; it looks like a new vulnerability has hit the troubled microblogging site and this time it has nothing to do with a man howling [...]</p>]]></content:encoded>
	</item>
	<item>
		<title>By: Tim Mugherini</title>
		<link>http://praetorianprefect.com/archives/2010/06/persistent-xss-on-twitter-com/comment-page-1/#comment-10944</link>
		<dc:creator>Tim Mugherini</dc:creator>
		<pubDate>Thu, 24 Jun 2010 19:19:06 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4423#comment-10944</guid>
		<description>&lt;p&gt;I just received word from twitter that the issue has been fixed. I have not confirmed personally however.&lt;/p&gt;

&lt;p&gt;Great write up btw!&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>I just received word from twitter that the issue has been fixed. I have not confirmed personally however.</p>

<p>Great write up btw!</p>]]></content:encoded>
	</item>
	<item>
		<title>By: Twitter Security Hole Found, Being Fixed, Company Says &#124; Tech News Ninja</title>
		<link>http://praetorianprefect.com/archives/2010/06/persistent-xss-on-twitter-com/comment-page-1/#comment-10941</link>
		<dc:creator>Twitter Security Hole Found, Being Fixed, Company Says &#124; Tech News Ninja</dc:creator>
		<pubDate>Thu, 24 Jun 2010 18:56:21 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4423#comment-10941</guid>
		<description>&lt;p&gt;[...] all you out there in the Twitterverse &#8211; it looks like a new vulnerability has hit the troubled microblogging site and this time it has nothing to do with a man howling [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] all you out there in the Twitterverse &#8211; it looks like a new vulnerability has hit the troubled microblogging site and this time it has nothing to do with a man howling [...]</p>]]></content:encoded>
	</item>
	<item>
		<title>By: lightyoruichi</title>
		<link>http://praetorianprefect.com/archives/2010/06/persistent-xss-on-twitter-com/comment-page-1/#comment-10929</link>
		<dc:creator>lightyoruichi</dc:creator>
		<pubDate>Thu, 24 Jun 2010 14:36:13 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4423#comment-10929</guid>
		<description>&lt;p&gt;The IP address of the blog (74.125.113.121) is shown as owned by Google Inc.&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;He&#039;s hosting his blog on Blogger.com; which owns by Google.&lt;/li&gt;
&lt;/ul&gt;
</description>
		<content:encoded><![CDATA[<p>The IP address of the blog (74.125.113.121) is shown as owned by Google Inc.</p>

<ul>
<li>He&#8217;s hosting his blog on Blogger.com; which owns by Google.</li>
</ul>]]></content:encoded>
	</item>
	<item>
		<title>By: &#187; Persistent XSS na Twitterze -- Niebezpiecznik.pl --</title>
		<link>http://praetorianprefect.com/archives/2010/06/persistent-xss-on-twitter-com/comment-page-1/#comment-10921</link>
		<dc:creator>&#187; Persistent XSS na Twitterze -- Niebezpiecznik.pl --</dc:creator>
		<pubDate>Thu, 24 Jun 2010 11:21:04 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4423#comment-10921</guid>
		<description>&lt;p&gt;[...] Przypomiamy, że właśnie tego typu ataki wykonujemy (i unicestwiamy) na szkoleniach z atakowania i ochrony webaplikacji &#8212; jest jeszcze kilka miejsc, zapraszamy do rejestracji :-) źródło [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] Przypomiamy, że właśnie tego typu ataki wykonujemy (i unicestwiamy) na szkoleniach z atakowania i ochrony webaplikacji &#8212; jest jeszcze kilka miejsc, zapraszamy do rejestracji :-) źródło [...]</p>]]></content:encoded>
	</item>
</channel>
</rss>

