<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
		>
<channel>
	<title>Comments on: Harnessing Ingenuity</title>
	<atom:link href="http://blog.simeonov.com/2008/01/12/harnessing-ingenuity/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.simeonov.com/2008/01/12/harnessing-ingenuity/</link>
	<description>Simeon Simeonov on entrepreneurship, innovation &#38; venture capital</description>
	<lastBuildDate>Mon, 26 Jul 2010 11:04:49 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
	<item>
		<title>By: Chris Wysopal</title>
		<link>http://blog.simeonov.com/2008/01/12/harnessing-ingenuity/#comment-16998</link>
		<dc:creator>Chris Wysopal</dc:creator>
		<pubDate>Mon, 14 Jan 2008 19:18:23 +0000</pubDate>
		<guid isPermaLink="false">http://simeons.wordpress.com/2008/01/12/harnessing-ingenuity/#comment-16998</guid>
		<description>The trend of legitimate sites being attacked as malware delivery points is growing.  I talk about this problem in my latest podcast on CNET.

 Security Bites Podcast: When Web apps attack
http://www.news.com/Security-Bites-Podcast-When-Web-apps-attack/2324-12640_3-6225817.html?tag=item

Many small site owners don&#039;t have the resources to keep their web sites secure.  They often build these sites out of open source components and open source web apps that have checkered security records.  In addition when a vulnerability is found in something they are using they don&#039;t get wind of it so they don&#039;t upgrade.  The bad guys have an easy time of finding a vulnerable site and modifying its content to attack the people who browse the site.  They then install their spyware or bots.</description>
		<content:encoded><![CDATA[<p>The trend of legitimate sites being attacked as malware delivery points is growing.  I talk about this problem in my latest podcast on CNET.</p>
<p> Security Bites Podcast: When Web apps attack<br />
<a href="http://www.news.com/Security-Bites-Podcast-When-Web-apps-attack/2324-12640_3-6225817.html?tag=item" rel="nofollow">http://www.news.com/Security-Bites-Podcast-When-Web-apps-attack/2324-12640_3-6225817.html?tag=item</a></p>
<p>Many small site owners don&#8217;t have the resources to keep their web sites secure.  They often build these sites out of open source components and open source web apps that have checkered security records.  In addition when a vulnerability is found in something they are using they don&#8217;t get wind of it so they don&#8217;t upgrade.  The bad guys have an easy time of finding a vulnerable site and modifying its content to attack the people who browse the site.  They then install their spyware or bots.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jim Cropcho</title>
		<link>http://blog.simeonov.com/2008/01/12/harnessing-ingenuity/#comment-16973</link>
		<dc:creator>Jim Cropcho</dc:creator>
		<pubDate>Sun, 13 Jan 2008 01:28:32 +0000</pubDate>
		<guid isPermaLink="false">http://simeons.wordpress.com/2008/01/12/harnessing-ingenuity/#comment-16973</guid>
		<description>Wow; I would assume that a Civic engine would be too heavy for a helicopter. I am happily mistaken- this seems like a very cool group.</description>
		<content:encoded><![CDATA[<p>Wow; I would assume that a Civic engine would be too heavy for a helicopter. I am happily mistaken- this seems like a very cool group.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Christien Rioux</title>
		<link>http://blog.simeonov.com/2008/01/12/harnessing-ingenuity/#comment-16968</link>
		<dc:creator>Christien Rioux</dc:creator>
		<pubDate>Sat, 12 Jan 2008 19:10:18 +0000</pubDate>
		<guid isPermaLink="false">http://simeons.wordpress.com/2008/01/12/harnessing-ingenuity/#comment-16968</guid>
		<description>I don&#039;t get that problem at all when visiting the site with latest Firefox. Nothing tries to get downloaded... Maybe it&#039;s already fixed :)</description>
		<content:encoded><![CDATA[<p>I don&#8217;t get that problem at all when visiting the site with latest Firefox. Nothing tries to get downloaded&#8230; Maybe it&#8217;s already fixed <img src='http://s.wordpress.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Simeon Simeonov</title>
		<link>http://blog.simeonov.com/2008/01/12/harnessing-ingenuity/#comment-16967</link>
		<dc:creator>Simeon Simeonov</dc:creator>
		<pubDate>Sat, 12 Jan 2008 18:45:31 +0000</pubDate>
		<guid isPermaLink="false">http://simeons.wordpress.com/2008/01/12/harnessing-ingenuity/#comment-16967</guid>
		<description>Chris, I don&#039;t see any ads there, which is why I assumed that a hacker has made a mod to the site. If you have a few spare minutes (yeah, you can laugh) I&#039;d appreciate it if you hit the site and see for yourself.</description>
		<content:encoded><![CDATA[<p>Chris, I don&#8217;t see any ads there, which is why I assumed that a hacker has made a mod to the site. If you have a few spare minutes (yeah, you can laugh) I&#8217;d appreciate it if you hit the site and see for yourself.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Christien Rioux</title>
		<link>http://blog.simeonov.com/2008/01/12/harnessing-ingenuity/#comment-16966</link>
		<dc:creator>Christien Rioux</dc:creator>
		<pubDate>Sat, 12 Jan 2008 18:41:54 +0000</pubDate>
		<guid isPermaLink="false">http://simeons.wordpress.com/2008/01/12/harnessing-ingenuity/#comment-16966</guid>
		<description>sure looks like it. Downloader is a precursor to other trojans and viruses being installed on your machine. Could easily be a script injection attack via some bad advertisement SSI that&#039;s been put on the page. Haven&#039;t browsed over there to check, but that&#039;s my wager.</description>
		<content:encoded><![CDATA[<p>sure looks like it. Downloader is a precursor to other trojans and viruses being installed on your machine. Could easily be a script injection attack via some bad advertisement SSI that&#8217;s been put on the page. Haven&#8217;t browsed over there to check, but that&#8217;s my wager.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
