<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: How I tell my clients that XSS is bad</title>
	<atom:link href="http://chirashi.zensay.com/2009/09/how-i-tell-my-clients-that-xss-is-bad/feed/" rel="self" type="application/rss+xml" />
	<link>http://chirashi.zensay.com/2009/09/how-i-tell-my-clients-that-xss-is-bad/</link>
	<description>a blog with scattered thoughts on security.</description>
	<lastBuildDate>Fri, 03 Sep 2010 13:45:08 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: nickerson</title>
		<link>http://chirashi.zensay.com/2009/09/how-i-tell-my-clients-that-xss-is-bad/comment-page-1/#comment-84</link>
		<dc:creator>nickerson</dc:creator>
		<pubDate>Sun, 25 Oct 2009 23:18:04 +0000</pubDate>
		<guid isPermaLink="false">http://chirashi.zensay.com/?p=197#comment-84</guid>
		<description>xss, use beef to control drop meterperter to host. dump all pw and ligt up shell. Show client internal data leakage botnet you have created. Use dumped pw to own domain. create AD admin account. Watch client shit their pants and never ignore xss again.&lt;br&gt;&lt;br&gt;&lt;br&gt;works every time.</description>
		<content:encoded><![CDATA[<p>xss, use beef to control drop meterperter to host. dump all pw and ligt up shell. Show client internal data leakage botnet you have created. Use dumped pw to own domain. create AD admin account. Watch client shit their pants and never ignore xss again.</p>
<p>works every time.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
