<?xml version="1.0" encoding="UTF-8"?><!-- generator="WordPress/abc" -->
<rss version="0.92">
<channel>
	<title>GDS Security Blog</title>
	<link>http://www.gdssecurity.com/l/b</link>
	<description>Gotham Digital Science Security Blog</description>
	<lastBuildDate>Fri, 12 Feb 2010 13:21:22 +0000</lastBuildDate>
	<docs>http://backend.userland.com/rss092</docs>
	<language>en</language>
	
	<item>
		<title>Abusing WCF to Perform Remote Port Scans</title>
		<description><![CDATA[Last weekend at Shmoocon, I demonstrated how an attacker can trick certain WCF web services into performing an unauthorized port scan of machines behind a firewall.  For those that were not able to attend the talk, the slides are posted here. The part that covers the port scanning technique may not be clear in isolation, so [...]]]></description>
		<link>http://www.gdssecurity.com/l/b/2010/02/12/abusing-wcf-to-perform-remote-port-scans/</link>
			</item>
	<item>
		<title>Breaking Password Based Encryption with Azure</title>
		<description><![CDATA[During a recent security review, we came across a .NET application that was encrypting query string data to thwart parameter based attacks. We had not been given access to the source code, but concluded this since each .aspx page was being passed a single Base64 encoded parameter which, when decoded, produced binary data with varying [...]]]></description>
		<link>http://www.gdssecurity.com/l/b/2010/01/29/breaking-password-based-encryption-with-azure/</link>
			</item>
	<item>
		<title>WCF Binary Soap Plug-In for Burp</title>
		<description><![CDATA[Update 2010:  With the official release of Burp Suite v1.3, both plug-ins discussed in this post can be used with either Pro or Free versions of Burp.
If you run into a Silverlight application that consumes WCF, there’s a good chance it will use Binary XML Message Encoding to send data between the Silverlight client and the [...]]]></description>
		<link>http://www.gdssecurity.com/l/b/2009/11/19/wcf-binary-soap-plug-in-for-burp/</link>
			</item>
	<item>
		<title>Slides from AppSec DC Posted</title>
		<description><![CDATA[Slides from the “Attacking WCF Web Services” talk I presented last week at OWASP AppSec DC 2009 are now available for download.  We’ve also released the WCF Binary Soap Plug-In for Burp that was demonstrated during the presentation.  There will be a separate blog post dedicated to this plug-in published later today, so I definitely recommend reading [...]]]></description>
		<link>http://www.gdssecurity.com/l/b/2009/11/19/slides-from-appsec-dc-posted/</link>
			</item>
	<item>
		<title>Pentesting Adobe Flex Applications with a Custom AMF Client</title>
		<description><![CDATA[At GDS, we&#8217;ve seen an increase over the past few months in the number of applications using Adobe Flex at the presentation layer.  Vulnerabilities in Flash aside (i.e., Dowd [PDF]), this technology often presents an obstacle for security testers, especially if the application uses ActionScript Message Format (AMF) to send data across the wire. [...]]]></description>
		<link>http://www.gdssecurity.com/l/b/2009/11/11/pentesting-adobe-flex-applications-with-a-custom-amf-client/</link>
			</item>
	<item>
		<title>GWT-RPC in a Nutshell</title>
		<description><![CDATA[Hello folks, Ron Gutierrez here. Recently I chose to dissect the cryptic serialized HTTP requests used by Google Web Toolkit RPC to better understand which fields are actually “fuzzable”. If you were looking to find a flaw in the implementation of GWT RPC then every single value in the request would be fuzzible. In this [...]]]></description>
		<link>http://www.gdssecurity.com/l/b/2009/10/08/gwt-rpc-in-a-nutshell/</link>
			</item>
	<item>
		<title>Adobe Flex 3.3 SDK DOM-Based XSS</title>
		<description><![CDATA[I just released an advisory to Bugtraq regarding a DOM-Based XSS bug in the Adobe Flex 3.3 SDK and earlier versions.  I notified the vendor back on June 29, 2009 and they released the fix on August 19th.  If you would like more information, you can view their security bulletin and their TechNotes.
Overview
Adobe [...]]]></description>
		<link>http://www.gdssecurity.com/l/b/2009/08/20/adobe-flex-3-3-sdk-dom-based-xss/</link>
			</item>
	<item>
		<title>SQL Injection used in Heartland, 7-Eleven and Hannaford Breaches</title>
		<description><![CDATA[Having recently seen our book SQL Injection Attacks and Defense come out, it is very timely indeed to see in the news of the recent indictment of Albert Gonzalez that SQL Injection played a key part in the Heartland Payment Systems, 7-Eleven, and Hannaford Brothers breaches, as well as for two other unnamed victim companies.
So [...]]]></description>
		<link>http://www.gdssecurity.com/l/b/2009/08/19/sql-injection-used-in-heartland-7-eleven-and-hannaford-breaches/</link>
			</item>
	<item>
		<title>SPF Moves to CodePlex</title>
		<description><![CDATA[Just a quick post to let everyone know that with the release of v1.0.5, SPF has officially gone open-source.  The code (and most recent binary distribution) are now available from CodePlex and have been released under the GPL license. 
The decision to open-source SPF was an easy one.  The biggest factor preventing several companies from implementing SPF in their production environment [...]]]></description>
		<link>http://www.gdssecurity.com/l/b/2009/08/13/spf-moves-to-codeplex/</link>
			</item>
	<item>
		<title>Creating a Patch for Human Stupidity</title>
		<description><![CDATA[Social engineers use old tricks and new to bypass firewalls and other conventional IT security defences by taking advantage of human weakness or kindness to attack secure buildings, machine rooms, or trading floors from inside. This gives them access to information and data that they simply couldn&#8217;t get by hacking a web site. They don&#8217;t [...]]]></description>
		<link>http://www.gdssecurity.com/l/b/2009/04/08/creating-a-patch-for-human-stupidity/</link>
			</item>
</channel>
</rss>
