<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>SecurityOrb.com &#187; SecurityOrb Staff</title>
	<atom:link href="http://securityorb.com/author/securityorb-staff/feed/" rel="self" type="application/rss+xml" />
	<link>http://securityorb.com</link>
	<description>An Information Security Knowledge-Based Website</description>
	<lastBuildDate>Tue, 07 Feb 2012 19:06:51 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Microsoft Windows DLL Load Hijacking (2269637)</title>
		<link>http://securityorb.com/2012/02/microsoft-windows-dll-load-hijacking-2269637/#utm_source=feed&#038;utm_medium=feed&#038;utm_campaign=feed?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=microsoft-windows-dll-load-hijacking-2269637</link>
		<comments>http://securityorb.com/2012/02/microsoft-windows-dll-load-hijacking-2269637/#comments</comments>
		<pubDate>Tue, 07 Feb 2012 19:05:30 +0000</pubDate>
		<dc:creator>SecurityOrb Staff</dc:creator>
				<category><![CDATA[Vulnerability]]></category>
		<category><![CDATA[Microsoft Windows DLL Load Hijacking (2269637)]]></category>

		<guid isPermaLink="false">http://securityorb.com/?p=3240</guid>
		<description><![CDATA[Microsoft Windows DLL Load Hijacking (2269637)]]></description>
		<wfw:commentRss>http://securityorb.com/2012/02/microsoft-windows-dll-load-hijacking-2269637/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>(MS09-062) GDI+ .Net PropertyItem Heap Overflow Vulnerability (957488)</title>
		<link>http://securityorb.com/2012/02/ms09-062-gdi-net-propertyitem-heap-overflow-vulnerability-957488/#utm_source=feed&#038;utm_medium=feed&#038;utm_campaign=feed?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=ms09-062-gdi-net-propertyitem-heap-overflow-vulnerability-957488</link>
		<comments>http://securityorb.com/2012/02/ms09-062-gdi-net-propertyitem-heap-overflow-vulnerability-957488/#comments</comments>
		<pubDate>Tue, 07 Feb 2012 18:56:13 +0000</pubDate>
		<dc:creator>SecurityOrb Staff</dc:creator>
				<category><![CDATA[Vulnerability Assessment]]></category>
		<category><![CDATA[(MS09-062) GDI+ .Net PropertyItem Heap Overflow Vulnerability (957488)]]></category>

		<guid isPermaLink="false">http://securityorb.com/?p=3236</guid>
		<description><![CDATA[(MS09-062) GDI+ .Net PropertyItem Heap Overflow Vulnerability (957488)]]></description>
		<wfw:commentRss>http://securityorb.com/2012/02/ms09-062-gdi-net-propertyitem-heap-overflow-vulnerability-957488/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft Windows Desktop Wallpaper Code Execution Vulnerability</title>
		<link>http://securityorb.com/2012/02/microsoft-windows-desktop-wallpaper-code-execution-vulnerability/#utm_source=feed&#038;utm_medium=feed&#038;utm_campaign=feed?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=microsoft-windows-desktop-wallpaper-code-execution-vulnerability</link>
		<comments>http://securityorb.com/2012/02/microsoft-windows-desktop-wallpaper-code-execution-vulnerability/#comments</comments>
		<pubDate>Mon, 06 Feb 2012 17:43:02 +0000</pubDate>
		<dc:creator>SecurityOrb Staff</dc:creator>
				<category><![CDATA[Vulnerability]]></category>
		<category><![CDATA[Microsoft Windows Desktop Wallpaper Code Execution Vulnerability]]></category>

		<guid isPermaLink="false">http://securityorb.com/?p=3231</guid>
		<description><![CDATA[Microsoft Windows Desktop Wallpaper Code Execution Vulnerability]]></description>
		<wfw:commentRss>http://securityorb.com/2012/02/microsoft-windows-desktop-wallpaper-code-execution-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft Internet Explorer &#8216;Forced Tweet&#8217; Cross Domain</title>
		<link>http://securityorb.com/2012/02/microsoft-internet-explorer-forced-tweet-cross-domain/#utm_source=feed&#038;utm_medium=feed&#038;utm_campaign=feed?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=microsoft-internet-explorer-forced-tweet-cross-domain</link>
		<comments>http://securityorb.com/2012/02/microsoft-internet-explorer-forced-tweet-cross-domain/#comments</comments>
		<pubDate>Mon, 06 Feb 2012 17:17:14 +0000</pubDate>
		<dc:creator>SecurityOrb Staff</dc:creator>
				<category><![CDATA[Vulnerability]]></category>
		<category><![CDATA[Microsoft Internet Explorer 'Forced Tweet' Cross Domain]]></category>

		<guid isPermaLink="false">http://securityorb.com/?p=3227</guid>
		<description><![CDATA[Microsoft Internet Explorer 'Forced Tweet' Cross Domain]]></description>
		<wfw:commentRss>http://securityorb.com/2012/02/microsoft-internet-explorer-forced-tweet-cross-domain/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft Internet Explorer AddFavorite Method Denial-of-Service Vulnerability</title>
		<link>http://securityorb.com/2012/02/microsoft-internet-explorer-addfavorite-method-denial-of-service-vulnerability/#utm_source=feed&#038;utm_medium=feed&#038;utm_campaign=feed?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=microsoft-internet-explorer-addfavorite-method-denial-of-service-vulnerability</link>
		<comments>http://securityorb.com/2012/02/microsoft-internet-explorer-addfavorite-method-denial-of-service-vulnerability/#comments</comments>
		<pubDate>Mon, 06 Feb 2012 17:04:40 +0000</pubDate>
		<dc:creator>SecurityOrb Staff</dc:creator>
				<category><![CDATA[Vulnerability]]></category>
		<category><![CDATA[Microsoft Internet Explorer AddFavorite Method Denial-of-Service Vulnerability]]></category>

		<guid isPermaLink="false">http://securityorb.com/?p=3222</guid>
		<description><![CDATA[Microsoft Internet Explorer AddFavorite Method Denial-of-Service Vulnerability]]></description>
		<wfw:commentRss>http://securityorb.com/2012/02/microsoft-internet-explorer-addfavorite-method-denial-of-service-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Kevin Mitnick &amp; Dave Kennedy – Adaptive Penetration Testing Derbycon 2011</title>
		<link>http://securityorb.com/2012/02/kevin-mitnick-dave-kennedy-adaptive-penetration-testing-derbycon-2011/#utm_source=feed&#038;utm_medium=feed&#038;utm_campaign=feed?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=kevin-mitnick-dave-kennedy-adaptive-penetration-testing-derbycon-2011</link>
		<comments>http://securityorb.com/2012/02/kevin-mitnick-dave-kennedy-adaptive-penetration-testing-derbycon-2011/#comments</comments>
		<pubDate>Sat, 04 Feb 2012 04:25:40 +0000</pubDate>
		<dc:creator>SecurityOrb Staff</dc:creator>
				<category><![CDATA[Conference]]></category>
		<category><![CDATA[Video]]></category>
		<category><![CDATA[and eventually be creative and gain unauthorized access.]]></category>
		<category><![CDATA[how we discovered some clever tricks to circumvent security controls]]></category>
		<category><![CDATA[Penetration Testing is something that has many different meaning depending on the context used by the person. The Penetration Testing Execution Standard (PTES) is aimed to change that. In this talk we]]></category>

		<guid isPermaLink="false">http://securityorb.com/?p=3214</guid>
		<description><![CDATA[Penetration Testing is something that has many different meaning depending on the context used by the person. The Penetration Testing Execution Standard (PTES) is aimed to change that. In this talk we’ll be covering adaptive penetration testing which essentially is the ability to conform and change based on the environment that your attacking. We’ll be covering several live examples used in real-world penetration tests, how we discovered some clever tricks to circumvent security controls, and eventually be creative and gain unauthorized access.]]></description>
		<wfw:commentRss>http://securityorb.com/2012/02/kevin-mitnick-dave-kennedy-adaptive-penetration-testing-derbycon-2011/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>JS.Alescurf Trojan</title>
		<link>http://securityorb.com/2012/02/js-alescurf-trojan/#utm_source=feed&#038;utm_medium=feed&#038;utm_campaign=feed?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=js-alescurf-trojan</link>
		<comments>http://securityorb.com/2012/02/js-alescurf-trojan/#comments</comments>
		<pubDate>Fri, 03 Feb 2012 18:17:06 +0000</pubDate>
		<dc:creator>SecurityOrb Staff</dc:creator>
				<category><![CDATA[Malware]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[Solaris]]></category>
		<category><![CDATA[Systems Affected: Windows 98]]></category>
		<category><![CDATA[Windows 2000 JS.Alescurf is a detection for malicious code that can be injected in to vulnerable Internet Web pages.]]></category>
		<category><![CDATA[Windows 95]]></category>
		<category><![CDATA[Windows Me]]></category>
		<category><![CDATA[Windows NT]]></category>
		<category><![CDATA[Windows Server 2003]]></category>
		<category><![CDATA[Windows Vista]]></category>
		<category><![CDATA[Windows XP]]></category>

		<guid isPermaLink="false">http://securityorb.com/?p=3207</guid>
		<description><![CDATA[Systems Affected:

Windows 98, Windows 95, Windows XP, Solaris, Windows Me, Windows Vista, Windows NT, Windows Server 2003, Linux, Windows 2000

JS.Alescurf is a detection for malicious code that can be injected in to vulnerable Internet Web pages.]]></description>
		<wfw:commentRss>http://securityorb.com/2012/02/js-alescurf-trojan/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>ROUTERPWN: A Mobile Router Exploitation Framework Demonstrated at ShmooCon 2012</title>
		<link>http://securityorb.com/2012/02/routerpwn-mobile-router-exploitation-framework-demonstrated-shmoocon-2012/#utm_source=feed&#038;utm_medium=feed&#038;utm_campaign=feed?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=routerpwn-mobile-router-exploitation-framework-demonstrated-shmoocon-2012</link>
		<comments>http://securityorb.com/2012/02/routerpwn-mobile-router-exploitation-framework-demonstrated-shmoocon-2012/#comments</comments>
		<pubDate>Fri, 03 Feb 2012 03:24:08 +0000</pubDate>
		<dc:creator>SecurityOrb Staff</dc:creator>
				<category><![CDATA[Hack]]></category>
		<category><![CDATA[BlackBerry and all tablets. You can even store it off line for local exploitation without Internet connection.]]></category>
		<category><![CDATA[including Android]]></category>
		<category><![CDATA[iPhone]]></category>
		<category><![CDATA[Routerpwn is a mobile exploitation framework that helps you in the exploitation of vulnerabilities in network devices such as residential and commercial routers]]></category>
		<category><![CDATA[ROUTERPWN: A Mobile Router Exploitation Framework Demonstrated at ShmooCon 2012]]></category>
		<category><![CDATA[switches and access points. It is a compilation of ready to run local and remote web exploits. Programmed in Javascript and HTML in order to run in all "smart phones" and mobile Internet devices]]></category>

		<guid isPermaLink="false">http://securityorb.com/?p=3202</guid>
		<description><![CDATA[Routerpwn is a mobile exploitation framework that helps you in the exploitation of vulnerabilities in network devices such as residential and commercial routers, switches and access points. It is a compilation of ready to run local and remote web exploits. Programmed in Javascript and HTML in order to run in all "smart phones" and mobile Internet devices, including Android, iPhone, BlackBerry and all tablets. You can even store it off line for local exploitation without Internet connection.]]></description>
		<wfw:commentRss>http://securityorb.com/2012/02/routerpwn-mobile-router-exploitation-framework-demonstrated-shmoocon-2012/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

