BetaONE will rise again!

BetaONE will rise again! (http:\\b1.hcanet.com\forum/index.php)
-   NeoWin News (http:\\b1.hcanet.com\forum/forumdisplay.php?f=6)
-   -   Microsoft Responds On RSS Security Concerns in Windows Vista (http:\\b1.hcanet.com\forum/showthread.php?t=21276)

NewsBot 9th Aug 06 03:30 PM

Microsoft Responds On RSS Security Concerns in Windows Vista
 
After a Black Hat presentation called the potential of RSS feeds as an attack vector into question, Microsoft described steps they have taken to mitigate this.RSS offers some distinct advantages over email. Being an opt-in only method, it eliminates the potential for external spammers to jam up one's feed reader with useless messages, as happens with email inboxes.Should a feed be compromised, as was discussed at Black Hat in a session on RSS security, the attacker could hit thousand of subscribers with a malicious payload almost instantly.That presentation also picked on web-based RSS readers, citing their vulnerability to SQL injection, command execution, and DoS attacks. These are scenarios that Microsoft wants to eliminate before they become a reality.In the Team RSS Blog, Walter vonKoch of Microsoft wrote of how the company has considered potential issues in IE7 and the Windows RSS Platform. They have worked on ways to thwart possible threats from scripts in feeds. View: Full Article @ Security Pro News Read full story...



News source: Full Story


All times are GMT +1. The time now is 05:59 AM.

Powered by vBulletin® Version 3.6.5
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.