<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Firefox jar: Protocol Vulnerability</title>
	<atom:link href="http://blog.beford.org/2007/11/10/firefox-jar-protocol-vulnerability/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.beford.org/2007/11/10/firefox-jar-protocol-vulnerability/</link>
	<description></description>
	<lastBuildDate>Fri, 13 Aug 2010 22:52:34 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
	<item>
		<title>By: beford.org &#187; Firefox 2.0.0.10 released</title>
		<link>http://blog.beford.org/2007/11/10/firefox-jar-protocol-vulnerability/comment-page-1/#comment-453</link>
		<dc:creator>beford.org &#187; Firefox 2.0.0.10 released</dc:creator>
		<pubDate>Tue, 27 Nov 2007 05:41:00 +0000</pubDate>
		<guid isPermaLink="false">http://blog.beford.org/?p=8#comment-453</guid>
		<description>[...] Corporation just released Firefox 2.0.0.10 which includes fixes against JAR uri attacks. This issue affected browsers that used Gecko engine, a quick check showed me that only K-meleon [...]</description>
		<content:encoded><![CDATA[<p>[...] Corporation just released Firefox 2.0.0.10 which includes fixes against JAR uri attacks. This issue affected browsers that used Gecko engine, a quick check showed me that only K-meleon [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: BlogZilla &#187; Falla &#34;JAR:&#34; per Firefox, XSS per Gmail</title>
		<link>http://blog.beford.org/2007/11/10/firefox-jar-protocol-vulnerability/comment-page-1/#comment-354</link>
		<dc:creator>BlogZilla &#187; Falla &#34;JAR:&#34; per Firefox, XSS per Gmail</dc:creator>
		<pubDate>Wed, 21 Nov 2007 10:14:52 +0000</pubDate>
		<guid isPermaLink="false">http://blog.beford.org/?p=8#comment-354</guid>
		<description>[...] evidenziare che in rete &#232; stato pubblicato un proof of concept che dimostra l&#8217;exploit di entrambe le problematiche in un attacco contro il popolare servizio [...]</description>
		<content:encoded><![CDATA[<p>[...] evidenziare che in rete &#232; stato pubblicato un proof of concept che dimostra l&#8217;exploit di entrambe le problematiche in un attacco contro il popolare servizio [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Firefox JAR Vulnerability Continues &#8212; Link to Gmail POC &#171; lucky13</title>
		<link>http://blog.beford.org/2007/11/10/firefox-jar-protocol-vulnerability/comment-page-1/#comment-326</link>
		<dc:creator>Firefox JAR Vulnerability Continues &#8212; Link to Gmail POC &#171; lucky13</dc:creator>
		<pubDate>Mon, 19 Nov 2007 16:07:32 +0000</pubDate>
		<guid isPermaLink="false">http://blog.beford.org/?p=8#comment-326</guid>
		<description>[...] JAR Vulnerability Continues &#8212; Link to Gmail&#160;POC November 19, 2007   Firefox jar: Protocol Vulnerability: According to pdp, this issue makes vulnerable to Cross-site scripting applications that allow [...]</description>
		<content:encoded><![CDATA[<p>[...] JAR Vulnerability Continues &#8212; Link to Gmail&nbsp;POC November 19, 2007   Firefox jar: Protocol Vulnerability: According to pdp, this issue makes vulnerable to Cross-site scripting applications that allow [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: &#160; Firefox aç???ndan Gmail k?r?labilir&#160;&#8212;&#160;Bili?imin do?ru adresi&#8230;</title>
		<link>http://blog.beford.org/2007/11/10/firefox-jar-protocol-vulnerability/comment-page-1/#comment-322</link>
		<dc:creator>&#160; Firefox aç???ndan Gmail k?r?labilir&#160;&#8212;&#160;Bili?imin do?ru adresi&#8230;</dc:creator>
		<pubDate>Mon, 19 Nov 2007 09:55:31 +0000</pubDate>
		<guid isPermaLink="false">http://blog.beford.org/?p=8#comment-322</guid>
		<description>[...] Beford.org&#8217;a göre tehlike, Firefox&#8217;un ?u aç???yla birlikte, Gmail&#8217;in de bir tedbirsizli?inden kaynaklan?yor. Aç???n kullan?c?ya etkisi daha geni? olabilir, ancak ?u ana kadarki -haberimiz olan- en belirgin uygulamas? beford.org&#8217;nin sayfas?ndan. Denemek isterseniz o sayfadan http://beford.org/stuff/jarjarbinks.htm yazan ba?lant?ya t?klayabilirsiniz, biz burada o ba?lant?y? vermeyece?iz. Denedik ve… [...]</description>
		<content:encoded><![CDATA[<p>[...] Beford.org&#8217;a göre tehlike, Firefox&#8217;un ?u aç???yla birlikte, Gmail&#8217;in de bir tedbirsizli?inden kaynaklan?yor. Aç???n kullan?c?ya etkisi daha geni? olabilir, ancak ?u ana kadarki -haberimiz olan- en belirgin uygulamas? beford.org&#8217;nin sayfas?ndan. Denemek isterseniz o sayfadan <a href="http://beford.org/stuff/jarjarbinks.htm" rel="nofollow">http://beford.org/stuff/jarjarbinks.htm</a> yazan ba?lant?ya t?klayabilirsiniz, biz burada o ba?lant?y? vermeyece?iz. Denedik ve… [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Firefox a&#231;???ndan Gmail k?r?labilir &#124; www.dahii.com</title>
		<link>http://blog.beford.org/2007/11/10/firefox-jar-protocol-vulnerability/comment-page-1/#comment-319</link>
		<dc:creator>Firefox a&#231;???ndan Gmail k?r?labilir &#124; www.dahii.com</dc:creator>
		<pubDate>Mon, 19 Nov 2007 06:09:50 +0000</pubDate>
		<guid isPermaLink="false">http://blog.beford.org/?p=8#comment-319</guid>
		<description>[...] Beford.org&#8217;a göre tehlike, Firefox&#8217;un ?u aç???yla birlikte, Gmail&#8217;in de bir tedbirsizli?inden kaynaklan?yor. Aç???n kullan?c?ya etkisi daha geni? olabilir, ancak ?u ana kadarki -haberimiz olan- en belirgin uygulamas? beford.org&#8217;nin sayfas?ndan. Denemek isterseniz o sayfadan http://beford.org/stuff/jarjarbinks.htm yazan ba?lant?ya t?klayabilirsiniz, biz burada o ba?lant?y? vermeyece?iz. Denedik ve… [...]</description>
		<content:encoded><![CDATA[<p>[...] Beford.org&#8217;a göre tehlike, Firefox&#8217;un ?u aç???yla birlikte, Gmail&#8217;in de bir tedbirsizli?inden kaynaklan?yor. Aç???n kullan?c?ya etkisi daha geni? olabilir, ancak ?u ana kadarki -haberimiz olan- en belirgin uygulamas? beford.org&#8217;nin sayfas?ndan. Denemek isterseniz o sayfadan <a href="http://beford.org/stuff/jarjarbinks.htm" rel="nofollow">http://beford.org/stuff/jarjarbinks.htm</a> yazan ba?lant?ya t?klayabilirsiniz, biz burada o ba?lant?y? vermeyece?iz. Denedik ve… [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ryan Naraine&#8217;s Zero Day mobile edition</title>
		<link>http://blog.beford.org/2007/11/10/firefox-jar-protocol-vulnerability/comment-page-1/#comment-282</link>
		<dc:creator>Ryan Naraine&#8217;s Zero Day mobile edition</dc:creator>
		<pubDate>Sat, 17 Nov 2007 01:50:36 +0000</pubDate>
		<guid isPermaLink="false">http://blog.beford.org/?p=8#comment-282</guid>
		<description>[...] The GMail proof-of-concept is available here. [...]</description>
		<content:encoded><![CDATA[<p>[...] The GMail proof-of-concept is available here. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: beford</title>
		<link>http://blog.beford.org/2007/11/10/firefox-jar-protocol-vulnerability/comment-page-1/#comment-266</link>
		<dc:creator>beford</dc:creator>
		<pubDate>Fri, 16 Nov 2007 06:49:37 +0000</pubDate>
		<guid isPermaLink="false">http://blog.beford.org/?p=8#comment-266</guid>
		<description>Luca: You should be able to read cookies, I didn&#039;t try too hard but my first test with Gmail was a simple alert(document.cookies) and It worked.</description>
		<content:encoded><![CDATA[<p>Luca: You should be able to read cookies, I didn&#8217;t try too hard but my first test with Gmail was a simple alert(document.cookies) and It worked.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: XAM &#187; Blog Archive &#187; Luka w Firefoksie obejmuje u?ytkowników Gmail</title>
		<link>http://blog.beford.org/2007/11/10/firefox-jar-protocol-vulnerability/comment-page-1/#comment-241</link>
		<dc:creator>XAM &#187; Blog Archive &#187; Luka w Firefoksie obejmuje u?ytkowników Gmail</dc:creator>
		<pubDate>Thu, 15 Nov 2007 01:52:05 +0000</pubDate>
		<guid isPermaLink="false">http://blog.beford.org/?p=8#comment-241</guid>
		<description>[...] w Googleplex, prosz?c o dodatkowe informacje na temat wykorzystania tej luki. Na portalu beford.org mo?emy przeczyta? na temat sposobu w jaki luka mo?e zosta? wykorzystana w celu przej?cia listy [...]</description>
		<content:encoded><![CDATA[<p>[...] w Googleplex, prosz?c o dodatkowe informacje na temat wykorzystania tej luki. Na portalu beford.org mo?emy przeczyta? na temat sposobu w jaki luka mo?e zosta? wykorzystana w celu przej?cia listy [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: ICMPECHO &#187; Blog Archive &#187; Firefox JAR: vulnerability - quick summary</title>
		<link>http://blog.beford.org/2007/11/10/firefox-jar-protocol-vulnerability/comment-page-1/#comment-239</link>
		<dc:creator>ICMPECHO &#187; Blog Archive &#187; Firefox JAR: vulnerability - quick summary</dc:creator>
		<pubDate>Thu, 15 Nov 2007 00:22:44 +0000</pubDate>
		<guid isPermaLink="false">http://blog.beford.org/?p=8#comment-239</guid>
		<description>[...] impact at GNUCitizen. This opens this bug up to a whole new audience and&#8230;2007-11-10 - Beford illustrates the seriousness of this issue and issues in the same family by targeting Google and Gmail and posts a new bug entry.2007-11-10 - And then Mario posts at [...]</description>
		<content:encoded><![CDATA[<p>[...] impact at GNUCitizen. This opens this bug up to a whole new audience and&#8230;2007-11-10 &#8211; Beford illustrates the seriousness of this issue and issues in the same family by targeting Google and Gmail and posts a new bug entry.2007-11-10 &#8211; And then Mario posts at [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Luka w Firefoksie obejmuje u?ytkowników Gmail &#124; thecamels.org</title>
		<link>http://blog.beford.org/2007/11/10/firefox-jar-protocol-vulnerability/comment-page-1/#comment-236</link>
		<dc:creator>Luka w Firefoksie obejmuje u?ytkowników Gmail &#124; thecamels.org</dc:creator>
		<pubDate>Wed, 14 Nov 2007 21:48:06 +0000</pubDate>
		<guid isPermaLink="false">http://blog.beford.org/?p=8#comment-236</guid>
		<description>[...] ?e spraw? zainteresowa? Micha? Zalewski. Obecnie pracuje on dla Googleplex. Na portalu beford.org znajduje si? opis sposobu w jaki luka mo?e zosta? wykorzystana do przej?cia listy kontaktów z [...]</description>
		<content:encoded><![CDATA[<p>[...] ?e spraw? zainteresowa? Micha? Zalewski. Obecnie pracuje on dla Googleplex. Na portalu beford.org znajduje si? opis sposobu w jaki luka mo?e zosta? wykorzystana do przej?cia listy kontaktów z [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>
