<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: Apparently 8/10 High Traffic or &#8216;Big&#8217; Websites are Vulnerable</title>
	<atom:link href="http://www.darknet.org.uk/2007/07/apparently-810-high-traffic-or-big-websites-are-vulnerable/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk/2007/07/apparently-810-high-traffic-or-big-websites-are-vulnerable/</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<pubDate>Thu, 04 Dec 2008 20:53:38 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6.5</generator>
		<item>
		<title>By: SN</title>
		<link>http://www.darknet.org.uk/2007/07/apparently-810-high-traffic-or-big-websites-are-vulnerable/#comment-60508</link>
		<dc:creator>SN</dc:creator>
		<pubDate>Mon, 09 Jul 2007 20:01:30 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/2007/07/apparently-810-high-traffic-or-big-websites-are-vulnerable/#comment-60508</guid>
		<description>no way ... that much traffic.</description>
		<content:encoded><![CDATA[<p>no way &#8230; that much traffic.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Patrick Ogenstad</title>
		<link>http://www.darknet.org.uk/2007/07/apparently-810-high-traffic-or-big-websites-are-vulnerable/#comment-60393</link>
		<dc:creator>Patrick Ogenstad</dc:creator>
		<pubDate>Sat, 07 Jul 2007 09:40:15 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/2007/07/apparently-810-high-traffic-or-big-websites-are-vulnerable/#comment-60393</guid>
		<description>It reminds me of the time when we had all those directory traversal issues in IIS. I once took a phone directory and went through the alphabet for companies offering computer services. Of the companies running IIS more than 80% were vulnerable, of course those were other times. :)</description>
		<content:encoded><![CDATA[<p>It reminds me of the time when we had all those directory traversal issues in IIS. I once took a phone directory and went through the alphabet for companies offering computer services. Of the companies running IIS more than 80% were vulnerable, of course those were other times. <img src='http://www.darknet.org.uk/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: gyaresu</title>
		<link>http://www.darknet.org.uk/2007/07/apparently-810-high-traffic-or-big-websites-are-vulnerable/#comment-60388</link>
		<dc:creator>gyaresu</dc:creator>
		<pubDate>Sat, 07 Jul 2007 04:40:21 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/2007/07/apparently-810-high-traffic-or-big-websites-are-vulnerable/#comment-60388</guid>
		<description>Yeah. It's like credit card companies paying millions in compensation for scams because the system is essentially flawed and scams still only account for a minor portion of total transactions. 
Where is the incentive to secure your site? I never seem to hear of any repercussions when thousands users data is 'lost'/stolen etc.

Just look at the American FBI for how not to spend a stupid amount of money on a computer system.

There's really no accountability for high security practices and even then vulnerabilities will always exist.

It'd be funny if it didn't potentially effect me.

/me crosses fingers to avoid identity theft.</description>
		<content:encoded><![CDATA[<p>Yeah. It&#8217;s like credit card companies paying millions in compensation for scams because the system is essentially flawed and scams still only account for a minor portion of total transactions.<br />
Where is the incentive to secure your site? I never seem to hear of any repercussions when thousands users data is &#8216;lost&#8217;/stolen etc.</p>
<p>Just look at the American FBI for how not to spend a stupid amount of money on a computer system.</p>
<p>There&#8217;s really no accountability for high security practices and even then vulnerabilities will always exist.</p>
<p>It&#8217;d be funny if it didn&#8217;t potentially effect me.</p>
<p>/me crosses fingers to avoid identity theft.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: CK76</title>
		<link>http://www.darknet.org.uk/2007/07/apparently-810-high-traffic-or-big-websites-are-vulnerable/#comment-60376</link>
		<dc:creator>CK76</dc:creator>
		<pubDate>Fri, 06 Jul 2007 18:30:15 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/2007/07/apparently-810-high-traffic-or-big-websites-are-vulnerable/#comment-60376</guid>
		<description>Most information on the internet isn't secure. SUPRISE!</description>
		<content:encoded><![CDATA[<p>Most information on the internet isn&#8217;t secure. SUPRISE!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Bogwitch</title>
		<link>http://www.darknet.org.uk/2007/07/apparently-810-high-traffic-or-big-websites-are-vulnerable/#comment-60373</link>
		<dc:creator>Bogwitch</dc:creator>
		<pubDate>Fri, 06 Jul 2007 17:32:41 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/2007/07/apparently-810-high-traffic-or-big-websites-are-vulnerable/#comment-60373</guid>
		<description>It comes as no suprise that a Whitehat Security is reporting such high figure - it is in their interest to.

"About a third of scanned sites are at risk for some sort of information leakage, which often means the providing of programming data about the site that can facilitate an attack." - Isn't that condoning security through obscurity?? 

Fewer than one in five of the high traffic websites are vulnerable to SQL injection attacks? That's still an incredibly high rate. 

Bogwitch.</description>
		<content:encoded><![CDATA[<p>It comes as no suprise that a Whitehat Security is reporting such high figure - it is in their interest to.</p>
<p>&#8220;About a third of scanned sites are at risk for some sort of information leakage, which often means the providing of programming data about the site that can facilitate an attack.&#8221; - Isn&#8217;t that condoning security through obscurity?? </p>
<p>Fewer than one in five of the high traffic websites are vulnerable to SQL injection attacks? That&#8217;s still an incredibly high rate. </p>
<p>Bogwitch.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
