<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: XSS attacks a practical example</title>
	<atom:link href="http://www.thespanner.co.uk/2007/10/01/xss-attacks-a-practical-example/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.thespanner.co.uk/2007/10/01/xss-attacks-a-practical-example/</link>
	<description>A tool for designers dealing with programmers dealing with designers...</description>
	<pubDate>Sun, 14 Mar 2010 01:56:26 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6.2</generator>
		<item>
		<title>By: jojo</title>
		<link>http://www.thespanner.co.uk/2007/10/01/xss-attacks-a-practical-example/#comment-1662</link>
		<dc:creator>jojo</dc:creator>
		<pubDate>Tue, 15 Dec 2009 05:03:57 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/2007/10/01/xss-attacks-a-practical-example/#comment-1662</guid>
		<description>Why do you tell assa the IP address is she trying to take down the site?</description>
		<content:encoded><![CDATA[<p>Why do you tell assa the IP address is she trying to take down the site?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Gareth Heyes</title>
		<link>http://www.thespanner.co.uk/2007/10/01/xss-attacks-a-practical-example/#comment-1519</link>
		<dc:creator>Gareth Heyes</dc:creator>
		<pubDate>Mon, 06 Apr 2009 08:11:09 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/2007/10/01/xss-attacks-a-practical-example/#comment-1519</guid>
		<description>@assa

Hi your IP is 76.254.28.97</description>
		<content:encoded><![CDATA[<p>@assa</p>
<p>Hi your IP is 76.254.28.97</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: assa</title>
		<link>http://www.thespanner.co.uk/2007/10/01/xss-attacks-a-practical-example/#comment-1518</link>
		<dc:creator>assa</dc:creator>
		<pubDate>Mon, 06 Apr 2009 07:53:19 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/2007/10/01/xss-attacks-a-practical-example/#comment-1518</guid>
		<description>"&#62;&#60;script&#62;alert("hi")&#60;/script&#62;</description>
		<content:encoded><![CDATA[<p>&#8220;&gt;&lt;script&gt;alert(&#8221;hi&#8221;)&lt;/script&gt;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: assa</title>
		<link>http://www.thespanner.co.uk/2007/10/01/xss-attacks-a-practical-example/#comment-1517</link>
		<dc:creator>assa</dc:creator>
		<pubDate>Mon, 06 Apr 2009 07:53:01 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/2007/10/01/xss-attacks-a-practical-example/#comment-1517</guid>
		<description>&#60;script&#62;alert("hi")&#60;/script&#62;</description>
		<content:encoded><![CDATA[<p>&lt;script&gt;alert(&#8221;hi&#8221;)&lt;/script&gt;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Gareth Heyes</title>
		<link>http://www.thespanner.co.uk/2007/10/01/xss-attacks-a-practical-example/#comment-1248</link>
		<dc:creator>Gareth Heyes</dc:creator>
		<pubDate>Wed, 18 Jun 2008 17:45:13 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/2007/10/01/xss-attacks-a-practical-example/#comment-1248</guid>
		<description>@lakye

You need PHP and a web server, you can use IIS on windows or XAMPP [1]
On the mac it comes built in with Apache and PHP but there's a nice app that lets you run it in the applications folder called MAMP [2]


http://www.apachefriends.org/en/xampp.html [1]
http://www.mamp.info/en/mamp.html [2]

Once you have those installed the examples should work when you copy the files into the web document root.</description>
		<content:encoded><![CDATA[<p>@lakye</p>
<p>You need PHP and a web server, you can use IIS on windows or XAMPP [1]<br />
On the mac it comes built in with Apache and PHP but there&#8217;s a nice app that lets you run it in the applications folder called MAMP [2]</p>
<p><a href="http://www.apachefriends.org/en/xampp.html" rel="nofollow">http://www.apachefriends.org/en/xampp.html</a> [1]<br />
<a href="http://www.mamp.info/en/mamp.html" rel="nofollow">http://www.mamp.info/en/mamp.html</a> [2]</p>
<p>Once you have those installed the examples should work when you copy the files into the web document root.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: lakye</title>
		<link>http://www.thespanner.co.uk/2007/10/01/xss-attacks-a-practical-example/#comment-1247</link>
		<dc:creator>lakye</dc:creator>
		<pubDate>Wed, 18 Jun 2008 17:00:12 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/2007/10/01/xss-attacks-a-practical-example/#comment-1247</guid>
		<description>may i ask.. how to make this document work?</description>
		<content:encoded><![CDATA[<p>may i ask.. how to make this document work?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: fragge</title>
		<link>http://www.thespanner.co.uk/2007/10/01/xss-attacks-a-practical-example/#comment-1183</link>
		<dc:creator>fragge</dc:creator>
		<pubDate>Wed, 19 Mar 2008 05:29:19 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/2007/10/01/xss-attacks-a-practical-example/#comment-1183</guid>
		<description>"&#60;META HTTP-EQUIV=”Link” Content=”&#60;http://ha.ckers.org/xss.css&#62;; REL=stylesheet”&#62;"

LOL</description>
		<content:encoded><![CDATA[<p>&#8220;&lt;META HTTP-EQUIV=”Link” Content=”&lt;http://ha.ckers.org/xss.css&gt;; REL=stylesheet”&gt;&#8221;</p>
<p>LOL</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Gareth Heyes</title>
		<link>http://www.thespanner.co.uk/2007/10/01/xss-attacks-a-practical-example/#comment-1181</link>
		<dc:creator>Gareth Heyes</dc:creator>
		<pubDate>Tue, 18 Mar 2008 16:24:17 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/2007/10/01/xss-attacks-a-practical-example/#comment-1181</guid>
		<description>What's the point? sigh</description>
		<content:encoded><![CDATA[<p>What&#8217;s the point? sigh</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: ";alert('XSS');//</title>
		<link>http://www.thespanner.co.uk/2007/10/01/xss-attacks-a-practical-example/#comment-1180</link>
		<dc:creator>";alert('XSS');//</dc:creator>
		<pubDate>Tue, 18 Mar 2008 16:11:57 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/2007/10/01/xss-attacks-a-practical-example/#comment-1180</guid>
		<description>&#60;META HTTP-EQUIV="Link" Content="&#60;http://ha.ckers.org/xss.css&#62;; REL=stylesheet"&#62;</description>
		<content:encoded><![CDATA[<p>&lt;META HTTP-EQUIV=&#8221;Link&#8221; Content=&#8221;&lt;http://ha.ckers.org/xss.css&gt;; REL=stylesheet&#8221;&gt;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Bipin 3~ Upadhyay</title>
		<link>http://www.thespanner.co.uk/2007/10/01/xss-attacks-a-practical-example/#comment-643</link>
		<dc:creator>Bipin 3~ Upadhyay</dc:creator>
		<pubDate>Tue, 02 Oct 2007 20:56:37 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/2007/10/01/xss-attacks-a-practical-example/#comment-643</guid>
		<description>@Gareth:
Gareth, as always, comes up with another interesting, yet simple post. hehe :)

@.Mario:
Thanks for the link.
BTW, is there any story behind the handle &#60;b&#62;.mario&#60;/b&#62;? ;)</description>
		<content:encoded><![CDATA[<p>@Gareth:<br />
Gareth, as always, comes up with another interesting, yet simple post. hehe <img src='http://www.thespanner.co.uk/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>@.Mario:<br />
Thanks for the link.<br />
BTW, is there any story behind the handle &lt;b&gt;.mario&lt;/b&gt;? <img src='http://www.thespanner.co.uk/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /></p>
]]></content:encoded>
	</item>
</channel>
</rss>
