<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: Twitter misidentifying context</title>
	<atom:link href="http://www.thespanner.co.uk/2009/11/23/twitter-misidentifying-context/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.thespanner.co.uk/2009/11/23/twitter-misidentifying-context/</link>
	<description>A tool for designers dealing with programmers dealing with designers...</description>
	<pubDate>Sat, 13 Mar 2010 11:30:25 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6.2</generator>
		<item>
		<title>By: brain[pillow]</title>
		<link>http://www.thespanner.co.uk/2009/11/23/twitter-misidentifying-context/#comment-1683</link>
		<dc:creator>brain[pillow]</dc:creator>
		<pubDate>Thu, 14 Jan 2010 04:50:17 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/?p=552#comment-1683</guid>
		<description>A little bit another vector:

http://search.twitter.com/search?q=%26%2339%3B)%3Balert(%26%2339%3Bxek%26%2339%3B)%3B%2F%2F</description>
		<content:encoded><![CDATA[<p>A little bit another vector:</p>
<p><a href="http://search.twitter.com/search?q=%26%2339%3B" rel="nofollow">http://search.twitter.com/search?q=%26%2339%3B</a>)%3Balert(%26%2339%3Bxek%26%2339%3B)%3B%2F%2F</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Gareth Heyes</title>
		<link>http://www.thespanner.co.uk/2009/11/23/twitter-misidentifying-context/#comment-1645</link>
		<dc:creator>Gareth Heyes</dc:creator>
		<pubDate>Wed, 25 Nov 2009 14:06:41 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/?p=552#comment-1645</guid>
		<description>@Mathias

Yeah it executes alert(1) a couple of times, you're probably using IE and so it won't work as I use &#38;apos; but if you use Firefox it will work when you click the "Tweet these results" it could work on other browsers using the alternative entities I mentioned in the post</description>
		<content:encoded><![CDATA[<p>@Mathias</p>
<p>Yeah it executes alert(1) a couple of times, you&#8217;re probably using IE and so it won&#8217;t work as I use &amp;apos; but if you use Firefox it will work when you click the &#8220;Tweet these results&#8221; it could work on other browsers using the alternative entities I mentioned in the post</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mathias Bynens</title>
		<link>http://www.thespanner.co.uk/2009/11/23/twitter-misidentifying-context/#comment-1644</link>
		<dc:creator>Mathias Bynens</dc:creator>
		<pubDate>Wed, 25 Nov 2009 13:11:24 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/?p=552#comment-1644</guid>
		<description>Great post.

Is the “Twitter poc (don’t tweet these results)” link supposed to alert something? Cause it’s not doing anything special over here. Perhaps WordPress ate parts of the URL or something?</description>
		<content:encoded><![CDATA[<p>Great post.</p>
<p>Is the “Twitter poc (don’t tweet these results)” link supposed to alert something? Cause it’s not doing anything special over here. Perhaps WordPress ate parts of the URL or something?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Gareth Heyes</title>
		<link>http://www.thespanner.co.uk/2009/11/23/twitter-misidentifying-context/#comment-1643</link>
		<dc:creator>Gareth Heyes</dc:creator>
		<pubDate>Wed, 25 Nov 2009 12:34:29 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/?p=552#comment-1643</guid>
		<description>@James

Yep exactly</description>
		<content:encoded><![CDATA[<p>@James</p>
<p>Yep exactly</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: James</title>
		<link>http://www.thespanner.co.uk/2009/11/23/twitter-misidentifying-context/#comment-1642</link>
		<dc:creator>James</dc:creator>
		<pubDate>Wed, 25 Nov 2009 12:29:13 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/?p=552#comment-1642</guid>
		<description>Another reason not to use inline event handlers.</description>
		<content:encoded><![CDATA[<p>Another reason not to use inline event handlers.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: c</title>
		<link>http://www.thespanner.co.uk/2009/11/23/twitter-misidentifying-context/#comment-1638</link>
		<dc:creator>c</dc:creator>
		<pubDate>Mon, 23 Nov 2009 16:10:40 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/?p=552#comment-1638</guid>
		<description>Two good posts today.  I've got about a day of security reviews for our web apps now.  More interesting than whatever the fuck I would have been doing, though.</description>
		<content:encoded><![CDATA[<p>Two good posts today.  I&#8217;ve got about a day of security reviews for our web apps now.  More interesting than whatever the fuck I would have been doing, though.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
