<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>LandoftheFreeish.com &#187; vulnerabilities</title>
	<atom:link href="http://landofthefreeish.com/category/vuls/feed/" rel="self" type="application/rss+xml" />
	<link>http://landofthefreeish.com</link>
	<description></description>
	<lastBuildDate>Thu, 02 Feb 2012 19:05:25 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
		<item>
		<title>VeriFone vs Square</title>
		<link>http://landofthefreeish.com/security/verifone-vs-square/</link>
		<comments>http://landofthefreeish.com/security/verifone-vs-square/#comments</comments>
		<pubDate>Thu, 10 Mar 2011 16:41:31 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[encryption]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[vulnerabilities]]></category>
		<category><![CDATA[app]]></category>
		<category><![CDATA[credit card processing systems]]></category>
		<category><![CDATA[credit card readers]]></category>
		<category><![CDATA[free headphone]]></category>
		<category><![CDATA[jp morgan chase]]></category>
		<category><![CDATA[payment]]></category>
		<category><![CDATA[provider]]></category>
		<category><![CDATA[Square]]></category>
		<category><![CDATA[swipe]]></category>
		<category><![CDATA[visa mastercard american express]]></category>

		<guid isPermaLink="false">http://landofthefreeish.com/?p=9956</guid>
		<description><![CDATA[VeriFone, a huge provider of credit card processing systems that&#8217;s been around since time immemorial, has taken a huge swipe at upstart Square today, branding its free, headphone jack-based credit card readers &#8220;skimming devices&#8221; and demanding their immediate removal from the market. Crazy, right? Let me explain how easy it is to exploit the vulnerability. [...]]]></description>
		<wfw:commentRss>http://landofthefreeish.com/security/verifone-vs-square/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Bunnie explains the technical intricacies and legalities of Xbox hacking</title>
		<link>http://landofthefreeish.com/security/the-technical-intricacies-and-legalities-of-xbox-hacking/</link>
		<comments>http://landofthefreeish.com/security/the-technical-intricacies-and-legalities-of-xbox-hacking/#comments</comments>
		<pubDate>Tue, 07 Dec 2010 16:45:49 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[hax]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[vulnerabilities]]></category>
		<category><![CDATA[access]]></category>
		<category><![CDATA[andrew bunnie huang]]></category>
		<category><![CDATA[authentic pieces]]></category>
		<category><![CDATA[digital signatures]]></category>
		<category><![CDATA[disk]]></category>
		<category><![CDATA[government prosecutor]]></category>
		<category><![CDATA[loss]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[technical intricacies]]></category>
		<category><![CDATA[work]]></category>

		<guid isPermaLink="false">http://landofthefreeish.com/?p=9480</guid>
		<description><![CDATA[Andrew &#8220;bunnie&#8221; Huang, who literally wrote the book on hacking Xboxes, was to be a witness in last week&#8217;s first-of-its-kind trial for Xbox modding. However, the government prosecutor bungled his case so badly that he was forced to withdraw the charge and walk away, leaving the defendant unscathed. However, Bunnie had already prepared an exhaustive [...]]]></description>
		<wfw:commentRss>http://landofthefreeish.com/security/the-technical-intricacies-and-legalities-of-xbox-hacking/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft&#8217;s DRM makes your computer vulnerable to attack</title>
		<link>http://landofthefreeish.com/microsoft/microsofts-drm-makes-your-computer-vulnerable/</link>
		<comments>http://landofthefreeish.com/microsoft/microsofts-drm-makes-your-computer-vulnerable/#comments</comments>
		<pubDate>Mon, 27 Sep 2010 16:57:36 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[exploit]]></category>
		<category><![CDATA[micro$oft]]></category>
		<category><![CDATA[vulnerabilities]]></category>
		<category><![CDATA[buffer overflow]]></category>
		<category><![CDATA[computer]]></category>
		<category><![CDATA[control]]></category>
		<category><![CDATA[denial of service]]></category>
		<category><![CDATA[dll library]]></category>
		<category><![CDATA[DRM]]></category>
		<category><![CDATA[integer]]></category>
		<category><![CDATA[integer overflow]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[vandals]]></category>

		<guid isPermaLink="false">http://landofthefreeish.com/?p=8963</guid>
		<description><![CDATA[The msnetobj.dll library is an ActiveX control used by Microsoft&#8217;s DRM; it is intended to prevent the owner of a computer from saving or viewing certain files except under limited circumstances, and to prevent the computer&#8217;s owner from disabling it or interfering with it. As if that wasn&#8217;t bad enough, it is also vulnerable to [...]]]></description>
		<wfw:commentRss>http://landofthefreeish.com/microsoft/microsofts-drm-makes-your-computer-vulnerable/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Typhoid adware hijacks LAN, inserts ads into uninfected computers&#8217; browsers</title>
		<link>http://landofthefreeish.com/security/typhoid-adware-hijacks-lan-inserts-ads-into-uninfected-computers-browsers/</link>
		<comments>http://landofthefreeish.com/security/typhoid-adware-hijacks-lan-inserts-ads-into-uninfected-computers-browsers/#comments</comments>
		<pubDate>Mon, 24 May 2010 18:35:11 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[security]]></category>
		<category><![CDATA[vulnerabilities]]></category>
		<category><![CDATA[wifi]]></category>

		<guid isPermaLink="false">http://landofthefreeish.com/?p=7466</guid>
		<description><![CDATA[Security researchers at the University of Calgary have identified a new malware they call &#8220;Typhoid.&#8221; Typhoid impersonates the wireless router on your local network, effecting a man-in-the-middle attack that allows it to insert ads into the browsing sessions of all the other, uninfected users on the LAN. Typically, adware authors install their software on as [...]]]></description>
		<wfw:commentRss>http://landofthefreeish.com/security/typhoid-adware-hijacks-lan-inserts-ads-into-uninfected-computers-browsers/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Linux botnet discovery worry</title>
		<link>http://landofthefreeish.com/security/linux-botnet-discovery/</link>
		<comments>http://landofthefreeish.com/security/linux-botnet-discovery/#comments</comments>
		<pubDate>Mon, 14 Sep 2009 19:27:59 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[exploit]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[ugh]]></category>
		<category><![CDATA[vulnerabilities]]></category>

		<guid isPermaLink="false">http://landofthefreeish.com/?p=5389</guid>
		<description><![CDATA[Bad guys have created a botnet of Linux Web servers. In a way, that&#8217;s even more frightening than regular botnets of compromised Windows PCs. Bloggers ask if this is the end for Linux&#8217;s claim to be more secure than Windows; or is it just a load of old hokum? Your humble blogwatcher selected these bloggy [...]]]></description>
		<wfw:commentRss>http://landofthefreeish.com/security/linux-botnet-discovery/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Time to party like its Windows 95!</title>
		<link>http://landofthefreeish.com/microsoft/time-to-party-like-its-windows-95/</link>
		<comments>http://landofthefreeish.com/microsoft/time-to-party-like-its-windows-95/#comments</comments>
		<pubDate>Tue, 08 Sep 2009 16:14:49 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[exploit]]></category>
		<category><![CDATA[micro$oft]]></category>
		<category><![CDATA[pwned]]></category>
		<category><![CDATA[vulnerabilities]]></category>

		<guid isPermaLink="false">http://landofthefreeish.com/?p=5311</guid>
		<description><![CDATA[Remember the good old days of the 1990s, when you could teardrop attack any Windows user who&#8217;d annoyed you and bluescreen them? Microsoft reintroduces this popular feature in Windows 7, courtesy the rewritten TCP/IP and SMB2 stacks. IV. PROOF OF CONCEPT #!/usr/bin/python # When SMB2.0 recieve a &#8220;&#38;&#8221; char in the &#8220;Process Id High&#8221; SMB [...]]]></description>
		<wfw:commentRss>http://landofthefreeish.com/microsoft/time-to-party-like-its-windows-95/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>&#8220;Open Source Twitter&#8221; proposed as antidote to Twitter&#8217;s DDOS vulnerability</title>
		<link>http://landofthefreeish.com/vuls/open-source-twitter-proposed-as-antidote-to-twitters-ddos-vulnerability/</link>
		<comments>http://landofthefreeish.com/vuls/open-source-twitter-proposed-as-antidote-to-twitters-ddos-vulnerability/#comments</comments>
		<pubDate>Wed, 12 Aug 2009 15:25:47 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[facebook twitter]]></category>
		<category><![CDATA[vulnerabilities]]></category>

		<guid isPermaLink="false">http://landofthefreeish.com/?p=5016</guid>
		<description><![CDATA[Twitter and Facebook were paralyzed this past week by DDOS (distributed denial of service) attacks. As I understand it, those attacks are still ongoing. In this Wired Epicenter blog post by Eliot Van Buskirk, open source advocates propose that the only real solution to this vulnerability is to engage in another DDOS: &#8220;distributed delivery of [...]]]></description>
		<wfw:commentRss>http://landofthefreeish.com/vuls/open-source-twitter-proposed-as-antidote-to-twitters-ddos-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Stopgap Fix for Critical Firefox 3.5 Security Hole</title>
		<link>http://landofthefreeish.com/security/stopgap-fix-for-critical-firefox-3-5-security-hole/</link>
		<comments>http://landofthefreeish.com/security/stopgap-fix-for-critical-firefox-3-5-security-hole/#comments</comments>
		<pubDate>Wed, 15 Jul 2009 15:22:50 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[exploit]]></category>
		<category><![CDATA[firefox]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[vulnerabilities]]></category>

		<guid isPermaLink="false">http://landofthefreeish.com/?p=4731</guid>
		<description><![CDATA[Instructions showing hackers how to exploit an unpatched, critical security hole in Mozilla&#8217;s new Firefox 3.5 Web browser have been posted online. So, until Mozilla can ship an update to quash this bug, LandoftheFreeish.com is posting instructions to help readers protect themselves from this vulnerability. The security hole has to do with a flaw in [...]]]></description>
		<wfw:commentRss>http://landofthefreeish.com/security/stopgap-fix-for-critical-firefox-3-5-security-hole/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Reverse-engineering SSNs from publicly available data</title>
		<link>http://landofthefreeish.com/privacy/reverse-engineering-ssns-from-publicly-available-data/</link>
		<comments>http://landofthefreeish.com/privacy/reverse-engineering-ssns-from-publicly-available-data/#comments</comments>
		<pubDate>Tue, 07 Jul 2009 16:34:23 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[best practices]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[privacy]]></category>
		<category><![CDATA[pwned]]></category>
		<category><![CDATA[ugh]]></category>
		<category><![CDATA[vulnerabilities]]></category>

		<guid isPermaLink="false">http://landofthefreeish.com/?p=4670</guid>
		<description><![CDATA[Computer scientists at Carnegie Mellon University have figured out how to predict Social Security numbers from publicly accessible birth data with frightening accuracy. The researchers analyzed a public information source known as the &#8220;Death Master File,&#8221; which includes birth data and SSNs for people who have died. The scientists found that in many instances, if [...]]]></description>
		<wfw:commentRss>http://landofthefreeish.com/privacy/reverse-engineering-ssns-from-publicly-available-data/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Bugs and inaccurate readings found in breathalyzer source code</title>
		<link>http://landofthefreeish.com/offtopic/bugs-and-inaccurate-readings-found-in-breathalyzer-source-code/</link>
		<comments>http://landofthefreeish.com/offtopic/bugs-and-inaccurate-readings-found-in-breathalyzer-source-code/#comments</comments>
		<pubDate>Thu, 14 May 2009 15:54:34 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[codemonkey]]></category>
		<category><![CDATA[free open source software]]></category>
		<category><![CDATA[offtopic]]></category>
		<category><![CDATA[privacy]]></category>
		<category><![CDATA[pwned]]></category>
		<category><![CDATA[ugh]]></category>
		<category><![CDATA[vulnerabilities]]></category>

		<guid isPermaLink="false">http://landofthefreeish.com/?p=4311</guid>
		<description><![CDATA[After a long legal wrangle, some defendant-side attorneys have audited the source-code of Alcotest, the breathalyzer used in New Jersey DUI stops. Turns out it was programmed by muppets who don&#8217;t know how to calculate an average and who throw out error messages by the dozen. Like voting-machine vendors, breathlyzer vendors go crazy when defendants [...]]]></description>
		<wfw:commentRss>http://landofthefreeish.com/offtopic/bugs-and-inaccurate-readings-found-in-breathalyzer-source-code/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

