<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Maestro Security Blogs &#187; Application Security</title>
	<atom:link href="http://maestro-sec.com/blogs/category/appsec/feed/" rel="self" type="application/rss+xml" />
	<link>http://maestro-sec.com/blogs</link>
	<description>::Hack IT to Master IT::</description>
	<lastBuildDate>Wed, 21 Apr 2010 11:50:36 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
		<item>
		<title>Free Online .htaccess generator</title>
		<link>http://maestro-sec.com/blogs/2010/04/free-online-htaccess-generator/</link>
		<comments>http://maestro-sec.com/blogs/2010/04/free-online-htaccess-generator/#comments</comments>
		<pubDate>Tue, 06 Apr 2010 05:59:21 +0000</pubDate>
		<dc:creator>w0lf</dc:creator>
				<category><![CDATA[Web Application Security]]></category>
		<category><![CDATA[.htaccess]]></category>
		<category><![CDATA[administration]]></category>
		<category><![CDATA[web security]]></category>

		<guid isPermaLink="false">http://maestro-sec.com/blogs/?p=553</guid>
		<description><![CDATA[Stumbled upon this pretty little nice page which can help you generate your .htaccess file. Can come handy for many web admins. For those who are still not aware of .htaccess files you can have a look here &#38; here.]]></description>
		<wfw:commentRss>http://maestro-sec.com/blogs/2010/04/free-online-htaccess-generator/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Attackers Exploit Web Application (Service) Flaw to break into the Mail Accounts</title>
		<link>http://maestro-sec.com/blogs/2009/09/attackers-exploit-web-application-service-flaw-to-break-into-the-mail-accounts/</link>
		<comments>http://maestro-sec.com/blogs/2009/09/attackers-exploit-web-application-service-flaw-to-break-into-the-mail-accounts/#comments</comments>
		<pubDate>Wed, 23 Sep 2009 04:51:59 +0000</pubDate>
		<dc:creator>w0lf</dc:creator>
				<category><![CDATA[Application Security]]></category>
		<category><![CDATA[Penetration Testing]]></category>
		<category><![CDATA[Web Application Security]]></category>
		<category><![CDATA[Access control list]]></category>
		<category><![CDATA[bruteforce]]></category>
		<category><![CDATA[hijack mail accounts]]></category>
		<category><![CDATA[web application]]></category>
		<category><![CDATA[web vulnerability]]></category>
		<category><![CDATA[yahoo]]></category>

		<guid isPermaLink="false">http://maestro-sec.com/blogs/?p=514</guid>
		<description><![CDATA[HI All &#8220;Attackers are exploiting a known vulnerability in Yahoo&#8217;s network to launch brute force attacks against users&#8217; Yahoo mail accounts.  The attackers are using hijacked mail accounts to send spam.  The main Yahoo login page has mechanisms in place that protect accounts from brute force attacks, but the recent attacks have been exploiting a [...]]]></description>
		<wfw:commentRss>http://maestro-sec.com/blogs/2009/09/attackers-exploit-web-application-service-flaw-to-break-into-the-mail-accounts/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Crack.pl v2 is out</title>
		<link>http://maestro-sec.com/blogs/2009/08/crack-pl-v2-is-out/</link>
		<comments>http://maestro-sec.com/blogs/2009/08/crack-pl-v2-is-out/#comments</comments>
		<pubDate>Sun, 09 Aug 2009 17:23:18 +0000</pubDate>
		<dc:creator>kalgecin</dc:creator>
				<category><![CDATA[Application Security]]></category>
		<category><![CDATA[Cryptography]]></category>
		<category><![CDATA[Penetration Testing]]></category>

		<guid isPermaLink="false">http://maestro-sec.com/blogs/?p=512</guid>
		<description><![CDATA[I am happy to anounce the release of crack.pl version 2 it can be downloaded in a zip file : http://code.google.com/p/kalgecin/downloads/list or svn : http://kalgecin.googlecode.com/svn/crack/ Enjoy]]></description>
		<wfw:commentRss>http://maestro-sec.com/blogs/2009/08/crack-pl-v2-is-out/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Nmap 5.00 Released!</title>
		<link>http://maestro-sec.com/blogs/2009/07/nmap-5-00-released/</link>
		<comments>http://maestro-sec.com/blogs/2009/07/nmap-5-00-released/#comments</comments>
		<pubDate>Fri, 17 Jul 2009 07:14:15 +0000</pubDate>
		<dc:creator>kalgecin</dc:creator>
				<category><![CDATA[Application Security]]></category>
		<category><![CDATA[Network Security]]></category>
		<category><![CDATA[Penetration Testing]]></category>
		<category><![CDATA[Vulnerability Assessment]]></category>
		<category><![CDATA[Wireless Security]]></category>

		<guid isPermaLink="false">http://maestro-sec.com/blogs/2009/07/nmap-5-00-released/</guid>
		<description><![CDATA[Here&#8217;s an extract from their site July 16, 2009 &#8212; Insecure.Org is pleased to announce the immediate, free availability of the Nmap Security Scanner version 5.00 from http://nmap.org/. This is the first stable release since 4.76 (last September), and the first major release since the 4.50 release in 2007. Dozens of development releases led up [...]]]></description>
		<wfw:commentRss>http://maestro-sec.com/blogs/2009/07/nmap-5-00-released/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Astalavista.com hacked</title>
		<link>http://maestro-sec.com/blogs/2009/06/astalavistacom-hacked/</link>
		<comments>http://maestro-sec.com/blogs/2009/06/astalavistacom-hacked/#comments</comments>
		<pubDate>Wed, 10 Jun 2009 05:10:21 +0000</pubDate>
		<dc:creator>w0lf</dc:creator>
				<category><![CDATA[Application Security]]></category>
		<category><![CDATA[Penetration Testing]]></category>
		<category><![CDATA[Vulnerability Assessment]]></category>
		<category><![CDATA[astalavista.com hacked]]></category>

		<guid isPermaLink="false">http://maestro-sec.com/blogs/?p=476</guid>
		<description><![CDATA[Alright..I agree this is no big news. But the reason, I thought would mention the thing here is the full disclosure by the attacker (anti-sec group). For those who are new to infosec world can have an idea how attackers can tear you (your site) apart. Luckily, astalavista was not any financial institution. So other [...]]]></description>
		<wfw:commentRss>http://maestro-sec.com/blogs/2009/06/astalavistacom-hacked/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Back again!!</title>
		<link>http://maestro-sec.com/blogs/2009/05/back-again/</link>
		<comments>http://maestro-sec.com/blogs/2009/05/back-again/#comments</comments>
		<pubDate>Thu, 28 May 2009 12:32:00 +0000</pubDate>
		<dc:creator>w0lf</dc:creator>
				<category><![CDATA[Application Security]]></category>
		<category><![CDATA[Evil particles]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Network Security]]></category>
		<category><![CDATA[Vulnerability Assessment]]></category>
		<category><![CDATA[adobe]]></category>
		<category><![CDATA[gumblar.cn]]></category>
		<category><![CDATA[HPP]]></category>
		<category><![CDATA[http parameter pollution]]></category>
		<category><![CDATA[IIS webdav]]></category>
		<category><![CDATA[microsoft]]></category>

		<guid isPermaLink="false">http://maestro-sec.com/blogs/?p=469</guid>
		<description><![CDATA[Hula All! Back to blogging after a long time. Well, as the saying goes &#8220;Be late then never&#8221; Back to Security world there are quite an important news around. 1. Gumblar.cn : This trojan is reported to be spreading rapidly using mainly the adobe vulnerability and other techniques. It captures your key logs, web traffic [...]]]></description>
		<wfw:commentRss>http://maestro-sec.com/blogs/2009/05/back-again/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>File upload security recommendations</title>
		<link>http://maestro-sec.com/blogs/2009/03/file-upload-security-recommendations/</link>
		<comments>http://maestro-sec.com/blogs/2009/03/file-upload-security-recommendations/#comments</comments>
		<pubDate>Thu, 26 Mar 2009 17:31:12 +0000</pubDate>
		<dc:creator>w0lf</dc:creator>
				<category><![CDATA[Application Security]]></category>
		<category><![CDATA[Web Application Security]]></category>
		<category><![CDATA[file upload]]></category>
		<category><![CDATA[secuity]]></category>

		<guid isPermaLink="false">http://maestro-sec.com/blogs/?p=465</guid>
		<description><![CDATA[Blogged here recommentions and security tips for file upload module which is commonly targetted by hackers. Any feedbacks/suggestions would be of great help]]></description>
		<wfw:commentRss>http://maestro-sec.com/blogs/2009/03/file-upload-security-recommendations/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Virtual Keyboard and the Fight Against Keyloggers</title>
		<link>http://maestro-sec.com/blogs/2009/02/virtual-keyboard-and-the-fight-against-keyloggers/</link>
		<comments>http://maestro-sec.com/blogs/2009/02/virtual-keyboard-and-the-fight-against-keyloggers/#comments</comments>
		<pubDate>Fri, 20 Feb 2009 15:57:10 +0000</pubDate>
		<dc:creator>w0lf</dc:creator>
				<category><![CDATA[Application Security]]></category>
		<category><![CDATA[Evil particles]]></category>
		<category><![CDATA[keylogger]]></category>
		<category><![CDATA[palaside]]></category>

		<guid isPermaLink="false">http://maestro-sec.com/blogs/?p=457</guid>
		<description><![CDATA[Well this is an article written by me for Palaside -magazine. This is just a brief article (good for begineers) about basic stages of malware and virtual keyboard fight.]]></description>
		<wfw:commentRss>http://maestro-sec.com/blogs/2009/02/virtual-keyboard-and-the-fight-against-keyloggers/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Lessons to learn from Twitter Admin</title>
		<link>http://maestro-sec.com/blogs/2009/01/lessons-to-learn-from-twitter-admin/</link>
		<comments>http://maestro-sec.com/blogs/2009/01/lessons-to-learn-from-twitter-admin/#comments</comments>
		<pubDate>Thu, 08 Jan 2009 14:41:19 +0000</pubDate>
		<dc:creator>w0lf</dc:creator>
				<category><![CDATA[Application Security]]></category>
		<category><![CDATA[Web Application Security]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[password policy]]></category>
		<category><![CDATA[twitter hack]]></category>

		<guid isPermaLink="false">http://maestro-sec.com/blogs/?p=362</guid>
		<description><![CDATA[In an interview with GMZ, the 18 year old confessed that he had access to Twitter&#8217;s admin console. He also helped himself gain access to few high profile requests. Check this out. GMZ targetted a popular user named &#8220;Crystal&#8221; which later turned out to be an employee of Twitter and had administrative access. GMZ then [...]]]></description>
		<wfw:commentRss>http://maestro-sec.com/blogs/2009/01/lessons-to-learn-from-twitter-admin/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Twenty Dont&#8217;s for ASP Developers</title>
		<link>http://maestro-sec.com/blogs/2008/11/twenty-donts-for-asp-developers/</link>
		<comments>http://maestro-sec.com/blogs/2008/11/twenty-donts-for-asp-developers/#comments</comments>
		<pubDate>Sat, 15 Nov 2008 08:40:28 +0000</pubDate>
		<dc:creator>Mayank</dc:creator>
				<category><![CDATA[Application Security]]></category>
		<category><![CDATA[Web Application Security]]></category>
		<category><![CDATA[ASP]]></category>

		<guid isPermaLink="false">http://maestro-sec.com/blogs/?p=258</guid>
		<description><![CDATA[Firewalls block hackers from directly connecting to your network shares. Windows administrators keep their systems up-to-date with the latest software patches to thwart worms such as Nimda and Code Red. And user passwords are stronger than ever. But are we secure yet? While the situation is much better than it was just a couple years [...]]]></description>
		<wfw:commentRss>http://maestro-sec.com/blogs/2008/11/twenty-donts-for-asp-developers/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

