<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Maestro Security Blogs &#187; Application Security</title>
	<atom:link href="http://maestro-sec.com/blogs/tag/appsec/feed/" rel="self" type="application/rss+xml" />
	<link>http://maestro-sec.com/blogs</link>
	<description>::Hack IT to Master IT::</description>
	<lastBuildDate>Wed, 21 Apr 2010 11:50:36 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
		<item>
		<title>Attackers Exploit Web Application (Service) Flaw to break into the Mail Accounts</title>
		<link>http://maestro-sec.com/blogs/2009/09/attackers-exploit-web-application-service-flaw-to-break-into-the-mail-accounts/</link>
		<comments>http://maestro-sec.com/blogs/2009/09/attackers-exploit-web-application-service-flaw-to-break-into-the-mail-accounts/#comments</comments>
		<pubDate>Wed, 23 Sep 2009 04:51:59 +0000</pubDate>
		<dc:creator>w0lf</dc:creator>
				<category><![CDATA[Application Security]]></category>
		<category><![CDATA[Penetration Testing]]></category>
		<category><![CDATA[Web Application Security]]></category>
		<category><![CDATA[Access control list]]></category>
		<category><![CDATA[bruteforce]]></category>
		<category><![CDATA[hijack mail accounts]]></category>
		<category><![CDATA[web application]]></category>
		<category><![CDATA[web vulnerability]]></category>
		<category><![CDATA[yahoo]]></category>

		<guid isPermaLink="false">http://maestro-sec.com/blogs/?p=514</guid>
		<description><![CDATA[HI All &#8220;Attackers are exploiting a known vulnerability in Yahoo&#8217;s network to launch brute force attacks against users&#8217; Yahoo mail accounts.  The attackers are using hijacked mail accounts to send spam.  The main Yahoo login page has mechanisms in place that protect accounts from brute force attacks, but the recent attacks have been exploiting a [...]]]></description>
		<wfw:commentRss>http://maestro-sec.com/blogs/2009/09/attackers-exploit-web-application-service-flaw-to-break-into-the-mail-accounts/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Top 15 SQL injection scanner</title>
		<link>http://maestro-sec.com/blogs/2008/10/top-15-sql-injection-scanner/</link>
		<comments>http://maestro-sec.com/blogs/2008/10/top-15-sql-injection-scanner/#comments</comments>
		<pubDate>Wed, 15 Oct 2008 10:00:25 +0000</pubDate>
		<dc:creator>w0lf</dc:creator>
				<category><![CDATA[Application Security]]></category>
		<category><![CDATA[Penetration Testing]]></category>
		<category><![CDATA[Web Application Security]]></category>
		<category><![CDATA[automated tools]]></category>
		<category><![CDATA[SQL injection]]></category>

		<guid isPermaLink="false">http://maestro-sec.com/blogs/?p=169</guid>
		<description><![CDATA[Well personally I don&#8217;t totally depend on automated scanners totally for appsecs but they do help in many cases where the task is repeating or large number of input fields need to be audited. but Appscan would be my choice if it was freeware Besides mentioned below are list of top 15 SQL Scanners found [...]]]></description>
		<wfw:commentRss>http://maestro-sec.com/blogs/2008/10/top-15-sql-injection-scanner/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
	</channel>
</rss>

