<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	>

<channel>
	<title>infySEC &#124; Demystifying Innovations</title>
	<atom:link href="http://www.infysec.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.infysec.com</link>
	<description></description>
	<pubDate>Fri, 19 Mar 2010 17:00:00 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.7.1</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
		<item>
		<title>Best of Application Security (Friday, Mar. 19)</title>
		<link>http://www.infysec.com/2010/03/best-of-application-security-friday-mar-19-2/</link>
		<comments>http://www.infysec.com/2010/03/best-of-application-security-friday-mar-19-2/#comments</comments>
		<pubDate>Fri, 19 Mar 2010 17:00:00 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[Web App Sec]]></category>

		<category><![CDATA[available-from]]></category>

		<category><![CDATA[explorer]]></category>

		<category><![CDATA[facebook]]></category>

		<category><![CDATA[hackable]]></category>

		<category><![CDATA[hackable-apple]]></category>

		<category><![CDATA[hidden-facebook]]></category>

		<category><![CDATA[microsoft]]></category>

		<category><![CDATA[past]]></category>

		<category><![CDATA[photos]]></category>

		<category><![CDATA[podcast]]></category>

		<category><![CDATA[security-flaws]]></category>

		<category><![CDATA[slow-death]]></category>

		<category><![CDATA[wrists-over]]></category>

		<guid isPermaLink="false">http://www.infysec.com/2010/03/best-of-application-security-friday-mar-19-2/</guid>
		<description><![CDATA[Ten of Application Security industry's coolest, most interesting, important, and entertaining links from the past week -- in no particular order. Internet Explorer 9 "Platform Preview" Now Available From Microsoft Secure Application Development on Facebook OWASP Podcast #63 with Ed Bellis (CSO, Orbitz) PCI-SSC slaps ASVs wrists over marketing claims about 11.2 &#038; 6.6 Researcher Will Expose 20 Hackable Apple Security Flaws alert(‘xss’) – The slow death of XSS Inline vs. ]]></description>
			<content:encoded><![CDATA[<p>Ten of Application Security industry&#8217;s coolest, most interesting, important, and entertaining links from the past week &#8212; in no particular order. Internet Explorer 9 &#8220;Platform Preview&#8221; Now Available From Microsoft Secure Application Development on Facebook OWASP Podcast #63 with Ed Bellis (CSO, Orbitz) PCI-SSC slaps ASVs wrists over marketing claims about 11.2 &#038; 6.6 Researcher Will Expose 20 Hackable Apple Security Flaws alert(‘xss’) – The slow death of XSS Inline vs. </p>
<p>Read the original here:<br />
<a target="_blank" href="http://feedproxy.google.com/~r/JeremiahGrossman/~3/T9RTJE9GCkM/best-of-application-security-friday-mar_19.html" title="Best of Application Security (Friday, Mar. 19)">Best of Application Security (Friday, Mar. 19)</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.infysec.com/2010/03/best-of-application-security-friday-mar-19-2/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Best of Application Security (Friday, Mar. 19)</title>
		<link>http://www.infysec.com/2010/03/best-of-application-security-friday-mar-19/</link>
		<comments>http://www.infysec.com/2010/03/best-of-application-security-friday-mar-19/#comments</comments>
		<pubDate>Fri, 19 Mar 2010 17:00:00 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[Web App Sec]]></category>

		<category><![CDATA[available]]></category>

		<category><![CDATA[available-from]]></category>

		<category><![CDATA[deployments]]></category>

		<category><![CDATA[facebook]]></category>

		<category><![CDATA[hackable-apple]]></category>

		<category><![CDATA[hidden-facebook]]></category>

		<category><![CDATA[past]]></category>

		<category><![CDATA[photos]]></category>

		<category><![CDATA[security]]></category>

		<category><![CDATA[will]]></category>

		<category><![CDATA[wrists-over]]></category>

		<guid isPermaLink="false">http://www.infysec.com/2010/03/best-of-application-security-friday-mar-19/</guid>
		<description><![CDATA[Ten of Application Security industry's coolest, most interesting, important, and entertaining links from the past week -- in no particular order. Internet Explorer 9 "Platform Preview" Now Available From Microsoft Secure Application Development on Facebook OWASP Podcast #63 with Ed Bellis (CSO, Orbitz) PCI-SSC slaps ASVs wrists over marketing claims about 11.2 &#038; 6.6 Researcher Will Expose 20 Hackable Apple Security Flaws alert(‘xss’) – The slow death of XSS Inline vs]]></description>
			<content:encoded><![CDATA[<p>Ten of Application Security industry&#8217;s coolest, most interesting, important, and entertaining links from the past week &#8212; in no particular order. Internet Explorer 9 &#8220;Platform Preview&#8221; Now Available From Microsoft Secure Application Development on Facebook OWASP Podcast #63 with Ed Bellis (CSO, Orbitz) PCI-SSC slaps ASVs wrists over marketing claims about 11.2 &#038; 6.6 Researcher Will Expose 20 Hackable Apple Security Flaws alert(‘xss’) – The slow death of XSS Inline vs</p>
<p>Read the rest here:<br />
<a target="_blank" href="http://feedproxy.google.com/~r/JeremiahGrossman/~3/T9RTJE9GCkM/best-of-application-security-friday-mar_19.html" title="Best of Application Security (Friday, Mar. 19)">Best of Application Security (Friday, Mar. 19)</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.infysec.com/2010/03/best-of-application-security-friday-mar-19/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Beyond the Initial Compromise</title>
		<link>http://www.infysec.com/2010/03/beyond-the-initial-compromise/</link>
		<comments>http://www.infysec.com/2010/03/beyond-the-initial-compromise/#comments</comments>
		<pubDate>Thu, 18 Mar 2010 22:25:25 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[Symantec]]></category>

		<category><![CDATA[against-organizations]]></category>

		<category><![CDATA[common-and]]></category>

		<category><![CDATA[few-years]]></category>

		<category><![CDATA[have-become]]></category>

		<category><![CDATA[have-gained]]></category>

		<category><![CDATA[infySEC]]></category>

		<category><![CDATA[it risk management]]></category>

		<category><![CDATA[malicious code]]></category>

		<category><![CDATA[over-the-past]]></category>

		<category><![CDATA[security]]></category>

		<category><![CDATA[security response]]></category>

		<category><![CDATA[targeted-attacks]]></category>

		<guid isPermaLink="false">http://www.infysec.com/2010/03/beyond-the-initial-compromise/</guid>
		<description><![CDATA[ Over the past few years, targeted attacks against organizations have become increasingly common and have gained notoriety. ]]></description>
			<content:encoded><![CDATA[<p> Over the past few years, targeted attacks against organizations have become increasingly common and have gained notoriety. </p>
<p>More:<br />
<a target="_blank" href="http://www.symantec.com/connect/blogs/beyond-initial-compromise" title="Beyond the Initial Compromise">Beyond the Initial Compromise</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.infysec.com/2010/03/beyond-the-initial-compromise/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Blank Plastic</title>
		<link>http://www.infysec.com/2010/03/blank-plastic/</link>
		<comments>http://www.infysec.com/2010/03/blank-plastic/#comments</comments>
		<pubDate>Thu, 18 Mar 2010 13:43:04 +0000</pubDate>
		<dc:creator></dc:creator>
		
		<category><![CDATA[F-Secure]]></category>

		<category><![CDATA[card-numbers]]></category>

		<category><![CDATA[collection]]></category>

		<category><![CDATA[credit]]></category>

		<category><![CDATA[credit-card]]></category>

		<category><![CDATA[criminals-have]]></category>

		<category><![CDATA[gained-access]]></category>

		<category><![CDATA[holders-name-]]></category>

		<category><![CDATA[infySEC]]></category>

		<category><![CDATA[notice-the-card]]></category>

		<category><![CDATA[online-hacks]]></category>

		<category><![CDATA[online-stores]]></category>

		<category><![CDATA[pictures-from]]></category>

		<guid isPermaLink="false">http://www.infysec.com/2010/03/blank-plastic/</guid>
		<description><![CDATA[We regularily learn of cases where criminals have gained access credit card numbers via keyloggers , skimmers or online hacks . Once they have card numbers, they basically have three ways to turn the credit card numbers into cash: Sell them Make fraudulent purchases on them Create real-world cards out of them To create real-world cards, you need blank cards to start with]]></description>
			<content:encoded><![CDATA[<p>We regularily learn of cases where criminals have gained access credit card numbers via keyloggers , skimmers or online hacks . Once they have card numbers, they basically have three ways to turn the credit card numbers into cash: Sell them Make fraudulent purchases on them Create real-world cards out of them To create real-world cards, you need blank cards to start with</p>
<p>Read the rest here:<br />
<a target="_blank" href="http://www.f-secure.com/weblog/archives/00001910.html" title="Blank Plastic">Blank Plastic</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.infysec.com/2010/03/blank-plastic/feed/</wfw:commentRss>
		</item>
		<item>
		<title>PCI-SSC slaps ASVs wrists over marketing claims about 11.2 &amp; 6.6</title>
		<link>http://www.infysec.com/2010/03/pci-ssc-slaps-asvs-wrists-over-marketing-claims-about-112-66/</link>
		<comments>http://www.infysec.com/2010/03/pci-ssc-slaps-asvs-wrists-over-marketing-claims-about-112-66/#comments</comments>
		<pubDate>Wed, 17 Mar 2010 22:26:00 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[Web App Sec]]></category>

		<category><![CDATA[council]]></category>

		<category><![CDATA[council-while]]></category>

		<category><![CDATA[further-clarity]]></category>

		<category><![CDATA[include-another]]></category>

		<category><![CDATA[infySEC]]></category>

		<category><![CDATA[largely-because]]></category>

		<category><![CDATA[march-assessor]]></category>

		<category><![CDATA[marketing]]></category>

		<category><![CDATA[misleading]]></category>

		<category><![CDATA[requirement]]></category>

		<category><![CDATA[school-house]]></category>

		<category><![CDATA[security]]></category>

		<category><![CDATA[service]]></category>

		<category><![CDATA[with-the-above]]></category>

		<guid isPermaLink="false">http://www.infysec.com/2010/03/pci-ssc-slaps-asvs-wrists-over-marketing-claims-about-112-66/</guid>
		<description><![CDATA[The PCI Security Standards Council's (PCI-SSC) recently published March Assessor Newsletter , which contains rather "interesting" language for certain Approved Scanning Vendors (ASV). It is unclear what the penalty will be for firms who continue their misleading practices]]></description>
			<content:encoded><![CDATA[<p>The PCI Security Standards Council&#8217;s (PCI-SSC) recently published March Assessor Newsletter , which contains rather &#8220;interesting&#8221; language for certain Approved Scanning Vendors (ASV). It is unclear what the penalty will be for firms who continue their misleading practices</p>
<p>See the original post:<br />
<a target="_blank" href="http://feedproxy.google.com/~r/JeremiahGrossman/~3/0vf0jRlKwgA/pci-ssc-slaps-asvs-wrists-over.html" title="PCI-SSC slaps ASVs wrists over marketing claims about 11.2 &amp; 6.6">PCI-SSC slaps ASVs wrists over marketing claims about 11.2 &amp; 6.6</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.infysec.com/2010/03/pci-ssc-slaps-asvs-wrists-over-marketing-claims-about-112-66/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Passwords—Can’t Live With ‘em, Can’t Live Without ‘em</title>
		<link>http://www.infysec.com/2010/03/passwords%e2%80%94can%e2%80%99t-live-with-%e2%80%98em-can%e2%80%99t-live-without-%e2%80%98em/</link>
		<comments>http://www.infysec.com/2010/03/passwords%e2%80%94can%e2%80%99t-live-with-%e2%80%98em-can%e2%80%99t-live-without-%e2%80%98em/#comments</comments>
		<pubDate>Wed, 17 Mar 2010 16:21:15 +0000</pubDate>
		<dc:creator>dave</dc:creator>
		
		<category><![CDATA[Symantec]]></category>

		<category><![CDATA[different-factors]]></category>

		<category><![CDATA[has-developed]]></category>

		<category><![CDATA[how-strong]]></category>

		<category><![CDATA[password management]]></category>

		<category><![CDATA[passwords]]></category>

		<category><![CDATA[passwords-based]]></category>

		<category><![CDATA[security]]></category>

		<category><![CDATA[security response]]></category>

		<guid isPermaLink="false">http://www.infysec.com/2010/03/passwords%e2%80%94can%e2%80%99t-live-with-%e2%80%98em-can%e2%80%99t-live-without-%e2%80%98em/</guid>
		<description><![CDATA[ People choose their passwords based on different factors: how easy they are to remember, how strong or complex they are, the sentimental value they have, etc. ]]></description>
			<content:encoded><![CDATA[<p> People choose their passwords based on different factors: how easy they are to remember, how strong or complex they are, the sentimental value they have, etc. </p>
<p>Continued here:<br />
<a target="_blank" href="http://www.symantec.com/connect/blogs/passwords-can-t-live-em-can-t-live-without-em" title="Passwords—Can’t Live With ‘em, Can’t Live Without ‘em">Passwords—Can’t Live With ‘em, Can’t Live Without ‘em</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.infysec.com/2010/03/passwords%e2%80%94can%e2%80%99t-live-with-%e2%80%98em-can%e2%80%99t-live-without-%e2%80%98em/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Online stock trading is risky</title>
		<link>http://www.infysec.com/2010/03/online-stock-trading-is-risky/</link>
		<comments>http://www.infysec.com/2010/03/online-stock-trading-is-risky/#comments</comments>
		<pubDate>Wed, 17 Mar 2010 11:53:31 +0000</pubDate>
		<dc:creator></dc:creator>
		
		<category><![CDATA[F-Secure]]></category>

		<category><![CDATA[a-very-similar]]></category>

		<category><![CDATA[compromised]]></category>

		<category><![CDATA[computer]]></category>

		<category><![CDATA[fifteen-minutes]]></category>

		<category><![CDATA[grand-logistics]]></category>

		<category><![CDATA[investments]]></category>

		<category><![CDATA[pdf]]></category>

		<category><![CDATA[price]]></category>

		<category><![CDATA[stock-trading]]></category>

		<category><![CDATA[the-compromised]]></category>

		<category><![CDATA[trading-through]]></category>

		<category><![CDATA[used-keyloggers]]></category>

		<category><![CDATA[valery-maltsev]]></category>

		<guid isPermaLink="false">http://www.infysec.com/2010/03/online-stock-trading-is-risky/</guid>
		<description><![CDATA[ Buying and selling stock online is big business. It also carries it's own risks. And we don't mean the risk of doing bad investments; we mean loosing access to your trading account because your computer got infected by a keylogger. ]]></description>
			<content:encoded><![CDATA[<p> Buying and selling stock online is big business. It also carries it&#8217;s own risks. And we don&#8217;t mean the risk of doing bad investments; we mean loosing access to your trading account because your computer got infected by a keylogger. </p>
<p>Read more:<br />
<a target="_blank" href="http://www.f-secure.com/weblog/archives/00001909.html" title="Online stock trading is risky">Online stock trading is risky</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.infysec.com/2010/03/online-stock-trading-is-risky/feed/</wfw:commentRss>
		</item>
		<item>
		<title>New Healthcare IT Landscape and Related Security Needs</title>
		<link>http://www.infysec.com/2010/03/new-healthcare-it-landscape-and-related-security-needs/</link>
		<comments>http://www.infysec.com/2010/03/new-healthcare-it-landscape-and-related-security-needs/#comments</comments>
		<pubDate>Wed, 17 Mar 2010 10:40:37 +0000</pubDate>
		<dc:creator>dave</dc:creator>
		
		<category><![CDATA[Symantec]]></category>

		<category><![CDATA[broad]]></category>

		<category><![CDATA[broad-policy]]></category>

		<category><![CDATA[european-commission]]></category>

		<category><![CDATA[growth-and]]></category>

		<category><![CDATA[information]]></category>

		<category><![CDATA[infySEC]]></category>

		<category><![CDATA[it healthcare landscape]]></category>

		<category><![CDATA[provides-the]]></category>

		<category><![CDATA[provides-the-broad]]></category>

		<category><![CDATA[the-information]]></category>

		<guid isPermaLink="false">http://www.infysec.com/2010/03/new-healthcare-it-landscape-and-related-security-needs/</guid>
		<description><![CDATA[ In 2005, the European Commission embarked on a new policy framework that embraced all aspects of the &#8220;information society.&#8221; This framework, called i2010 - A European information society for growth and employment , provides the broad policy guidelines for the information, c ]]></description>
			<content:encoded><![CDATA[<p> In 2005, the European Commission embarked on a new policy framework that embraced all aspects of the &ldquo;information society.&rdquo; This framework, called i2010 - A European information society for growth and employment , provides the broad policy guidelines for the information, c </p>
<p>View original post here:<br />
<a target="_blank" href="http://www.symantec.com/connect/blogs/new-healthcare-it-landscape-and-related-security-needs" title="New Healthcare IT Landscape and Related Security Needs">New Healthcare IT Landscape and Related Security Needs</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.infysec.com/2010/03/new-healthcare-it-landscape-and-related-security-needs/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Malicious Ads Lead to PDF Exploits</title>
		<link>http://www.infysec.com/2010/03/malicious-ads-lead-to-pdf-exploits/</link>
		<comments>http://www.infysec.com/2010/03/malicious-ads-lead-to-pdf-exploits/#comments</comments>
		<pubDate>Wed, 17 Mar 2010 04:43:31 +0000</pubDate>
		<dc:creator>dave</dc:creator>
		
		<category><![CDATA[infySEC]]></category>

		<category><![CDATA[a-free-tools]]></category>

		<category><![CDATA[a-the-file]]></category>

		<category><![CDATA[analysis-tools]]></category>

		<category><![CDATA[malware]]></category>

		<category><![CDATA[pdf]]></category>

		<category><![CDATA[reader]]></category>

		<category><![CDATA[smart]]></category>

		<guid isPermaLink="false">http://www.infysec.com/2010/03/malicious-ads-lead-to-pdf-exploits/</guid>
		<description><![CDATA[ TrendLabs researchers recently received a report on malvertisements that appeared while a user was browsing through a popular Web-based email service. At first glance, the ads may seem like the typical Web browser nuisance. However, random ads were proven to be vectors for downloading malware onto users’ systems]]></description>
			<content:encoded><![CDATA[<p> TrendLabs researchers recently received a report on malvertisements that appeared while a user was browsing through a popular Web-based email service. At first glance, the ads may seem like the typical Web browser nuisance. However, random ads were proven to be vectors for downloading malware onto users’ systems</p>
<p>Read the original here:<br />
<a target="_blank" href="http://feeds.trendmicro.com/~r/Anti-MalwareBlog/~3/XrtVn7LEQRI/" title="Malicious Ads Lead to PDF Exploits">Malicious Ads Lead to PDF Exploits</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.infysec.com/2010/03/malicious-ads-lead-to-pdf-exploits/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Fraudsters Running a Classified Ad Campaign</title>
		<link>http://www.infysec.com/2010/03/fraudsters-running-a-classified-ad-campaign/</link>
		<comments>http://www.infysec.com/2010/03/fraudsters-running-a-classified-ad-campaign/#comments</comments>
		<pubDate>Tue, 16 Mar 2010 23:29:01 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[Symantec]]></category>

		<category><![CDATA[and-exchange]]></category>

		<category><![CDATA[attacking-brands]]></category>

		<category><![CDATA[brands-help]]></category>

		<category><![CDATA[has-recently]]></category>

		<category><![CDATA[infySEC]]></category>

		<category><![CDATA[nformation-on-various]]></category>

		<category><![CDATA[phishing-sites-]]></category>

		<category><![CDATA[recently-observed]]></category>

		<guid isPermaLink="false">http://www.infysec.com/2010/03/fraudsters-running-a-classified-ad-campaign/</guid>
		<description><![CDATA[ Symantec has recently observed a trend of phishing sites attacking brands that feature online classifieds. The legitimate classifieds brands help customers seek and exchange information on various categories such as employment, real estate, automotive, matrimonial, and so on. ]]></description>
			<content:encoded><![CDATA[<p> Symantec has recently observed a trend of phishing sites attacking brands that feature online classifieds. The legitimate classifieds brands help customers seek and exchange information on various categories such as employment, real estate, automotive, matrimonial, and so on. </p>
<p>See the original post here:<br />
<a target="_blank" href="http://www.symantec.com/connect/blogs/fraudsters-running-classified-ad-campaign" title="Fraudsters Running a Classified Ad Campaign">Fraudsters Running a Classified Ad Campaign</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.infysec.com/2010/03/fraudsters-running-a-classified-ad-campaign/feed/</wfw:commentRss>
		</item>
	</channel>
</rss>
