<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Bypassing Safari 5 XSS Auditor</title>
	<atom:link href="http://blog.0x0lab.org/2010/06/bypassing-safari-5-xss-auditor/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.0x0lab.org/2010/06/bypassing-safari-5-xss-auditor/</link>
	<description>Just another damn blog</description>
	<lastBuildDate>Thu, 18 Aug 2011 00:08:15 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: .mario</title>
		<link>http://blog.0x0lab.org/2010/06/bypassing-safari-5-xss-auditor/comment-page-1/#comment-183</link>
		<dc:creator>.mario</dc:creator>
		<pubDate>Thu, 05 Aug 2010 21:05:43 +0000</pubDate>
		<guid isPermaLink="false">https://blog.0x0lab.org/?p=177#comment-183</guid>
		<description>Old cat is old :) http://sla.ckers.org/forum/read.php?13,31377</description>
		<content:encoded><![CDATA[<p>Old cat is old <img src='http://blog.0x0lab.org/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  <a href="http://sla.ckers.org/forum/read.php?13,31377" rel="nofollow">http://sla.ckers.org/forum/read.php?13,31377</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: ryan</title>
		<link>http://blog.0x0lab.org/2010/06/bypassing-safari-5-xss-auditor/comment-page-1/#comment-178</link>
		<dc:creator>ryan</dc:creator>
		<pubDate>Wed, 04 Aug 2010 22:14:09 +0000</pubDate>
		<guid isPermaLink="false">https://blog.0x0lab.org/?p=177#comment-178</guid>
		<description>@Police
Do not comment on issues you do not fully comprehend.</description>
		<content:encoded><![CDATA[<p>@Police<br />
Do not comment on issues you do not fully comprehend.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Andrew van der Stock</title>
		<link>http://blog.0x0lab.org/2010/06/bypassing-safari-5-xss-auditor/comment-page-1/#comment-69</link>
		<dc:creator>Andrew van der Stock</dc:creator>
		<pubDate>Wed, 09 Jun 2010 08:34:52 +0000</pubDate>
		<guid isPermaLink="false">https://blog.0x0lab.org/?p=177#comment-69</guid>
		<description>@Police. That&#039;s Oracle circa &quot;Unbreakable&quot; through to when they got a clue and figured out security defects came free of charge care of Oracle developers, not security researchers. 

Apple ignores or actively does not participate in OWASP or any other web application security group. There&#039;s very little chance that they will get it right any time soon without peer review or expert assistance.

I will happily retract that, but with the insane secrecy culture @ Apple, I really doubt they will ever get their security act together.</description>
		<content:encoded><![CDATA[<p>@Police. That&#8217;s Oracle circa &#8220;Unbreakable&#8221; through to when they got a clue and figured out security defects came free of charge care of Oracle developers, not security researchers. </p>
<p>Apple ignores or actively does not participate in OWASP or any other web application security group. There&#8217;s very little chance that they will get it right any time soon without peer review or expert assistance.</p>
<p>I will happily retract that, but with the insane secrecy culture @ Apple, I really doubt they will ever get their security act together.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: cirrus</title>
		<link>http://blog.0x0lab.org/2010/06/bypassing-safari-5-xss-auditor/comment-page-1/#comment-68</link>
		<dc:creator>cirrus</dc:creator>
		<pubDate>Wed, 09 Jun 2010 06:15:09 +0000</pubDate>
		<guid isPermaLink="false">https://blog.0x0lab.org/?p=177#comment-68</guid>
		<description>@MacSmiley Should be ok now.</description>
		<content:encoded><![CDATA[<p>@MacSmiley Should be ok now.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Police</title>
		<link>http://blog.0x0lab.org/2010/06/bypassing-safari-5-xss-auditor/comment-page-1/#comment-67</link>
		<dc:creator>Police</dc:creator>
		<pubDate>Wed, 09 Jun 2010 00:39:57 +0000</pubDate>
		<guid isPermaLink="false">https://blog.0x0lab.org/?p=177#comment-67</guid>
		<description>Why do you facilitate criminal mischief by giving hackers the keys to steal information and place malware on computers? You are a criminal</description>
		<content:encoded><![CDATA[<p>Why do you facilitate criminal mischief by giving hackers the keys to steal information and place malware on computers? You are a criminal</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: MacSmiley</title>
		<link>http://blog.0x0lab.org/2010/06/bypassing-safari-5-xss-auditor/comment-page-1/#comment-66</link>
		<dc:creator>MacSmiley</dc:creator>
		<pubDate>Tue, 08 Jun 2010 22:21:20 +0000</pubDate>
		<guid isPermaLink="false">https://blog.0x0lab.org/?p=177#comment-66</guid>
		<description>I&#039;m seeing placeholders instead of screenshots.</description>
		<content:encoded><![CDATA[<p>I&#8217;m seeing placeholders instead of screenshots.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Brentter</title>
		<link>http://blog.0x0lab.org/2010/06/bypassing-safari-5-xss-auditor/comment-page-1/#comment-65</link>
		<dc:creator>Brentter</dc:creator>
		<pubDate>Tue, 08 Jun 2010 16:20:06 +0000</pubDate>
		<guid isPermaLink="false">https://blog.0x0lab.org/?p=177#comment-65</guid>
		<description>You know you&#039;d think with all the various backgrounds and well just full-on developers involved in these kind of big releases, at least one would have thought to have checked up on things like this.... maybe even just look through any of the hundreds of resources regarding this attack like, heck, the 5+ year old directory of old xss hacks? http://ha.ckers.org/xss.html 

Are the ipad dev team co-working today with the safari teams?
:)
nice find, as far as i&#039;ve seen you&#039;re at least the first to report it.</description>
		<content:encoded><![CDATA[<p>You know you&#8217;d think with all the various backgrounds and well just full-on developers involved in these kind of big releases, at least one would have thought to have checked up on things like this&#8230;. maybe even just look through any of the hundreds of resources regarding this attack like, heck, the 5+ year old directory of old xss hacks? <a href="http://ha.ckers.org/xss.html" rel="nofollow">http://ha.ckers.org/xss.html</a> </p>
<p>Are the ipad dev team co-working today with the safari teams?<br />
 <img src='http://blog.0x0lab.org/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /><br />
nice find, as far as i&#8217;ve seen you&#8217;re at least the first to report it.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

