<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: PnCHd (Pinched)</title>
	<atom:link href="http://www.computerdefense.org/2006/08/pnchd-pinched/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.computerdefense.org/2006/08/pnchd-pinched/</link>
	<description>Sharing my thoughts with the world.</description>
	<lastBuildDate>Wed, 16 Nov 2011 02:58:20 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
	<item>
		<title>By: .:Computer Defense:. &#187; Custom Applications &#8212; Devil Spawn or Heavenly Addition</title>
		<link>http://www.computerdefense.org/2006/08/pnchd-pinched/comment-page-1/#comment-92</link>
		<dc:creator>.:Computer Defense:. &#187; Custom Applications &#8212; Devil Spawn or Heavenly Addition</dc:creator>
		<pubDate>Sat, 07 Oct 2006 05:27:39 +0000</pubDate>
		<guid isPermaLink="false">http://www.computerdefense.org/?p=70#comment-92</guid>
		<description>[...] Other people run the  &#8220;commercial&#8221; software&#8230; I think this is key&#8230; Yeah your site may be pinched via some unknown 0-day but that can happen with custom software as well&#8230; A generic XSS/SQL Inject tool&#8230; a Protocol fuzzer&#8230;. someone who stumbled upon your site and wanted to test the security of it&#8230; However lets say you develop &#8220;CDO Shopping Cart&#8221;&#8230; You&#8217;re 100% of the user base&#8230; However, if you take something like x-cart, plenty of people are using it&#8230; you may be 0.01% of the user base&#8230; The odds are someone else will be attacked instead of you&#8230;. Yes the odds also say that it&#8217;s more likely someone will look for a flaw in that software but personally thats a risk I&#8217;d be willing to take&#8230;. [...]</description>
		<content:encoded><![CDATA[<p>[...] Other people run the  &#8220;commercial&#8221; software&#8230; I think this is key&#8230; Yeah your site may be pinched via some unknown 0-day but that can happen with custom software as well&#8230; A generic XSS/SQL Inject tool&#8230; a Protocol fuzzer&#8230;. someone who stumbled upon your site and wanted to test the security of it&#8230; However lets say you develop &#8220;CDO Shopping Cart&#8221;&#8230; You&#8217;re 100% of the user base&#8230; However, if you take something like x-cart, plenty of people are using it&#8230; you may be 0.01% of the user base&#8230; The odds are someone else will be attacked instead of you&#8230;. Yes the odds also say that it&#8217;s more likely someone will look for a flaw in that software but personally thats a risk I&#8217;d be willing to take&#8230;. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Digged Stories &#187; Blog Archive &#187; PnCHd (Pinched)</title>
		<link>http://www.computerdefense.org/2006/08/pnchd-pinched/comment-page-1/#comment-14</link>
		<dc:creator>Digged Stories &#187; Blog Archive &#187; PnCHd (Pinched)</dc:creator>
		<pubDate>Sat, 19 Aug 2006 02:15:27 +0000</pubDate>
		<guid isPermaLink="false">http://www.computerdefense.org/?p=70#comment-14</guid>
		<description>[...] read more&#160;&#124;&#160;digg story [...]</description>
		<content:encoded><![CDATA[<p>[...] read more&nbsp;|&nbsp;digg story [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>

