<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Jayscott.co.uk &#187; Security</title>
	<atom:link href="http://www.jayscott.co.uk/category/security/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.jayscott.co.uk</link>
	<description>If you have a question about Linux, ask a Slackware user</description>
	<lastBuildDate>Tue, 24 Jan 2012 17:43:03 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Honeypot &#8211; View monthly graphs</title>
		<link>http://www.jayscott.co.uk/security/honeypot-view-monthly-graphs/</link>
		<comments>http://www.jayscott.co.uk/security/honeypot-view-monthly-graphs/#comments</comments>
		<pubDate>Fri, 18 Nov 2011 03:15:10 +0000</pubDate>
		<dc:creator>Jay</dc:creator>
				<category><![CDATA[Honeypot]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[honeypot]]></category>

		<guid isPermaLink="false">http://www.jayscott.co.uk/?p=885</guid>
		<description><![CDATA[Just a quick update! As promised you can now view the current months graph on the main page of the honeypot. You can also now view the graphs of monthly attack history of the honeypots too! All graphs show the total attacks, failed and successful, for each day on the month all the way back [...]]]></description>
		<wfw:commentRss>http://www.jayscott.co.uk/security/honeypot-view-monthly-graphs/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Kippo SVN update</title>
		<link>http://www.jayscott.co.uk/security/kippo-svn-update/</link>
		<comments>http://www.jayscott.co.uk/security/kippo-svn-update/#comments</comments>
		<pubDate>Fri, 04 Nov 2011 16:03:46 +0000</pubDate>
		<dc:creator>Jay</dc:creator>
				<category><![CDATA[Honeypot]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[honeypot]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[ssh]]></category>

		<guid isPermaLink="false">http://www.jayscott.co.uk/?p=855</guid>
		<description><![CDATA[Over the last week there has been a very nice feature added to the Kippo SVN, the ability to interact with anyone connected to the honeypot via a telnet based session management interface! To get the new interactive telnet session follow these instructions: 1. Download the SVN version svn checkout http://kippo.googlecode.com/svn/trunk/ kippo Copy the example [...]]]></description>
		<wfw:commentRss>http://www.jayscott.co.uk/security/kippo-svn-update/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>How secure is Glasgow?</title>
		<link>http://www.jayscott.co.uk/security/how-secure-is-glasgow/</link>
		<comments>http://www.jayscott.co.uk/security/how-secure-is-glasgow/#comments</comments>
		<pubDate>Fri, 29 Jul 2011 11:54:47 +0000</pubDate>
		<dc:creator>Jay</dc:creator>
				<category><![CDATA[Honeypot]]></category>
		<category><![CDATA[Misc]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[honeypot]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[wireless]]></category>

		<guid isPermaLink="false">http://www.jayscott.co.uk/?p=668</guid>
		<description><![CDATA[Wireless in Glasgow Myself and a fellow security researcher Iain Mckenzie have been working on a project over the last few weeks about wireless security within the Glasgow area. We have now completed the most time-consuming part of the project which was scanning Glasgow for wireless Access Points. We ended up with really good coverage, [...]]]></description>
		<wfw:commentRss>http://www.jayscott.co.uk/security/how-secure-is-glasgow/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Fuzzers!</title>
		<link>http://www.jayscott.co.uk/security/fuzzers/</link>
		<comments>http://www.jayscott.co.uk/security/fuzzers/#comments</comments>
		<pubDate>Tue, 05 Jul 2011 21:00:17 +0000</pubDate>
		<dc:creator>Jay</dc:creator>
				<category><![CDATA[Honeypot]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[fuzzer]]></category>
		<category><![CDATA[honeypot]]></category>

		<guid isPermaLink="false">http://www.jayscott.co.uk/?p=649</guid>
		<description><![CDATA[Quick Honeypot Update ADDED: Completely new layout to match my main site. I also broke the page down into sub-section for a few reasons such as readability and reducing the server load. ADDED: A new section called Top commands issued which, as the name implies, outputs a list of the top 30 commands issued! Handy [...]]]></description>
		<wfw:commentRss>http://www.jayscott.co.uk/security/fuzzers/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>domRecon Tool</title>
		<link>http://www.jayscott.co.uk/security/domrecon-tool/</link>
		<comments>http://www.jayscott.co.uk/security/domrecon-tool/#comments</comments>
		<pubDate>Mon, 22 Jun 2009 15:11:57 +0000</pubDate>
		<dc:creator>Jay</dc:creator>
				<category><![CDATA[Networking]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://www.jayscott.co.uk/?p=198</guid>
		<description><![CDATA[I have decided to port a script I done in C to PHP which I have made available online. I called it domRecon, it basically &#8220;hunts&#8221; for sub-domains for a domain that you provide. It works by trying to get lucky by preforming a DNS zone transfer (AXFR) but on most domains this will fail. [...]]]></description>
		<wfw:commentRss>http://www.jayscott.co.uk/security/domrecon-tool/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Star Article Vulnerability</title>
		<link>http://www.jayscott.co.uk/security/star-article-vulnerability/</link>
		<comments>http://www.jayscott.co.uk/security/star-article-vulnerability/#comments</comments>
		<pubDate>Fri, 06 Mar 2009 16:43:16 +0000</pubDate>
		<dc:creator>Jay</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[web application]]></category>

		<guid isPermaLink="false">http://www.jayscott.co.uk/?p=150</guid>
		<description><![CDATA[Star Article is a &#8220;Ready to use article, news, joke, tutorial site script with more features than you can think of&#8221;. Leads to full administration rights on the CMS admin panel via insecure cookie handling. Name &#8211; admin_user Content &#8211; admin Path &#8211; / Proof of Concept: javascript:document.cookie=&#8221;admin_user=admin; path=/&#8221; Vendor was contacted three times over [...]]]></description>
		<wfw:commentRss>http://www.jayscott.co.uk/security/star-article-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>PHP SiteLock Vulnerability</title>
		<link>http://www.jayscott.co.uk/security/php-sitelock-vulnerability/</link>
		<comments>http://www.jayscott.co.uk/security/php-sitelock-vulnerability/#comments</comments>
		<pubDate>Wed, 04 Mar 2009 23:39:13 +0000</pubDate>
		<dc:creator>Jay</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[web application]]></category>

		<guid isPermaLink="false">http://www.jayscott.co.uk/?p=143</guid>
		<description><![CDATA[PHP Site Lock A highly secure website (Ed: haha) login script which has features like User Authentication &#038; Management, Website Password Protection , protection of pdf , images , etc. The Vulnerability leads to full administration rights of the admin panel. Proof of Concept: javascript:document.cookie=&#8221;user_type=admin; path=/&#8221; javascript:document.cookie=&#8221;login_name=admin; path=/&#8221; javascript:document.cookie=&#8221;login_id=0; path=/&#8221; Vendor was contacted three times [...]]]></description>
		<wfw:commentRss>http://www.jayscott.co.uk/security/php-sitelock-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Million Dollar Text Links Vulnerability</title>
		<link>http://www.jayscott.co.uk/security/million-dollar-text-links-vulnerability/</link>
		<comments>http://www.jayscott.co.uk/security/million-dollar-text-links-vulnerability/#comments</comments>
		<pubDate>Tue, 03 Mar 2009 15:28:57 +0000</pubDate>
		<dc:creator>Jay</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[web application]]></category>

		<guid isPermaLink="false">http://www.jayscott.co.uk/?p=136</guid>
		<description><![CDATA[Next up is Million Dollar Text Links which is a link exchange application. No authentication checks on the admin home page allows anyone to just browse to the admin contol panel and bypass the login procedure. This will allow full access to the admin panel. Proof of Concept: http://sitename[applicationpath]/admin.home.php Vendor was contacted twice over a [...]]]></description>
		<wfw:commentRss>http://www.jayscott.co.uk/security/million-dollar-text-links-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Arcade Script Vulnerability</title>
		<link>http://www.jayscott.co.uk/security/arcade-script-vulnerability/</link>
		<comments>http://www.jayscott.co.uk/security/arcade-script-vulnerability/#comments</comments>
		<pubDate>Sun, 01 Mar 2009 23:03:28 +0000</pubDate>
		<dc:creator>Jay</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[web application]]></category>

		<guid isPermaLink="false">http://www.jayscott.co.uk/?p=121</guid>
		<description><![CDATA[I have found a few vulnerability&#8217;s in over the last few months which I will be posting here over the next few days. In all cases I have tried to contact the application developer and have included any information regarding in the advisory. Most of them have been cookie related vulnerability&#8217;s. First up is Arcade [...]]]></description>
		<wfw:commentRss>http://www.jayscott.co.uk/security/arcade-script-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

