<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Scrawlr: Are We Being Too Greedy?</title>
	<atom:link href="http://www.veracode.com/blog/2008/06/scrawlr-are-we-being-too-greedy/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.veracode.com/blog/2008/06/scrawlr-are-we-being-too-greedy/</link>
	<description>Application security testing, analysis, and metrics</description>
	<lastBuildDate>Tue, 15 May 2012 22:16:53 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: SQL Tutorials</title>
		<link>http://www.veracode.com/blog/2008/06/scrawlr-are-we-being-too-greedy/comment-page-1/#comment-2707</link>
		<dc:creator>SQL Tutorials</dc:creator>
		<pubDate>Fri, 01 May 2009 02:56:54 +0000</pubDate>
		<guid isPermaLink="false">http://www.veracode.com/blog/?p=112#comment-2707</guid>
		<description>Does anyone know if there is another language or set of commands beside SQL for talking with databases? 

I&#039;m working on a project and am doing some research thanks</description>
		<content:encoded><![CDATA[<p>Does anyone know if there is another language or set of commands beside SQL for talking with databases? </p>
<p>I&#8217;m working on a project and am doing some research thanks</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: DaveS</title>
		<link>http://www.veracode.com/blog/2008/06/scrawlr-are-we-being-too-greedy/comment-page-1/#comment-2065</link>
		<dc:creator>DaveS</dc:creator>
		<pubDate>Wed, 17 Sep 2008 12:44:52 +0000</pubDate>
		<guid isPermaLink="false">http://www.veracode.com/blog/?p=112#comment-2065</guid>
		<description>So what are the choices?

Acunetix WVS is WAYYY to expensive for the average Joe
WebInspect is also in the above category...

There must be something out there that a &quot;person&quot; (not a big business) can afford, and performs well...

Does anyone know of anything?

Thanks!</description>
		<content:encoded><![CDATA[<p>So what are the choices?</p>
<p>Acunetix WVS is WAYYY to expensive for the average Joe<br />
WebInspect is also in the above category&#8230;</p>
<p>There must be something out there that a &#8220;person&#8221; (not a big business) can afford, and performs well&#8230;</p>
<p>Does anyone know of anything?</p>
<p>Thanks!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: dave</title>
		<link>http://www.veracode.com/blog/2008/06/scrawlr-are-we-being-too-greedy/comment-page-1/#comment-1962</link>
		<dc:creator>dave</dc:creator>
		<pubDate>Mon, 21 Jul 2008 18:06:52 +0000</pubDate>
		<guid isPermaLink="false">http://www.veracode.com/blog/?p=112#comment-1962</guid>
		<description>can you recommend a free or some type of affordable tool?</description>
		<content:encoded><![CDATA[<p>can you recommend a free or some type of affordable tool?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Aldo Lagana</title>
		<link>http://www.veracode.com/blog/2008/06/scrawlr-are-we-being-too-greedy/comment-page-1/#comment-1934</link>
		<dc:creator>Aldo Lagana</dc:creator>
		<pubDate>Fri, 18 Jul 2008 11:59:26 +0000</pubDate>
		<guid isPermaLink="false">http://www.veracode.com/blog/?p=112#comment-1934</guid>
		<description>I have yet to play with Scrawlr, but it looks like Paros&#039; Scanning capability.  

Great blog!</description>
		<content:encoded><![CDATA[<p>I have yet to play with Scrawlr, but it looks like Paros&#8217; Scanning capability.  </p>
<p>Great blog!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Chris Eng</title>
		<link>http://www.veracode.com/blog/2008/06/scrawlr-are-we-being-too-greedy/comment-page-1/#comment-1098</link>
		<dc:creator>Chris Eng</dc:creator>
		<pubDate>Thu, 26 Jun 2008 19:41:45 +0000</pubDate>
		<guid isPermaLink="false">http://www.veracode.com/blog/?p=112#comment-1098</guid>
		<description>@Mike:

Doh!  Sorry about that.  Fixed.  Maybe I should start reading the bylines.  :)</description>
		<content:encoded><![CDATA[<p>@Mike:</p>
<p>Doh!  Sorry about that.  Fixed.  Maybe I should start reading the bylines.  :)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mike Tracy</title>
		<link>http://www.veracode.com/blog/2008/06/scrawlr-are-we-being-too-greedy/comment-page-1/#comment-1097</link>
		<dc:creator>Mike Tracy</dc:creator>
		<pubDate>Thu, 26 Jun 2008 19:35:05 +0000</pubDate>
		<guid isPermaLink="false">http://www.veracode.com/blog/?p=112#comment-1097</guid>
		<description>Why does Tom always get the credit?</description>
		<content:encoded><![CDATA[<p>Why does Tom always get the credit?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Matasano Chargen &#187; And Now For A Few Words About HP&#8217;s &#8220;Scrawlr&#8221;</title>
		<link>http://www.veracode.com/blog/2008/06/scrawlr-are-we-being-too-greedy/comment-page-1/#comment-1096</link>
		<dc:creator>Matasano Chargen &#187; And Now For A Few Words About HP&#8217;s &#8220;Scrawlr&#8221;</dc:creator>
		<pubDate>Thu, 26 Jun 2008 19:23:07 +0000</pubDate>
		<guid isPermaLink="false">http://www.veracode.com/blog/?p=112#comment-1096</guid>
		<description>[...] of my favorite reads (there are others) have recently written about about Scrawlr and some of what I have read has been [...]</description>
		<content:encoded><![CDATA[<p>[...] of my favorite reads (there are others) have recently written about about Scrawlr and some of what I have read has been [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: links for 2008-06-26 (Jarrett House North)</title>
		<link>http://www.veracode.com/blog/2008/06/scrawlr-are-we-being-too-greedy/comment-page-1/#comment-1091</link>
		<dc:creator>links for 2008-06-26 (Jarrett House North)</dc:creator>
		<pubDate>Thu, 26 Jun 2008 02:38:52 +0000</pubDate>
		<guid isPermaLink="false">http://www.veracode.com/blog/?p=112#comment-1091</guid>
		<description>[...] Zero in a bit » Scrawlr: Are We Being Too Greedy? Chris Eng&#8217;s review of the new free SQL Injection scanning tool from HP and Microsoft. (tags: security sqlinjection microsoft) [...]</description>
		<content:encoded><![CDATA[<p>[...] Zero in a bit » Scrawlr: Are We Being Too Greedy? Chris Eng&#8217;s review of the new free SQL Injection scanning tool from HP and Microsoft. (tags: security sqlinjection microsoft) [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Marcin</title>
		<link>http://www.veracode.com/blog/2008/06/scrawlr-are-we-being-too-greedy/comment-page-1/#comment-1086</link>
		<dc:creator>Marcin</dc:creator>
		<pubDate>Wed, 25 Jun 2008 18:24:58 +0000</pubDate>
		<guid isPermaLink="false">http://www.veracode.com/blog/?p=112#comment-1086</guid>
		<description>&lt;em&gt;Limitation: Cannot retrieve database contents&lt;/em&gt;

Not to mention dangerous...</description>
		<content:encoded><![CDATA[<p><em>Limitation: Cannot retrieve database contents</em></p>
<p>Not to mention dangerous&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Andrew Becherer</title>
		<link>http://www.veracode.com/blog/2008/06/scrawlr-are-we-being-too-greedy/comment-page-1/#comment-1085</link>
		<dc:creator>Andrew Becherer</dc:creator>
		<pubDate>Wed, 25 Jun 2008 16:56:37 +0000</pubDate>
		<guid isPermaLink="false">http://www.veracode.com/blog/?p=112#comment-1085</guid>
		<description>Regarding &quot;Limitation: Does not support sites requiring authentication&quot; the Scrawlr supports the use of a proxy. If your site requires NTLM for authentication you could utilize the NTLM Authorization Proxy Server (ntlmaps). I have not tried this yet, as I don&#039;t have any NTLM requiring sites at the ready. It should work though.</description>
		<content:encoded><![CDATA[<p>Regarding &#8220;Limitation: Does not support sites requiring authentication&#8221; the Scrawlr supports the use of a proxy. If your site requires NTLM for authentication you could utilize the NTLM Authorization Proxy Server (ntlmaps). I have not tried this yet, as I don&#8217;t have any NTLM requiring sites at the ready. It should work though.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

