<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Veracode Security Blog: Application security research, security trends and opinions &#187; 2010 &#187; April</title>
	<atom:link href="http://www.veracode.com/blog/2010/04/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.veracode.com/blog</link>
	<description>Application security testing, analysis, and metrics</description>
	<lastBuildDate>Fri, 18 May 2012 16:17:21 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>MC Frontalot Releases &#8220;Zero Day&#8221;</title>
		<link>http://www.veracode.com/blog/2010/04/mc-frontalot-releases-zero-day/</link>
		<comments>http://www.veracode.com/blog/2010/04/mc-frontalot-releases-zero-day/#comments</comments>
		<pubDate>Tue, 06 Apr 2010 17:40:32 +0000</pubDate>
		<dc:creator>Chris Wysopal</dc:creator>
				<category><![CDATA[Application Security]]></category>
		<category><![CDATA[RESEARCH]]></category>

		<guid isPermaLink="false">http://www.veracode.com/blog/?p=1226</guid>
		<description><![CDATA[&#8220;Zero Day&#8221; the album that is. Wired has a review. You can read the full lyrics on Frontalot&#8217;s site. Here is a snippet: Press play, prepare as history is made: &#8220;largest hack in one day,&#8221; all the headlines will say. All out of time, hear the chime from the buzzer. Found this bug on my [...]]]></description>
			<content:encoded><![CDATA[<p>&#8220;Zero Day&#8221; the album that is.  Wired has a <a href="http://www.wired.com/underwire/2010/04/mc-frontalot-zero-day-review/">review</a>. You can read the full <a href="http://frontalot.com/index.php/?page=lyrics&#038;lyricid=65">lyrics</a> on Frontalot&#8217;s site.  Here is a snippet:</p>
<p><i> Press play, prepare as history is made:<br />
&#8220;largest hack in one day,&#8221; all the headlines will say.</p>
<p>All out of time, hear the chime from the buzzer.<br />
Found this bug on my own, no need for a fuzzer.</p>
<p>&#8220;It&#8217;s already too late,&#8221; spreading as we planned.<br />
No need for the NO OPs, I know just where to land.</p>
<p>Clearing out the registers, with pointers to my functions,<br />
loaded to your memory and writing new instructions.</i></p>
<p><a href="http://www.youtube.com/v/5cBM4DdoC2A&#038;hl=en_US&#038;fs=1&#038;rel=0" target="_blank"><img src="http://www.veracode.com/blog/wp-content/uploads/2010/04/front-alot-300x239.png" title="front-alot" width="300" height="239" class="aligncenter size-medium wp-image-2813" /></a></p>
<h5>Veracode Security Solutions</h5>
<div style="margin-left:15px;">
<a href="http://www.veracode.com/security/vulnerability-assessment-software">Vulnerability Assessment</a><br />
<a href="http://www.veracode.com/security/web-security">Web Security</a><br />
<a href="http://www.veracode.com/security/application-testing-tool">Application Testing</a><br />
<a href="http://www.veracode.com/security/dynamic-analysis">Dynamic Analysis</a><br />
<a href="http://www.veracode.com/security/internet-security">Internet Security</a><br />
<a href="http://www.veracode.com/security/malicious-code">Malicious Code</a></div>
<p></p>
<h5>Security Alternatives</h5>
<div style="margin-left:15px;">
<a href="http://www.veracode.com/security/rational-appscan-alternative">IBM Rational AppScan</a><br />
<a href="http://www.veracode.com/security/hp-fortify-alternative">HP Fortify</a><br />
<a href="http://www.veracode.com/security/whitehat-security-alternative">Whitehat Security</a></div>
<p></p>
<h5>Security Threat Guides</h5>
<div style="margin-left:15px;">
<a href="http://www.veracode.com/security/ldap-injection">LDAP Security</a><br />
<a href="http://www.veracode.com/security/mobile-code-security">Mobile Security</a><br />
<a href="http://www.veracode.com/security/sql-injection">SQL Injection Tutorial</a><br />
<a href="http://www.veracode.com/security/xss">Prevent Cross Site Scripting</a><br />
<a href="http://www.veracode.com/security/csrf">CSRF</a></div>
]]></content:encoded>
			<wfw:commentRss>http://www.veracode.com/blog/2010/04/mc-frontalot-releases-zero-day/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
	</channel>
</rss>

