<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Veracode Security Blog: Application security research, security trends and opinions &#187; 2011 &#187; January</title>
	<atom:link href="http://www.veracode.com/blog/2011/01/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.veracode.com/blog</link>
	<description>Application security testing, analysis, and metrics</description>
	<lastBuildDate>Fri, 18 May 2012 16:17:21 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Free XSS Scanning for the Masses</title>
		<link>http://www.veracode.com/blog/2011/01/free-xss-scanning-for-the-masses/</link>
		<comments>http://www.veracode.com/blog/2011/01/free-xss-scanning-for-the-masses/#comments</comments>
		<pubDate>Mon, 31 Jan 2011 15:50:40 +0000</pubDate>
		<dc:creator>Chris Eng</dc:creator>
				<category><![CDATA[Application Security]]></category>
		<category><![CDATA[RESEARCH]]></category>

		<guid isPermaLink="false">http://www.veracode.com/blog/?p=1404</guid>
		<description><![CDATA[We&#8217;re very excited here at Veracode to announce the availability of our new FREE service to detect cross-site scripting (XSS) in your web application. This is a significant milestone for our company and for the security industry, and we encourage everyone from small ISVs to major enterprises to give us a try. Hopefully this will [...]]]></description>
			<content:encoded><![CDATA[<p>We&#8217;re very excited here at Veracode to announce the availability of our new <a href="http://www.veracode.com/freeservice">FREE service</a> to detect cross-site scripting (XSS) in your web application. This is a significant milestone for our company and for the security industry, and we encourage everyone from small ISVs to major enterprises to give us a try.  Hopefully this will be one of the first steps in the long road to eliminating XSS; after all, one of the first steps to recovery is admitting you have a problem!</p>
<p>Questions?  Comment on this blog post, or try <a href="http://twitter.com/veracode">@veracode</a>, <a href="http://twitter.com/chriseng">@chriseng</a>, or <a href="http://twitter.com/weldpond">@weldpond</a> on Twitter.</p>
<h5>Veracode Security Solutions</h5>
<div style="margin-left:15px;">
<a href="http://www.veracode.com/security/vulnerability-assessment-software">Vulnerability Assessment</a><br />
<a href="http://www.veracode.com/security/web-security">Web Security</a><br />
<a href="http://www.veracode.com/security/application-testing-tool">Application Testing</a><br />
<a href="http://www.veracode.com/security/dynamic-analysis">Dynamic Analysis</a><br />
<a href="http://www.veracode.com/security/internet-security">Internet Security</a><br />
<a href="http://www.veracode.com/security/malicious-code">Malicious Code</a></div>
<p></p>
<h5>Security Alternatives</h5>
<div style="margin-left:15px;">
<a href="http://www.veracode.com/security/rational-appscan-alternative">IBM Rational AppScan</a><br />
<a href="http://www.veracode.com/security/hp-fortify-alternative">HP Fortify</a><br />
<a href="http://www.veracode.com/security/whitehat-security-alternative">Whitehat Security</a></div>
<p></p>
<h5>Security Threat Guides</h5>
<div style="margin-left:15px;">
<a href="http://www.veracode.com/security/ldap-injection">LDAP Security</a><br />
<a href="http://www.veracode.com/security/mobile-code-security">Mobile Security</a><br />
<a href="http://www.veracode.com/security/sql-injection">SQL Injection Tutorial</a><br />
<a href="http://www.veracode.com/security/xss">Prevent Cross Site Scripting</a><br />
<a href="http://www.veracode.com/security/csrf">CSRF</a></div>
]]></content:encoded>
			<wfw:commentRss>http://www.veracode.com/blog/2011/01/free-xss-scanning-for-the-masses/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Sony PSN Breach Infographic</title>
		<link>http://www.veracode.com/blog/2011/01/sony-psn-breach-infographic-2/</link>
		<comments>http://www.veracode.com/blog/2011/01/sony-psn-breach-infographic-2/#comments</comments>
		<pubDate>Sun, 02 Jan 2011 20:24:38 +0000</pubDate>
		<dc:creator>Fergal Glynn</dc:creator>
				<category><![CDATA[INFOGRAPHICS]]></category>

		<guid isPermaLink="false">http://www.veracode.com/blog/?p=2413</guid>
		<description><![CDATA[On April 22, 2011 Sony announced their network had been breached, but released limited details regarding the attack vector. This announcement was a precursor to a series of new attacks against other Sony online properties and ultimately the shutdown of the PlayStation Network. On May 13th, Veracode Researcher, Chris Lytle, published his blog post on [...]]]></description>
			<content:encoded><![CDATA[<p>On April 22, 2011 Sony announced their network had been breached, but released limited details regarding the attack vector. This announcement was a precursor to a series of new attacks against other Sony online properties and ultimately the shutdown of the PlayStation Network. On May 13th, Veracode Researcher, Chris Lytle, published his blog post on the anatomy of the PSN attack. We’ve taken his analysis and turned it into the infographic featured below:</p>
<p><img src="http://www.veracode.com/images/media/ps3-infographic.jpg" alt="Veracode Sony Infographic" width="650" height="3477"/></p>
]]></content:encoded>
			<wfw:commentRss>http://www.veracode.com/blog/2011/01/sony-psn-breach-infographic-2/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
	</channel>
</rss>

