<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	
	>
<channel>
	<title>
	Comments on: fixing csrf for jforum and csrf filter analysis (part 1)	</title>
	<atom:link href="https://www.selikoff.net/2013/02/09/fixing-csrf-for-jforum/feed/" rel="self" type="application/rss+xml" />
	<link>https://www.selikoff.net/2013/02/09/fixing-csrf-for-jforum/</link>
	<description>Java/J2EE Software Development and Technology Discussion Blog</description>
	<lastBuildDate>Sun, 28 Sep 2014 16:26:54 +0000</lastBuildDate>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.9.4</generator>
	<item>
		<title>
		By: fixing clickjacking and brute force login for jforum &#124; Down Home Country Coding With Scott Selikoff and Jeanne Boyarsky		</title>
		<link>https://www.selikoff.net/2013/02/09/fixing-csrf-for-jforum/comment-page-1/#comment-126528</link>

		<dc:creator><![CDATA[fixing clickjacking and brute force login for jforum &#124; Down Home Country Coding With Scott Selikoff and Jeanne Boyarsky]]></dc:creator>
		<pubDate>Sun, 28 Sep 2014 16:26:54 +0000</pubDate>
		<guid isPermaLink="false">http://www.selikoff.net/?p=4661#comment-126528</guid>

					<description><![CDATA[[&#8230;] of the security fixes we&#8217;ve made in the CodeRanch fork of JForum such as XSS with quotes and CSRF. Today it is time to write about Clickjacking and preventing brute force [&#8230;]]]></description>
			<content:encoded><![CDATA[<p>[&#8230;] of the security fixes we&#8217;ve made in the CodeRanch fork of JForum such as XSS with quotes and CSRF. Today it is time to write about Clickjacking and preventing brute force [&#8230;]</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: fixing JForum XSS error in PM module with quotes &#124; Down Home Country Coding With Scott Selikoff and Jeanne Boyarsky		</title>
		<link>https://www.selikoff.net/2013/02/09/fixing-csrf-for-jforum/comment-page-1/#comment-9968</link>

		<dc:creator><![CDATA[fixing JForum XSS error in PM module with quotes &#124; Down Home Country Coding With Scott Selikoff and Jeanne Boyarsky]]></dc:creator>
		<pubDate>Sat, 24 May 2014 17:05:59 +0000</pubDate>
		<guid isPermaLink="false">http://www.selikoff.net/?p=4661#comment-9968</guid>

					<description><![CDATA[[&#8230;] A member reported a XSS vulnerability in stock JForum 2.1.9. We confirmed it was a vulnerability/exposure on CodeRanch as well and fixed our fork. Luckily, it was an easy fix unlike the CSRF problems last year. [&#8230;]]]></description>
			<content:encoded><![CDATA[<p>[&#8230;] A member reported a XSS vulnerability in stock JForum 2.1.9. We confirmed it was a vulnerability/exposure on CodeRanch as well and fixed our fork. Luckily, it was an easy fix unlike the CSRF problems last year. [&#8230;]</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: csrf defenses at app sec usa &#124; Down Home Country Coding With Scott Selikoff and Jeanne Boyarsky		</title>
		<link>https://www.selikoff.net/2013/02/09/fixing-csrf-for-jforum/comment-page-1/#comment-6852</link>

		<dc:creator><![CDATA[csrf defenses at app sec usa &#124; Down Home Country Coding With Scott Selikoff and Jeanne Boyarsky]]></dc:creator>
		<pubDate>Sun, 24 Nov 2013 21:40:19 +0000</pubDate>
		<guid isPermaLink="false">http://www.selikoff.net/?p=4661#comment-6852</guid>

					<description><![CDATA[[...] take CSRF isn&#8217;t new to me. See what we did at CodeRanch. I think it is an important topic though and it was interesting to see about other solutions. The [...]]]></description>
			<content:encoded><![CDATA[<p>[&#8230;] take CSRF isn&#8217;t new to me. See what we did at CodeRanch. I think it is an important topic though and it was interesting to see about other solutions. The [&#8230;]</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: csrf &#8211; jforum cleanup and problems &#124; Down Home Country Coding With Scott Selikoff and Jeanne Boyarsky		</title>
		<link>https://www.selikoff.net/2013/02/09/fixing-csrf-for-jforum/comment-page-1/#comment-5776</link>

		<dc:creator><![CDATA[csrf &#8211; jforum cleanup and problems &#124; Down Home Country Coding With Scott Selikoff and Jeanne Boyarsky]]></dc:creator>
		<pubDate>Sat, 23 Mar 2013 16:06:17 +0000</pubDate>
		<guid isPermaLink="false">http://www.selikoff.net/?p=4661#comment-5776</guid>

					<description><![CDATA[[...] fixing csrf for jforum and csrf filter analysis (part 1) [...]]]></description>
			<content:encoded><![CDATA[<p>[&#8230;] fixing csrf for jforum and csrf filter analysis (part 1) [&#8230;]</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: csrf for JForum without javascript &#124; Down Home Country Coding With Scott Selikoff and Jeanne Boyarsky		</title>
		<link>https://www.selikoff.net/2013/02/09/fixing-csrf-for-jforum/comment-page-1/#comment-5775</link>

		<dc:creator><![CDATA[csrf for JForum without javascript &#124; Down Home Country Coding With Scott Selikoff and Jeanne Boyarsky]]></dc:creator>
		<pubDate>Sat, 23 Mar 2013 16:04:08 +0000</pubDate>
		<guid isPermaLink="false">http://www.selikoff.net/?p=4661#comment-5775</guid>

					<description><![CDATA[[...] fixing csrf for jforum and csrf filter analysis (part 1) [...]]]></description>
			<content:encoded><![CDATA[<p>[&#8230;] fixing csrf for jforum and csrf filter analysis (part 1) [&#8230;]</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: csrf &#8211; extending the owasp solution and &#8220;interesting&#8221; IE javascript bugs (part 2) &#124; Down Home Country Coding With Scott Selikoff and Jeanne Boyarsky		</title>
		<link>https://www.selikoff.net/2013/02/09/fixing-csrf-for-jforum/comment-page-1/#comment-5563</link>

		<dc:creator><![CDATA[csrf &#8211; extending the owasp solution and &#8220;interesting&#8221; IE javascript bugs (part 2) &#124; Down Home Country Coding With Scott Selikoff and Jeanne Boyarsky]]></dc:creator>
		<pubDate>Sat, 09 Feb 2013 15:54:45 +0000</pubDate>
		<guid isPermaLink="false">http://www.selikoff.net/?p=4661#comment-5563</guid>

					<description><![CDATA[[...] fixing csrf for jforum and csrf filter analysis (part 1) [...]]]></description>
			<content:encoded><![CDATA[<p>[&#8230;] fixing csrf for jforum and csrf filter analysis (part 1) [&#8230;]</p>
]]></content:encoded>
		
			</item>
	</channel>
</rss>
