<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Twitter StalkDaily Worm Postmortem</title>
	<atom:link href="http://dcortesi.com/2009/04/11/twitter-stalkdaily-worm-postmortem/feed/" rel="self" type="application/rss+xml" />
	<link>http://dcortesi.com/2009/04/11/twitter-stalkdaily-worm-postmortem/</link>
	<description>Coding, Security, and maybe a little bit about Damon Cortesi</description>
	<lastBuildDate>Fri, 05 Mar 2010 17:36:03 -0800</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Twitter Worm Outbreak Over Easter &#8211; Security Threat Research News</title>
		<link>http://dcortesi.com/2009/04/11/twitter-stalkdaily-worm-postmortem/comment-page-2/#comment-97475</link>
		<dc:creator>Twitter Worm Outbreak Over Easter &#8211; Security Threat Research News</dc:creator>
		<pubDate>Sat, 12 Dec 2009 12:11:52 +0000</pubDate>
		<guid isPermaLink="false">http://dcortesi.com/?p=1496#comment-97475</guid>
		<description>[...] More info on the technical internals of the attack are available at dcortesi.com. [...]</description>
		<content:encoded><![CDATA[<p>[...] More info on the technical internals of the attack are available at dcortesi.com. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Explanation of How My Twitter Account Was Hacked &#124; The Aggregator</title>
		<link>http://dcortesi.com/2009/04/11/twitter-stalkdaily-worm-postmortem/comment-page-2/#comment-96889</link>
		<dc:creator>Explanation of How My Twitter Account Was Hacked &#124; The Aggregator</dc:creator>
		<pubDate>Thu, 08 Oct 2009 11:43:49 +0000</pubDate>
		<guid isPermaLink="false">http://dcortesi.com/?p=1496#comment-96889</guid>
		<description>[...] fought off four waves of worm attacks created by Mikeyy Mooney.  Damon Cortesi wrote an excellent postmortem post that explains exactly how the worm worked and what code was [...]</description>
		<content:encoded><![CDATA[<p>[...] fought off four waves of worm attacks created by Mikeyy Mooney.  Damon Cortesi wrote an excellent postmortem post that explains exactly how the worm worked and what code was [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: はまち on Twitter &#171; 情報セキュリティ備忘録</title>
		<link>http://dcortesi.com/2009/04/11/twitter-stalkdaily-worm-postmortem/comment-page-2/#comment-96827</link>
		<dc:creator>はまち on Twitter &#171; 情報セキュリティ備忘録</dc:creator>
		<pubDate>Fri, 25 Sep 2009 04:57:09 +0000</pubDate>
		<guid isPermaLink="false">http://dcortesi.com/?p=1496#comment-96827</guid>
		<description>[...] on Twitter   中身はこの辺やこの辺に。 みんな楽しそうに見えるのですが&#8230; [...]</description>
		<content:encoded><![CDATA[<p>[...] on Twitter   中身はこの辺やこの辺に。 みんな楽しそうに見えるのですが&#8230; [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Week 3 &#171; Week3 Enterprise 2.0</title>
		<link>http://dcortesi.com/2009/04/11/twitter-stalkdaily-worm-postmortem/comment-page-2/#comment-96509</link>
		<dc:creator>Week 3 &#171; Week3 Enterprise 2.0</dc:creator>
		<pubDate>Wed, 12 Aug 2009 07:34:50 +0000</pubDate>
		<guid isPermaLink="false">http://dcortesi.com/?p=1496#comment-96509</guid>
		<description>[...]  An additional interesting blog is about about Twitter black-out that happened couple of days ago, the user explains in detail what really happened to Twitter becoming unavailable.http://dcortesi.com/2009/04/11/twitter-stalkdaily-worm-postmortem/ [...]</description>
		<content:encoded><![CDATA[<p>[...]  An additional interesting blog is about about Twitter black-out that happened couple of days ago, the user explains in detail what really happened to Twitter becoming unavailable.http://dcortesi.com/2009/04/11/twitter-stalkdaily-worm-postmortem/ [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Twitter: Under attack &#124; tempebasah media</title>
		<link>http://dcortesi.com/2009/04/11/twitter-stalkdaily-worm-postmortem/comment-page-1/#comment-96483</link>
		<dc:creator>Twitter: Under attack &#124; tempebasah media</dc:creator>
		<pubDate>Fri, 07 Aug 2009 08:33:38 +0000</pubDate>
		<guid isPermaLink="false">http://dcortesi.com/?p=1496#comment-96483</guid>
		<description>[...] also become infected just by looking at a compromised Twitter profile page. For those so inclined, Damon Cortesi has posted a blog that takes an in-depth look at how the worm [...]</description>
		<content:encoded><![CDATA[<p>[...] also become infected just by looking at a compromised Twitter profile page. For those so inclined, Damon Cortesi has posted a blog that takes an in-depth look at how the worm [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: SChalice</title>
		<link>http://dcortesi.com/2009/04/11/twitter-stalkdaily-worm-postmortem/comment-page-1/#comment-96419</link>
		<dc:creator>SChalice</dc:creator>
		<pubDate>Wed, 22 Jul 2009 20:41:50 +0000</pubDate>
		<guid isPermaLink="false">http://dcortesi.com/?p=1496#comment-96419</guid>
		<description>&quot;Thinking team twitter did well.&quot;

Thinking they are foolish.</description>
		<content:encoded><![CDATA[<p>&#8220;Thinking team twitter did well.&#8221;</p>
<p>Thinking they are foolish.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: 5 XSS Exploits You Should Know About (&#38; how to prevent them) &#124; Deadly Technology</title>
		<link>http://dcortesi.com/2009/04/11/twitter-stalkdaily-worm-postmortem/comment-page-1/#comment-96286</link>
		<dc:creator>5 XSS Exploits You Should Know About (&#38; how to prevent them) &#124; Deadly Technology</dc:creator>
		<pubDate>Fri, 19 Jun 2009 15:35:41 +0000</pubDate>
		<guid isPermaLink="false">http://dcortesi.com/?p=1496#comment-96286</guid>
		<description>[...] and executed consistently. An excellent example of stored cross site scripting is the recent Mikeyy Stalk Daily worm attack on Twitter.  Mikeyy&#8217;s code was stored in the profile data for twitter users and was subsequenty [...]</description>
		<content:encoded><![CDATA[<p>[...] and executed consistently. An excellent example of stored cross site scripting is the recent Mikeyy Stalk Daily worm attack on Twitter.  Mikeyy&#8217;s code was stored in the profile data for twitter users and was subsequenty [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Web API a bezpečnosť</title>
		<link>http://dcortesi.com/2009/04/11/twitter-stalkdaily-worm-postmortem/comment-page-1/#comment-96270</link>
		<dc:creator>Web API a bezpečnosť</dc:creator>
		<pubDate>Tue, 16 Jun 2009 16:35:49 +0000</pubDate>
		<guid isPermaLink="false">http://dcortesi.com/?p=1496#comment-96270</guid>
		<description>[...] Mikeyy worm17 ročný mladík, Michael Mooney, sa preslávil za niekoľko hodín vytvorením červa, ktorý zneužíval zlú filtráciu prichádzajúcich správ. [...]</description>
		<content:encoded><![CDATA[<p>[...] Mikeyy worm17 ročný mladík, Michael Mooney, sa preslávil za niekoľko hodín vytvorením červa, ktorý zneužíval zlú filtráciu prichádzajúcich správ. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Security Justice &#187; Blog Archive &#187; Security Justice - Episode 12</title>
		<link>http://dcortesi.com/2009/04/11/twitter-stalkdaily-worm-postmortem/comment-page-1/#comment-96002</link>
		<dc:creator>Security Justice &#187; Blog Archive &#187; Security Justice - Episode 12</dc:creator>
		<pubDate>Mon, 04 May 2009 02:24:49 +0000</pubDate>
		<guid isPermaLink="false">http://dcortesi.com/?p=1496#comment-96002</guid>
		<description>[...] Twitter StalkDaily Worm Postmortem [...]</description>
		<content:encoded><![CDATA[<p>[...] Twitter StalkDaily Worm Postmortem [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jake Kasprzak Online &#8250; The Twitter XSS Worm and Lessons That Can Be Learned From It</title>
		<link>http://dcortesi.com/2009/04/11/twitter-stalkdaily-worm-postmortem/comment-page-1/#comment-95949</link>
		<dc:creator>Jake Kasprzak Online &#8250; The Twitter XSS Worm and Lessons That Can Be Learned From It</dc:creator>
		<pubDate>Mon, 27 Apr 2009 23:50:23 +0000</pubDate>
		<guid isPermaLink="false">http://dcortesi.com/?p=1496#comment-95949</guid>
		<description>[...] This worm infected the profiles of Twitter users so that they contained malicious code. Logged-in Twitter users who would view one of these infected profiles would then, through execution of the JavaScript injected into these profiles via an XSS hole, have their own profiles infected with the same code. Therefore, propagation of this worm occurred via logged-in Twitter users simply viewing infected profiles. The source code used by this worm can be viewed here. As one can see by viewing this source code that is called from infected Twitter pages, it injects the malicious script and other data that would appear in profiles when they are infected with this worm. Damon Cortesi gives a good analysis of the worm here. [...]</description>
		<content:encoded><![CDATA[<p>[...] This worm infected the profiles of Twitter users so that they contained malicious code. Logged-in Twitter users who would view one of these infected profiles would then, through execution of the JavaScript injected into these profiles via an XSS hole, have their own profiles infected with the same code. Therefore, propagation of this worm occurred via logged-in Twitter users simply viewing infected profiles. The source code used by this worm can be viewed here. As one can see by viewing this source code that is called from infected Twitter pages, it injects the malicious script and other data that would appear in profiles when they are infected with this worm. Damon Cortesi gives a good analysis of the worm here. [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>

