<?xml version="1.0" encoding="iso-8859-1"?>
<rss version="2.0">
  <channel>
    <title>DotNetKicks.com - Stories tagged with Security</title>
    <description>the latest stories tagged with 'Security' from DotNetKicks.com</description>
    <link>http://www.dotnetkicks.com/</link>
    <language>en-us</language>
    <copyright>Atweb Publishing Ltd.</copyright>
    <docs>http://backend.userland.com/rss</docs>
    <generator>DotNetKicks.com - .NET links, community driven</generator>
    <ttl>30</ttl>
    <item>
      <title>Session Attacks and ASP.NET - Part 2</title>
      <description>In Session Attacks and ASP.NET - Part 1, I introduced one type of attack against the session called Session Fixation as well as ASP.NET's session architecture and authentication architecture.  In this second post, I'll delve into a couple specific attack scenarios,  cover risk reduction, and countermeasures specific to ASP.NET for protecting against session attacks in ASP.NET &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fblogs.sans.org%2fappsecstreetfighter%2f2009%2f06%2f24%2fsession-attacks-and-aspnet-part-2"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fblogs.sans.org%2fappsecstreetfighter%2f2009%2f06%2f24%2fsession-attacks-and-aspnet-part-2" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/Session_Attacks_and_ASP_NET_Part_2</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/Session_Attacks_and_ASP_NET_Part_2</guid>
      <pubDate>Wed, 24 Jun 2009 19:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Session Attacks and ASP.NET - Part 1</title>
      <description>I've spent some time recently looking for updated information regarding session attacks as they apply to ASP.NET and am still not completely satisfied with how Microsoft has decided to implement session management  in ASP.NET 2.0+.  Part 1 explores ASP.NET session management, authentication, and session attacks against ASP.NET with a comparison of how ASP.NET stacks up against mitigation techniques against these attacks. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fblogs.sans.org%2fappsecstreetfighter%2f2009%2f06%2f16%2fsession-attacks-and-aspnet-part-1%2fcomment-page-1%2f"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fblogs.sans.org%2fappsecstreetfighter%2f2009%2f06%2f16%2fsession-attacks-and-aspnet-part-1%2fcomment-page-1%2f" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/Session_Attacks_and_ASP_NET_Part_1</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/Session_Attacks_and_ASP_NET_Part_1</guid>
      <pubDate>Thu, 18 Jun 2009 17:30:01 GMT</pubDate>
    </item>
    <item>
      <title>NVelocity and XSS</title>
      <description>Is Nvelocity XSS proof? &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fdobrzanski.net%2f2009%2f01%2f14%2fnvelocity-and-xss%2f"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fdobrzanski.net%2f2009%2f01%2f14%2fnvelocity-and-xss%2f" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/NVelocity_and_XSS</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/NVelocity_and_XSS</guid>
      <pubDate>Mon, 15 Jun 2009 11:08:12 GMT</pubDate>
    </item>
    <item>
      <title>Create Logos</title>
      <description>Logosmartz provides you pre-defined logo templates and add special effects like    shadow, Bevel, Outline and Gradient to create logos. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2flivearticles.org%2fblogs"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2flivearticles.org%2fblogs" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/Create_Logos</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/Create_Logos</guid>
      <pubDate>Fri, 12 Jun 2009 05:49:36 GMT</pubDate>
    </item>
    <item>
      <title>AzMan Bulk Import</title>
      <description>The AzMan bulk import tool that many of us have used. The author is finally blogging. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fjoelangley.blogspot.com%2f2009%2f06%2fazman-bulk-importexport-tool.html"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fjoelangley.blogspot.com%2f2009%2f06%2fazman-bulk-importexport-tool.html" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/csharp/AzMan_Bulk_Import</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/csharp/AzMan_Bulk_Import</guid>
      <pubDate>Tue, 09 Jun 2009 22:34:49 GMT</pubDate>
    </item>
    <item>
      <title>Security Certificate problem</title>
      <description>If you are using a computer without the connector (console) software on it (e.g. at work trying to access your home server) and you try to connect to the web interface of WHS then the following error appears: If you are using a computer without the connector (console) software on  &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2ftechnoblogy.net%2fpost%2fSecurity-Certificate-problem.aspx"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2ftechnoblogy.net%2fpost%2fSecurity-Certificate-problem.aspx" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/Security_Certificate_problem</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/Security_Certificate_problem</guid>
      <pubDate>Sat, 06 Jun 2009 07:29:12 GMT</pubDate>
    </item>
    <item>
      <title>How to reg 64-bit assembly using VS2005 setup on 64-bit</title>
      <description>eg 64-bit assembly using VS2005 setup on 64-bit  &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2ftechnoblogy.net%2fpost%2fHow-to-reg-64-bit-assembly-using-VS2005-setup-on-64-bit.aspx"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2ftechnoblogy.net%2fpost%2fHow-to-reg-64-bit-assembly-using-VS2005-setup-on-64-bit.aspx" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/How_to_reg_64_bit_assembly_using_VS2005_setup_on_64_bit</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/How_to_reg_64_bit_assembly_using_VS2005_setup_on_64_bit</guid>
      <pubDate>Fri, 05 Jun 2009 20:08:01 GMT</pubDate>
    </item>
    <item>
      <title>Security Vulnerability Analysis for Fiddler</title>
      <description>Fiddler Plugins for Site Spider, Fuzzer, XSS/CSRF vulnerability detection, SQL Injection detection, Session Tampering, Information Leakage detection, etc.  A ViewState decoder proof-of-concept has been completed. Looking for contributors as well. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fsecuritythroughabsurdity.com%2f2009%2f05%2fsecurity-vulnerability-analysis-plugin.html"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fsecuritythroughabsurdity.com%2f2009%2f05%2fsecurity-vulnerability-analysis-plugin.html" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/Security_Vulnerability_Analysis_for_Fiddler</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/Security_Vulnerability_Analysis_for_Fiddler</guid>
      <pubDate>Sat, 23 May 2009 09:12:31 GMT</pubDate>
    </item>
    <item>
      <title>The Geneva framework</title>
      <description>The "Geneva", while being a very interesting framework developed by Microsoft, isn't getting much buzz on the blogs. A beta 2 version was just recently released and the final version is planned somewhere in 2009. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fmarcinbudny.blogspot.com%2f2009%2f05%2fgeneva-framework.html"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fmarcinbudny.blogspot.com%2f2009%2f05%2fgeneva-framework.html" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/The_Geneva_framework</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/The_Geneva_framework</guid>
      <pubDate>Fri, 15 May 2009 06:01:02 GMT</pubDate>
    </item>
    <item>
      <title>XSRF Attacks in AJAX enabled apps</title>
      <description>A bit of research and a brief P.O.C. demonstrating a cross site request forgery against an AJAX enabled application...

 &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fwebpangea.blogspot.com%2f2009%2f05%2fxsrf-attacks-far-too-easy.html"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fwebpangea.blogspot.com%2f2009%2f05%2fxsrf-attacks-far-too-easy.html" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/XSRF_Attacks_in_AJAX_enabled_apps</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/XSRF_Attacks_in_AJAX_enabled_apps</guid>
      <pubDate>Thu, 14 May 2009 19:56:42 GMT</pubDate>
    </item>
    <item>
      <title>Code Access Security Cheat Sheet</title>
      <description>A full page cheat sheet on Code Access Security (CAS).  Includes screenshots of the .NET Framework 2.0 Configuration tool.  Describes the following terms: Permission, PermissionSet, Code Group, Policy Level, Assembly Instance, Evidence; and Evidence Type.
 &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2frapidapplicationdevelopment.blogspot.com%2f2009%2f05%2fcode-access-security-cheat-sheet.html"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2frapidapplicationdevelopment.blogspot.com%2f2009%2f05%2fcode-access-security-cheat-sheet.html" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/Code_Access_Security_Cheat_Sheet</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/Code_Access_Security_Cheat_Sheet</guid>
      <pubDate>Thu, 07 May 2009 21:46:05 GMT</pubDate>
    </item>
    <item>
      <title>Certificate Authentication &amp;amp; Transport Security in WCF</title>
      <description>I think I understand more about setting up a WCF service from this article then from about 10 links I found previously; and that's saying something coming from an MSDN article. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fgoneale.wordpress.com%2f2009%2f05%2f07%2fcertificate-authentication-transport-security-in-wcf%2f"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fgoneale.wordpress.com%2f2009%2f05%2f07%2fcertificate-authentication-transport-security-in-wcf%2f" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/wcf/Certificate_Authentication_Transport_Security_in_WCF</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/wcf/Certificate_Authentication_Transport_Security_in_WCF</guid>
      <pubDate>Thu, 07 May 2009 07:50:52 GMT</pubDate>
    </item>
    <item>
      <title>ELMAH: Error Logging Modules and Handlers for ASP.NET (and MVC too!)</title>
      <description>ELMAH has been one of the most useful tools for ASP.NET developers to log errors on their web applications. Now Scott has a nice talk on how to use it even in your ASP.NET MVC applications. Cool! &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fwww.hanselman.com%2fblog%2fELMAHErrorLoggingModulesAndHandlersForASPNETAndMVCToo.aspx"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fwww.hanselman.com%2fblog%2fELMAHErrorLoggingModulesAndHandlersForASPNETAndMVCToo.aspx" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/ELMAH_Error_Logging_Modules_and_Handlers_for_ASP_NET_and_MVC_too</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/ELMAH_Error_Logging_Modules_and_Handlers_for_ASP_NET_and_MVC_too</guid>
      <pubDate>Fri, 24 Apr 2009 22:01:11 GMT</pubDate>
    </item>
    <item>
      <title>8 Ways To Make Your Software Hacker-Proof and Crack-Proof.</title>
      <description>This article provides some useful tips and guidelines for designing effective licenses and writing effective license validation code. The philosophy is simple: to make it as difficult as possible for the hacker to 'crack' your software and cause the hacker to lose interest in your software or not make it worthwhile for him/her. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fwww.ssware.com%2farticles%2fwriting-effective-license-checking-code-and-designing-effective-licenses-with-cryptolicensing.htm"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fwww.ssware.com%2farticles%2fwriting-effective-license-checking-code-and-designing-effective-licenses-with-cryptolicensing.htm" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/8_Ways_To_Make_Your_Software_Hacker_Proof_and_Crack_Proof</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/8_Ways_To_Make_Your_Software_Hacker_Proof_and_Crack_Proof</guid>
      <pubDate>Thu, 23 Apr 2009 16:18:17 GMT</pubDate>
    </item>
    <item>
      <title>Data Validation - Step One in Improving the Security of Your Web Appli</title>
      <description>Security MVP Article - April 2009, Data Validation By Rudolph Araujo, Microsoft MVP - Developer Security &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2ftechnet.microsoft.com%2fen-us%2flibrary%2fdd699463.aspx"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2ftechnet.microsoft.com%2fen-us%2flibrary%2fdd699463.aspx" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/Data_Validation_Step_One_in_Improving_the_Security_of_Your_Web_Appli</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/Data_Validation_Step_One_in_Improving_the_Security_of_Your_Web_Appli</guid>
      <pubDate>Tue, 21 Apr 2009 20:52:12 GMT</pubDate>
    </item>
    <item>
      <title>CryptoLicensing For .Net 2009 released</title>
      <description>CryptoLicensing for .Net is a 100% .Net solution to add licensing, copy-protection and activation capabilities to your .Net, Windows Forms (WinForms) and WPF applications, components and controls and ASP.Net web sites. CryptoLicensing uses the latest military strength, state-of-the-art cryptographic technology to generate secure and unbreakable licenses to ensure that your software and intellectual property is protected.
 &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fwww.ssware.com%2fcryptolicensing%2fcryptolicensing_net.htm"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fwww.ssware.com%2fcryptolicensing%2fcryptolicensing_net.htm" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/CryptoLicensing_For_Net_2009_released</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/CryptoLicensing_For_Net_2009_released</guid>
      <pubDate>Mon, 20 Apr 2009 19:46:06 GMT</pubDate>
    </item>
    <item>
      <title>Simple String Encryption using DPAPI and Extension Methods</title>
      <description>Extension methods that encyrpt / decrypt strings through the Windows Data Protection API (DPAPI) with optional usage of secure strings that protect data in memory. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fwww.hardcodet.net%2f2009%2f04%2fdpapi-string-encryption-and-extension-methods"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fwww.hardcodet.net%2f2009%2f04%2fdpapi-string-encryption-and-extension-methods" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/Simple_String_Encryption_using_DPAPI_and_Extension_Methods</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/Simple_String_Encryption_using_DPAPI_and_Extension_Methods</guid>
      <pubDate>Fri, 17 Apr 2009 14:53:55 GMT</pubDate>
    </item>
    <item>
      <title>Creating an Elevated Button Control</title>
      <description>When using Microsoft Windows Vista, administrative tasks are restricted by the user account control (UAC) system. Buttons that require elevated permissions are displayed with the command text and a shield icon to indicate that permission will be required. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fwww.blackwasp.co.uk%2fElevatedButton.aspx"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fwww.blackwasp.co.uk%2fElevatedButton.aspx" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/Creating_an_Elevated_Button_Control</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/Creating_an_Elevated_Button_Control</guid>
      <pubDate>Tue, 07 Apr 2009 03:11:03 GMT</pubDate>
    </item>
    <item>
      <title>Check if a Program is Running as an Administrator</title>
      <description>User Account Control (UAC) protects Vista by preventing programs from performing administrative or system functions without prior permission. Before attempting such a function, you should check whether your software is running with elevated privileges. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fwww.blackwasp.co.uk%2fCheckAdmin.aspx"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fwww.blackwasp.co.uk%2fCheckAdmin.aspx" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/Check_if_a_Program_is_Running_as_an_Administrator</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/Check_if_a_Program_is_Running_as_an_Administrator</guid>
      <pubDate>Sat, 28 Mar 2009 19:09:35 GMT</pubDate>
    </item>
    <item>
      <title>Localized Service Names and How to get Around It</title>
      <description>Using built in windows account names like NT AUTHORITY\Network Service in code can be tricky especially if we are dealing with different locales. This article describes how to get around it and write generic code that will work on all localized versions of windows.  &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fhatim.indexdev.net%2f2008%2f12%2f30%2flocalized-service-names-and-how-to-get-around-it%2f"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fhatim.indexdev.net%2f2008%2f12%2f30%2flocalized-service-names-and-how-to-get-around-it%2f" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/Localized_Service_Names_and_How_to_get_Around_It</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/Localized_Service_Names_and_How_to_get_Around_It</guid>
      <pubDate>Thu, 19 Mar 2009 04:54:21 GMT</pubDate>
    </item>
    <item>
      <title>22,000 Strong Botnet: BBC Crosses the Line</title>
      <description>The BBC is running a story about just how easy it is for hackers to install and manage a botnet.  The problem is that they used unsuspecting users computers to demonstrate it!  &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fwww.steveciske.com%2fpost%2f22000-Strong-Botnet-BBC-Crosses-the-Line.aspx"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fwww.steveciske.com%2fpost%2f22000-Strong-Botnet-BBC-Crosses-the-Line.aspx" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/22_000_Strong_Botnet_BBC_Crosses_the_Line</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/22_000_Strong_Botnet_BBC_Crosses_the_Line</guid>
      <pubDate>Fri, 13 Mar 2009 01:15:38 GMT</pubDate>
    </item>
    <item>
      <title>Cracking .NETZ executables</title>
      <description>.NETZ is a free open source tool that compresses and packs the Microsoft .NET Framework executable (EXE, DLL) files in order to make them smaller. Smaller executables consume less disk space and load faster because of fewer disk accesses. 

Today we are going to show you how to extract assemblies from them, so we can crack them!
 &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fblogs.compdj.com%2fpost%2fCracking-NETZ-executables.aspx"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fblogs.compdj.com%2fpost%2fCracking-NETZ-executables.aspx" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/Cracking_NETZ_executables</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/Cracking_NETZ_executables</guid>
      <pubDate>Sat, 07 Mar 2009 06:23:51 GMT</pubDate>
    </item>
    <item>
      <title>Security: Store strings in-memory securely.</title>
      <description>Lots of  developers are not familiar with the fact that string variables are stored in memory as a plain text and can be stolen with simple memory dump. Therefore they are revealed to anyone who has an access to a server. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fblogs.microsoft.co.il%2fblogs%2fyevgenif%2farchive%2f2009%2f03%2f04%2fsecurity-store-strings-in-memory-securely.aspx"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fblogs.microsoft.co.il%2fblogs%2fyevgenif%2farchive%2f2009%2f03%2f04%2fsecurity-store-strings-in-memory-securely.aspx" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/Security_Store_strings_in_memory_securely</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/Security_Store_strings_in_memory_securely</guid>
      <pubDate>Thu, 05 Mar 2009 01:55:30 GMT</pubDate>
    </item>
    <item>
      <title>Security Vulnerability of the Week #1: SQL Injection</title>
      <description>This article begins a semi-regular series that will explores the most common vulnerabilities and the mind-set of the developers that create them and also explore how to deal with them.  The first post in the series takes a look at the OWASP top number 2 vulnerability, Injection (specifically SQL Injection) - which has been a known and solved problem for over 10+ years, yet for some reason, it's still as common as ever. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fsecuritythroughabsurdity.com%2f2009%2f03%2fsecurity-vulnerability-of-week-1-sql.html"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fsecuritythroughabsurdity.com%2f2009%2f03%2fsecurity-vulnerability-of-week-1-sql.html" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/Security_Vulnerability_of_the_Week_1_SQL_Injection</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/Security_Vulnerability_of_the_Week_1_SQL_Injection</guid>
      <pubDate>Wed, 04 Mar 2009 01:01:13 GMT</pubDate>
    </item>
    <item>
      <title>Password Limitations May Mean Your Password is Unsafe</title>
      <description>Another security post about how badly so many people treat passwords, especially online. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fdpatrickcaldwell.blogspot.com%2f2009%2f02%2fpassword-limitations-may-mean-your.html"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fdpatrickcaldwell.blogspot.com%2f2009%2f02%2fpassword-limitations-may-mean-your.html" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/Password_Limitations_May_Mean_Your_Password_is_Unsafe</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/Password_Limitations_May_Mean_Your_Password_is_Unsafe</guid>
      <pubDate>Sat, 28 Feb 2009 02:05:46 GMT</pubDate>
    </item>
  </channel>
</rss>