<?xml version="1.0" encoding="iso-8859-1"?>
<rss version="2.0">
  <channel>
    <title>DotNetKicks.com : Stories kicked by Fady</title>
    <description>Stories kicked by Fady</description>
    <link>http://www.dotnetkicks.com/</link>
    <language>en-us</language>
    <copyright>Atweb Publishing Ltd.</copyright>
    <docs>http://backend.userland.com/rss</docs>
    <generator>DotNetKicks.com - .NET links, community driven</generator>
    <ttl>30</ttl>
    <item>
      <title>The One Single Tip to Comment Your Code</title>
      <description>You've heard about 13 tips to comment your code, but what about the One Single Tip? &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fitscommonsensestupid.blogspot.com%2f2008%2f03%2fone-single-tip-to-comment-your-code.html"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fitscommonsensestupid.blogspot.com%2f2008%2f03%2fone-single-tip-to-comment-your-code.html" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/other/The_One_Single_Tip_to_Comment_Your_Code</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/other/The_One_Single_Tip_to_Comment_Your_Code</guid>
      <pubDate>Wed, 19 Mar 2008 13:01:02 GMT</pubDate>
    </item>
    <item>
      <title>Do You Really Need A Distributed Architecture?</title>
      <description>Does the question sound rhetoric to you? Do you think the answer is "Yes" by default these days?

Think twice. Ask yourself the questions below. You may change your mind at the end. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fblogs.msdn.com%2face_team%2farchive%2f2008%2f02%2f14%2fdo-you-really-need-a-distributed-architecture.aspx"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fblogs.msdn.com%2face_team%2farchive%2f2008%2f02%2f14%2fdo-you-really-need-a-distributed-architecture.aspx" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/architecture/Do_You_Really_Need_A_Distributed_Architecture</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/architecture/Do_You_Really_Need_A_Distributed_Architecture</guid>
      <pubDate>Sat, 16 Feb 2008 13:46:02 GMT</pubDate>
    </item>
    <item>
      <title>SQL Injection through cookies</title>
      <description>Through my career as a developer I've seen many developers that are not aware about the possibility of SQL injection through cookies. Cookies in fact is a user input and as any input it must be validated and because normal users don't see cookies that doesn't mean attackers won't temper with it. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fbarmagy.com%2fblogs%2finfinite_loop%2farchive%2f2007%2f12%2f30%2f1023.aspx"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fbarmagy.com%2fblogs%2finfinite_loop%2farchive%2f2007%2f12%2f30%2f1023.aspx" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/SQL_Injection_through_cookies</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/SQL_Injection_through_cookies</guid>
      <pubDate>Mon, 31 Dec 2007 01:35:18 GMT</pubDate>
    </item>
    <item>
      <title>Facebook XSS Vulnerability</title>
      <description>A Facebook XSS security vulnerability that might enable hackers to obtain your friends list by just visiting a web site containing some AJAX code that makes requests in behalf of you
 &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=Today+I+was+taking+a+look+at+the+Facebook+AJAX+java+script+that+is+responsible+to+give+suggestions+in+the+search+text+box+you+find+under+the+Facebook+logo+on+the+left"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=Today+I+was+taking+a+look+at+the+Facebook+AJAX+java+script+that+is+responsible+to+give+suggestions+in+the+search+text+box+you+find+under+the+Facebook+logo+on+the+left" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/Facebook_XSS_Vulnerability</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/Facebook_XSS_Vulnerability</guid>
      <pubDate>Mon, 24 Dec 2007 03:29:39 GMT</pubDate>
    </item>
    <item>
      <title>5 signs your ASP.NET application may be vulnerable to HTML injection</title>
      <description>HTML injection is an incredibly dangerous flaw to have in your application and ASP.NET does nothing for you automatically. Here's 5 tell-tale signs your application may be affected. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fdamieng.com%2fblog%2f2007%2f12%2f18%2f5-signs-your-aspnet-application-may-be-vulnerable-to-html-injection"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fdamieng.com%2fblog%2f2007%2f12%2f18%2f5-signs-your-aspnet-application-may-be-vulnerable-to-html-injection" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/aspnet/5_signs_your_ASP_NET_application_may_be_vulnerable_to_HTML_injection</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/aspnet/5_signs_your_ASP_NET_application_may_be_vulnerable_to_HTML_injection</guid>
      <pubDate>Tue, 18 Dec 2007 22:01:04 GMT</pubDate>
    </item>
    <item>
      <title>Microsoft Parallel Extensions (PFX) or PLINQ is now a CTP</title>
      <description>At last now we can play around with PLINQ :) &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fspellcoder.com%2fblogs%2fbashmohandes%2farchive%2f2007%2f12%2f16%2f9210.aspx"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fspellcoder.com%2fblogs%2fbashmohandes%2farchive%2f2007%2f12%2f16%2f9210.aspx" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/csharp/Microsoft_Parallel_Extensions_PFX_or_PLINQ_is_now_a_CTP</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/csharp/Microsoft_Parallel_Extensions_PFX_or_PLINQ_is_now_a_CTP</guid>
      <pubDate>Mon, 17 Dec 2007 07:54:01 GMT</pubDate>
    </item>
    <item>
      <title>Catch hackers red handed using http modules</title>
      <description>      Here is a nice trick to help you to detect hackers in action while trying to hack your web applications. The idea is very simple, we want to set a layer there between your application and the internet to watch the web traffic for anything suspicious. These suspicious things might be a query string that contains a XSS script or a SQL injection query. So we will monitor the web traffic that is passing through that layer for well known and common patterns of attack methods that most hackers use to scan your web applications for vulnerabilities. We will use http modules to implement that layer, here is some dirty code to demonstrate the idea. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fbarmagy.com%2fblogs%2finfinite_loop%2farchive%2f2007%2f12%2f17%2f983.aspx"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fbarmagy.com%2fblogs%2finfinite_loop%2farchive%2f2007%2f12%2f17%2f983.aspx" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/Catch_hackers_red_handed_using_http_modules</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/Catch_hackers_red_handed_using_http_modules</guid>
      <pubDate>Mon, 17 Dec 2007 05:19:34 GMT</pubDate>
    </item>
    <item>
      <title>.NET Framework 3.5 Is Shared Source</title>
      <description>Microsoft's .NET Framework 3.5 is going to be released open source. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fweblogs.asp.net%2fscottgu%2farchive%2f2007%2f10%2f03%2freleasing-the-source-code-for-the-net-framework-libraries.aspx"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fweblogs.asp.net%2fscottgu%2farchive%2f2007%2f10%2f03%2freleasing-the-source-code-for-the-net-framework-libraries.aspx" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/opensource/NET_Framework_3_5_Is_Open_Source</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/opensource/NET_Framework_3_5_Is_Open_Source</guid>
      <pubDate>Thu, 04 Oct 2007 00:46:25 GMT</pubDate>
    </item>
    <item>
      <title>The most common software security mistakes</title>
      <description>Through my humble experience with software development I've seen developers making fetal security mistakes without even feeling that they are doing something wrong. So I've decided to gather these common mistakes in a list so it would be easier to avoid. Through this article I will give examples regardless to the used technology but the concepts applies to all technologies. So here we go &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fbarmagy.com%2fblogs%2finfinite_loop%2farchive%2f2007%2f09%2f04%2f629.aspx"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fbarmagy.com%2fblogs%2finfinite_loop%2farchive%2f2007%2f09%2f04%2f629.aspx" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/The_most_common_software_security_mistakes</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/The_most_common_software_security_mistakes</guid>
      <pubDate>Tue, 04 Sep 2007 18:16:02 GMT</pubDate>
    </item>
    <item>
      <title>How to tell if a .NET Assembly is debug or release</title>
      <description>Explains how to tell if a .NET Assembly is built for debug or release by using .NET Reflector and programmatically using System.Reflection. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fjamesewelch.wordpress.com%2f2007%2f08%2f30%2fhow-to-tell-if-a-net-assembly-is-debug-or-release%2f"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fjamesewelch.wordpress.com%2f2007%2f08%2f30%2fhow-to-tell-if-a-net-assembly-is-debug-or-release%2f" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/tipsandtricks/How_to_tell_if_a_NET_Assembly_is_debug_or_release</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/tipsandtricks/How_to_tell_if_a_NET_Assembly_is_debug_or_release</guid>
      <pubDate>Thu, 06 Sep 2007 17:31:02 GMT</pubDate>
    </item>
    <item>
      <title>Hacking the GAC, How to enable standard directory browsing</title>
      <description>Have you ever wanted to or needed to view the actual contents of the GAC?  Not just what is in the GAC, but actually grab the assemblies that are there?  &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fdevlicio.us%2fblogs%2fderik_whittaker%2farchive%2f2007%2f08%2f30%2fhacking-the-gac-how-to-enable-standard-directory-browsing.aspx"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fdevlicio.us%2fblogs%2fderik_whittaker%2farchive%2f2007%2f08%2f30%2fhacking-the-gac-how-to-enable-standard-directory-browsing.aspx" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/tipsandtricks/Hacking_the_GAC_How_to_enable_standard_directory_browsing</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/tipsandtricks/Hacking_the_GAC_How_to_enable_standard_directory_browsing</guid>
      <pubDate>Thu, 30 Aug 2007 20:31:02 GMT</pubDate>
    </item>
    <item>
      <title>Optimization: Your worst enemy</title>
      <description>Good article on why optimization can be bad, and what you can do about it. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fwww.flounder.com%2foptimization.htm"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fwww.flounder.com%2foptimization.htm" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/other/Optimization_Your_worst_enemy</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/other/Optimization_Your_worst_enemy</guid>
      <pubDate>Sat, 18 Aug 2007 19:01:02 GMT</pubDate>
    </item>
    <item>
      <title>J2EE vs ASP.NET vs PHP</title>
      <description>In this article, Author wanted to compare the web application development platforms which he has been using for recent years. His comparison has no aim to make one platform better than others, or vice versa. These are all his own thoughts and what he has experienced during the development of web applications using the three platforms. It is open to you to express your opinions and stands as a comment. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fwww.plentyofcode.com%2f2007%2f07%2fj2ee-vs-aspnet-vs-php.html"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fwww.plentyofcode.com%2f2007%2f07%2fj2ee-vs-aspnet-vs-php.html" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/community/J2EE_vs_ASP_NET_vs_PHP_1</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/community/J2EE_vs_ASP_NET_vs_PHP_1</guid>
      <pubDate>Wed, 15 Aug 2007 18:10:29 GMT</pubDate>
    </item>
    <item>
      <title>Anti XSS AJAX </title>
      <description>XSS have became a problem that most web developers still suffering from it tell now, simply because however you try hard to validate every user input it only takes a single line of code that prints out the user input without validation to render your whole application vulnerable to XSS attacks &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fbarmagy.com%2fblogs%2finfinite_loop%2farchive%2f2007%2f07%2f20%2f498.aspx"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fbarmagy.com%2fblogs%2finfinite_loop%2farchive%2f2007%2f07%2f20%2f498.aspx" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/Anti_XSS_AJAX</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/Anti_XSS_AJAX</guid>
      <pubDate>Wed, 15 Aug 2007 16:35:57 GMT</pubDate>
    </item>
    <item>
      <title>alert("XSS") </title>
      <description>XSS? What is XSS? Well, to cut it short XSS is the abbreviation of  Cross Site Scripting  but the C have been replaced with X because CSS already means Cascaded Style Sheets plus XSS is a much cooler name ;) so what is XSS again?  &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fbarmagy.com%2fblogs%2finfinite_loop%2farchive%2f2007%2f07%2f12%2f465.aspx"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fbarmagy.com%2fblogs%2finfinite_loop%2farchive%2f2007%2f07%2f12%2f465.aspx" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/alert_XSS</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/alert_XSS</guid>
      <pubDate>Tue, 14 Aug 2007 20:26:44 GMT</pubDate>
    </item>
    <item>
      <title>Let's talk pure ajax</title>
      <description>      Hello guys, today I'm going to talk about ajax but lets 1st explain this strange expression in this article title "pure ajax", actually it's an expression that I've came up with after very different incidents that convinced me to use this expression to differentiate between ajax and what people call ajax as a misconception. So the 1st question that would pop up what is ajax in the 1st place? Ofcourse lots of us I assume know that the acronym ajax stands for asynchronous java script and XML but lets explain this a little bit more further, XML here means that we would transmit data in the XML format but what about the asynchronous java script? Is it a new type of java script that came out after web 2.0 hype? Yes? Actually the answer is no, I've passed by several individuals that think that ajax came "after" the web 2.0 so called hype and they didn't believe me when I told them no ajax programming techniques was already there covered with dust far before even the expression web 2.0 was invented and actually the expression asynchronous java script is all about an object called XMLHttpRequest that supports that a java script can send a GET or a POST request to a web server through the http protocol asynchronously or synchronously..... &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fbarmagy.com%2fblogs%2finfinite_loop%2farchive%2f2007%2f07%2f08%2f454.aspx"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fbarmagy.com%2fblogs%2finfinite_loop%2farchive%2f2007%2f07%2f08%2f454.aspx" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/ajax/Let_s_talk_pure_ajax</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/ajax/Let_s_talk_pure_ajax</guid>
      <pubDate>Sun, 12 Aug 2007 09:27:43 GMT</pubDate>
    </item>
    <item>
      <title>Don't rely on obfuscation</title>
      <description>A white paper demonstrating the weaknesses of managed code obfuscation known protection techniques
 &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.dotnetkicks.com/kick/?url=http%3a%2f%2fbarmagy.com%2fblogs%2finfinite_loop%2farchive%2f2007%2f08%2f12%2f574.aspx"&gt;&lt;img src="http://www.dotnetkicks.com/Services/Images/KickItImageGenerator.ashx?url=http%3a%2f%2fbarmagy.com%2fblogs%2finfinite_loop%2farchive%2f2007%2f08%2f12%2f574.aspx" border="0" alt="kick it on DotNetKicks.com" /&gt;&lt;/a&gt;
</description>
      <link>http://www.dotnetkicks.com/security/Don_t_rely_on_obfuscation</link>
      <guid isPermaLink="true">http://www.dotnetkicks.com/security/Don_t_rely_on_obfuscation</guid>
      <pubDate>Wed, 15 Aug 2007 23:31:02 GMT</pubDate>
    </item>
  </channel>
</rss>