MarketingStudies.net logo    
spacer Marketing views, news and experience with the difference Logo Logo
Subscribe to the RSS Marketing e-zine

Providing strategic semi-monthly views on best RSS uses and practices and latest RSS news. [privacy]

Email Address:
RSS Content Feed What is this?
spacer
The Marketing Diary   l   The RSS Diary   l   RSS Marketing   l   RSS Cases Blog    l   Interactive Optimization Blog


Get the free crash-course in RSS marketing, to find out exactly how you'll profit from implementing this new technology.

Covers everything from RSS for direct marketing to using RSS for SEO.

Complete the form below to receive your free report now!

Your name:

Your e-Mail:

The RSS Cases Blog
The RSS Cases Blog brings you RSS technology advice, helps you understand RSS technology issues and explains different RSS business cases.

[June 14, 2007]
Using RSS Radars to Find Domains for SEO/SEM

[April 4, 2007]
The History and Future of RSS?

[March 26, 2007]
Yahoo Pipes Regex Module

[March 26, 2007]
RSS Cases - Mon Mar 26, 2007

[March 22, 2007]
Teqlo Web Feed and Application Mashup Tool

You are here: Home » The RSS Marketing Diary » RSS Latest News » RSS Integration in to Longhorn Poses Security Issues

July 4, 2005

RSS Integration in to Longhorn Poses Security Issues

Following all the hype concerning Microsoft's "adoption" of RSS, some voices stand out and start discussing the security issues this poses.

Here are just some selected comments ...

Don Park's Daily Habit:

"Blogging and syndicated data technologies in general have yet to fully test the fires of hostile computing world. As their prime time nears, they will be subject to abuse and exploitation.

For example, the primary mechanism behind podcast, RSS enclosure, can be used to deliver worms and worse to the desktops. If there are any vulnerabilities in iPod (or any MP3 player hooked up to podcast sync client) codec, then podcasting is a good way to deliver overflow inducing content."

"If you subscribe to 1000 feeds, you are hanging on a chain with 1000 links. Each of those 1000 links (feeds) are potential targets for hackers to attack to gain control over its content. All they need is one vulnerable feed hosting server to change what is delivered to your desktop. If you are using an insecure news client that pools news items from multiple sources, a hacker in control of Ponzi's Schemes feed (hi Ponzi ) will be able to send out posts that looks as if they came from the American Express feed."

eWeek.com:

"Once weaknesses are identified, Pescatore believes the phishers will pounce and try to lure users to visit fake sites to steal confidential information. This type of threat is especially apparent on RSS search engines that pull results from multiple Web sites and present those as an RSS feed."

"Because Microsoft is embracing the use of enclosures to deliver attachments in RSS feeds, there is also a risk that rigged media files and other attachment types can find their way on a user's desktop."

"A Microsoft spokeswoman said the Longhorn developers working on RSS integration will use the mandatory SDL (Security Development Lifecycle) that outlines the cradle-to-grave procedures used for software creation at Microsoft."


Comments

wow gold
wow gold
wow gold
wow gold
wow power leveling
wow powerleveling
wow power leveling
wow power leveling
wow powerleveling
wow powerleveling
wow power leveling
wow power leveling
wow powerleveling
wow powerleveling
翻译公司
rolex replica
rolex
rolex replica
wow gold
wow gold
World of Warcraft Gold
World of Warcraft Gold
wow powerleveling
wow powerleveling
wow power leveling
wow power leveling
powerleveling
powerleveling
powerleveling

Posted by: Blue0sky at November 15, 2007 8:13 AM
Post a comment


*


*





2 + 2 =
Remember personal info?






Related Articles

[July 27, 2005]
RSS More Important Than VoIP and Skype?

[July 20, 2005]
From Video RSS Feeds to a New Browser With Integrated RSS

[July 19, 2005]
RSS in IE and Longorn: Video from Gnomedex

[July 19, 2005]
Extending RSS for Financial Markets

[June 27, 2005]
Gnomedex Coverage

[June 27, 2005]
Microsoft Announces RSS Support: Marketers, It's Time

[June 24, 2005]
Introducing Attensa and the RSS network

[June 23, 2005]
Gnomedex Starting Today: Where to Find Coverage

[June 2, 2005]
RSS Updates Move Beyond Pings

[June 2, 2005]
Listening to RSS Feeds, Not Reading Them

Recent Articles in iNet Marketing Article Database
Recent Articles

Introduction to Strategic Marketing Pillars

Marketing as an Integrated Communicational Process

The Marketing Strategy as the Essential Element

One-on-One Sales as the First Step

Constant Change

Unique Pre-Dispositions