<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Twitter Security Issue</title>
	<atom:link href="http://brianshaler.com/blog/2008/11/23/twitter-security-issue/feed/" rel="self" type="application/rss+xml" />
	<link>http://brianshaler.com/blog/2008/11/23/twitter-security-issue/</link>
	<description>Jumping around in the Phoenix Tech Community</description>
	<lastBuildDate>Thu, 11 Mar 2010 12:57:00 -0700</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Caramoan</title>
		<link>http://brianshaler.com/blog/2008/11/23/twitter-security-issue/comment-page-1/#comment-28557</link>
		<dc:creator>Caramoan</dc:creator>
		<pubDate>Fri, 25 Dec 2009 06:27:56 +0000</pubDate>
		<guid isPermaLink="false">http://brianshaler.com/blog/?p=78#comment-28557</guid>
		<description>Twitter is some ways is much better than blogging. I love to Twitter my everyday activities on my friends and relatives.
                                                            ***</description>
		<content:encoded><![CDATA[<p>Twitter is some ways is much better than blogging. I love to Twitter my everyday activities on my friends and relatives.<br />
                                                            ***</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Kristine Shuee</title>
		<link>http://brianshaler.com/blog/2008/11/23/twitter-security-issue/comment-page-1/#comment-28055</link>
		<dc:creator>Kristine Shuee</dc:creator>
		<pubDate>Sun, 06 Dec 2009 17:13:57 +0000</pubDate>
		<guid isPermaLink="false">http://brianshaler.com/blog/?p=78#comment-28055</guid>
		<description>- i just love to Twitter everyday with my friends. Twitter is much better than blogging in my opinion and it is very addictive too.
``!```</description>
		<content:encoded><![CDATA[<p>- i just love to Twitter everyday with my friends. Twitter is much better than blogging in my opinion and it is very addictive too.<br />
&#8220;!&#8220;`</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: hacker</title>
		<link>http://brianshaler.com/blog/2008/11/23/twitter-security-issue/comment-page-1/#comment-24780</link>
		<dc:creator>hacker</dc:creator>
		<pubDate>Fri, 14 Aug 2009 13:45:12 +0000</pubDate>
		<guid isPermaLink="false">http://brianshaler.com/blog/?p=78#comment-24780</guid>
		<description>twitter uses basic authentication without promting.
And its not even through SSL
someone with a networkmonitor can read all usernames and passwords in plain text.
this is what you will see if you capture the wire
Host: twitter.com
Authorization: BASIC 
Credentials : username : password

The thing is you only are logged out if you close the browser window.

greez</description>
		<content:encoded><![CDATA[<p>twitter uses basic authentication without promting.<br />
And its not even through SSL<br />
someone with a networkmonitor can read all usernames and passwords in plain text.<br />
this is what you will see if you capture the wire<br />
Host: twitter.com<br />
Authorization: BASIC<br />
Credentials : username : password</p>
<p>The thing is you only are logged out if you close the browser window.</p>
<p>greez</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Tim Acheson</title>
		<link>http://brianshaler.com/blog/2008/11/23/twitter-security-issue/comment-page-1/#comment-24044</link>
		<dc:creator>Tim Acheson</dc:creator>
		<pubDate>Thu, 16 Jul 2009 14:05:14 +0000</pubDate>
		<guid isPermaLink="false">http://brianshaler.com/blog/?p=78#comment-24044</guid>
		<description>This week Twitter&#039;s own internal systems were hacked, along with the accounts of Twitter users including celebrities:

http://www.timacheson.com/Blog/2009/jul/twitter_hacked_via_google_apps

The point of entry wasn&#039;t a gap in Twitter&#039;s security. The hacker(s) gained access through a Google Apps account. The worry with a Google account is, it&#039;s web-based and therefore only as secure as the rest of the Internet. If yuor Google account is compromised and you use Google Docs in a serious commercial setting, your Twitter account will be the least of your worries.</description>
		<content:encoded><![CDATA[<p>This week Twitter&#8217;s own internal systems were hacked, along with the accounts of Twitter users including celebrities:</p>
<p><a href="http://www.timacheson.com/Blog/2009/jul/twitter_hacked_via_google_apps" rel="nofollow">http://www.timacheson.com/Blog/2009/jul/twitter_hacked_via_google_apps</a></p>
<p>The point of entry wasn&#8217;t a gap in Twitter&#8217;s security. The hacker(s) gained access through a Google Apps account. The worry with a Google account is, it&#8217;s web-based and therefore only as secure as the rest of the Internet. If yuor Google account is compromised and you use Google Docs in a serious commercial setting, your Twitter account will be the least of your worries.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Software [In]Security: Twitter Security - Making Your Thoughts as Small and Incomplete as Possible &#124; The IT Security Attaché</title>
		<link>http://brianshaler.com/blog/2008/11/23/twitter-security-issue/comment-page-1/#comment-22063</link>
		<dc:creator>Software [In]Security: Twitter Security - Making Your Thoughts as Small and Incomplete as Possible &#124; The IT Security Attaché</dc:creator>
		<pubDate>Sat, 30 May 2009 19:37:18 +0000</pubDate>
		<guid isPermaLink="false">http://brianshaler.com/blog/?p=78#comment-22063</guid>
		<description>[...] is, but it&#8217;s not me. The question is whether or not I should care? (Some people apparently do.) It&#8217;s really not that clever or interesting making fun of someone anonymously. [...]</description>
		<content:encoded><![CDATA[<p>[...] is, but it&#8217;s not me. The question is whether or not I should care? (Some people apparently do.) It&#8217;s really not that clever or interesting making fun of someone anonymously. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: &#160; links for 2009-05-08&#160;&#8212;&#160;contentious.com</title>
		<link>http://brianshaler.com/blog/2008/11/23/twitter-security-issue/comment-page-1/#comment-20467</link>
		<dc:creator>&#160; links for 2009-05-08&#160;&#8212;&#160;contentious.com</dc:creator>
		<pubDate>Fri, 08 May 2009 14:01:06 +0000</pubDate>
		<guid isPermaLink="false">http://brianshaler.com/blog/?p=78#comment-20467</guid>
		<description>[...] The Brian Shaler Blog / / Twitter Security Issue More about how your Twitter a count can be hijacked (tags: twitter social+media identity nefarious problems) [...]</description>
		<content:encoded><![CDATA[<p>[...] The Brian Shaler Blog / / Twitter Security Issue More about how your Twitter a count can be hijacked (tags: twitter social+media identity nefarious problems) [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Twitter Vulnerability History</title>
		<link>http://brianshaler.com/blog/2008/11/23/twitter-security-issue/comment-page-1/#comment-14653</link>
		<dc:creator>Twitter Vulnerability History</dc:creator>
		<pubDate>Tue, 17 Feb 2009 13:46:00 +0000</pubDate>
		<guid isPermaLink="false">http://brianshaler.com/blog/?p=78#comment-14653</guid>
		<description>[...] http://brianshaler.com/blog/2008/11/23/twitter-security-issue/ [...]</description>
		<content:encoded><![CDATA[<p>[...] <a href="http://brianshaler.com/blog/2008/11/23/twitter-security-issue/" rel="nofollow">http://brianshaler.com/blog/2008/11/23/twitter-security-issue/</a> [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Pishing en Twitter&#160;&#124;&#160;SomosBloggers</title>
		<link>http://brianshaler.com/blog/2008/11/23/twitter-security-issue/comment-page-1/#comment-12580</link>
		<dc:creator>Pishing en Twitter&#160;&#124;&#160;SomosBloggers</dc:creator>
		<pubDate>Thu, 08 Jan 2009 05:32:33 +0000</pubDate>
		<guid isPermaLink="false">http://brianshaler.com/blog/?p=78#comment-12580</guid>
		<description>[...] Twitter hackeadas visita el blog de InfoSpyware. Además de todo esto, parece que también hay un problema con las cookies de sesión y su [...]</description>
		<content:encoded><![CDATA[<p>[...] Twitter hackeadas visita el blog de InfoSpyware. Además de todo esto, parece que también hay un problema con las cookies de sesión y su [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: AcmePhoto</title>
		<link>http://brianshaler.com/blog/2008/11/23/twitter-security-issue/comment-page-1/#comment-12429</link>
		<dc:creator>AcmePhoto</dc:creator>
		<pubDate>Mon, 05 Jan 2009 00:40:07 +0000</pubDate>
		<guid isPermaLink="false">http://brianshaler.com/blog/?p=78#comment-12429</guid>
		<description>I guess I&#039;ll quit changing my passwords every 2 weeks! 

With &quot;friends&quot; like that who needs enemies? Why would someone do all that work than want to be anonymous?  I don&#039;t get it, was  there was some sort of goverment coverup? 

@gelie,  I heard the &quot;fake&quot; was totally different from the &quot;anti&quot;.</description>
		<content:encoded><![CDATA[<p>I guess I&#8217;ll quit changing my passwords every 2 weeks! </p>
<p>With &#8220;friends&#8221; like that who needs enemies? Why would someone do all that work than want to be anonymous?  I don&#8217;t get it, was  there was some sort of goverment coverup? </p>
<p>@gelie,  I heard the &#8220;fake&#8221; was totally different from the &#8220;anti&#8221;.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Wendy Kincade</title>
		<link>http://brianshaler.com/blog/2008/11/23/twitter-security-issue/comment-page-1/#comment-12071</link>
		<dc:creator>Wendy Kincade</dc:creator>
		<pubDate>Sat, 27 Dec 2008 08:37:43 +0000</pubDate>
		<guid isPermaLink="false">http://brianshaler.com/blog/?p=78#comment-12071</guid>
		<description>Excellent article.  Kind of scary, but anything online (or in the world) has risks.  Thanks for the heads-up though.</description>
		<content:encoded><![CDATA[<p>Excellent article.  Kind of scary, but anything online (or in the world) has risks.  Thanks for the heads-up though.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
