<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:media="http://search.yahoo.com/mrss/"
		>
<channel>
	<title>Comments for Michael On Security</title>
	<atom:link href="http://michaelonsecurity.com/comments/feed/" rel="self" type="application/rss+xml" />
	<link>http://michaelonsecurity.com</link>
	<description>Thoughts on IT Management and Security.  Trying to Make it All Come Together.</description>
	<lastBuildDate>Fri, 29 Aug 2008 19:38:25 +0000</lastBuildDate>
	<generator>http://wordpress.com/</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>Comment on Google Helps Me Get Answers From Experts Exchange by Michael Gorsuch</title>
		<link>http://michaelonsecurity.com/2008/08/28/google-helps-me-get-answers-from-experts-exchange/#comment-53</link>
		<dc:creator>Michael Gorsuch</dc:creator>
		<pubDate>Fri, 29 Aug 2008 19:38:25 +0000</pubDate>
		<guid isPermaLink="false">http://michaelonsecurity.wordpress.com/?p=49#comment-53</guid>
		<description>Yeah... evidently I was one of those guys that never scrolled down after finding links via Google results :-)</description>
		<content:encoded><![CDATA[<p>Yeah&#8230; evidently I was one of those guys that never scrolled down after finding links via Google results <img src='http://s.wordpress.com/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Google Helps Me Get Answers From Experts Exchange by Michael Dickey</title>
		<link>http://michaelonsecurity.com/2008/08/28/google-helps-me-get-answers-from-experts-exchange/#comment-52</link>
		<dc:creator>Michael Dickey</dc:creator>
		<pubDate>Fri, 29 Aug 2008 19:35:21 +0000</pubDate>
		<guid isPermaLink="false">http://michaelonsecurity.wordpress.com/?p=49#comment-52</guid>
		<description>Wow, I know I&#039;ve been clicking through the Experts Exchange for a long time from Google and always scrolling to the bottom for answers. I was always kinda left thinking other people just didn&#039;t scroll down when they said the answers were cloaked for them. They may not have been wrong! I didn&#039;t know they displayed different stuff depending on how I got there.

Of course, if they decide to do this by user-agent and not referer, firefox lets me change that just fine too! :D

Then again, maybe they don&#039;t mind searching for it this way...</description>
		<content:encoded><![CDATA[<p>Wow, I know I&#8217;ve been clicking through the Experts Exchange for a long time from Google and always scrolling to the bottom for answers. I was always kinda left thinking other people just didn&#8217;t scroll down when they said the answers were cloaked for them. They may not have been wrong! I didn&#8217;t know they displayed different stuff depending on how I got there.</p>
<p>Of course, if they decide to do this by user-agent and not referer, firefox lets me change that just fine too! <img src='http://s.wordpress.com/wp-includes/images/smilies/icon_biggrin.gif' alt=':D' class='wp-smiley' /> </p>
<p>Then again, maybe they don&#8217;t mind searching for it this way&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Google Helps Me Get Answers From Experts Exchange by prabhu</title>
		<link>http://michaelonsecurity.com/2008/08/28/google-helps-me-get-answers-from-experts-exchange/#comment-49</link>
		<dc:creator>prabhu</dc:creator>
		<pubDate>Fri, 29 Aug 2008 03:44:48 +0000</pubDate>
		<guid isPermaLink="false">http://michaelonsecurity.wordpress.com/?p=49#comment-49</guid>
		<description>It works good for me. Thanks for the good usable tip</description>
		<content:encoded><![CDATA[<p>It works good for me. Thanks for the good usable tip</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Google Helps Me Get Answers From Experts Exchange by Michael Gorsuch</title>
		<link>http://michaelonsecurity.com/2008/08/28/google-helps-me-get-answers-from-experts-exchange/#comment-48</link>
		<dc:creator>Michael Gorsuch</dc:creator>
		<pubDate>Thu, 28 Aug 2008 18:11:14 +0000</pubDate>
		<guid isPermaLink="false">http://michaelonsecurity.wordpress.com/?p=49#comment-48</guid>
		<description>Here&#039;s another way to repro, at least for me.  

Go to EE directly, and search for a thread.  You won&#039;t see the answers at the bottom.  Copy the URL, and go to Google.  Paste that URL in the search field, and click on the link.  

You should see answers.</description>
		<content:encoded><![CDATA[<p>Here&#8217;s another way to repro, at least for me.  </p>
<p>Go to EE directly, and search for a thread.  You won&#8217;t see the answers at the bottom.  Copy the URL, and go to Google.  Paste that URL in the search field, and click on the link.  </p>
<p>You should see answers.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Google Helps Me Get Answers From Experts Exchange by nope</title>
		<link>http://michaelonsecurity.com/2008/08/28/google-helps-me-get-answers-from-experts-exchange/#comment-47</link>
		<dc:creator>nope</dc:creator>
		<pubDate>Thu, 28 Aug 2008 18:08:49 +0000</pubDate>
		<guid isPermaLink="false">http://michaelonsecurity.wordpress.com/?p=49#comment-47</guid>
		<description>Nope, doesn&#039;t work for me either. Neither does switching my user agent. Not a big deal for me, but it&#039;s interesting that it worked for you...</description>
		<content:encoded><![CDATA[<p>Nope, doesn&#8217;t work for me either. Neither does switching my user agent. Not a big deal for me, but it&#8217;s interesting that it worked for you&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Google Helps Me Get Answers From Experts Exchange by Michael Gorsuch</title>
		<link>http://michaelonsecurity.com/2008/08/28/google-helps-me-get-answers-from-experts-exchange/#comment-46</link>
		<dc:creator>Michael Gorsuch</dc:creator>
		<pubDate>Thu, 28 Aug 2008 17:54:47 +0000</pubDate>
		<guid isPermaLink="false">http://michaelonsecurity.wordpress.com/?p=49#comment-46</guid>
		<description>Even when you scroll to the very bottom?  There are a few placeholder blocked comments at the top, but the real ones are underneath.

I&#039;m seeing them, but perhaps something else is going on here...</description>
		<content:encoded><![CDATA[<p>Even when you scroll to the very bottom?  There are a few placeholder blocked comments at the top, but the real ones are underneath.</p>
<p>I&#8217;m seeing them, but perhaps something else is going on here&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Google Helps Me Get Answers From Experts Exchange by fail</title>
		<link>http://michaelonsecurity.com/2008/08/28/google-helps-me-get-answers-from-experts-exchange/#comment-45</link>
		<dc:creator>fail</dc:creator>
		<pubDate>Thu, 28 Aug 2008 17:53:03 +0000</pubDate>
		<guid isPermaLink="false">http://michaelonsecurity.wordpress.com/?p=49#comment-45</guid>
		<description>Uh, your linked cache url has all of the &#039;answers&#039; blocked out.</description>
		<content:encoded><![CDATA[<p>Uh, your linked cache url has all of the &#8216;answers&#8217; blocked out.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on The Wonders of Social Engineering by Michael Gorsuch</title>
		<link>http://michaelonsecurity.com/2008/08/23/the-wonders-of-social-engineering/#comment-41</link>
		<dc:creator>Michael Gorsuch</dc:creator>
		<pubDate>Sun, 24 Aug 2008 23:04:25 +0000</pubDate>
		<guid isPermaLink="false">http://michaelonsecurity.wordpress.com/?p=39#comment-41</guid>
		<description>Hi Jay!  Things are good out here, and hope you are doing just as well.  

That&#039;s a great example of a hack.  It seems that social engineering is really where it&#039;s at.  Internal mail relays are very easy to exploit and even easier to overlook.  

Scary, isn&#039;t it?</description>
		<content:encoded><![CDATA[<p>Hi Jay!  Things are good out here, and hope you are doing just as well.  </p>
<p>That&#8217;s a great example of a hack.  It seems that social engineering is really where it&#8217;s at.  Internal mail relays are very easy to exploit and even easier to overlook.  </p>
<p>Scary, isn&#8217;t it?</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on The Wonders of Social Engineering by Jay Faulkner</title>
		<link>http://michaelonsecurity.com/2008/08/23/the-wonders-of-social-engineering/#comment-40</link>
		<dc:creator>Jay Faulkner</dc:creator>
		<pubDate>Sun, 24 Aug 2008 22:07:03 +0000</pubDate>
		<guid isPermaLink="false">http://michaelonsecurity.wordpress.com/?p=39#comment-40</guid>
		<description>Hey Michael! Hope everything is doing well with you guys in the big city.

At my former employer, an intern there did something similar -- send out an email to an easily-discovered email address (support@), and included a &quot;new diagnostic tool&quot; which was really a connect-back shell. He used the CTO&#039;s name and email as the &quot;From:&quot;. It went into a community queue, where two people installed and ran it, and one person reported it to us.

Someone told me once that social engineering is the best kind of hacking. They were right -- people are too trusting and don&#039;t protect their passwords properly.</description>
		<content:encoded><![CDATA[<p>Hey Michael! Hope everything is doing well with you guys in the big city.</p>
<p>At my former employer, an intern there did something similar &#8212; send out an email to an easily-discovered email address (support@), and included a &#8220;new diagnostic tool&#8221; which was really a connect-back shell. He used the CTO&#8217;s name and email as the &#8220;From:&#8221;. It went into a community queue, where two people installed and ran it, and one person reported it to us.</p>
<p>Someone told me once that social engineering is the best kind of hacking. They were right &#8212; people are too trusting and don&#8217;t protect their passwords properly.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Staying On Top of Things by David</title>
		<link>http://michaelonsecurity.com/2008/02/19/staying-on-top-of-things/#comment-34</link>
		<dc:creator>David</dc:creator>
		<pubDate>Mon, 26 May 2008 17:33:48 +0000</pubDate>
		<guid isPermaLink="false">http://michaelonsecurity.wordpress.com/?p=20#comment-34</guid>
		<description>Hi Michael,

&gt;I use a text file with vim. Seriously. &gt;It is located on a remote server that &gt;I can access from anywhere, and it &gt;has a very obvious format:

&gt;Apply patches to front-end IIS &gt;servers:
&gt;x verify that a policy exists
&gt;x schedule change
&gt;- apply patch on 2/20/2008 @ 00:01

I found that Gmail draft mode is the most bang for buck way of storing to-do-lists and/or similar stuff.  For something a little more serious I would put them on mind maps by using FreeMind.

By the way, nice article.</description>
		<content:encoded><![CDATA[<p>Hi Michael,</p>
<p>&gt;I use a text file with vim. Seriously. &gt;It is located on a remote server that &gt;I can access from anywhere, and it &gt;has a very obvious format:</p>
<p>&gt;Apply patches to front-end IIS &gt;servers:<br />
&gt;x verify that a policy exists<br />
&gt;x schedule change<br />
&gt;- apply patch on 2/20/2008 @ 00:01</p>
<p>I found that Gmail draft mode is the most bang for buck way of storing to-do-lists and/or similar stuff.  For something a little more serious I would put them on mind maps by using FreeMind.</p>
<p>By the way, nice article.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
