<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>netsekure rng &#187; authentication</title>
	<atom:link href="http://netsekure.org/tag/authentication/feed/" rel="self" type="application/rss+xml" />
	<link>http://netsekure.org</link>
	<description>random noise generator</description>
	<lastBuildDate>Fri, 04 Nov 2011 19:48:48 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Pass-The-Hash vs cookie stealing</title>
		<link>http://netsekure.org/2011/11/pass-the-hash-vs-cookie-stealing/</link>
		<comments>http://netsekure.org/2011/11/pass-the-hash-vs-cookie-stealing/#comments</comments>
		<pubDate>Fri, 04 Nov 2011 19:48:48 +0000</pubDate>
		<dc:creator>Nasko</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[authentication]]></category>
		<category><![CDATA[Cookies]]></category>
		<category><![CDATA[HTTP Authentication]]></category>
		<category><![CDATA[pass-the-hash]]></category>
		<category><![CDATA[Windows Authentication]]></category>

		<guid isPermaLink="false">http://netsekure.org/?p=340</guid>
		<description><![CDATA[I saw a few talks at the BlueHat conference at Microsoft and the funniest of all was Joe McCray&#8217;s (@j0emccray) &#8220;You Spent All That Money And You Still Got Owned????&#8221;. At some point, he touched on Pass-The-Hash attacks and asked why those can&#8217;t be prevented. That struck me as an interesting question and an analogy [...]]]></description>
		<wfw:commentRss>http://netsekure.org/2011/11/pass-the-hash-vs-cookie-stealing/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>It is important to identify attack vectors</title>
		<link>http://netsekure.org/2009/07/it-is-important-to-identify-attack-vectors/</link>
		<comments>http://netsekure.org/2009/07/it-is-important-to-identify-attack-vectors/#comments</comments>
		<pubDate>Thu, 23 Jul 2009 22:49:09 +0000</pubDate>
		<dc:creator>Nasko</dc:creator>
				<category><![CDATA[Completely Random]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[attack vector]]></category>
		<category><![CDATA[authentication]]></category>
		<category><![CDATA[passwords]]></category>

		<guid isPermaLink="false">http://netsekure.org/?p=81</guid>
		<description><![CDATA[I recently read a paper on the topic of strong passwords. While going through it, it hit me that very often people will discuss a way of solving some problem (phishing for example), but they fail to enumerate what the attack vectors are and subsequently how the solution addresses these attack vectors. I like how [...]]]></description>
		<wfw:commentRss>http://netsekure.org/2009/07/it-is-important-to-identify-attack-vectors/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Secret questions?</title>
		<link>http://netsekure.org/2009/07/secret-questions/</link>
		<comments>http://netsekure.org/2009/07/secret-questions/#comments</comments>
		<pubDate>Thu, 16 Jul 2009 17:09:59 +0000</pubDate>
		<dc:creator>Nasko</dc:creator>
				<category><![CDATA[Completely Random]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[authentication]]></category>
		<category><![CDATA[breach]]></category>
		<category><![CDATA[compromise]]></category>
		<category><![CDATA[secret questions]]></category>

		<guid isPermaLink="false">http://netsekure.org/?p=84</guid>
		<description><![CDATA[The recent story on the twitter breach of company information reminded me of an interesting research I recently saw. A few researchers have worked with real people to gather data how well security questions used by online apps work. Their paper has all the glory details,but there are two things that stood out to me: [...]]]></description>
		<wfw:commentRss>http://netsekure.org/2009/07/secret-questions/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

