<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://www.guisa.org/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Il blog di GUISA : Security</title><link>http://www.guisa.org/blogs/guisa/archive/tags/Security/default.aspx</link><description>Tag: Security</description><dc:language>it</dc:language><generator>CommunityServer 2008.5 SP1 (Build: 31106.3070)</generator><item><title>Attacco XSS combinato con SQL-Injection</title><link>http://www.guisa.org/blogs/guisa/archive/2008/07/25/attacco-xss-combinato-con-sql-injection.aspx</link><pubDate>Fri, 25 Jul 2008 11:00:00 GMT</pubDate><guid isPermaLink="false">9e4b1f7d-b93d-4652-904c-f0dafcd2f188:99</guid><dc:creator>blogs.ASPItalia.com</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://www.guisa.org/blogs/guisa/rsscomments.aspx?PostID=99</wfw:commentRss><comments>http://www.guisa.org/blogs/guisa/archive/2008/07/25/attacco-xss-combinato-con-sql-injection.aspx#comments</comments><description>In questi giorni ho assistito al propagarsi di un tipo particolare di attacco verso siti web che sono vulnerabili alla SQL-Injection. Si tratta di un attacco che, sfruttando XSS (Cross Site Scripting), comporta l&amp;#39;attivazione di un malware nel computer...(&lt;a href="http://www.guisa.org/blogs/guisa/archive/2008/07/25/attacco-xss-combinato-con-sql-injection.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://www.guisa.org/aggbug.aspx?PostID=99" width="1" height="1"&gt;</description><category domain="http://www.guisa.org/blogs/guisa/archive/tags/Architettura/default.aspx">Architettura</category><category domain="http://www.guisa.org/blogs/guisa/archive/tags/Security/default.aspx">Security</category><category domain="http://www.guisa.org/blogs/guisa/archive/tags/Scripting/default.aspx">Scripting</category><category domain="http://www.guisa.org/blogs/guisa/archive/tags/Architettura_2C00_+Security_2C00_+Scripting/default.aspx">Architettura, Security, Scripting</category></item></channel></rss>