<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments for Redspin Security Blog</title>
	<atom:link href="http://www.redspin.com/blog/comments/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.redspin.com/blog</link>
	<description></description>
	<lastBuildDate>Wed, 08 Feb 2012 20:23:28 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.1.1</generator>
	<item>
		<title>Comment on Identity Theft Check Up: Electronic Medical Records are the New Credit Cards by Medical Identity Theft Plagued by Confusing Claims</title>
		<link>http://www.redspin.com/blog/2010/03/03/identity-theft-check-up-electronic-medical-records-are-the-new-credit-cards/comment-page-1/#comment-5087</link>
		<dc:creator>Medical Identity Theft Plagued by Confusing Claims</dc:creator>
		<pubDate>Wed, 08 Feb 2012 20:23:28 +0000</pubDate>
		<guid isPermaLink="false">http://www.redspin.com/blog/?p=641#comment-5087</guid>
		<description>[...] some strange figures, such as 86,168 victims in 2001 and 255,565 victims in 2005. For example, the Redspin blog, states “Several of these cases, dating back to 2005, are documented by the World Privacy Forum [...]</description>
		<content:encoded><![CDATA[<p>[...] some strange figures, such as 86,168 victims in 2001 and 255,565 victims in 2005. For example, the Redspin blog, states “Several of these cases, dating back to 2005, are documented by the World Privacy Forum [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Installing Metasploit 4 in Ubuntu 11.04 by Joker_47</title>
		<link>http://www.redspin.com/blog/2011/08/19/installing-metasploit-4-in-ubuntu-11-04/comment-page-1/#comment-5076</link>
		<dc:creator>Joker_47</dc:creator>
		<pubDate>Mon, 30 Jan 2012 20:25:05 +0000</pubDate>
		<guid isPermaLink="false">http://www.redspin.com/blog/?p=3084#comment-5076</guid>
		<description>good :D</description>
		<content:encoded><![CDATA[<p>good <img src='http://www.redspin.com/blog/wp-includes/images/smilies/icon_biggrin.gif' alt=':D' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Burp Suite Professional to XML: BURP2XML by ms</title>
		<link>http://www.redspin.com/blog/2010/03/24/burp-suite-professional-to-xml-burp2xml/comment-page-1/#comment-5064</link>
		<dc:creator>ms</dc:creator>
		<pubDate>Fri, 20 Jan 2012 21:49:45 +0000</pubDate>
		<guid isPermaLink="false">http://www.redspin.com/blog/?p=702#comment-5064</guid>
		<description>Are updates to this script available? I&#039;ve been trying to use it in a project and am having issues parsing many session files.  I&#039;ve encountered situations where milliseconds_to_date returns a string (because of the try), which then blows up burp_binary_field because of calling .ctime() on a string.

I&#039;ve also hit situations where the script is returning XML that lxml.etree and a second visual XML editor cannot parse.  For instance, I hit www.startpage.com, www.yahoo.com, www.google.com, www.offsec.com; saved the session and then parsed it with burp2xml.py.  Parsing the XML with lxml.etree gives &quot;XMLSyntaxError: xmlParseEntityRef: no name&quot;

When the XML comes out clean, the script does exactly what I need.</description>
		<content:encoded><![CDATA[<p>Are updates to this script available? I&#8217;ve been trying to use it in a project and am having issues parsing many session files.  I&#8217;ve encountered situations where milliseconds_to_date returns a string (because of the try), which then blows up burp_binary_field because of calling .ctime() on a string.</p>
<p>I&#8217;ve also hit situations where the script is returning XML that lxml.etree and a second visual XML editor cannot parse.  For instance, I hit <a href="http://www.startpage.com" rel="nofollow">http://www.startpage.com</a>, <a href="http://www.yahoo.com" rel="nofollow">http://www.yahoo.com</a>, <a href="http://www.google.com" rel="nofollow">http://www.google.com</a>, <a href="http://www.offsec.com" rel="nofollow">http://www.offsec.com</a>; saved the session and then parsed it with burp2xml.py.  Parsing the XML with lxml.etree gives &#8220;XMLSyntaxError: xmlParseEntityRef: no name&#8221;</p>
<p>When the XML comes out clean, the script does exactly what I need.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on HIPAA Security Risk Analysis: How to Achieve Both Security and Compliance by Andrew Frazier</title>
		<link>http://www.redspin.com/blog/2011/04/26/hipaa-security-risk-analysis-how-to-achieve-both-security-and-compliance/comment-page-1/#comment-5063</link>
		<dc:creator>Andrew Frazier</dc:creator>
		<pubDate>Sun, 15 Jan 2012 13:48:31 +0000</pubDate>
		<guid isPermaLink="false">http://www.redspin.com/blog/?p=2583#comment-5063</guid>
		<description>Good articulation of the HIPAA risk analysis requirement, and how it applies to MU.</description>
		<content:encoded><![CDATA[<p>Good articulation of the HIPAA risk analysis requirement, and how it applies to MU.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Identity Theft Check Up: Electronic Medical Records are the New Credit Cards by Transformer Games</title>
		<link>http://www.redspin.com/blog/2010/03/03/identity-theft-check-up-electronic-medical-records-are-the-new-credit-cards/comment-page-1/#comment-5002</link>
		<dc:creator>Transformer Games</dc:creator>
		<pubDate>Thu, 10 Nov 2011 08:43:40 +0000</pubDate>
		<guid isPermaLink="false">http://www.redspin.com/blog/?p=641#comment-5002</guid>
		<description>some really   choice   articles  on this  site, bookmarked .</description>
		<content:encoded><![CDATA[<p>some really   choice   articles  on this  site, bookmarked .</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Sed, Grep and Awk by 10 tools that can help data journalists do better work, be more efficient &#124; Atulya Basic</title>
		<link>http://www.redspin.com/blog/2009/07/08/sed-grep-and-awk/comment-page-1/#comment-4351</link>
		<dc:creator>10 tools that can help data journalists do better work, be more efficient &#124; Atulya Basic</dc:creator>
		<pubDate>Tue, 11 Oct 2011 04:25:31 +0000</pubDate>
		<guid isPermaLink="false">http://www.redspin.com/blog/?p=277#comment-4351</guid>
		<description>[...] can assistance conduct files and a information within them. If you’re on OSX or Linux, we have sed, awk, grep and find. (There are ports for Windows, as well.) Using these utilities, we can start to try and [...]</description>
		<content:encoded><![CDATA[<p>[...] can assistance conduct files and a information within them. If you’re on OSX or Linux, we have sed, awk, grep and find. (There are ports for Windows, as well.) Using these utilities, we can start to try and [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on NMAP Database Output : XML TO SQL by BG mail</title>
		<link>http://www.redspin.com/blog/2009/10/27/nmap-database-output-xml-to-sql/comment-page-1/#comment-4347</link>
		<dc:creator>BG mail</dc:creator>
		<pubDate>Sun, 09 Oct 2011 14:48:14 +0000</pubDate>
		<guid isPermaLink="false">http://www.redspin.com/blog/?p=503#comment-4347</guid>
		<description>I have recently started a blog, the information you provide on this site has helped me tremendously. Thank you for all of your time &amp; work.</description>
		<content:encoded><![CDATA[<p>I have recently started a blog, the information you provide on this site has helped me tremendously. Thank you for all of your time &#038; work.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Installing Metasploit 4 in Ubuntu 11.04 by Aimad-Eddine</title>
		<link>http://www.redspin.com/blog/2011/08/19/installing-metasploit-4-in-ubuntu-11-04/comment-page-1/#comment-4292</link>
		<dc:creator>Aimad-Eddine</dc:creator>
		<pubDate>Tue, 27 Sep 2011 11:57:36 +0000</pubDate>
		<guid isPermaLink="false">http://www.redspin.com/blog/?p=3084#comment-4292</guid>
		<description>Yeah ! it&#039;s working fine, thank you !</description>
		<content:encoded><![CDATA[<p>Yeah ! it&#8217;s working fine, thank you !</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Get a Meterpreter Shell Using SMB Credentials by jcran</title>
		<link>http://www.redspin.com/blog/2011/03/15/get-a-meterpreter-shell-using-smb-credentials/comment-page-1/#comment-4197</link>
		<dc:creator>jcran</dc:creator>
		<pubDate>Sun, 18 Sep 2011 01:28:06 +0000</pubDate>
		<guid isPermaLink="false">http://www.redspin.com/blog/?p=2407#comment-4197</guid>
		<description>Yo Mark! 

You might be interested in this as a (ruby and) .rc file scanner: http://blog.pentestify.com/psexec-scanner-self-contained

Also, depending on your use case, you may want to look at some of the samples (run_exploit_using_base.rb) for automation purposes. For instance, you could write a script based on that that sample to automatically check a known list of passwords w/ a script. It just creates a framework object &amp; runs the module you configure in pure ruby, no need to mess with msfcli, etc

Hope it helps!</description>
		<content:encoded><![CDATA[<p>Yo Mark! </p>
<p>You might be interested in this as a (ruby and) .rc file scanner: <a href="http://blog.pentestify.com/psexec-scanner-self-contained" rel="nofollow">http://blog.pentestify.com/psexec-scanner-self-contained</a></p>
<p>Also, depending on your use case, you may want to look at some of the samples (run_exploit_using_base.rb) for automation purposes. For instance, you could write a script based on that that sample to automatically check a known list of passwords w/ a script. It just creates a framework object &amp; runs the module you configure in pure ruby, no need to mess with msfcli, etc</p>
<p>Hope it helps!</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Nsploit: Nmap grows some teeth by mopu887</title>
		<link>http://www.redspin.com/blog/2010/02/12/nsploit-nmap-gets-grows-some-teeth/comment-page-1/#comment-4137</link>
		<dc:creator>mopu887</dc:creator>
		<pubDate>Thu, 08 Sep 2011 13:03:15 +0000</pubDate>
		<guid isPermaLink="false">http://www.redspin.com/blog/?p=593#comment-4137</guid>
		<description>I&#039;m impressed with this  web website ,  very  I m   big fan .</description>
		<content:encoded><![CDATA[<p>I&#8217;m impressed with this  web website ,  very  I m   big fan .</p>
]]></content:encoded>
	</item>
</channel>
</rss>

