<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Sql Injection in BT.com &#8211; episode 1</title>
	<atom:link href="http://blog.rstcenter.com/2009/03/10/sql-injection-in-bt-dot-com-episode-1/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.rstcenter.com/2009/03/10/sql-injection-in-bt-dot-com-episode-1/</link>
	<description></description>
	<lastBuildDate>Tue, 31 Aug 2010 21:45:17 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Yet another big company with SQL Injection problems (British Telecom) &#124; N-Stalker Web Security Community</title>
		<link>http://blog.rstcenter.com/2009/03/10/sql-injection-in-bt-dot-com-episode-1/comment-page-1/#comment-1565</link>
		<dc:creator>Yet another big company with SQL Injection problems (British Telecom) &#124; N-Stalker Web Security Community</dc:creator>
		<pubDate>Fri, 13 Mar 2009 23:59:33 +0000</pubDate>
		<guid isPermaLink="false">http://blog.rstcenter.com/?p=1523#comment-1565</guid>
		<description>[...] In last couple of weeks big companies have been attacked and are having big issues with SQL Injection. At this time British Telecom (bt.com) was the target company (see more info at here). [...]</description>
		<content:encoded><![CDATA[<p>[...] In last couple of weeks big companies have been attacked and are having big issues with SQL Injection. At this time British Telecom (bt.com) was the target company (see more info at here). [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: hack</title>
		<link>http://blog.rstcenter.com/2009/03/10/sql-injection-in-bt-dot-com-episode-1/comment-page-1/#comment-1481</link>
		<dc:creator>hack</dc:creator>
		<pubDate>Tue, 10 Mar 2009 10:53:31 +0000</pubDate>
		<guid isPermaLink="false">http://blog.rstcenter.com/?p=1523#comment-1481</guid>
		<description>Perfect !! a good :)</description>
		<content:encoded><![CDATA[<p>Perfect !! a good <img src='http://blog.rstcenter.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Brugner</title>
		<link>http://blog.rstcenter.com/2009/03/10/sql-injection-in-bt-dot-com-episode-1/comment-page-1/#comment-1480</link>
		<dc:creator>Brugner</dc:creator>
		<pubDate>Tue, 10 Mar 2009 10:37:29 +0000</pubDate>
		<guid isPermaLink="false">http://blog.rstcenter.com/?p=1523#comment-1480</guid>
		<description>...but you also have a point here.. fuck them</description>
		<content:encoded><![CDATA[<p>&#8230;but you also have a point here.. fuck them</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: 2fingers</title>
		<link>http://blog.rstcenter.com/2009/03/10/sql-injection-in-bt-dot-com-episode-1/comment-page-1/#comment-1473</link>
		<dc:creator>2fingers</dc:creator>
		<pubDate>Tue, 10 Mar 2009 09:54:18 +0000</pubDate>
		<guid isPermaLink="false">http://blog.rstcenter.com/?p=1523#comment-1473</guid>
		<description>De cateva zile nimeni nu a catadicsit sa elimine vulnerabilitatea sau sa ne raspunda la mailuri. Nu cred ca cineva care ar vrea sa aiba acces la intreaga baza de date va astepta sa se trezeasca adminul la realitate.</description>
		<content:encoded><![CDATA[<p>De cateva zile nimeni nu a catadicsit sa elimine vulnerabilitatea sau sa ne raspunda la mailuri. Nu cred ca cineva care ar vrea sa aiba acces la intreaga baza de date va astepta sa se trezeasca adminul la realitate.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Brugner</title>
		<link>http://blog.rstcenter.com/2009/03/10/sql-injection-in-bt-dot-com-episode-1/comment-page-1/#comment-1472</link>
		<dc:creator>Brugner</dc:creator>
		<pubDate>Tue, 10 Mar 2009 09:28:52 +0000</pubDate>
		<guid isPermaLink="false">http://blog.rstcenter.com/?p=1523#comment-1472</guid>
		<description>Dude this is not nice: &quot;confirming full inband sql injection on parameter&quot; mai trebuia asteptat...</description>
		<content:encoded><![CDATA[<p>Dude this is not nice: &#8220;confirming full inband sql injection on parameter&#8221; mai trebuia asteptat&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Tudor</title>
		<link>http://blog.rstcenter.com/2009/03/10/sql-injection-in-bt-dot-com-episode-1/comment-page-1/#comment-1466</link>
		<dc:creator>Tudor</dc:creator>
		<pubDate>Tue, 10 Mar 2009 08:44:54 +0000</pubDate>
		<guid isPermaLink="false">http://blog.rstcenter.com/?p=1523#comment-1466</guid>
		<description>Sa inteleg ca linkul afectat este: www.myoffers.bt.com/terms.asp?id=</description>
		<content:encoded><![CDATA[<p>Sa inteleg ca linkul afectat este: <a href="http://www.myoffers.bt.com/terms.asp?id=" rel="nofollow">http://www.myoffers.bt.com/terms.asp?id=</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: unu</title>
		<link>http://blog.rstcenter.com/2009/03/10/sql-injection-in-bt-dot-com-episode-1/comment-page-1/#comment-1462</link>
		<dc:creator>unu</dc:creator>
		<pubDate>Tue, 10 Mar 2009 07:23:01 +0000</pubDate>
		<guid isPermaLink="false">http://blog.rstcenter.com/?p=1523#comment-1462</guid>
		<description>pentru ca i-am anuntat de cel putin 3 ori, cu fff multe zile inainte si nici macar nu ne-au raspuns, da&#039; sa mai remedieze problema.</description>
		<content:encoded><![CDATA[<p>pentru ca i-am anuntat de cel putin 3 ori, cu fff multe zile inainte si nici macar nu ne-au raspuns, da&#8217; sa mai remedieze problema.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: paul</title>
		<link>http://blog.rstcenter.com/2009/03/10/sql-injection-in-bt-dot-com-episode-1/comment-page-1/#comment-1461</link>
		<dc:creator>paul</dc:creator>
		<pubDate>Tue, 10 Mar 2009 07:16:35 +0000</pubDate>
		<guid isPermaLink="false">http://blog.rstcenter.com/?p=1523#comment-1461</guid>
		<description>de ce faceti disclosure inainte ca problema sa fie remediata?
e usor pe oricine sa faca o cautare de genul:

http://www.google.ro/search?q=bt+broadband+my+offers+terms+site:bt.com+inurl:id%3D&amp;btnG=Căutare&amp;meta=</description>
		<content:encoded><![CDATA[<p>de ce faceti disclosure inainte ca problema sa fie remediata?<br />
e usor pe oricine sa faca o cautare de genul:</p>
<p><a href="http://www.google.ro/search?q=bt+broadband+my+offers+terms+site:bt.com+inurl:id%3D&amp;btnG=Căutare&amp;meta=" rel="nofollow">http://www.google.ro/search?q=bt+broadband+my+offers+terms+site:bt.com+inurl:id%3D&amp;btnG=Căutare&amp;meta=</a></p>
]]></content:encoded>
	</item>
</channel>
</rss>
