<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
		>
<channel>
	<title>Comments on: PayPerPost Is Now Officially Absurd</title>
	<atom:link href="http://techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/feed/" rel="self" type="application/rss+xml" />
	<link>http://techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/</link>
	<description>Startup and Technology News</description>
	<lastBuildDate>Mon, 30 Jan 2012 17:13:41 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
	<item>
		<title>By: Web Browsers Exploited by XSS Attacks &#171; ROAM DATA Smart mCommerce News</title>
		<link>http://techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10514</link>
		<dc:creator><![CDATA[Web Browsers Exploited by XSS Attacks &#171; ROAM DATA Smart mCommerce News]]></dc:creator>
		<pubDate>Thu, 25 Nov 2010 23:56:25 +0000</pubDate>
		<guid isPermaLink="false">http://www.techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10514</guid>
		<description><![CDATA[[...] RubyOnRails XSS Vulnerability Claims Twitter, Basecamp And My Confidence (techcrunchit.com)       mcommerce, mobile commerce &#160;  ECOMMERCE, FRAUD, HACK, m-commerce, MASTERCARD, mcommerce, mobile banking, mobile commerce, mobile payments, mobile phone, PCI, PIN DEBIT, ROAM DATA, ROAMDATA, SMARTPHONE, Triple DES DUKPT, VISA, Web Security &#160;    &#171; Western Union Limitation Causing Big Problems &#160;&#160; 11 Charged in Minnesota Cloned Card Scheme &#187; [...]]]></description>
		<content:encoded><![CDATA[<p>[...] RubyOnRails XSS Vulnerability Claims Twitter, Basecamp And My Confidence (techcrunchit.com)       mcommerce, mobile commerce &nbsp;  ECOMMERCE, FRAUD, HACK, m-commerce, MASTERCARD, mcommerce, mobile banking, mobile commerce, mobile payments, mobile phone, PCI, PIN DEBIT, ROAM DATA, ROAMDATA, SMARTPHONE, Triple DES DUKPT, VISA, Web Security &nbsp;    &laquo; Western Union Limitation Causing Big Problems &nbsp;&nbsp; 11 Charged in Minnesota Cloned Card Scheme &raquo; [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: If Web 2.0, then IT Security 2.0 &#171; ::: Smart Oze Blog :::</title>
		<link>http://techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10513</link>
		<dc:creator><![CDATA[If Web 2.0, then IT Security 2.0 &#171; ::: Smart Oze Blog :::]]></dc:creator>
		<pubDate>Tue, 30 Mar 2010 03:47:51 +0000</pubDate>
		<guid isPermaLink="false">http://www.techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10513</guid>
		<description><![CDATA[[...] case we need some examples of the bad news, just in the last few days see here, here, here, and [...]]]></description>
		<content:encoded><![CDATA[<p>[...] case we need some examples of the bad news, just in the last few days see here, here, here, and [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Week 36 in Review &#8211; 2009 &#124; Infosec Events</title>
		<link>http://techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10512</link>
		<dc:creator><![CDATA[Week 36 in Review &#8211; 2009 &#124; Infosec Events]]></dc:creator>
		<pubDate>Thu, 11 Feb 2010 10:42:19 +0000</pubDate>
		<guid isPermaLink="false">http://www.techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10512</guid>
		<description><![CDATA[[...] RubyOnRails XSS Vulnerability Claims Twitter, Basecamp And My Confidence &#8211; techcrunchit.com Today came news that an XSS vulnerability had been found in the RubyOnRails development framework. [...]]]></description>
		<content:encoded><![CDATA[<p>[...] RubyOnRails XSS Vulnerability Claims Twitter, Basecamp And My Confidence &#8211; techcrunchit.com Today came news that an XSS vulnerability had been found in the RubyOnRails development framework. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Basecamp Review</title>
		<link>http://techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10511</link>
		<dc:creator><![CDATA[Basecamp Review]]></dc:creator>
		<pubDate>Wed, 20 Jan 2010 19:12:01 +0000</pubDate>
		<guid isPermaLink="false">http://www.techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10511</guid>
		<description><![CDATA[As a ruby developer and user of both Twitter and basecamp I appreciate you bringing this to our attention.]]></description>
		<content:encoded><![CDATA[<p>As a ruby developer and user of both Twitter and basecamp I appreciate you bringing this to our attention.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: WHAZUP &#8211; iPhone MMS, Android Market, Opera 10, Snow Leopard, Wetoku</title>
		<link>http://techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10510</link>
		<dc:creator><![CDATA[WHAZUP &#8211; iPhone MMS, Android Market, Opera 10, Snow Leopard, Wetoku]]></dc:creator>
		<pubDate>Mon, 07 Sep 2009 20:48:52 +0000</pubDate>
		<guid isPermaLink="false">http://www.techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10510</guid>
		<description><![CDATA[[...] Ruby On Rails XSS Vulnerability discovered Brian Masterbrook discovered a vulnerability on the uber-famous Ruby On Rails framework. The vulnerability impacted Twitter, Basecamp and the many applications written using Ruby On Rails. [...]]]></description>
		<content:encoded><![CDATA[<p>[...] Ruby On Rails XSS Vulnerability discovered Brian Masterbrook discovered a vulnerability on the uber-famous Ruby On Rails framework. The vulnerability impacted Twitter, Basecamp and the many applications written using Ruby On Rails. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Tyler</title>
		<link>http://techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10509</link>
		<dc:creator><![CDATA[Tyler]]></dc:creator>
		<pubDate>Sun, 06 Sep 2009 10:22:40 +0000</pubDate>
		<guid isPermaLink="false">http://www.techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10509</guid>
		<description><![CDATA[4 days later and still no correction.  Keep it classy.]]></description>
		<content:encoded><![CDATA[<p>4 days later and still no correction.  Keep it classy.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Nikolay Kolev</title>
		<link>http://techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10508</link>
		<dc:creator><![CDATA[Nikolay Kolev]]></dc:creator>
		<pubDate>Sat, 05 Sep 2009 23:02:34 +0000</pubDate>
		<guid isPermaLink="false">http://www.techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10508</guid>
		<description><![CDATA[Twitter&#039;s front end is very simple. Probably it has more JavaScript nowadays than Ruby code - it&#039;s not a big effort to port it to Scala&#039;s &lt;a href=&quot;http://liftweb.net/&quot; rel=&quot;nofollow&quot;&gt;lift&lt;/a&gt;, for example, and standardize entirely on one technology.

Now, on the funny side... Ruby is being developed in Japan and historically has been having issues with Unicode that is designed to solve problems with non-English locales.]]></description>
		<content:encoded><![CDATA[<p>Twitter&#8217;s front end is very simple. Probably it has more JavaScript nowadays than Ruby code &#8211; it&#8217;s not a big effort to port it to Scala&#8217;s <a href="http://liftweb.net/" rel="nofollow">lift</a>, for example, and standardize entirely on one technology.</p>
<p>Now, on the funny side&#8230; Ruby is being developed in Japan and historically has been having issues with Unicode that is designed to solve problems with non-English locales.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Elton</title>
		<link>http://techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10507</link>
		<dc:creator><![CDATA[Elton]]></dc:creator>
		<pubDate>Sat, 05 Sep 2009 13:52:40 +0000</pubDate>
		<guid isPermaLink="false">http://www.techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10507</guid>
		<description><![CDATA[Some more insight into Twitter&#039;s architecture.

John Adams, &quot;Fixing Twitter: Improving the Performance and Scalability...&quot;

http://velocityconference.blip.tv/file/2300327/]]></description>
		<content:encoded><![CDATA[<p>Some more insight into Twitter&#8217;s architecture.</p>
<p>John Adams, &#8220;Fixing Twitter: Improving the Performance and Scalability&#8230;&#8221;</p>
<p><a href="http://velocityconference.blip.tv/file/2300327/" rel="nofollow">http://velocityconference.blip.tv/file/2300327/</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Paolo</title>
		<link>http://techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10506</link>
		<dc:creator><![CDATA[Paolo]]></dc:creator>
		<pubDate>Sat, 05 Sep 2009 07:06:25 +0000</pubDate>
		<guid isPermaLink="false">http://www.techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10506</guid>
		<description><![CDATA[Depending on what application server you use you might have experienced XSS vulnerabilities with Java too. For example, this is one dating back to last July http://sunsolve.sun.com/search/document.do?assetkey=1-66-259588-1 on Sun Java System Web Server 6.1.
This one is of April, applying to Struts http://www.ca.com/us/securityadvisor/vulninfo/Vuln.aspx?ID=37269
Googling a little will find many more.]]></description>
		<content:encoded><![CDATA[<p>Depending on what application server you use you might have experienced XSS vulnerabilities with Java too. For example, this is one dating back to last July <a href="http://sunsolve.sun.com/search/document.do?assetkey=1-66-259588-1" rel="nofollow">http://sunsolve.sun.com/search/document.do?assetkey=1-66-259588-1</a> on Sun Java System Web Server 6.1.<br />
This one is of April, applying to Struts <a href="http://www.ca.com/us/securityadvisor/vulninfo/Vuln.aspx?ID=37269" rel="nofollow">http://www.ca.com/us/securityadvisor/vulninfo/Vuln.aspx?ID=37269</a><br />
Googling a little will find many more.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: pffft</title>
		<link>http://techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10505</link>
		<dc:creator><![CDATA[pffft]]></dc:creator>
		<pubDate>Sat, 05 Sep 2009 05:04:14 +0000</pubDate>
		<guid isPermaLink="false">http://www.techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10505</guid>
		<description><![CDATA[I wonder why I never had these problems... Oh that&#039;s right. I use java]]></description>
		<content:encoded><![CDATA[<p>I wonder why I never had these problems&#8230; Oh that&#8217;s right. I use java</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: sponge j</title>
		<link>http://techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10504</link>
		<dc:creator><![CDATA[sponge j]]></dc:creator>
		<pubDate>Sat, 05 Sep 2009 02:00:52 +0000</pubDate>
		<guid isPermaLink="false">http://www.techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10504</guid>
		<description><![CDATA[It is cute, techcrunch giving advice on development. Add this one, don&#039;t take development advice from techcrunch.

Anyone using RoR is foolish. Anyone sensible from that community bailed long ago. Funny you mention the disinterest of the basecamp guys, since they are &quot;the&quot; RoR guys. They mainly care about cash and ego.

Last bit of advice, techcrunch, you should bail on your RoR systems, future fail comming for you.]]></description>
		<content:encoded><![CDATA[<p>It is cute, techcrunch giving advice on development. Add this one, don&#8217;t take development advice from techcrunch.</p>
<p>Anyone using RoR is foolish. Anyone sensible from that community bailed long ago. Funny you mention the disinterest of the basecamp guys, since they are &#8220;the&#8221; RoR guys. They mainly care about cash and ego.</p>
<p>Last bit of advice, techcrunch, you should bail on your RoR systems, future fail comming for you.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Brock Batsell</title>
		<link>http://techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10503</link>
		<dc:creator><![CDATA[Brock Batsell]]></dc:creator>
		<pubDate>Fri, 04 Sep 2009 16:44:51 +0000</pubDate>
		<guid isPermaLink="false">http://www.techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10503</guid>
		<description><![CDATA[Nik:

Care to explain why, after being informed 8+ hours ago that your last paragraph is completely factually incorrect, and seeming to acknowledge that fact, the piece still stands uncorrected?  That&#039;s absolutely insane.  The Rails security release doesn&#039;t even remotely say what you claim it does; simple reading comprehension would have disclosed that.]]></description>
		<content:encoded><![CDATA[<p>Nik:</p>
<p>Care to explain why, after being informed 8+ hours ago that your last paragraph is completely factually incorrect, and seeming to acknowledge that fact, the piece still stands uncorrected?  That&#8217;s absolutely insane.  The Rails security release doesn&#8217;t even remotely say what you claim it does; simple reading comprehension would have disclosed that.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: marcus</title>
		<link>http://techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10502</link>
		<dc:creator><![CDATA[marcus]]></dc:creator>
		<pubDate>Fri, 04 Sep 2009 16:03:35 +0000</pubDate>
		<guid isPermaLink="false">http://www.techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10502</guid>
		<description><![CDATA[Yes, classic case of &#039;who you know&#039;.  Ping a guy you know on the security team at Twitter = response.  Put in a support ticket like any other person = crickets.]]></description>
		<content:encoded><![CDATA[<p>Yes, classic case of &#8216;who you know&#8217;.  Ping a guy you know on the security team at Twitter = response.  Put in a support ticket like any other person = crickets.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: oops</title>
		<link>http://techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10501</link>
		<dc:creator><![CDATA[oops]]></dc:creator>
		<pubDate>Fri, 04 Sep 2009 15:36:44 +0000</pubDate>
		<guid isPermaLink="false">http://www.techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10501</guid>
		<description><![CDATA[almost as buggy as Omnidrive!]]></description>
		<content:encoded><![CDATA[<p>almost as buggy as Omnidrive!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Saravanan</title>
		<link>http://techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10500</link>
		<dc:creator><![CDATA[Saravanan]]></dc:creator>
		<pubDate>Fri, 04 Sep 2009 15:20:52 +0000</pubDate>
		<guid isPermaLink="false">http://www.techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10500</guid>
		<description><![CDATA[and this vulnerability did not affect IE 8 thanks to its built-in XSS filter says Arstechnica
http://arstechnica.com/security/news/2009/09/ruby-on-rails-vulnerability-affects-twitter-ie8-immune.ars]]></description>
		<content:encoded><![CDATA[<p>and this vulnerability did not affect IE 8 thanks to its built-in XSS filter says Arstechnica<br />
<a href="http://arstechnica.com/security/news/2009/09/ruby-on-rails-vulnerability-affects-twitter-ie8-immune.ars" rel="nofollow">http://arstechnica.com/security/news/2009/09/ruby-on-rails-vulnerability-affects-twitter-ie8-immune.ars</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Pete Austin</title>
		<link>http://techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10499</link>
		<dc:creator><![CDATA[Pete Austin]]></dc:creator>
		<pubDate>Fri, 04 Sep 2009 13:26:13 +0000</pubDate>
		<guid isPermaLink="false">http://www.techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10499</guid>
		<description><![CDATA[People don&#039;t only use Western European languages.]]></description>
		<content:encoded><![CDATA[<p>People don&#8217;t only use Western European languages.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jonathan Cohen</title>
		<link>http://techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10498</link>
		<dc:creator><![CDATA[Jonathan Cohen]]></dc:creator>
		<pubDate>Fri, 04 Sep 2009 12:12:35 +0000</pubDate>
		<guid isPermaLink="false">http://www.techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10498</guid>
		<description><![CDATA[Ryanair would probably charge you $20 for the privilege of submitting a security report to them.]]></description>
		<content:encoded><![CDATA[<p>Ryanair would probably charge you $20 for the privilege of submitting a security report to them.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Rob Knight</title>
		<link>http://techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10497</link>
		<dc:creator><![CDATA[Rob Knight]]></dc:creator>
		<pubDate>Fri, 04 Sep 2009 12:00:50 +0000</pubDate>
		<guid isPermaLink="false">http://www.techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10497</guid>
		<description><![CDATA[It&#039;s still a bad argument.  Developers always have to assume that the code they&#039;re building on top of is secure.  RoR is just one layer in a stack that includes Rails, a web server, a database server, the Linux OS and possibly all kinds of other software/hardware for load balancing, caching, proxying and so on.  Yet nobody would suggest that it&#039;s wrong to run a web app on Linux unless you understand exactly how it works.  In fact, we generally measure technical progress by the number of things a person can do without having to understand exactly how they work.

RoR is widely adopted, both commercially and non-commercially, tested by many people in many circumstances, and provides security comparable with any other web framework, and substantially more security than the default &#039;no framework&#039; option.  It has flaws, just like the rest of the stack will have flaws, but fixing them is the responsibility of whoever maintains that level of the stack, not the people who use it.]]></description>
		<content:encoded><![CDATA[<p>It&#8217;s still a bad argument.  Developers always have to assume that the code they&#8217;re building on top of is secure.  RoR is just one layer in a stack that includes Rails, a web server, a database server, the Linux OS and possibly all kinds of other software/hardware for load balancing, caching, proxying and so on.  Yet nobody would suggest that it&#8217;s wrong to run a web app on Linux unless you understand exactly how it works.  In fact, we generally measure technical progress by the number of things a person can do without having to understand exactly how they work.</p>
<p>RoR is widely adopted, both commercially and non-commercially, tested by many people in many circumstances, and provides security comparable with any other web framework, and substantially more security than the default &#8216;no framework&#8217; option.  It has flaws, just like the rest of the stack will have flaws, but fixing them is the responsibility of whoever maintains that level of the stack, not the people who use it.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: itsnotvalid</title>
		<link>http://techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10496</link>
		<dc:creator><![CDATA[itsnotvalid]]></dc:creator>
		<pubDate>Fri, 04 Sep 2009 11:59:35 +0000</pubDate>
		<guid isPermaLink="false">http://www.techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10496</guid>
		<description><![CDATA[It is so true that white-listing is the real correct way on handling taunted data. Block everything, then open up things that get needed. Even if it would become too clumsy, it is just what developers have to live with.]]></description>
		<content:encoded><![CDATA[<p>It is so true that white-listing is the real correct way on handling taunted data. Block everything, then open up things that get needed. Even if it would become too clumsy, it is just what developers have to live with.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: RubyOnRails XSS Vulnerability Claims Twitter, Basecamp And My Confidence</title>
		<link>http://techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10495</link>
		<dc:creator><![CDATA[RubyOnRails XSS Vulnerability Claims Twitter, Basecamp And My Confidence]]></dc:creator>
		<pubDate>Fri, 04 Sep 2009 10:35:50 +0000</pubDate>
		<guid isPermaLink="false">http://www.techcrunch.com/2006/10/29/payperpost-is-now-officially-absurd/#comment-10495</guid>
		<description><![CDATA[[...] By Techcrunch [...]]]></description>
		<content:encoded><![CDATA[<p>[...] By Techcrunch [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>

