<?xml version="1.0" encoding="ISO-8859-1"?><!-- generator="wordpress/2.2" -->
<rss version="0.92">
<channel>
	<title>Mighty Seek</title>
	<link>http://www.mightyseek.com</link>
	<description>A podcast about web application security, as well as general web application development issues. The primary focus is on security and tries to explain things so that anyone can understand them since security issues affect everyone across an organization. Hopefully this show will be a resource for everyone involved in a software development project.</description>
	<lastBuildDate>Tue, 04 Mar 2008 07:04:07 +0000</lastBuildDate>
	<docs>http://backend.userland.com/rss092</docs>
	<language>en</language>
	
	<item>
		<title>My sons animation</title>
		<description>My 3rd grade sone did this awesome animation using Stickman, so I have to show it off. </description>
		<link>http://www.mightyseek.com/misc/my-sons-animation</link>
			</item>
	<item>
		<title>Coverage of web application scanners</title>
		<description>My buddy rsnake over at Ha.ckers.org posted a report from Larry Suto about tests he performed on web application scanners and comparing how well they cover a web applications code base.

The report is intesting on many fronts, one of which is the fact that the tool I help build at ...</description>
		<link>http://www.mightyseek.com/web-application-security/coverage-of-web-application-scanners</link>
			</item>
	<item>
		<title>podPress 8.3 Released - With Podango Support</title>
		<description>For all the details, check out the changelog but this is one release that cleans up a ton of mess and adds in support for full integration with the Podango API.

Theres still a few tiny features I want to add in, but its in good shape, and I need sleep ...</description>
		<link>http://www.mightyseek.com/podpress/podpress-83-released-with-podango-support</link>
			</item>
	<item>
		<title>The Ha.ckers.org Hacking Challenges</title>
		<description>As many of you have seen, I have a "Hackme" site setup to go along with my podcast, and specifically for the Hands On Series podcasts. Well the current king of Web App Security blogging has setup a couple hacker challenges on his site. The ones on my site are ...</description>
		<link>http://www.mightyseek.com/web-application-security/the-hackersorg-hacking-challenges</link>
			</item>
	<item>
		<title>Evaluating Web Application Security Scanners</title>
		<description>Theres been alot of discussion lately about an issue thats near and dear to my heart. The capabilities and of web application security scanning is something I have been living and breathing for about 5 years with NT OBJECTIves. AT NTO I lead the development and research teams involved in ...</description>
		<link>http://www.mightyseek.com/web-application-security/evaluating-web-application-security-scanners</link>
			</item>
	<item>
		<title>WordCamp Experience</title>
		<description>I had a pretty interesting day yesterday.
After being up till close to 2am I woke up at 5:30am, showered and drove to the airport to do my 10am talk at WordCamp 2007.
My flight landed at 8:30am and I was picked up by my old buddy Joe Engo. After a couple ...</description>
		<link>http://www.mightyseek.com/podcasting/wordcamp-experience</link>
			</item>
	<item>
		<title>Forums back online</title>
		<description>Thanks to the generous sponsorship of Podango the MightySeek/podPress forums are back online! </description>
		<link>http://www.mightyseek.com/podcasting/forums-back-online</link>
			</item>
	<item>
		<title>The Sierra Network (ImagiNation) - Lives again</title>
		<description>Back in the early 90's, yes back even before most had even heard of the Internet and the geeks spent most of their time on BBS's there were a few online services trying to get going. AOL, Prodigy and CompuServe were fairly well known, but there was one other that ...</description>
		<link>http://www.mightyseek.com/misc/imagination-lives-again</link>
			</item>
	<item>
		<title>iPhone - I dont get the hype</title>
		<description>Its crazy... I really just dont get this crazyness over an insanely priced cell phone. Now keep in mind, I live with my video iPod, it goes everwhere with me and most of the TV and movies I see these days are on the thing. I also look forward to ...</description>
		<link>http://www.mightyseek.com/misc/iphone-i-dont-get-the-hype</link>
			</item>
	<item>
		<title>Planet Websecurity</title>
		<description>For those trying to follow the latest news of our web app sec community, someone has finally setup a feed planet called Planet Websecurity that I'm really impressed with. No, at this time MightySeek is not yet part of the RSS mashup, but I do hope to be at some ...</description>
		<link>http://www.mightyseek.com/web-application-security/planet-websecurity</link>
			</item>
	<item>
		<title>Why is it so hard to code secure web apps?</title>
		<description>Â Â Â  After my run in with vBulletin I began a search for a secure and stable open sourced forum solution. My first thought was to find out what was running on sla.kers.org so I put in a call to rsnake and was told to keep looking because ...</description>
		<link>http://www.mightyseek.com/web-application-security/why-is-it-so-hard-to-code-secure-web-apps</link>
			</item>
	<item>
		<title>Run in with vBulletin - leasing software is intolerable</title>
		<description>I had been using vBulletin for a little over a year when I started podPress and wanted a place for users to create a community and to provide support. The forums have been very successful and tend to have on the order of 20-30 postings a day, with many more ...</description>
		<link>http://www.mightyseek.com/podpress/run-in-with-vbulletin-leasing-software-is-intolerable</link>
			</item>
	<item>
		<title>SQL Injection mention on hype-free</title>
		<description>Every once in awhile I try and find out if anyone is noticing my podcast. Well I stumbled on a mention of the SQL Injection hands on episode on hype-free. </description>
		<link>http://www.mightyseek.com/web-application-security/sql-injection-mention-on-hype-free</link>
			</item>
	<item>
		<title>MightySeek Interviews rsnake</title>
		<description>Today I had the pleasure of meeting up with a celeb of the web app sec world.... rsnake of the ha.ckers.org website. I hope you enjoy the interview, but I made a huge mistake with the recording. Here I was with my first interview, I hook up my mic and ...</description>
		<link>http://www.mightyseek.com/web-application-security/mightyseek-interviews-rsnake</link>
			</item>
	<item>
		<title>PHP Security and the Month of PHP Bugs</title>
		<description>In this episode is discuss PHP security. Up till this point I have talked about web app sec in general, but I break from this in honor of the Month Of PHP Bugs that is going on through March.
PHP has frequently been blamed for security problems in applications written in ...</description>
		<link>http://www.mightyseek.com/web-application-security/php-security-and-the-month-of-php-bugs</link>
			</item>
	<item>
		<title>podPress more than one year old</title>
		<description>Today I was pondering the success of the podPress project since it started which got me to trying to remember how long its been. So a quick look at the change log shows that I released the first version on Feb 2nd of 2006.

So, its only a year and one ...</description>
		<link>http://www.mightyseek.com/podpress/podpress-more-than-one-year-old</link>
			</item>
	<item>
		<title>Stranger Things Podcast - Wow</title>
		<description>As a long time podcasting fan and supporter of the community I have been a fan of many shows, and impressed by a bunch of them. Some of my favorites (and I know I'll end up forgetting some) have been Slice of Sci/Fi, Escape Pod, Filmspotting, The Signal, The Bitterest ...</description>
		<link>http://www.mightyseek.com/podcasting/stranger-things-podcast-wow</link>
			</item>
	<item>
		<title>A Month of PHP Security Bugs</title>
		<description>The folks at the Hardened PHP Project (makers of Suhosin) have started their Month of PHP Bugs initiative.  				This initiative is an effort to improve the security of PHP by bringing awareness to various security problems in PHP itself. This does not directly impact any PHP applications, but instead ...</description>
		<link>http://www.mightyseek.com/web-application-security/a-month-of-php-security-bugs</link>
			</item>
	<item>
		<title>Dan Kuykendall on CrazyEngineers</title>
		<description>I did an interview thats been posted on CrazyEngineers.com.

Go check out the interview, along with the forum thread discussion. </description>
		<link>http://www.mightyseek.com/podpress/dan-kuykendall-on-crazyengineers</link>
			</item>
	<item>
		<title>Universal PDF XSS</title>
		<description>Cross Site scripting attacks are getting even more dangerous these days, and exploitable in many new creative ways. I will be discussing this issue in my next podcast, till then read up on it here or at ha.ckers.org  </description>
		<link>http://www.mightyseek.com/web-application-security/universal-pdf-xss</link>
			</item>
	<item>
		<title>podPress - New powered by logo</title>
		<description>Today I got an email from the Daddo of the http://driftkikker.com/ website and he sent over a new Powered By logo to replace the lame one I threw together some time back.

My best effortÂ Â Â Â Â Â Â Â Â                  ...</description>
		<link>http://www.mightyseek.com/podpress/podpress-new-powered-by-logo</link>
			</item>
	<item>
		<title>Still alive and kicking</title>
		<description>I know its been fairly quiet from me. No new versions of podPress and no new podcasts. The absense has been due to an extremely busy schedule, and a slight bit of lazyness on my part. Ive been doing TONS of reseach, and not had the energy to push out ...</description>
		<link>http://www.mightyseek.com/misc/still-alive-and-kicking</link>
			</item>
	<item>
		<title>Dan on Slice of SciFi</title>
		<description>While at the PPME I met up with the legendary Evo Terra and got to sit in on a recording of the great Slice of SciFi podcast, which was quite alot of fun. It was recorded in Evo's hotel room with a bunch of us hanging out in there. Amoung ...</description>
		<link>http://www.mightyseek.com/podcasting/dan-on-slice-of-scifi</link>
			</item>
	<item>
		<title>Dan with Friends of the Fringe</title>
		<description>I sat in with the LA Podcasters gang at the PPME and was in on a recording of Friends of the Fringe, which was pretty fun.



Im the guy on the right with the green shirt and this hat </description>
		<link>http://www.mightyseek.com/podcasting/dan-with-friends-of-the-fringe</link>
			</item>
	<item>
		<title>MightySeek coming back online slowly</title>
		<description>We had a total system failure, and of course I didnt have a backup worth using to get things back online. I am working to get the site fully back up and will be doing so as quickly as possible,

Mighty Seek </description>
		<link>http://www.mightyseek.com/misc/hello-world</link>
			</item>
	<item>
		<title>Jeremiah Grossmans XSS BlackHat Presentation</title>
		<description>If you didnt get to BlackHat this year, then you may have heard about the really cool presentation about Cross Site Scripting. He uses XSS to hack intranets by writing a port scanner in javascript. If your into web app sec, you need to see this. It also really puts ...</description>
		<link>http://www.mightyseek.com/web-application-security/jeremiah-grossmans-xss-blackhat-presentation</link>
			</item>
	<item>
		<title>Behind the Mic: Interviews Dan Kuykendall</title>
		<description>I had the great pleasure of being interviewed about podPress by the one and only Michael Geoghegan. I got in a small plug for my podcast as well, so Im pretty happy.
The Podcast Academy: Dan Kuykendall </description>
		<link>http://www.mightyseek.com/podcasting/behind-the-mic-interviews-dan-kuykendall</link>
			</item>
	<item>
		<title>Hands On Series - Cross Site Scripting (XSS) Part 1</title>
		<description>The &#8220;Hands on Series&#8221; continues!

In this episode we start dealing with Cross Site Scripting (XSS) attacks. 
CSS = Cascading Style Sheets
XSS = Cross Site Scripting
Cross Site Scripting is a technique used to add script to a trusted site that will be executed on other users browsers.
A key element to XSS ...</description>
		<link>http://www.mightyseek.com/web-application-security/hands-on-series-cross-site-scripting-xss-part-1</link>
			</item>
	<item>
		<title>podPress reviewed on Upon Further Review Â» Episode 3</title>
		<description>In the latest episode of Upon Further Review the podPress plugin (and me) was reviewed. Im happy to say we got a 4.5 out of 5 rating and in general alot of glowing praise.

The podcast itself is very well done for an episode #3, and theres lots of other good ...</description>
		<link>http://www.mightyseek.com/podcasting/podpress-reviewed-on-upon-further-review-%c2%bb-episode-3</link>
			</item>
	<item>
		<title>MightySeek on (IN)SECURE Magazine</title>
		<description>The MightySeek podcast got a cool mention in the lastest issue of (IN)SECURE Magazine. </description>
		<link>http://www.mightyseek.com/web-application-security/mightyseek-on-insecure-magazine</link>
			</item>
	<item>
		<title>Mighty Seek Podcast #15 - News and Misc Topics</title>
		<description>A quick in between to the Hands On Series, I chat about some news and issues of the day.

Turkish Hacker defaces 38,000 websites hosted on GoDaddy
Flawed USC admissions site allowed access to applicant data
Breach case could curtail Web flaw finders
Man charged with accessing USC student data
Tsunami appeal site &#8216;hacker&#8217; found ...</description>
		<link>http://www.mightyseek.com/web-application-security/mighty-seek-podcast-15-news-and-misc-topics</link>
			</item>
	<item>
		<title>The Security Roundtable Â» Featured in the iTunes Music Store</title>
		<description>The Security Roundtable Â» Blog Archive Â» SRT in the iTunes Music Store
The podcasting group Im a part of now has its own Artist Group in iTunes and is featured on the podcasting home page. Im pretty excited about this and look forward to any new listeners that join in ...</description>
		<link>http://www.mightyseek.com/podcasting/the-security-roundtable-%c2%bb-featured-in-the-itunes-music-store</link>
			</item>
	<item>
		<title>Network Security Blog: Network Security Podcast, Episode 28</title>
		<description>Network Security Blog: Network Security Podcast, Episode 28
Tonight I appear as co-host/guest of the Network Security Podcast with Martin McKeay. This podcast is a fellow Security Round Table podcast, and I had alot of fun being able to discuss more general security issues. </description>
		<link>http://www.mightyseek.com/podcasts/network-security-blog-network-security-podcast-episode-28</link>
			</item>
	<item>
		<title>Questions for podcast with Dan (PodPress developer)</title>
		<description>James Woodcock will be interviewing me in the coming days, and so posted this on the forums.
Click here to get to the forum topic
Dan (Mighty Seek) developer of the PodPress plugin for Wordpress, will be interviewed in one of my future blogcasts on my website.

If you have any questions you ...</description>
		<link>http://www.mightyseek.com/podcasts/questions-for-podcast-with-dan-podpress-developer</link>
			</item>
	<item>
		<title>Hands On Series - SQL Injection Part 1</title>
		<description>The start of the âHands on Seriesâ, which means that there are actual
hands on excersises to go along with these shows.

I feel that its time to go beyond the concepts, the chatter about what bad guys can do,
and actually show you directly. Let you see for yourself the saying goes.
I ...</description>
		<link>http://www.mightyseek.com/web-application-security/hands-on-series-sql-injection</link>
			</item>
	<item>
		<title>InformationWeek &#124; Web App Hack Incidents Are Up</title>
		<description>InformationWeek &#124; Web Application Security &#124; Web App Hack Incidents Are Up As Businesses Take Cover &#124; April 12, 2006

First a bug âduh!â
And then I get to move into the âfinally someones talking about this in the mainstream pressâ.

Not that Information Week is read by grandma or the average joe ...</description>
		<link>http://www.mightyseek.com/web-application-security/informationweek-web-app-hack-incidents-are-up</link>
			</item>
	<item>
		<title>Privilage Escalation Attacks</title>
		<description>In this podcast I discuss a type of attack that allows users to basicly do things they are not supposed to do, without ever having to hack the admin type of accounts. So without having to figure out the admin password it is often possible to do administrative functions by ...</description>
		<link>http://www.mightyseek.com/web-application-security/privilage-escalation-attacks</link>
			</item>
	<item>
		<title>Catching up and a preview of future shows</title>
		<description>In this edition of the Mighty Seek podcast I give a rundown of podPress and list out some ideas for the future podcasts. The site now has a forum for the podcast and general web application security discussion. </description>
		<link>http://www.mightyseek.com/web-application-security/catching-up-and-a-preview-of-future-shows</link>
			</item>
	<item>
		<title>For-Pay Only Podcasting (Password Protected)</title>
		<description>Today I learned about iTunes support for password protected podcasts, and am thinking about the security issues, planning out how I can support this in PodPress as well as what this means for podcasting in general. 
Overall I think this is very cool for podcasting, because it can open the ...</description>
		<link>http://www.mightyseek.com/podcasting/for-pay-only-podcasting-password-protected</link>
			</item>
	<item>
		<title>Security Engagement Cast Part 2</title>
		<description>In part 2 we discuss the planning and deliverables involved when doing a security engagement. Most of the discussion demonstrates the importance of understanding the boundaries, requirements and deliverables from the start. </description>
		<link>http://www.mightyseek.com/web-application-security/security-engagement-cast-part-2</link>
			</item>
</channel>
</rss>
