<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>DDXhunter, Hack &#039;n Web</title>
	<atom:link href="http://ddxhunter.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://ddxhunter.wordpress.com</link>
	<description>Webhacking and Security</description>
	<lastBuildDate>Mon, 14 Mar 2011 23:36:09 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='ddxhunter.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>DDXhunter, Hack &#039;n Web</title>
		<link>http://ddxhunter.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://ddxhunter.wordpress.com/osd.xml" title="DDXhunter, Hack &#039;n Web" />
	<atom:link rel='hub' href='http://ddxhunter.wordpress.com/?pushpress=hub'/>
		<item>
		<title>How does the Tunisian government steal passwords on Facebook.</title>
		<link>http://ddxhunter.wordpress.com/2011/01/13/how-does-the-tunisian-government-steal-passwords-on-facebook/</link>
		<comments>http://ddxhunter.wordpress.com/2011/01/13/how-does-the-tunisian-government-steal-passwords-on-facebook/#comments</comments>
		<pubDate>Thu, 13 Jan 2011 15:29:41 +0000</pubDate>
		<dc:creator>Rioru Zheoske</dc:creator>
				<category><![CDATA[Actuality]]></category>

		<guid isPermaLink="false">http://ddxhunter.wordpress.com/?p=45</guid>
		<description><![CDATA[Original post by @r00tBSD : http://www.r00ted.com/doku.php?id=injection_tunisie You perhaps have followed the recent actualities about Tunisian Government stealing accounts on facebook (http://www.fastcompany.com/1715575/tunisian-government-hacking-facebook-gmail-anonymous). There&#8217;s how they do: Here&#8217;s the web page of Facebook as seen when you&#8217;re connected in Tunisia http://pastebin.com/WV0C9t0F Let&#8217;s take a look at that javascript curious part.. &#60;!-- function h6h(st){var st2="";for(i=0;i&#60;st.length;i++){c=st.charCodeAt(i);ch=(c&#38;0xF0)&#62;&#62;4;cl=c&#38;0x0F; st2=st2+String.fromCharCode(ch+97)+String.fromCharCode(cl+97);}return st2;} function r5t(len){var [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=ddxhunter.wordpress.com&amp;blog=12526465&amp;post=45&amp;subd=ddxhunter&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://ddxhunter.wordpress.com/2011/01/13/how-does-the-tunisian-government-steal-passwords-on-facebook/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/1b1eecc69d088a15ec756d1702ad39ff?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">Rioru</media:title>
		</media:content>
	</item>
		<item>
		<title>Some tricks dangerous for web hosting.</title>
		<link>http://ddxhunter.wordpress.com/2010/07/22/some-tricks-dangerous-for-web-hosting/</link>
		<comments>http://ddxhunter.wordpress.com/2010/07/22/some-tricks-dangerous-for-web-hosting/#comments</comments>
		<pubDate>Thu, 22 Jul 2010 12:16:05 +0000</pubDate>
		<dc:creator>Rioru Zheoske</dc:creator>
				<category><![CDATA[Web Hacking]]></category>

		<guid isPermaLink="false">http://ddxhunter.wordpress.com/?p=31</guid>
		<description><![CDATA[I&#8217;ll just list some things I know that can be dangerous for web hosting. 1. You&#8217;ve activated open_basedir but didn&#8217;t disabled system() &#38; co functions. Everybody know about the open_basedir, that php function that blocks you into one directory. With system functions it becomes really simple to bypass this security, you should be aware of [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=ddxhunter.wordpress.com&amp;blog=12526465&amp;post=31&amp;subd=ddxhunter&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://ddxhunter.wordpress.com/2010/07/22/some-tricks-dangerous-for-web-hosting/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/1b1eecc69d088a15ec756d1702ad39ff?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">Rioru</media:title>
		</media:content>
	</item>
		<item>
		<title>[PHP] Rioru&#8217;s http method modification 0.1a</title>
		<link>http://ddxhunter.wordpress.com/2010/04/05/php-riorus-http-method-modification-0-1a/</link>
		<comments>http://ddxhunter.wordpress.com/2010/04/05/php-riorus-http-method-modification-0-1a/#comments</comments>
		<pubDate>Mon, 05 Apr 2010 23:24:02 +0000</pubDate>
		<dc:creator>Rioru Zheoske</dc:creator>
				<category><![CDATA[Web Hacking]]></category>

		<guid isPermaLink="false">http://ddxhunter.wordpress.com/?p=26</guid>
		<description><![CDATA[Simple code that will allow you to change your http method, GET to an unknown method &#8220;SER&#8221; (SER is for Seraphic Squad). The code isn&#8217;t optimized yet, but well, I&#8217;ll post another one one day. It&#8217;s useful when you got a website that make their htaccess with the LIMIT option.like: AuthUserFile /.htpasswd AuthName &#8220;Enter your [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=ddxhunter.wordpress.com&amp;blog=12526465&amp;post=26&amp;subd=ddxhunter&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://ddxhunter.wordpress.com/2010/04/05/php-riorus-http-method-modification-0-1a/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/1b1eecc69d088a15ec756d1702ad39ff?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">Rioru</media:title>
		</media:content>
	</item>
		<item>
		<title>[19/03/10] XSS on Facebook</title>
		<link>http://ddxhunter.wordpress.com/2010/03/19/190310-xss-on-facebook/</link>
		<comments>http://ddxhunter.wordpress.com/2010/03/19/190310-xss-on-facebook/#comments</comments>
		<pubDate>Fri, 19 Mar 2010 22:20:18 +0000</pubDate>
		<dc:creator>Rioru Zheoske</dc:creator>
				<category><![CDATA[Cross-site Scripting (XSS)]]></category>

		<guid isPermaLink="false">http://ddxhunter.wordpress.com/?p=17</guid>
		<description><![CDATA[Today, we discovered a Cross Site Scripting, available since one of the last updates on the community website &#8216;facebook.com&#8217;. It appears at the view of a name we search via the AJAX search function of Facebook. There is a Proof of Concept: Join this group: http://www.facebook.com/group.php?gid=111123275568518 Then go and search it (with a keyword like [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=ddxhunter.wordpress.com&amp;blog=12526465&amp;post=17&amp;subd=ddxhunter&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://ddxhunter.wordpress.com/2010/03/19/190310-xss-on-facebook/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/1b1eecc69d088a15ec756d1702ad39ff?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">Rioru</media:title>
		</media:content>

		<media:content url="http://localhostr.com/files/dca4ae/xssfbss.png" medium="image">
			<media:title type="html">Facebook XSS</media:title>
		</media:content>
	</item>
		<item>
		<title>LFI&#8217;s Exploitation Techniques.</title>
		<link>http://ddxhunter.wordpress.com/2010/03/10/lfis-exploitation-techniques/</link>
		<comments>http://ddxhunter.wordpress.com/2010/03/10/lfis-exploitation-techniques/#comments</comments>
		<pubDate>Wed, 10 Mar 2010 12:42:46 +0000</pubDate>
		<dc:creator>Rioru Zheoske</dc:creator>
				<category><![CDATA[Local file inclusion]]></category>
		<category><![CDATA[Web Hacking]]></category>

		<guid isPermaLink="false">http://ddxhunter.wordpress.com/?p=10</guid>
		<description><![CDATA[What&#8217;s a Local File Inclusion? A local file inclusion (usually called &#8220;LFI&#8221;) is a webhacking technique that allow simply to include files from a local location. That means that we can include a file that is outside of the web directory (if we got rights), and execute PHP code. &#60;?php include($_GET['page']);?&#62; This code will search [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=ddxhunter.wordpress.com&amp;blog=12526465&amp;post=10&amp;subd=ddxhunter&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://ddxhunter.wordpress.com/2010/03/10/lfis-exploitation-techniques/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/1b1eecc69d088a15ec756d1702ad39ff?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">Rioru</media:title>
		</media:content>
	</item>
		<item>
		<title>Hello World!</title>
		<link>http://ddxhunter.wordpress.com/2010/03/10/hello-world-2/</link>
		<comments>http://ddxhunter.wordpress.com/2010/03/10/hello-world-2/#comments</comments>
		<pubDate>Wed, 10 Mar 2010 11:00:09 +0000</pubDate>
		<dc:creator>Rioru Zheoske</dc:creator>
				<category><![CDATA[Blabla.]]></category>

		<guid isPermaLink="false">http://ddxhunter.wordpress.com/?p=4</guid>
		<description><![CDATA[Hello and welcome in my web blog powered by wordpress.com. I&#8217;ll make some updates about security news, tutorials &#38; co. Specially on Web Hacking. I hope you&#8217;ll enjoy reading this blog. And oh, sorry if I make some english mispell sometimes. I&#8217;m French. ; ) DDXhunter. Filed under: Blabla.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=ddxhunter.wordpress.com&amp;blog=12526465&amp;post=4&amp;subd=ddxhunter&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://ddxhunter.wordpress.com/2010/03/10/hello-world-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/1b1eecc69d088a15ec756d1702ad39ff?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">Rioru</media:title>
		</media:content>

		<media:content url="http://imgs.xkcd.com/comics/exploits_of_a_mom.png" medium="image">
			<media:title type="html">Exploits of a mom.</media:title>
		</media:content>
	</item>
	</channel>
</rss>
