<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: PHPIDS 0.4.7 ”Roberta” waiting to be downloaded</title>
	<atom:link href="http://php-ids.org/2008/02/20/phpids-047-%e2%80%9droberta%e2%80%9d-waits-to-be-downloaded/feed/" rel="self" type="application/rss+xml" />
	<link>http://php-ids.org/2008/02/20/phpids-047-%e2%80%9droberta%e2%80%9d-waits-to-be-downloaded/</link>
	<description></description>
	<pubDate>Sun, 18 May 2008 03:13:47 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.5.1</generator>
		<item>
		<title>By: PHP Blogger: +++ Updates +++ Updates +++ - Ein PHP Blog auf deutsch</title>
		<link>http://php-ids.org/2008/02/20/phpids-047-%e2%80%9droberta%e2%80%9d-waits-to-be-downloaded/#comment-156</link>
		<dc:creator>PHP Blogger: +++ Updates +++ Updates +++ - Ein PHP Blog auf deutsch</dc:creator>
		<pubDate>Mon, 17 Mar 2008 14:09:03 +0000</pubDate>
		<guid isPermaLink="false">http://php-ids.org/2008/02/20/phpids-047-%e2%80%9droberta%e2%80%9d-waits-to-be-downloaded/#comment-156</guid>
		<description>[...] PHPIDS 0.4.7: Die Dame &#8220;Roberta&#8221; m&#246;chte vom Infostand gedownloaded werden ;) Sie wartet dort bereits seit 20. Februar, also nix wie hin: Neben verschiedenen Optimierungen wurde die Unterst&#252;tzung f&#252;r UTF7 und BASE64 hinzugef&#252;gt und verbessert. Die API hat keine Ver&#228;nderungen erfahren - ein Update ist also problemlos m&#246;glich. [...]</description>
		<content:encoded><![CDATA[<p>[...] PHPIDS 0.4.7: Die Dame &#8220;Roberta&#8221; m&#246;chte vom Infostand gedownloaded werden <img src='http://php-ids.org/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> Sie wartet dort bereits seit 20. Februar, also nix wie hin: Neben verschiedenen Optimierungen wurde die Unterst&#252;tzung f&#252;r UTF7 und BASE64 hinzugef&#252;gt und verbessert. Die API hat keine Ver&#228;nderungen erfahren - ein Update ist also problemlos m&#246;glich. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: .mario</title>
		<link>http://php-ids.org/2008/02/20/phpids-047-%e2%80%9droberta%e2%80%9d-waits-to-be-downloaded/#comment-149</link>
		<dc:creator>.mario</dc:creator>
		<pubDate>Thu, 13 Mar 2008 08:30:47 +0000</pubDate>
		<guid isPermaLink="false">http://php-ids.org/2008/02/20/phpids-047-%e2%80%9droberta%e2%80%9d-waits-to-be-downloaded/#comment-149</guid>
		<description>@fragge: First of all this input string results in an impact of 4 - not 11. Please test before posting. 

http://demo.php-ids.org/?test=%3Cb%3E%3Ci%3EHello%3C/i%3E%3C/b%3E

Second: What application would allow you to pass input strings as such per GET/POST if it's no WYSIWYG editor? If you allow HTML for certain fields then don't use the PHPIDS on them - it makes no sense and was discussed over and over again in the forum, the group and son sla.ckers.org. If you don't such a string can be cosidered a XSS probing - and should be detected with a small impact - which exactly happens.

Greetings,
.mario</description>
		<content:encoded><![CDATA[<p>@fragge: First of all this input string results in an impact of 4 - not 11. Please test before posting. </p>
<p><a href="http://demo.php-ids.org/?test=%3Cb%3E%3Ci%3EHello%3C/i%3E%3C/b%3E" rel="nofollow">http://demo.php-ids.org/?test=%3Cb%3E%3Ci%3EHello%3C/i%3E%3C/b%3E</a></p>
<p>Second: What application would allow you to pass input strings as such per GET/POST if it&#8217;s no WYSIWYG editor? If you allow HTML for certain fields then don&#8217;t use the PHPIDS on them - it makes no sense and was discussed over and over again in the forum, the group and son sla.ckers.org. If you don&#8217;t such a string can be cosidered a XSS probing - and should be detected with a small impact - which exactly happens.</p>
<p>Greetings,<br />
.mario</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: fragge</title>
		<link>http://php-ids.org/2008/02/20/phpids-047-%e2%80%9droberta%e2%80%9d-waits-to-be-downloaded/#comment-148</link>
		<dc:creator>fragge</dc:creator>
		<pubDate>Thu, 13 Mar 2008 02:52:09 +0000</pubDate>
		<guid isPermaLink="false">http://php-ids.org/2008/02/20/phpids-047-%e2%80%9droberta%e2%80%9d-waits-to-be-downloaded/#comment-148</guid>
		<description>&#60;b&#62;&#60;i&#62;Hello&#60;/i&#62;&#60;/b&#62; still causes a false positive of 11. How on earth is that 99% accuracy? Considering the usage of said tags, I'm fairly certain your IDS will consistently bring false positives, because you've blacklisted anything that has to do with the internet. :\</description>
		<content:encoded><![CDATA[<p>&lt;b&gt;&lt;i&gt;Hello&lt;/i&gt;&lt;/b&gt; still causes a false positive of 11. How on earth is that 99% accuracy? Considering the usage of said tags, I&#8217;m fairly certain your IDS will consistently bring false positives, because you&#8217;ve blacklisted anything that has to do with the internet. :\</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: .mario</title>
		<link>http://php-ids.org/2008/02/20/phpids-047-%e2%80%9droberta%e2%80%9d-waits-to-be-downloaded/#comment-147</link>
		<dc:creator>.mario</dc:creator>
		<pubDate>Tue, 11 Mar 2008 08:23:45 +0000</pubDate>
		<guid isPermaLink="false">http://php-ids.org/2008/02/20/phpids-047-%e2%80%9droberta%e2%80%9d-waits-to-be-downloaded/#comment-147</guid>
		<description>That's fine - so how can we help you?</description>
		<content:encoded><![CDATA[<p>That&#8217;s fine - so how can we help you?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: roopa</title>
		<link>http://php-ids.org/2008/02/20/phpids-047-%e2%80%9droberta%e2%80%9d-waits-to-be-downloaded/#comment-146</link>
		<dc:creator>roopa</dc:creator>
		<pubDate>Tue, 11 Mar 2008 06:22:18 +0000</pubDate>
		<guid isPermaLink="false">http://php-ids.org/2008/02/20/phpids-047-%e2%80%9droberta%e2%80%9d-waits-to-be-downloaded/#comment-146</guid>
		<description>sir,


I required  algorithm to detect &#38; prevent SQL injection attacks 


I required a dataflow diagram regarding this</description>
		<content:encoded><![CDATA[<p>sir,</p>
<p>I required  algorithm to detect &amp; prevent SQL injection attacks </p>
<p>I required a dataflow diagram regarding this</p>
]]></content:encoded>
	</item>
</channel>
</rss>
