Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Security

September 12th, 2006, 08:42 GMT · By

RSS Feeds Tests Made Public

SHARE:

Adjust text size:


Microsoft RSS Team senior program manager Sean Lyndersay has made a blog entry pointing to a suite of feeds tests made publicly available by James Snell. Based on a similar initiative from
James Holderness, Snell's tests have evolved in volume and complexity, and were previously available only to aggregator developers. Lyndersay admitted that Microsoft has implemented Snell's resources in order to test the security mitigations related to the Internet Explorer 7 RSS platform. But while IE7 has proven bulletproof in all the testing sessions, Snell revealed on his blog that additional Feed Reader developers used the tests to identify and plug vulnerabilities in their products.

"James' original tests are targeted at RSS. I've gone through and ported all of his tests over to Atom 1.0 and expanded the suite to 1,397 individual tests checking a broad range of potential threat vectors (most of which are simple variations of each other). For many of the tests, if your feed reader properly handles the difference between text, HTML and XHTML, you won't see any problems. However, some of the tests even manage to trip up the Universal Feed Parser," wrote Snell.

For all interested, Snell's suite of tests can be found here:
http://www.snellspace.com/public/everything.atom
http://www.snellspace.com/public/everything2.atom
http://www.snellspace.com/public/everything3.atom
http://www.snellspace.com/public/everything4.atom
http://www.snellspace.com/public/everything5.atom

Follow the editor on Twitter @mariusoiaga

TELL US WHAT YOU THINK:

1,071 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Feed Security in Internet Explorer

Sony Ericsson Announced Z610 Translucent Ha...

Mozilla Delays Firefox 2.0

Internet Explorer Anti-keylogger Plugin

Microsoft Lends a Helping Hand for Uninstal...

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2012 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM