<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd"
	xmlns:media="http://search.yahoo.com/mrss/"
	>
<channel>
	<title>Comments on: How We&#8217;ll Miss You So, Black Hat &#8217;06&#8230;</title>
	<atom:link href="http://ddos.arbornetworks.com/2006/08/how-well-miss-you-so-black-hat-06/feed/" rel="self" type="application/rss+xml" />
	<link>http://ddos.arbornetworks.com/2006/08/how-well-miss-you-so-black-hat-06/</link>
	<description>A weblog dedicated to educating the community on security threats that matter</description>
	<lastBuildDate>Mon, 07 May 2012 13:07:22 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
	<item>
		<title>By: Steo</title>
		<link>http://ddos.arbornetworks.com/2006/08/how-well-miss-you-so-black-hat-06/comment-page-1/#comment-796</link>
		<dc:creator>Steo</dc:creator>
		<pubDate>Sat, 19 Aug 2006 17:30:24 +0000</pubDate>
		<guid isPermaLink="false">http://asert.arbornetworks.com/2006/08/how-well-miss-you-so-black-hat-06/#comment-796</guid>
		<description>Nice article. Thanks.</description>
		<content:encoded><![CDATA[<p>Nice article. Thanks.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Haroon Meer</title>
		<link>http://ddos.arbornetworks.com/2006/08/how-well-miss-you-so-black-hat-06/comment-page-1/#comment-781</link>
		<dc:creator>Haroon Meer</dc:creator>
		<pubDate>Thu, 17 Aug 2006 22:23:06 +0000</pubDate>
		<guid isPermaLink="false">http://asert.arbornetworks.com/2006/08/how-well-miss-you-so-black-hat-06/#comment-781</guid>
		<description>We did a pdb little brother as part of our &quot;tale of two proxies&quot; talk at the same show. I used python (but mainly so that i could steal scapys packet structures/code :&gt;

We bumped into the tcp re-transmit issue too, but i suspect it can be fixed relatively easily by faking window updates (size 0) to both client and server (effectively becoming a pdb style int3)

My code is far messier, but ill throw it up soonishly..</description>
		<content:encoded><![CDATA[<p>We did a pdb little brother as part of our &#8220;tale of two proxies&#8221; talk at the same show. I used python (but mainly so that i could steal scapys packet structures/code :&gt;</p>
<p>We bumped into the tcp re-transmit issue too, but i suspect it can be fixed relatively easily by faking window updates (size 0) to both client and server (effectively becoming a pdb style int3)</p>
<p>My code is far messier, but ill throw it up soonishly..</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dino Dai Zovi</title>
		<link>http://ddos.arbornetworks.com/2006/08/how-well-miss-you-so-black-hat-06/comment-page-1/#comment-742</link>
		<dc:creator>Dino Dai Zovi</dc:creator>
		<pubDate>Thu, 10 Aug 2006 18:29:29 +0000</pubDate>
		<guid isPermaLink="false">http://asert.arbornetworks.com/2006/08/how-well-miss-you-so-black-hat-06/#comment-742</guid>
		<description>[...] I&#8217;m taking the bait. I am somewhat of a programming language geek and actually love debating the pros/cons of various languages and whether some of them (i.e. bourne shell) are well suited to certain tasks (i.e. fuzzing). However, claiming that a specific language is the best tool for any job is the silly sort of argument that someone who knows *one* high-level language tends to make. Sometimes the right language for the job in the hands of good programmers lets you make a cool few million bucks in one summer. Sometimes, your exploits must be written in OCaml (if you haven&#8217;t already tried it, pattern matching is *phenomenal* for writing network protocol stacks). Try and reverse that binary! [...]</description>
		<content:encoded><![CDATA[<p>[...] I&#8217;m taking the bait. I am somewhat of a programming language geek and actually love debating the pros/cons of various languages and whether some of them (i.e. bourne shell) are well suited to certain tasks (i.e. fuzzing). However, claiming that a specific language is the best tool for any job is the silly sort of argument that someone who knows *one* high-level language tends to make. Sometimes the right language for the job in the hands of good programmers lets you make a cool few million bucks in one summer. Sometimes, your exploits must be written in OCaml (if you haven&#8217;t already tried it, pattern matching is *phenomenal* for writing network protocol stacks). Try and reverse that binary! [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Domber</title>
		<link>http://ddos.arbornetworks.com/2006/08/how-well-miss-you-so-black-hat-06/comment-page-1/#comment-732</link>
		<dc:creator>Domber</dc:creator>
		<pubDate>Thu, 10 Aug 2006 12:09:33 +0000</pubDate>
		<guid isPermaLink="false">http://asert.arbornetworks.com/2006/08/how-well-miss-you-so-black-hat-06/#comment-732</guid>
		<description>Thx for the hint about the WoW Rootkit ... pretty interesting stuff.</description>
		<content:encoded><![CDATA[<p>Thx for the hint about the WoW Rootkit &#8230; pretty interesting stuff.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

