<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>What The Hell? Security &#187; hypertext</title>
	<atom:link href="http://whatthehellsecurity.com/category/hypertext/feed/" rel="self" type="application/rss+xml" />
	<link>http://whatthehellsecurity.com</link>
	<description>startling new ways of thinking about security</description>
	<lastBuildDate>Wed, 16 Feb 2011 08:38:22 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='whatthehellsecurity.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>What The Hell? Security &#187; hypertext</title>
		<link>http://whatthehellsecurity.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://whatthehellsecurity.com/osd.xml" title="What The Hell? Security" />
	<atom:link rel='hub' href='http://whatthehellsecurity.com/?pushpress=hub'/>
		<item>
		<title>The 9 Laws of Phishing (Part 3)</title>
		<link>http://whatthehellsecurity.com/2010/06/27/the-9-laws-of-phishing-part-3/</link>
		<comments>http://whatthehellsecurity.com/2010/06/27/the-9-laws-of-phishing-part-3/#comments</comments>
		<pubDate>Sun, 27 Jun 2010 10:12:42 +0000</pubDate>
		<dc:creator>hell if i know</dc:creator>
				<category><![CDATA[certificate authorities]]></category>
		<category><![CDATA[hypertext]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security sense]]></category>

		<guid isPermaLink="false">http://whatthehellsecurity.com/?p=1682</guid>
		<description><![CDATA[Copyright © What The Hell? Security [ Part 1 &#124; Part 2 &#124; Part 3 ] (continued ) The 9 Laws tell us quite a bit about designing a viable platform solution.  Let&#8217;s step through them again, sketching as we go. Law 1:  Phishing Is About Commerce Web 1.0 was all about commerce.  Only we [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=whatthehellsecurity.com&amp;blog=8356378&amp;post=1682&amp;subd=whatthehellsecurity&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://whatthehellsecurity.com/2010/06/27/the-9-laws-of-phishing-part-3/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">ljh</media:title>
		</media:content>
	</item>
		<item>
		<title>The 9 Laws of Phishing (Part 2)</title>
		<link>http://whatthehellsecurity.com/2010/04/28/the-9-laws-of-phishing-part-2/</link>
		<comments>http://whatthehellsecurity.com/2010/04/28/the-9-laws-of-phishing-part-2/#comments</comments>
		<pubDate>Thu, 29 Apr 2010 02:21:10 +0000</pubDate>
		<dc:creator>hell if i know</dc:creator>
				<category><![CDATA[certificate authorities]]></category>
		<category><![CDATA[hypertext]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security soapbox]]></category>
		<category><![CDATA[ssl]]></category>

		<guid isPermaLink="false">http://whatthehellsecurity.com/?p=1617</guid>
		<description><![CDATA[Copyright © What The Hell? Security [ Part 1 &#124; Part 2 &#124;&#160;Part 3 ] (continued) Picking up at Law 9 of my 9 Laws of Phishing manifesto: 9. The solution is a platform. So why a platform?&#160; Because the phishing problem itself spans a number of platforms:&#160; devices, operating systems, and applications to name [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=whatthehellsecurity.com&amp;blog=8356378&amp;post=1617&amp;subd=whatthehellsecurity&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://whatthehellsecurity.com/2010/04/28/the-9-laws-of-phishing-part-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">ljh</media:title>
		</media:content>
	</item>
		<item>
		<title>The 9 Laws of Phishing</title>
		<link>http://whatthehellsecurity.com/2010/04/05/the-9-laws-of-phishing/</link>
		<comments>http://whatthehellsecurity.com/2010/04/05/the-9-laws-of-phishing/#comments</comments>
		<pubDate>Mon, 05 Apr 2010 08:20:20 +0000</pubDate>
		<dc:creator>hell if i know</dc:creator>
				<category><![CDATA[certificate authorities]]></category>
		<category><![CDATA[hypertext]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security soapbox]]></category>
		<category><![CDATA[ssl]]></category>

		<guid isPermaLink="false">http://whatthehellsecurity.com/?p=1456</guid>
		<description><![CDATA[Copyright © What The Hell? Security [ Part 1 &#124; Part 2 &#124; Part 3 ] What the hell is it about phishing that makes it seem so intractable? First off, let&#8217;s talk&#160;intractable. &#160;An uncontrollable or incurable problem. Computational complexity theory adds a convenient twist: A problem that can be solved, only not fast enough [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=whatthehellsecurity.com&amp;blog=8356378&amp;post=1456&amp;subd=whatthehellsecurity&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://whatthehellsecurity.com/2010/04/05/the-9-laws-of-phishing/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">ljh</media:title>
		</media:content>

		<media:content url="http://whatthehellsecurity.files.wordpress.com/2010/04/codex-phishing.png?w=150" medium="image">
			<media:title type="html">codex-phishing</media:title>
		</media:content>
	</item>
		<item>
		<title>Bit.ly Fantasizes of Combating Twitter Scams</title>
		<link>http://whatthehellsecurity.com/2009/12/08/bit-ly-fantasizes-of-combating-twitter-scams/</link>
		<comments>http://whatthehellsecurity.com/2009/12/08/bit-ly-fantasizes-of-combating-twitter-scams/#comments</comments>
		<pubDate>Wed, 09 Dec 2009 03:18:01 +0000</pubDate>
		<dc:creator>hell if i know</dc:creator>
				<category><![CDATA[fraud]]></category>
		<category><![CDATA[hypertext]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security soapbox]]></category>

		<guid isPermaLink="false">http://whatthehellsecurity.com/?p=974</guid>
		<description><![CDATA[Copyright © 2009 What The Hell? Security If you believe that Bit.ly is going to solve their shortened URL problem the way they intend to, have I got a story for you. [Sidebar:  Be aware that it's completely safe to click on the links in the previous paragraph.  If you don't believe me, select View [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=whatthehellsecurity.com&amp;blog=8356378&amp;post=974&amp;subd=whatthehellsecurity&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://whatthehellsecurity.com/2009/12/08/bit-ly-fantasizes-of-combating-twitter-scams/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">ljh</media:title>
		</media:content>

		<media:content url="http://whatthehellsecurity.files.wordpress.com/2009/12/directions1.png?w=300" medium="image">
			<media:title type="html">directions</media:title>
		</media:content>
	</item>
		<item>
		<title>Blocking Dirty Bits Not As Good As Identifying Good Bits</title>
		<link>http://whatthehellsecurity.com/2009/12/03/blocking-dirty-bits-not-as-good-as-identifying-good-bits/</link>
		<comments>http://whatthehellsecurity.com/2009/12/03/blocking-dirty-bits-not-as-good-as-identifying-good-bits/#comments</comments>
		<pubDate>Thu, 03 Dec 2009 23:53:25 +0000</pubDate>
		<dc:creator>hell if i know</dc:creator>
				<category><![CDATA[fraud]]></category>
		<category><![CDATA[hypertext]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://whatthehellsecurity.com/?p=871</guid>
		<description><![CDATA[Copyright © 2009 What The Hell? Security John Pescatore makes a point about warning vs. blocking bad links.  But here&#8217;s the thing about links:  We&#8217;re thinking about them all wrong. Now, of course there are bad links.  They end up on blacklists.  Let&#8217;s pretend they&#8217;re more than marginally useful.  (If you have issue with that [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=whatthehellsecurity.com&amp;blog=8356378&amp;post=871&amp;subd=whatthehellsecurity&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://whatthehellsecurity.com/2009/12/03/blocking-dirty-bits-not-as-good-as-identifying-good-bits/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">ljh</media:title>
		</media:content>

		<media:content url="http://whatthehellsecurity.files.wordpress.com/2009/12/url-space1.png?w=300" medium="image">
			<media:title type="html">url-space</media:title>
		</media:content>
	</item>
		<item>
		<title>What The Hell?  Spike in Phishing &amp; Malware Misdiagnosis</title>
		<link>http://whatthehellsecurity.com/2009/11/05/what-the-hell-spike-in-phishing-misdiagnosis/</link>
		<comments>http://whatthehellsecurity.com/2009/11/05/what-the-hell-spike-in-phishing-misdiagnosis/#comments</comments>
		<pubDate>Thu, 05 Nov 2009 23:04:20 +0000</pubDate>
		<dc:creator>hell if i know</dc:creator>
				<category><![CDATA[fraud]]></category>
		<category><![CDATA[hypertext]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://whatthehellsecurity.com/?p=715</guid>
		<description><![CDATA[Copyright © 2009 What The Hell? Security What the hell? We have it all wrong again. Listen up everybody. This isn&#8217;t about Facebook. It&#8217;s like this. Consider the crime of stealing a credit card number in two scenarios, one offline and one online: Offline Online Victim Street Pedestrian Online Pedestrian Perpetrator Fraudulent Hot Dog Vendor* [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=whatthehellsecurity.com&amp;blog=8356378&amp;post=715&amp;subd=whatthehellsecurity&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://whatthehellsecurity.com/2009/11/05/what-the-hell-spike-in-phishing-misdiagnosis/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">ljh</media:title>
		</media:content>
	</item>
		<item>
		<title>What The Hell?  Web Security Is(n&#8217;t) About The Web&#8230;Not!</title>
		<link>http://whatthehellsecurity.com/2009/10/29/what-the-hell-web-security-isnt-about-the-web-not/</link>
		<comments>http://whatthehellsecurity.com/2009/10/29/what-the-hell-web-security-isnt-about-the-web-not/#comments</comments>
		<pubDate>Thu, 29 Oct 2009 23:34:49 +0000</pubDate>
		<dc:creator>hell if i know</dc:creator>
				<category><![CDATA[hypertext]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security humor]]></category>
		<category><![CDATA[security soapbox]]></category>

		<guid isPermaLink="false">http://whatthehellsecurity.com/?p=611</guid>
		<description><![CDATA[Copyright © 2009 What The Hell? Security It&#8217;s easy to jump to conclusions.  I illustrated this to my youngest, who are twins, when they were five. [Sidebar:  I wanted to do this when they were four.  But that being the year they learned that racehorses used to end their careers in glue bottles, I figured [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=whatthehellsecurity.com&amp;blog=8356378&amp;post=611&amp;subd=whatthehellsecurity&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://whatthehellsecurity.com/2009/10/29/what-the-hell-web-security-isnt-about-the-web-not/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">ljh</media:title>
		</media:content>

		<media:content url="http://whatthehellsecurity.files.wordpress.com/2009/10/cornos1.jpg" medium="image">
			<media:title type="html">cornos</media:title>
		</media:content>

		<media:content url="http://whatthehellsecurity.files.wordpress.com/2009/10/tower1.jpg?w=300" medium="image">
			<media:title type="html">Hypertext Sand</media:title>
		</media:content>
	</item>
		<item>
		<title>What The Hell?  The Web Isn&#8217;t Supposed To Be Secure!</title>
		<link>http://whatthehellsecurity.com/2009/09/28/what-the-hell-the-web-isnt-supposed-to-be-secure/</link>
		<comments>http://whatthehellsecurity.com/2009/09/28/what-the-hell-the-web-isnt-supposed-to-be-secure/#comments</comments>
		<pubDate>Tue, 29 Sep 2009 07:47:46 +0000</pubDate>
		<dc:creator>hell if i know</dc:creator>
				<category><![CDATA[fraud]]></category>
		<category><![CDATA[hypertext]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://whatthehellsecurity.wordpress.com/?p=351</guid>
		<description><![CDATA[Copyright © 2009 What The Hell? Security There&#8217;s a really good reason that Web security is such a pain. It&#8217;s not supposed to be secure. Sorry to break it to you, but hypertext was thirty years old before we decided to use the Web as a platform for commerce.  That&#8217;s, what, three years longer than [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=whatthehellsecurity.com&amp;blog=8356378&amp;post=351&amp;subd=whatthehellsecurity&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://whatthehellsecurity.com/2009/09/28/what-the-hell-the-web-isnt-supposed-to-be-secure/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">ljh</media:title>
		</media:content>

		<media:content url="http://whatthehellsecurity.files.wordpress.com/2009/09/psychoanalyze-pinhead3.png" medium="image">
			<media:title type="html">psychoanalyze-pinhead</media:title>
		</media:content>
	</item>
		<item>
		<title>What The Hell?  A Certified Webform!</title>
		<link>http://whatthehellsecurity.com/2009/07/20/what-the-hell-a-certified-webform/</link>
		<comments>http://whatthehellsecurity.com/2009/07/20/what-the-hell-a-certified-webform/#comments</comments>
		<pubDate>Tue, 21 Jul 2009 02:32:46 +0000</pubDate>
		<dc:creator>hell if i know</dc:creator>
				<category><![CDATA[hypertext]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security soapbox]]></category>
		<category><![CDATA[ssl]]></category>

		<guid isPermaLink="false">http://whatthehellsecurity.wordpress.com/?p=408</guid>
		<description><![CDATA[Copyright © 2009 What The Hell? Security Assume for a moment that you are a legitimate business entity called Example.com.  By legitimate I mean you have been vetted in a way that demonstrates you qualify for an Extended Validation SSL (EV-SSL) certificate, whether or not you actually own one or even want to.  You publish [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=whatthehellsecurity.com&amp;blog=8356378&amp;post=408&amp;subd=whatthehellsecurity&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://whatthehellsecurity.com/2009/07/20/what-the-hell-a-certified-webform/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">ljh</media:title>
		</media:content>

		<media:content url="http://whatthehellsecurity.files.wordpress.com/2009/07/eee-vee-ssl2.png?w=300" medium="image">
			<media:title type="html">eee-vee-ssl</media:title>
		</media:content>
	</item>
		<item>
		<title>What The Hell?  Phishing &amp; Malware: It&#8217;s The Clicks Stupid!</title>
		<link>http://whatthehellsecurity.com/2009/07/06/what-the-hell-phishing-and-malware-its-the-clicks-stupid/</link>
		<comments>http://whatthehellsecurity.com/2009/07/06/what-the-hell-phishing-and-malware-its-the-clicks-stupid/#comments</comments>
		<pubDate>Mon, 06 Jul 2009 23:26:09 +0000</pubDate>
		<dc:creator>hell if i know</dc:creator>
				<category><![CDATA[fraud]]></category>
		<category><![CDATA[hypertext]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://whatthehellsecurity.wordpress.com/?p=177</guid>
		<description><![CDATA[Copyright © 2009 What The Hell? Security Q: What do phishing and drive-by malware have in common? A: They&#8217;re both irrelevant before you click. Simple, isn&#8217;t it?  Eh, not so much. If it were simple, there&#8217;d be an accurate way to anticipate the result of clicking.  On links and &#8220;Submit&#8221; buttons I mean. Yeah, I [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=whatthehellsecurity.com&amp;blog=8356378&amp;post=177&amp;subd=whatthehellsecurity&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://whatthehellsecurity.com/2009/07/06/what-the-hell-phishing-and-malware-its-the-clicks-stupid/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">ljh</media:title>
		</media:content>
	</item>
	</channel>
</rss>
