<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: The xiaobaishan bomb is now the flyzhu.9966 bomb.</title>
	<atom:link href="http://www.rumblepup.com/the-xiaobaishan-bomb-is-now-the-flyzhu-bomb/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.rumblepup.com/the-xiaobaishan-bomb-is-now-the-flyzhu-bomb/</link>
	<description>I&#039;m not a player, I just crush alot</description>
	<lastBuildDate>Wed, 28 Jul 2010 07:30:10 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: ADAC</title>
		<link>http://www.rumblepup.com/the-xiaobaishan-bomb-is-now-the-flyzhu-bomb/comment-page-1/#comment-37</link>
		<dc:creator>ADAC</dc:creator>
		<pubDate>Fri, 06 Jun 2008 16:52:49 +0000</pubDate>
		<guid isPermaLink="false">http://www.rumblepup.com/?p=31#comment-37</guid>
		<description>He got to me through some old asp code. A login that had no validation. Could have been a lot worse, I lost a little data but for the most part he just appended my data.</description>
		<content:encoded><![CDATA[<p>He got to me through some old asp code. A login that had no validation. Could have been a lot worse, I lost a little data but for the most part he just appended my data.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: rumblepup</title>
		<link>http://www.rumblepup.com/the-xiaobaishan-bomb-is-now-the-flyzhu-bomb/comment-page-1/#comment-36</link>
		<dc:creator>rumblepup</dc:creator>
		<pubDate>Fri, 06 Jun 2008 15:49:41 +0000</pubDate>
		<guid isPermaLink="false">http://www.rumblepup.com/?p=31#comment-36</guid>
		<description>@Mark - Well, yes and no.  There is a patch for the Windows Media File problem, that&#039;s part of regular updates.  But if these types of vulnerabilities &quot;might&quot; be part of the problem, I for one want every update available.</description>
		<content:encoded><![CDATA[<p>@Mark &#8211; Well, yes and no.  There is a patch for the Windows Media File problem, that&#8217;s part of regular updates.  But if these types of vulnerabilities &#8220;might&#8221; be part of the problem, I for one want every update available.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: mark</title>
		<link>http://www.rumblepup.com/the-xiaobaishan-bomb-is-now-the-flyzhu-bomb/comment-page-1/#comment-35</link>
		<dc:creator>mark</dc:creator>
		<pubDate>Fri, 06 Jun 2008 13:48:18 +0000</pubDate>
		<guid isPermaLink="false">http://www.rumblepup.com/?p=31#comment-35</guid>
		<description>so there is no patch ... figured that ...</description>
		<content:encoded><![CDATA[<p>so there is no patch &#8230; figured that &#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Russ</title>
		<link>http://www.rumblepup.com/the-xiaobaishan-bomb-is-now-the-flyzhu-bomb/comment-page-1/#comment-34</link>
		<dc:creator>Russ</dc:creator>
		<pubDate>Fri, 06 Jun 2008 12:56:48 +0000</pubDate>
		<guid isPermaLink="false">http://www.rumblepup.com/?p=31#comment-34</guid>
		<description>I have a dedicated server which is up to date, which didn&#039;t make sense why I would be missing a patch. I found a blog from Microsoft stating that there was no problem which required patching.

Upon further inspection, I found a page on my site that was susceptible to sql injection through the query string. With writing simple validation, I have been problem free for 24 hours. You can also try to look into SQL Triggers to help with this issue:
http://www.sqlteam.com/article/an-introduction-to-triggers-part-i</description>
		<content:encoded><![CDATA[<p>I have a dedicated server which is up to date, which didn&#8217;t make sense why I would be missing a patch. I found a blog from Microsoft stating that there was no problem which required patching.</p>
<p>Upon further inspection, I found a page on my site that was susceptible to sql injection through the query string. With writing simple validation, I have been problem free for 24 hours. You can also try to look into SQL Triggers to help with this issue:<br />
<a href="http://www.sqlteam.com/article/an-introduction-to-triggers-part-i" rel="nofollow">http://www.sqlteam.com/article/an-introduction-to-triggers-part-i</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: rumblepup</title>
		<link>http://www.rumblepup.com/the-xiaobaishan-bomb-is-now-the-flyzhu-bomb/comment-page-1/#comment-33</link>
		<dc:creator>rumblepup</dc:creator>
		<pubDate>Fri, 06 Jun 2008 01:06:32 +0000</pubDate>
		<guid isPermaLink="false">http://www.rumblepup.com/?p=31#comment-33</guid>
		<description>@Mark - They are part of the regular Windows Updates you server should be running.

@GFN - If your talking about your database, your too late, your going to have to recover the data and do some serious patching.

@Russ - See Mark

@Krystal - See Mark

I did find some useful stuff.  I&#039;ll post a link up with the update.</description>
		<content:encoded><![CDATA[<p>@Mark &#8211; They are part of the regular Windows Updates you server should be running.</p>
<p>@GFN &#8211; If your talking about your database, your too late, your going to have to recover the data and do some serious patching.</p>
<p>@Russ &#8211; See Mark</p>
<p>@Krystal &#8211; See Mark</p>
<p>I did find some useful stuff.  I&#8217;ll post a link up with the update.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Krystal</title>
		<link>http://www.rumblepup.com/the-xiaobaishan-bomb-is-now-the-flyzhu-bomb/comment-page-1/#comment-32</link>
		<dc:creator>Krystal</dc:creator>
		<pubDate>Thu, 05 Jun 2008 17:27:53 +0000</pubDate>
		<guid isPermaLink="false">http://www.rumblepup.com/?p=31#comment-32</guid>
		<description>Can you post a link to this patch? One of our sites was affected by this and I did a search but cant seem to find the patch. We have automatic updates turned on but still got hacked. Thanks!</description>
		<content:encoded><![CDATA[<p>Can you post a link to this patch? One of our sites was affected by this and I did a search but cant seem to find the patch. We have automatic updates turned on but still got hacked. Thanks!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Russ</title>
		<link>http://www.rumblepup.com/the-xiaobaishan-bomb-is-now-the-flyzhu-bomb/comment-page-1/#comment-31</link>
		<dc:creator>Russ</dc:creator>
		<pubDate>Thu, 05 Jun 2008 12:46:59 +0000</pubDate>
		<guid isPermaLink="false">http://www.rumblepup.com/?p=31#comment-31</guid>
		<description>Would you happen to have more details on tha patch from Microsoft? I can&#039;t seem to find it. Thanks.</description>
		<content:encoded><![CDATA[<p>Would you happen to have more details on tha patch from Microsoft? I can&#8217;t seem to find it. Thanks.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: GFN</title>
		<link>http://www.rumblepup.com/the-xiaobaishan-bomb-is-now-the-flyzhu-bomb/comment-page-1/#comment-30</link>
		<dc:creator>GFN</dc:creator>
		<pubDate>Thu, 05 Jun 2008 05:47:52 +0000</pubDate>
		<guid isPermaLink="false">http://www.rumblepup.com/?p=31#comment-30</guid>
		<description>Does anyone know how to fix this? I have installed everything from Windows Update but it didint help. Update was done obviously too late :(</description>
		<content:encoded><![CDATA[<p>Does anyone know how to fix this? I have installed everything from Windows Update but it didint help. Update was done obviously too late <img src='http://www.rumblepup.com/wp-includes/images/smilies/icon_sad.gif' alt=':(' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mark</title>
		<link>http://www.rumblepup.com/the-xiaobaishan-bomb-is-now-the-flyzhu-bomb/comment-page-1/#comment-29</link>
		<dc:creator>Mark</dc:creator>
		<pubDate>Wed, 04 Jun 2008 20:24:57 +0000</pubDate>
		<guid isPermaLink="false">http://www.rumblepup.com/?p=31#comment-29</guid>
		<description>You know which patch ?</description>
		<content:encoded><![CDATA[<p>You know which patch ?</p>
]]></content:encoded>
	</item>
</channel>
</rss>
