<?xml version="1.0" encoding="utf-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Plone and Zope Security</title>
	<atom:link href="http://jstahl.org/archives/2006/07/22/plone-and-zope-security/feed/" rel="self" type="application/rss+xml" />
	<link>http://jstahl.org/archives/2006/07/22/plone-and-zope-security/</link>
	<description>Politics, the environment, technology, activism. And stuff.</description>
	<lastBuildDate>Tue, 09 Mar 2010 13:40:40 -0800</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: dudeWithACar</title>
		<link>http://jstahl.org/archives/2006/07/22/plone-and-zope-security/comment-page-1/#comment-334746</link>
		<dc:creator>dudeWithACar</dc:creator>
		<pubDate>Tue, 17 Jul 2007 01:25:27 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.onenw.org/jon/archives/2006/07/22/plone-and-zope-security/#comment-334746</guid>
		<description>&lt;p&gt;I know of one  security breach of a zope server.  And actually, it was just a case of leaving the door wide open.
It was in production(though probably shouldn&#039;t have been).
What had happened was they used an installer where the username:password combo was  admin:admin and the attacker either guessed or used a dictionary and then defaced the site.&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>I know of one  security breach of a zope server.  And actually, it was just a case of leaving the door wide open.<br />
It was in production(though probably shouldn&#8217;t have been).<br />
What had happened was they used an installer where the username:password combo was  admin:admin and the attacker either guessed or used a dictionary and then defaced the site.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jon Stahl&#8217;s Journal &#187; Blog Archive &#187; Open Source CMS Security, Part II</title>
		<link>http://jstahl.org/archives/2006/07/22/plone-and-zope-security/comment-page-1/#comment-197476</link>
		<dc:creator>Jon Stahl&#8217;s Journal &#187; Blog Archive &#187; Open Source CMS Security, Part II</dc:creator>
		<pubDate>Sun, 18 Feb 2007 08:17:52 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.onenw.org/jon/archives/2006/07/22/plone-and-zope-security/#comment-197476</guid>
		<description>&lt;p&gt;[...] Last summer, I did a quick count of the number of known security vulnerabilities in common open-source CMS products, and their underlying software stacks. The results were rather eye-opening. [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] Last summer, I did a quick count of the number of known security vulnerabilities in common open-source CMS products, and their underlying software stacks. The results were rather eye-opening. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jon Stahl</title>
		<link>http://jstahl.org/archives/2006/07/22/plone-and-zope-security/comment-page-1/#comment-88040</link>
		<dc:creator>Jon Stahl</dc:creator>
		<pubDate>Tue, 25 Jul 2006 21:33:25 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.onenw.org/jon/archives/2006/07/22/plone-and-zope-security/#comment-88040</guid>
		<description>&lt;p&gt;Fixed, thanks, Skeeter.&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Fixed, thanks, Skeeter.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: skeeter</title>
		<link>http://jstahl.org/archives/2006/07/22/plone-and-zope-security/comment-page-1/#comment-87995</link>
		<dc:creator>skeeter</dc:creator>
		<pubDate>Tue, 25 Jul 2006 16:55:54 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.onenw.org/jon/archives/2006/07/22/plone-and-zope-security/#comment-87995</guid>
		<description>&lt;p&gt;Though Zope/Plone are doing well with security, apparently my older Quills blog is not doing so well with posting trackbacks.... ;o)&lt;/p&gt;

&lt;p&gt;Since I logged in with https, the trackback used an https link...&lt;/p&gt;

&lt;p&gt;Here&#039;s a link that should work....&lt;/p&gt;

&lt;p&gt;http://castlemurphy.com/blog/archive/2006/07/25/plone-and-zope-security&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Though Zope/Plone are doing well with security, apparently my older Quills blog is not doing so well with posting trackbacks&#8230;. ;o)</p>
<p>Since I logged in with https, the trackback used an https link&#8230;</p>
<p>Here&#8217;s a link that should work&#8230;.</p>
<p><a href="http://castlemurphy.com/blog/archive/2006/07/25/plone-and-zope-security" rel="nofollow">http://castlemurphy.com/blog/archive/2006/07/25/plone-and-zope-security</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jon Stahl</title>
		<link>http://jstahl.org/archives/2006/07/22/plone-and-zope-security/comment-page-1/#comment-87892</link>
		<dc:creator>Jon Stahl</dc:creator>
		<pubDate>Tue, 25 Jul 2006 06:39:20 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.onenw.org/jon/archives/2006/07/22/plone-and-zope-security/#comment-87892</guid>
		<description>&lt;p&gt;Fascinating.... thanks for sharing, Skeeter.&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Fascinating&#8230;. thanks for sharing, Skeeter.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: blog</title>
		<link>http://jstahl.org/archives/2006/07/22/plone-and-zope-security/comment-page-1/#comment-87876</link>
		<dc:creator>blog</dc:creator>
		<pubDate>Tue, 25 Jul 2006 04:53:50 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.onenw.org/jon/archives/2006/07/22/plone-and-zope-security/#comment-87876</guid>
		<description>&lt;p&gt;&lt;strong&gt;Plone and Zope Security&lt;/strong&gt;&lt;/p&gt;

&lt;p&gt;My resonse to Jon Stahl&#039;s post of the same title. I count Nessus Plugins and come up with about the same stats. Short version, Zope and Plone are doing well regarding security.&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p><strong>Plone and Zope Security</strong></p>
<p>My resonse to Jon Stahl&#8217;s post of the same title. I count Nessus Plugins and come up with about the same stats. Short version, Zope and Plone are doing well regarding security.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
