snellspace.com; Feed Security
If you are an enterprise considering deployment of RSS technology, this post might point you to some test suites to assess vendor security:
Feed Security
Ok, so it’s been about a month I guess since I started talking about scripting exploits in feeds. I put together a whole bunch of Atom test cases based on an initial set of RSS tests produced by James Holderness. Several Feed Reader developers took those tests and plugged holes in their implementations. Now that implementors have had plenty of time to review the tests and check to see if they’re vulnerable, it’s time to start talking a bit about what those specific vulnerabilities are.

Comments