<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xml:base="http://connect.educause.edu" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd">
<channel>
 <title>EDUCAUSE | Contributed by Organizations or Campuses; Articles, Papers, and Reports; and Network Vulnerability Assessment</title>
 <link>http://connect.educause.edu/browse/content/lib_item/4928,4973,263</link>
 <image>
    <title>EDUCAUSE CONNECT</title> 
    <link>http://connect.educause.edu/browse/content/lib_item/4928,4973,263</link> 
    <url>http://connect.educause.edu/educause/images/e_rss.png</url> 
 </image>

  <itunes:subtitle>events, concepts, and conversation from EDUCAUSE</itunes:subtitle>
  <itunes:author>The EDUCAUSE Podcast Crew</itunes:author>
  <itunes:summary>EDUCAUSE is a nonprofit association whose mission is to advance higher education by promoting the intelligent use of information technology.  Our podcasts provide information about a range of topics including Leadership, Policy and Law, Teaching and Learning, Emerging Technologies, Open Source, Research Computing, Cyberinfrastructure, and Digitial Libraries. </itunes:summary>
  <itunes:new-feed-url>http://connect.educause.edu/browse/content/node/691/list/feed</itunes:new-feed-url>
  <itunes:image href="http://connect.educause.edu/educause/images/e_rss.png" />
  <itunes:category text="Education">
  	<itunes:category text="Education Technology"/>
  	<itunes:category text="Higher Education"/>
  </itunes:category>
  <itunes:category text="Technology">
  	<itunes:category text="Tech News"/>
  </itunes:category>

 <description>Recent library resources tagged with Contributed by Organizations or Campuses; Articles, Papers, and Reports; and Network Vulnerability Assessment.</description>
 <language>en</language>

<item>
 <title>Unauthenticated Authentication: Null Bytes and the Affect on Web-based</title>
 <link>http://connect.educause.edu/display/37129</link>
 <description>This paper describes a vulnerability that may affect web-based applications that insecurely implement LDAP simple binds for the authentication of users. Web-based applications that fail to properly sanitize a user-submitted username and password may be vulnerable. Successful exploitation may allow for a remote anonymous user to authenticate to the web-based application as any existing user. The exploits described in this paper are most closely related to the Poison NULL byte attacks described in 1999 by Rain Forest Puppy, although utilized for a new purpose [1].</description>
 <comments>http://connect.educause.edu/display/37129#comments</comments>
 <enclosure url="http://www.educause.edu/ir/library/pdf/CSD4875.pdf" length="" type="application/pdf" />
 <category domain="http://connect.educause.edu/tag/Authentication/456">Authentication</category>
 <category domain="http://connect.educause.edu/tag/LDAP/1968">LDAP</category>
 <category domain="http://connect.educause.edu/tag/Network+Security+and+Applications/632">Network Security and Applications</category>
 <category domain="http://connect.educause.edu/tag/Network+Vulnerability+Assessment/263">Network Vulnerability Assessment</category>
 <category domain="http://connect.educause.edu/tag/Vulnerability+Scanning/471">Vulnerability Scanning</category>
 <category domain="http://connect.educause.edu/tag/Contributed+by+Organizations+or+Campuses/4928">Contributed by Organizations or Campuses</category>
 <category domain="http://connect.educause.edu/tag/Articles%2C+Papers%2C+and+Reports/4973">Articles, Papers, and Reports</category>
 <category domain="http://connect.educause.edu/tag/PDF/4965">PDF</category>
 <pubDate>Tue, 20 Mar 2007 10:55:27 -0500</pubDate>
 <dc:creator>drupal</dc:creator>
 <guid isPermaLink="false">37129 at http://connect.educause.edu</guid>
</item>
<item>
 <title>Server hack at Georgetown University probed</title>
 <link>http://connect.educause.edu/display/36829</link>
 <description>Data on as many as 41,000 people may have been compromised.</description>
 <comments>http://connect.educause.edu/display/36829#comments</comments>
 <category domain="http://connect.educause.edu/tag/Data+Security/256">Data Security</category>
 <category domain="http://connect.educause.edu/tag/Identity+Management/474">Identity Management</category>
 <category domain="http://connect.educause.edu/tag/Identity+Theft/661">Identity Theft</category>
 <category domain="http://connect.educause.edu/tag/Network+Security+and+Applications/632">Network Security and Applications</category>
 <category domain="http://connect.educause.edu/tag/Network+Vulnerability+Assessment/263">Network Vulnerability Assessment</category>
 <category domain="http://connect.educause.edu/tag/Privacy/255">Privacy</category>
 <category domain="http://connect.educause.edu/tag/Security+Management/631">Security Management</category>
 <category domain="http://connect.educause.edu/tag/Security+Risk+Assessment+and+Analysis/261">Security Risk Assessment and Analysis</category>
 <category domain="http://connect.educause.edu/tag/Contributed+by+Organizations+or+Campuses/4928">Contributed by Organizations or Campuses</category>
 <category domain="http://connect.educause.edu/tag/Articles%2C+Papers%2C+and+Reports/4973">Articles, Papers, and Reports</category>
 <category domain="http://connect.educause.edu/tag/HTML/4960">HTML</category>
 <pubDate>Tue, 07 Mar 2006 14:06:17 -0600</pubDate>
 <dc:creator>drupal</dc:creator>
 <guid isPermaLink="false">36829 at http://connect.educause.edu</guid>
</item>
<item>
 <title>Vulnerability Database Opens</title>
 <link>http://connect.educause.edu/display/35626</link>
 <description>The Open Source Vulnerability Database (OSVDB), the work of a group of security industry volunteers, is an independent database aimed at logging all security vulnerabilities on the Internet. It has been in development since 2002, and just recently been opened for public use.</description>
 <comments>http://connect.educause.edu/display/35626#comments</comments>
 <category domain="http://connect.educause.edu/tag/Network+Security+and+Applications/632">Network Security and Applications</category>
 <category domain="http://connect.educause.edu/tag/Network+Vulnerability+Assessment/263">Network Vulnerability Assessment</category>
 <category domain="http://connect.educause.edu/tag/Vulnerability+Scanning/471">Vulnerability Scanning</category>
 <category domain="http://connect.educause.edu/tag/Contributed+by+Organizations+or+Campuses/4928">Contributed by Organizations or Campuses</category>
 <category domain="http://connect.educause.edu/tag/Articles%2C+Papers%2C+and+Reports/4973">Articles, Papers, and Reports</category>
 <category domain="http://connect.educause.edu/tag/HTML/4960">HTML</category>
 <pubDate>Wed, 21 Apr 2004 12:01:44 -0500</pubDate>
 <dc:creator>drupal</dc:creator>
 <guid isPermaLink="false">35626 at http://connect.educause.edu</guid>
</item>
</channel>
</rss>
