<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:trackback="http://madskills.com/public/xml/rss/module/trackback/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/"><channel><title>信息安全专栏 -- 褚诚云</title><link /><description>希望能在这里和大家交流讨论信息安全领域的技术。</description><dc:language>zh-CN</dc:language><lastUpdateTime>Fri, 04 Jul 2008 08:09:00 GMT</lastUpdateTime><ttl>60</ttl><item><dc:creator>褚诚云</dc:creator><title>如何评测软件系统的安全性</title><link>http://blog.csdn.net/chengyun_chu/archive/2008/07/04/2610150.aspx</link><pubDate>Fri, 04 Jul 2008 07:58:00 GMT</pubDate><guid>http://blog.csdn.net/chengyun_chu/archive/2008/07/04/2610150.aspx</guid><wfw:comment>comments/2610150.aspx</wfw:comment><comments>http://blog.csdn.net/chengyun_chu/archive/2008/07/04/2610150.aspx#Feedback</comments><slash:comments>0</slash:comments><wfw:commentRss>comments/commentRss/2610150.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=2610150</trackback:ping><description>如何评测一个软件系统的安全性&lt;img src ="aggbug/2610150.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>褚诚云</dc:creator><title>CNCERT在FIRST会议关于国内PC被攻击的数据</title><link>http://blog.csdn.net/chengyun_chu/archive/2008/06/27/2590529.aspx</link><pubDate>Fri, 27 Jun 2008 05:52:00 GMT</pubDate><guid>http://blog.csdn.net/chengyun_chu/archive/2008/06/27/2590529.aspx</guid><wfw:comment>comments/2590529.aspx</wfw:comment><comments>http://blog.csdn.net/chengyun_chu/archive/2008/06/27/2590529.aspx#Feedback</comments><slash:comments>1</slash:comments><wfw:commentRss>comments/commentRss/2590529.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=2590529</trackback:ping><description>CNCERT在第20届FIRST会议上关于国内PC被攻击的数据&lt;img src ="aggbug/2590529.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>褚诚云</dc:creator><title>阻止网页挂马的若干工具</title><link>http://blog.csdn.net/chengyun_chu/archive/2008/06/25/2584123.aspx</link><pubDate>Wed, 25 Jun 2008 07:12:00 GMT</pubDate><guid>http://blog.csdn.net/chengyun_chu/archive/2008/06/25/2584123.aspx</guid><wfw:comment>comments/2584123.aspx</wfw:comment><comments>http://blog.csdn.net/chengyun_chu/archive/2008/06/25/2584123.aspx#Feedback</comments><slash:comments>9</slash:comments><wfw:commentRss>comments/commentRss/2584123.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=2584123</trackback:ping><description>网站被挂马的常见原因是SQL注入攻击。有若干有效的工具可以对抗SQL注入攻击：微软SQL注入攻击源码扫描器，惠普的 Scrawlr工具，微软的URLScan。&lt;img src ="aggbug/2584123.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>褚诚云</dc:creator><title>5月份的大规模SQL注入攻击</title><link>http://blog.csdn.net/chengyun_chu/archive/2008/06/24/2582038.aspx</link><pubDate>Tue, 24 Jun 2008 14:28:00 GMT</pubDate><guid>http://blog.csdn.net/chengyun_chu/archive/2008/06/24/2582038.aspx</guid><wfw:comment>comments/2582038.aspx</wfw:comment><comments>http://blog.csdn.net/chengyun_chu/archive/2008/06/24/2582038.aspx#Feedback</comments><slash:comments>0</slash:comments><wfw:commentRss>comments/commentRss/2582038.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=2582038</trackback:ping><description>今年的五月份，国内爆发了一次大规模的网页攻击活动&lt;img src ="aggbug/2582038.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>褚诚云</dc:creator><title>2008腾讯安全峰会有感</title><link>http://blog.csdn.net/chengyun_chu/archive/2008/04/19/2307083.aspx</link><pubDate>Sat, 19 Apr 2008 14:35:00 GMT</pubDate><guid>http://blog.csdn.net/chengyun_chu/archive/2008/04/19/2307083.aspx</guid><wfw:comment>comments/2307083.aspx</wfw:comment><comments>http://blog.csdn.net/chengyun_chu/archive/2008/04/19/2307083.aspx#Feedback</comments><slash:comments>0</slash:comments><wfw:commentRss>comments/commentRss/2307083.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=2307083</trackback:ping><description>三月份参加腾讯公司举办的安全峰会的一点感想。&lt;img src ="aggbug/2307083.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>褚诚云</dc:creator><title>Windows Server 2008 安全指南</title><link>http://blog.csdn.net/chengyun_chu/archive/2008/03/08/2157940.aspx</link><pubDate>Sat, 08 Mar 2008 09:24:00 GMT</pubDate><guid>http://blog.csdn.net/chengyun_chu/archive/2008/03/08/2157940.aspx</guid><wfw:comment>comments/2157940.aspx</wfw:comment><comments>http://blog.csdn.net/chengyun_chu/archive/2008/03/08/2157940.aspx#Feedback</comments><slash:comments>0</slash:comments><wfw:commentRss>comments/commentRss/2157940.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=2157940</trackback:ping><description>Windows Server 2008 安全指南发布&lt;img src ="aggbug/2157940.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>褚诚云</dc:creator><title>冷空气和硬盘加密</title><link>http://blog.csdn.net/chengyun_chu/archive/2008/02/29/2132271.aspx</link><pubDate>Fri, 29 Feb 2008 09:54:00 GMT</pubDate><guid>http://blog.csdn.net/chengyun_chu/archive/2008/02/29/2132271.aspx</guid><wfw:comment>comments/2132271.aspx</wfw:comment><comments>http://blog.csdn.net/chengyun_chu/archive/2008/02/29/2132271.aspx#Feedback</comments><slash:comments>0</slash:comments><wfw:commentRss>comments/commentRss/2132271.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=2132271</trackback:ping><description>你也许觉得这是风马牛不相及的两件事情。理解，我也一直这么认为，直到我前几天读了来自普林斯顿大学的这个报告。&lt;img src ="aggbug/2132271.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>褚诚云</dc:creator><title>为什么有这么多的恶意软件来自中国？</title><link>http://blog.csdn.net/chengyun_chu/archive/2008/02/23/2114580.aspx</link><pubDate>Sat, 23 Feb 2008 04:18:00 GMT</pubDate><guid>http://blog.csdn.net/chengyun_chu/archive/2008/02/23/2114580.aspx</guid><wfw:comment>comments/2114580.aspx</wfw:comment><comments>http://blog.csdn.net/chengyun_chu/archive/2008/02/23/2114580.aspx#Feedback</comments><slash:comments>0</slash:comments><wfw:commentRss>comments/commentRss/2114580.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=2114580</trackback:ping><description>全球10大恶意软件发源地：　　1. 俄罗斯：27.89%　　2. 中国： 26.52%&lt;img src ="aggbug/2114580.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>褚诚云</dc:creator><title>Google的最新安全报告</title><link>http://blog.csdn.net/chengyun_chu/archive/2008/02/22/2112375.aspx</link><pubDate>Fri, 22 Feb 2008 09:38:00 GMT</pubDate><guid>http://blog.csdn.net/chengyun_chu/archive/2008/02/22/2112375.aspx</guid><wfw:comment>comments/2112375.aspx</wfw:comment><comments>http://blog.csdn.net/chengyun_chu/archive/2008/02/22/2112375.aspx#Feedback</comments><slash:comments>3</slash:comments><wfw:commentRss>comments/commentRss/2112375.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=2112375</trackback:ping><description>Google的安全博客站点上发布了一份有关Internet安全的技术报告&lt;img src ="aggbug/2112375.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>褚诚云</dc:creator><title>安全：20年最大的技术失败？</title><link>http://blog.csdn.net/chengyun_chu/archive/2008/01/23/2061176.aspx</link><pubDate>Wed, 23 Jan 2008 14:04:00 GMT</pubDate><guid>http://blog.csdn.net/chengyun_chu/archive/2008/01/23/2061176.aspx</guid><wfw:comment>comments/2061176.aspx</wfw:comment><comments>http://blog.csdn.net/chengyun_chu/archive/2008/01/23/2061176.aspx#Feedback</comments><slash:comments>0</slash:comments><wfw:commentRss>comments/commentRss/2061176.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=2061176</trackback:ping><description>Infoworld上评出20年来25个最大的技术失败。其中，排名第一位的是安全？&lt;img src ="aggbug/2061176.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>褚诚云</dc:creator><title>微软SWI关于安全漏洞研究的博客站点</title><link>http://blog.csdn.net/chengyun_chu/archive/2008/01/01/2007420.aspx</link><pubDate>Tue, 01 Jan 2008 07:10:00 GMT</pubDate><guid>http://blog.csdn.net/chengyun_chu/archive/2008/01/01/2007420.aspx</guid><wfw:comment>comments/2007420.aspx</wfw:comment><comments>http://blog.csdn.net/chengyun_chu/archive/2008/01/01/2007420.aspx#Feedback</comments><slash:comments>0</slash:comments><wfw:commentRss>comments/commentRss/2007420.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=2007420</trackback:ping><description>微软SWI关于安全漏洞研究的博客站点&lt;img src ="aggbug/2007420.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>褚诚云</dc:creator><title>安全编码实践一：GS编译选项和缓存溢出</title><link>http://blog.csdn.net/chengyun_chu/archive/2007/12/16/1942172.aspx</link><pubDate>Sun, 16 Dec 2007 16:57:00 GMT</pubDate><guid>http://blog.csdn.net/chengyun_chu/archive/2007/12/16/1942172.aspx</guid><wfw:comment>comments/1942172.aspx</wfw:comment><comments>http://blog.csdn.net/chengyun_chu/archive/2007/12/16/1942172.aspx#Feedback</comments><slash:comments>0</slash:comments><wfw:commentRss>comments/commentRss/1942172.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=1942172</trackback:ping><description>在微软的安全开发周期模型中，专门在安全编码实践中推荐：对于微软的最新C/C++编译器，使用GS选项编译选项，加入检测函数堆栈缓存溢出错误额外代码。那么，GS编译选项的内部原理是什么？它是如何检测函数的堆栈缓存溢出？如何使用？本文将会深入探讨这些问题。&lt;img src ="aggbug/1942172.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>褚诚云</dc:creator><title>2007年10个最不安全的应用软件 </title><link>http://blog.csdn.net/chengyun_chu/archive/2007/11/13/1881718.aspx</link><pubDate>Tue, 13 Nov 2007 10:33:00 GMT</pubDate><guid>http://blog.csdn.net/chengyun_chu/archive/2007/11/13/1881718.aspx</guid><wfw:comment>comments/1881718.aspx</wfw:comment><comments>http://blog.csdn.net/chengyun_chu/archive/2007/11/13/1881718.aspx#Feedback</comments><slash:comments>0</slash:comments><wfw:commentRss>comments/commentRss/1881718.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=1881718</trackback:ping><description>2007年10个最不安全的应用软件 &lt;img src ="aggbug/1881718.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>褚诚云</dc:creator><title>北京TechED 2007见闻一</title><link>http://blog.csdn.net/chengyun_chu/archive/2007/11/09/1875548.aspx</link><pubDate>Fri, 09 Nov 2007 10:00:00 GMT</pubDate><guid>http://blog.csdn.net/chengyun_chu/archive/2007/11/09/1875548.aspx</guid><wfw:comment>comments/1875548.aspx</wfw:comment><comments>http://blog.csdn.net/chengyun_chu/archive/2007/11/09/1875548.aspx#Feedback</comments><slash:comments>2</slash:comments><wfw:commentRss>comments/commentRss/1875548.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=1875548</trackback:ping><description>北京TechED 2007见闻一，软件+服务？&lt;img src ="aggbug/1875548.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>褚诚云</dc:creator><title>安全漏洞和安全软件开发讲座</title><link>http://blog.csdn.net/chengyun_chu/archive/2007/11/04/1866032.aspx</link><pubDate>Sun, 04 Nov 2007 13:57:00 GMT</pubDate><guid>http://blog.csdn.net/chengyun_chu/archive/2007/11/04/1866032.aspx</guid><wfw:comment>comments/1866032.aspx</wfw:comment><comments>http://blog.csdn.net/chengyun_chu/archive/2007/11/04/1866032.aspx#Feedback</comments><slash:comments>0</slash:comments><wfw:commentRss>comments/commentRss/1866032.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=1866032</trackback:ping><description>这是我下周参加微软北京教育大会的讲座。&lt;img src ="aggbug/1866032.aspx" width = "1" height = "1" /&gt;</description></item></channel></rss>