<?xml version="1.0" encoding="UTF-8"?> <rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:wfw="http://wellformedweb.org/CommentAPI/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
> <channel><title>Ravi Nataraju</title> <atom:link href="http://www.ravinataraju.com/feed/" rel="self" type="application/rss+xml" /><link>http://www.ravinataraju.com</link> <description>It&#039;s about now !!!</description> <lastBuildDate>Wed, 22 Feb 2012 17:42:50 +0000</lastBuildDate> <language>en</language> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <item><title>Tea &amp; Biscuit Dunking Guide</title><link>http://www.ravinataraju.com/2012/02/tea-biscuit-dunking-guide/</link> <comments>http://www.ravinataraju.com/2012/02/tea-biscuit-dunking-guide/#comments</comments> <pubDate>Wed, 22 Feb 2012 17:42:50 +0000</pubDate> <dc:creator>Ravi Nataraju</dc:creator> <category><![CDATA[Infographics]]></category> <guid
isPermaLink="false">http://www.ravinataraju.com/?p=641</guid> <description><![CDATA[Tea &#38; Biscuit Dunking Guide  Randy &#124; Wednesday, February 22, 2012 at 9:30AM The Tea and Biscuit infographic from Green Hat Design in the UK shows avid dunkers of biscuits the proper timing to keep their favorite snacks in the &#8230; <a
href="http://www.ravinataraju.com/2012/02/tea-biscuit-dunking-guide/">Continue reading <span
class="meta-nav">&#8594;</span></a>]]></description> <content:encoded><![CDATA[<p
style="text-align: center;">Tea &amp; Biscuit Dunking Guide  Randy | Wednesday, February 22, 2012 at 9:30AM<br
/> <a
href="http://www.coolinfographics.com/"><img
src='http://www.ravinataraju.com/wp-content/uploads/2012/02/TeaBiscuitGuide_4f393987594f1.jpg' alt='' /></a></p><p>The Tea and Biscuit infographic from Green Hat Design in the UK shows avid dunkers of biscuits the proper timing to keep their favorite snacks in the tea or coffee to conquer floppage and avoid the disappointment of contamination! Also available as a high-resolution PDF.</p><p>via <a
href="http://www.coolinfographics.com/">Cool Infographics &#8211; Blog</a>.</p> ]]></content:encoded> <wfw:commentRss>http://www.ravinataraju.com/2012/02/tea-biscuit-dunking-guide/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>The History of Marketing (An INFOGRAPHIC) &#124; The Fried Side</title><link>http://www.ravinataraju.com/2012/02/the-history-of-marketing-an-infographic-the-fried-side/</link> <comments>http://www.ravinataraju.com/2012/02/the-history-of-marketing-an-infographic-the-fried-side/#comments</comments> <pubDate>Wed, 15 Feb 2012 14:39:24 +0000</pubDate> <dc:creator>Ravi Nataraju</dc:creator> <category><![CDATA[Economics]]></category> <category><![CDATA[Social Media]]></category> <guid
isPermaLink="false">http://www.ravinataraju.com/?p=633</guid> <description><![CDATA[The History of Marketing (An INFOGRAPHIC) Posted on February 10, 2012 by Brad Friedman HubSpot has put together this great Infographic on the history of marketing. Take a look at how technology has changed the way marketers do their jobs, &#8230; <a
href="http://www.ravinataraju.com/2012/02/the-history-of-marketing-an-infographic-the-fried-side/">Continue reading <span
class="meta-nav">&#8594;</span></a>]]></description> <content:encoded><![CDATA[<p>The History of Marketing (An INFOGRAPHIC)</p><p>Posted on February 10, 2012 by Brad Friedman</p><p>HubSpot has put together this great Infographic on the history of marketing. Take a look at how technology has changed the way marketers do their jobs, how consumers have responded (not always so favorably).</p><p
style="text-align: center;"><a
href="http://friedmansocialmedia.com/blog/2012/02/10/the-history-of-marketing-an-infographic/"><img
src='http://www.ravinataraju.com/wp-content/uploads/2012/02/the-history-of-marketing-HUBSPOT-resized-600.png' alt='' /></a></p><p>via <a
href="http://friedmansocialmedia.com/blog/2012/02/10/the-history-of-marketing-an-infographic/">The History of Marketing (An INFOGRAPHIC) | The Fried Side</a>.</p> ]]></content:encoded> <wfw:commentRss>http://www.ravinataraju.com/2012/02/the-history-of-marketing-an-infographic-the-fried-side/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Plastic bottle carrier by ka-lai chan</title><link>http://www.ravinataraju.com/2012/02/plastic-bottle-carrier-by-ka-lai-chan/</link> <comments>http://www.ravinataraju.com/2012/02/plastic-bottle-carrier-by-ka-lai-chan/#comments</comments> <pubDate>Wed, 15 Feb 2012 14:08:50 +0000</pubDate> <dc:creator>Ravi Nataraju</dc:creator> <category><![CDATA[Design]]></category> <guid
isPermaLink="false">http://www.ravinataraju.com/?p=616</guid> <description><![CDATA[plastic bottle carrier by ka-lai chan &#8216;bottled&#8217; by ka-lai chan In certain cities, supermarkets are encouraging patrons to return their recyclable PET bottles by offering them a rebate. Tapping into this incentive and the hassle of having to carry a &#8230; <a
href="http://www.ravinataraju.com/2012/02/plastic-bottle-carrier-by-ka-lai-chan/">Continue reading <span
class="meta-nav">&#8594;</span></a>]]></description> <content:encoded><![CDATA[<p
style="text-align: center;"><a
href="http://www.designboom.com/weblog/cat/8/view/19256/plastic-bottle-carrier-by-ka-lai-chan.html"><img
src='http://www.ravinataraju.com/wp-content/uploads/2012/02/bottled01.jpg' alt='' /></a></p><p>plastic bottle carrier by ka-lai chan &#8216;bottled&#8217; by ka-lai chan</p><p>In certain cities, supermarkets are encouraging patrons to return their recyclable PET bottles by offering them a rebate.</p><p>Tapping into this incentive and the hassle of having to carry a large quantity of empty bottles, netherlands-based designer ka-lai chan has come up with &#8216;bottled&#8217;, a carrier which makes this task a lot easier and more efficient.</p><p>The flat rubber-like disk has a ten openings whereby one can easily slip the nozzles of the empty bottles through the holes.</p><p>the lightweight design has a built-in handle making it user-friendly to carry around, encouraging green behavior.</p><p>via <a
href="http://www.designboom.com/weblog/cat/8/view/19256/plastic-bottle-carrier-by-ka-lai-chan.html">plastic bottle carrier by ka-lai chan</a>.</p> ]]></content:encoded> <wfw:commentRss>http://www.ravinataraju.com/2012/02/plastic-bottle-carrier-by-ka-lai-chan/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>remove app deletes unwanted passersby from photos</title><link>http://www.ravinataraju.com/2012/02/remove-app-deletes-unwanted-passersby-from-photos/</link> <comments>http://www.ravinataraju.com/2012/02/remove-app-deletes-unwanted-passersby-from-photos/#comments</comments> <pubDate>Wed, 15 Feb 2012 14:06:54 +0000</pubDate> <dc:creator>Ravi Nataraju</dc:creator> <category><![CDATA[Photography]]></category> <guid
isPermaLink="false">http://www.ravinataraju.com/?p=607</guid> <description><![CDATA[remove app deletes unwanted passersby from photos &#8216;remove&#8217; app by scalado lets users remove unwanted objects from photos &#8216;remove&#8217;, a smartphone app developed by mobile imaging technology innovators scalado, automatically highlights and removes unwanted objects like cars or passersby from &#8230; <a
href="http://www.ravinataraju.com/2012/02/remove-app-deletes-unwanted-passersby-from-photos/">Continue reading <span
class="meta-nav">&#8594;</span></a>]]></description> <content:encoded><![CDATA[<p
style="text-align: center;"><a
href="http://www.designboom.com/weblog/cat/16/view/19279/remove-app-deletes-unwanted-passersby-from-photos.html"><img
src="http://www.ravinataraju.com/wp-content/uploads/2012/02/remove01.jpg" alt="" /></a></p><p>remove app deletes unwanted passersby from photos</p><p>&#8216;remove&#8217; app by scalado lets users remove unwanted objects from photos</p><p>&#8216;remove&#8217;, a smartphone app developed by mobile imaging technology innovators scalado, automatically highlights and removes unwanted objects like cars or passersby from a captured photo.</p><p>Upon pressing the shutter button, the app actually snaps multiple pictures in a row in order to assess the &#8216;real&#8217; background, without passersby. clicking &#8216;remove&#8217; automatically displays the composited shot without the objects that the app has detected to be removable; users may also toggle to another screen that allows them to handselect which details to remove or keep from each frame. users may also load and retweak previous captures at any time.</p><p>via <a
href="http://www.designboom.com/weblog/cat/16/view/19279/remove-app-deletes-unwanted-passersby-from-photos.html">remove app deletes unwanted passersby from photos</a>.</p> ]]></content:encoded> <wfw:commentRss>http://www.ravinataraju.com/2012/02/remove-app-deletes-unwanted-passersby-from-photos/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Bret Victor &#8211; Inventing on Principle on Vimeo</title><link>http://www.ravinataraju.com/2012/02/bret-victor-inventing-on-principle-on-vimeo/</link> <comments>http://www.ravinataraju.com/2012/02/bret-victor-inventing-on-principle-on-vimeo/#comments</comments> <pubDate>Wed, 15 Feb 2012 13:28:05 +0000</pubDate> <dc:creator>Ravi Nataraju</dc:creator> <category><![CDATA[Design]]></category> <guid
isPermaLink="false">http://www.ravinataraju.com/?p=602</guid> <description><![CDATA[Bret Victor &#8211; Inventing on Principle on Vimeo on Vimeo via Bret Victor &#8211; Inventing on Principle on Vimeo.]]></description> <content:encoded><![CDATA[<p><a
href="http://www.vimeo.com/36579366?pg=embed&amp;sec=36579366">Bret Victor &#8211; Inventing on Principle on Vimeo</a> on <a
href="http://vimeo.com?pg=embed&amp;sec=36579366">Vimeo</a><br
/> <object
width="400" height="225"><param
name="allowfullscreen" value="true" /><param
name="allowscriptaccess" value="always" /><param
name="movie" value="http://www.vimeo.com/moogaloop.swf?clip_id=36579366&amp;server=www.vimeo.com&amp;show_title=1&amp;show_byline=1&amp;show_portrait=0&amp;color=&amp;fullscreen=1" /><embed
src="http://www.vimeo.com/moogaloop.swf?clip_id=36579366&amp;server=www.vimeo.com&amp;show_title=1&amp;show_byline=1&amp;show_portrait=0&amp;color=&amp;fullscreen=1" type="application/x-shockwave-flash" allowfullscreen="true" allowscriptaccess="always" height="225" width="400" /></object><br
/> via <a
href="http://vimeo.com/36579366">Bret Victor &#8211; Inventing on Principle on Vimeo</a>.</p> ]]></content:encoded> <wfw:commentRss>http://www.ravinataraju.com/2012/02/bret-victor-inventing-on-principle-on-vimeo/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Mobility Security Puzzle</title><link>http://www.ravinataraju.com/2011/08/mobility-security-puzzle/</link> <comments>http://www.ravinataraju.com/2011/08/mobility-security-puzzle/#comments</comments> <pubDate>Mon, 29 Aug 2011 09:24:19 +0000</pubDate> <dc:creator>Ravi Nataraju</dc:creator> <category><![CDATA[Security]]></category> <category><![CDATA[Software]]></category> <category><![CDATA[Process]]></category> <guid
isPermaLink="false">http://www.ravinataraju.com/?p=585</guid> <description><![CDATA[Securing mobile devices in the enterprise is a hot button issue in today’s IT security world. Security luminary Joel Snyder, senior partner with Arizona-based consulting firm, Opus One advice on mobility security puzzle. Five Steps To Solving the Mobility Security &#8230; <a
href="http://www.ravinataraju.com/2011/08/mobility-security-puzzle/">Continue reading <span
class="meta-nav">&#8594;</span></a>]]></description> <content:encoded><![CDATA[<p>Securing mobile devices in the enterprise is a hot button issue in today’s IT security world. Security luminary Joel Snyder, senior partner with Arizona-based consulting firm, Opus One advice on mobility security puzzle.</p><p>Five Steps To Solving the Mobility Security Puzzle Policy by Joel Snyder</p><ol><li>Policy: Create a policy that covers the device life cycle, from selection to recovery.</li><li>Data in Motion: Data In Encrypt all data over cell and WiFi networks. Use VPN clients or application layer encryption.</li><li>Data at Rest: Data at Encrypt data stored on device. Manage cached data with 3rd party software and passwords.</li><li>Malware Protection: Malware Protect against malware with policy (Bluetooth, downloads) and technology (anti-malware SW).</li><li>Authentication: Require user authentication at points required for acceptable risk/aggravation.</li></ol><p>&nbsp;</p> ]]></content:encoded> <wfw:commentRss>http://www.ravinataraju.com/2011/08/mobility-security-puzzle/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>CWE/SANS Top 25 Most Dangerous Software Errors &#8211; For 2011</title><link>http://www.ravinataraju.com/2011/08/cwesans-top-25-most-dangerous-software-errors-for-2011/</link> <comments>http://www.ravinataraju.com/2011/08/cwesans-top-25-most-dangerous-software-errors-for-2011/#comments</comments> <pubDate>Sun, 21 Aug 2011 11:15:20 +0000</pubDate> <dc:creator>Ravi Nataraju</dc:creator> <category><![CDATA[Security]]></category> <category><![CDATA[Software]]></category> <category><![CDATA[Agile Security Methodology]]></category> <category><![CDATA[Code Review]]></category> <guid
isPermaLink="false">http://www.ravinataraju.com/?p=580</guid> <description><![CDATA[Listed below are the top 25 most dangerous software errors as compiled by CWE/SANS &#8211; Mitre.org Rank Score ID Name [1] 93.8 CWE-89 Improper Neutralization of Special Elements used in an SQL Command (&#8216;SQL Injection&#8217;) [2] 83.3 CWE-78 Improper Neutralization &#8230; <a
href="http://www.ravinataraju.com/2011/08/cwesans-top-25-most-dangerous-software-errors-for-2011/">Continue reading <span
class="meta-nav">&#8594;</span></a>]]></description> <content:encoded><![CDATA[<p>Listed below are the top 25 most dangerous software errors as compiled by CWE/SANS &#8211; Mitre.org</p><table
id="Detail" width="100%" border="2" cellspacing="2" cellpadding="2"><thead><tr><th>Rank</th><th>Score</th><th>ID</th><th>Name</th></tr></thead><tbody><tr><td><strong>[1]</strong></td><td>93.8</td><td><a
href="http://cwe.mitre.org/top25/#CWE-89">CWE-89</a></td><td>Improper Neutralization of Special Elements used in an SQL Command (&#8216;SQL Injection&#8217;)</td></tr><tr><td><strong>[2]</strong></td><td>83.3</td><td><a
href="http://cwe.mitre.org/top25/#CWE-78">CWE-78</a></td><td>Improper Neutralization of Special Elements used in an OS Command (&#8216;OS Command Injection&#8217;)</td></tr><tr><td><strong>[3]</strong></td><td>79.0</td><td><a
href="http://cwe.mitre.org/top25/#CWE-120">CWE-120</a></td><td>Buffer Copy without Checking Size of Input (&#8216;Classic Buffer Overflow&#8217;)</td></tr><tr><td><strong>[4]</strong></td><td>77.7</td><td><a
href="http://cwe.mitre.org/top25/#CWE-79">CWE-79</a></td><td>Improper Neutralization of Input During Web Page Generation (&#8216;Cross-site Scripting&#8217;)</td></tr><tr><td><strong>[5]</strong></td><td>76.9</td><td><a
href="http://cwe.mitre.org/top25/#CWE-306">CWE-306</a></td><td>Missing Authentication for Critical Function</td></tr><tr><td><strong>[6]</strong></td><td>76.8</td><td><a
href="http://cwe.mitre.org/top25/#CWE-862">CWE-862</a></td><td>Missing Authorization</td></tr><tr><td><strong>[7]</strong></td><td>75.0</td><td><a
href="http://cwe.mitre.org/top25/#CWE-798">CWE-798</a></td><td>Use of Hard-coded Credentials</td></tr><tr><td><strong>[8]</strong></td><td>75.0</td><td><a
href="http://cwe.mitre.org/top25/#CWE-311">CWE-311</a></td><td>Missing Encryption of Sensitive Data</td></tr><tr><td><strong>[9]</strong></td><td>74.0</td><td><a
href="http://cwe.mitre.org/top25/#CWE-434">CWE-434</a></td><td>Unrestricted Upload of File with Dangerous Type</td></tr><tr><td><strong>[10]</strong></td><td>73.8</td><td><a
href="http://cwe.mitre.org/top25/#CWE-807">CWE-807</a></td><td>Reliance on Untrusted Inputs in a Security Decision</td></tr><tr><td><strong>[11]</strong></td><td>73.1</td><td><a
href="http://cwe.mitre.org/top25/#CWE-250">CWE-250</a></td><td>Execution with Unnecessary Privileges</td></tr><tr><td><strong>[12]</strong></td><td>70.1</td><td><a
href="http://cwe.mitre.org/top25/#CWE-352">CWE-352</a></td><td>Cross-Site Request Forgery (CSRF)</td></tr><tr><td><strong>[13]</strong></td><td>69.3</td><td><a
href="http://cwe.mitre.org/top25/#CWE-22">CWE-22</a></td><td>Improper Limitation of a Pathname to a Restricted Directory (&#8216;Path Traversal&#8217;)</td></tr><tr><td><strong>[14]</strong></td><td>68.5</td><td><a
href="http://cwe.mitre.org/top25/#CWE-494">CWE-494</a></td><td>Download of Code Without Integrity Check</td></tr><tr><td><strong>[15]</strong></td><td>67.8</td><td><a
href="http://cwe.mitre.org/top25/#CWE-863">CWE-863</a></td><td>Incorrect Authorization</td></tr><tr><td><strong>[16]</strong></td><td>66.0</td><td><a
href="http://cwe.mitre.org/top25/#CWE-829">CWE-829</a></td><td>Inclusion of Functionality from Untrusted Control Sphere</td></tr><tr><td><strong>[17]</strong></td><td>65.5</td><td><a
href="http://cwe.mitre.org/top25/#CWE-732">CWE-732</a></td><td>Incorrect Permission Assignment for Critical Resource</td></tr><tr><td><strong>[18]</strong></td><td>64.6</td><td><a
href="http://cwe.mitre.org/top25/#CWE-676">CWE-676</a></td><td>Use of Potentially Dangerous Function</td></tr><tr><td><strong>[19]</strong></td><td>64.1</td><td><a
href="http://cwe.mitre.org/top25/#CWE-327">CWE-327</a></td><td>Use of a Broken or Risky Cryptographic Algorithm</td></tr><tr><td><strong>[20]</strong></td><td>62.4</td><td><a
href="http://cwe.mitre.org/top25/#CWE-131">CWE-131</a></td><td>Incorrect Calculation of Buffer Size</td></tr><tr><td><strong>[21]</strong></td><td>61.5</td><td><a
href="http://cwe.mitre.org/top25/#CWE-307">CWE-307</a></td><td>Improper Restriction of Excessive Authentication Attempts</td></tr><tr><td><strong>[22]</strong></td><td>61.1</td><td><a
href="http://cwe.mitre.org/top25/#CWE-601">CWE-601</a></td><td>URL Redirection to Untrusted Site (&#8216;Open Redirect&#8217;)</td></tr><tr><td><strong>[23]</strong></td><td>61.0</td><td><a
href="http://cwe.mitre.org/top25/#CWE-134">CWE-134</a></td><td>Uncontrolled Format String</td></tr><tr><td><strong>[24]</strong></td><td>60.3</td><td><a
href="http://cwe.mitre.org/top25/#CWE-190">CWE-190</a></td><td>Integer Overflow or Wraparound</td></tr><tr><td><strong>[25]</strong></td><td>59.9</td><td><a
href="http://cwe.mitre.org/top25/#CWE-759">CWE-759</a></td><td>Use of a One-Way Hash without a Salt</td></tr></tbody></table> ]]></content:encoded> <wfw:commentRss>http://www.ravinataraju.com/2011/08/cwesans-top-25-most-dangerous-software-errors-for-2011/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Defence against injection attacks</title><link>http://www.ravinataraju.com/2011/08/defence-against-injection-attacks/</link> <comments>http://www.ravinataraju.com/2011/08/defence-against-injection-attacks/#comments</comments> <pubDate>Sat, 20 Aug 2011 10:39:04 +0000</pubDate> <dc:creator>Ravi Nataraju</dc:creator> <category><![CDATA[Security]]></category> <category><![CDATA[Software]]></category> <category><![CDATA[Agile Security Methodology]]></category> <category><![CDATA[Code Review]]></category> <guid
isPermaLink="false">http://www.ravinataraju.com/?p=575</guid> <description><![CDATA[The most common attacks on the web and rated high among most application security consultants around the world is injection attack. It is on the top of the list in OWASP Top 10. With a standard 3 tier architecture it &#8230; <a
href="http://www.ravinataraju.com/2011/08/defence-against-injection-attacks/">Continue reading <span
class="meta-nav">&#8594;</span></a>]]></description> <content:encoded><![CDATA[<p>The most common attacks on the web and rated high among most application security consultants around the world is injection attack. It is on the top of the list in OWASP Top 10. With a standard 3 tier architecture it is possible to find hotspots/weak points everywhere. The points below are the least you can do to defend yourself against injection attacks.</p><p><strong>OWASP SQL Injection prevention rules</strong>: Target for an attack here is the Business Database.<br
/> 1) Parameterised queries &#8211; Prepared statements in Java and parameters to command statements in .NET<br
/> 2) Not to implement dynamic SQL statement creation &#8211; Use stored procedures<br
/> 3) Escaping All User Supplied Input</p><p>For more information on SQL injection visit <a
title="OWASP SQL Injection prevention cheat sheet" href="https://www.owasp.org/index.php/SQL_Injection_Prevention_Cheat_Sheet" target="_blank">OWASP</a></p><p><strong>Other Entities:</strong> Encode user data to encapsulate for all other interpretors on your webserver &#8211; LDAP, JS, XML, XSLT, XPATH, LOGS and Shell script</p><p><strong>XSS Injection</strong>:Number 2 in OWASP Top 10 &#8211; 2010<br
/> <strong>Type 1:</strong> XSS is basically script injection written in Javascript.The target is to use vulnerability within your web application to distribute intended attack to other application users. This leads the attacker to steal end users session cookie (document.cookie) and use their sessions on other sites without their knowledge. This also enables the attacker to rewrite any part of the website to collect sensitive information.</p><p><strong>Type 2:</strong> The other way is to append a html event within a text/text area which then leads the attacker to execute XSS attack without using Javascript.</p><p>To prevent the above attacks it is very essential that the developers validate and encode data before submitting to their web application using standard Whitelist validation and implement contextual encoding based on where and how the data is being collected within a web application.</p><p><strong>Owasp XSS Prevention Rules</strong></p><p>RULE #0 &#8211; Never Insert Untrusted Data Except in Allowed Locations<br
/> RULE #1 &#8211; HTML Escape Before Inserting Untrusted Data into HTML Element Content<br
/> RULE #2 &#8211; Attribute Escape Before Inserting Untrusted Data into HTML Common Attributes<br
/> RULE #3 &#8211; JavaScript Escape Before Inserting Untrusted Data into HTML JavaScript Data Values<br
/> RULE #4 &#8211; CSS Escape Before Inserting Untrusted Data into HTML Style Property Values<br
/> RULE #5 &#8211; URL Escape Before Inserting Untrusted Data into HTML URL Parameter Values<br
/> RULE #6 &#8211; Use an HTML Policy engine to validate or clean user-driven HTML in an outbound way<br
/> RULE #7 &#8211; Prevent DOM-based XSS</p><p>For more information about XSS visit <a
href="https://www.owasp.org/index.php/XSS_(Cross_Site_Scripting)_Prevention_Cheat_Sheet" target="_blank">OWASP</a></p> ]]></content:encoded> <wfw:commentRss>http://www.ravinataraju.com/2011/08/defence-against-injection-attacks/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Periodic table for SEO</title><link>http://www.ravinataraju.com/2011/08/periodic-table-for-seo/</link> <comments>http://www.ravinataraju.com/2011/08/periodic-table-for-seo/#comments</comments> <pubDate>Mon, 01 Aug 2011 13:49:32 +0000</pubDate> <dc:creator>Ravi Nataraju</dc:creator> <category><![CDATA[Social Media]]></category> <category><![CDATA[Technology]]></category> <guid
isPermaLink="false">http://www.ravinataraju.com/?p=567</guid> <description><![CDATA[All science students appreciate periodic table when they attended chemistry classes. Below is a similar table for SEO.]]></description> <content:encoded><![CDATA[<p>All science students appreciate periodic table when they attended chemistry classes. Below is a similar table for SEO.</p><p><img
class="alignnone" title="Perodic table for SEO" src="http://searchengineland.com/download/seotable/SearchEngineLand-Periodic-Table-of-SEO-condensed-large.png" alt="" width="470" height="582" /></p> ]]></content:encoded> <wfw:commentRss>http://www.ravinataraju.com/2011/08/periodic-table-for-seo/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Our content</title><link>http://www.ravinataraju.com/2011/07/our-content/</link> <comments>http://www.ravinataraju.com/2011/07/our-content/#comments</comments> <pubDate>Sat, 02 Jul 2011 19:39:30 +0000</pubDate> <dc:creator>Ravi Nataraju</dc:creator> <category><![CDATA[Social Media]]></category> <guid
isPermaLink="false">http://www.ravinataraju.com/?p=562</guid> <description><![CDATA[With the emergence of social networks and messaging applications, we are losing control on our own content. Have a look on how much profit business are making on our content. How Much is your User Generated Content Worth? By MyCube]]></description> <content:encoded><![CDATA[<p>With the emergence of social networks and messaging applications, we are losing control on our own content. Have a look on how much profit business are making on our content.<br
/> <a
title="Click to Enlarge" href="https://s3.amazonaws.com/mycube.ae/User-Generated-Content.jpg"><img
style="border: 0pt none;" src="https://s3.amazonaws.com/mycube.ae/User-Generated-Content.jpg" border="0" alt="How Much is your User Generated Content Worth?" width="520" height="1864" /></a><br
/> <a
href="http://blog.mycube.com/?p=108">How Much is your User Generated Content Worth?</a> By <a
href="http://www.mycube.com">MyCube</a></p> ]]></content:encoded> <wfw:commentRss>http://www.ravinataraju.com/2011/07/our-content/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> </channel> </rss>
