<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://blogs.msdn.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Security Code Review – String Search Patterns For Finding Input Validation Vulnerabilities</title><link>http://blogs.msdn.com/alikl/archive/2008/07/11/security-code-review-string-search-patterns-for-finding-input-validation-vulnerabilities.aspx</link><description>Well defined set of search patterns helps significantly reduce time (cost) when performing security code inspections. This post focuses on input validation vulnerabilities commonly found in ASP.NET web applications. SQL Injection and Cross Site Scripting</description><dc:language>en-US</dc:language><generator>CommunityServer 2.1 SP1 (Build: 61025.2)</generator><item><title>Security Code Review – String Search Patterns For Authentication Vulnerabilities</title><link>http://blogs.msdn.com/alikl/archive/2008/07/11/security-code-review-string-search-patterns-for-finding-input-validation-vulnerabilities.aspx#8761385</link><pubDate>Mon, 21 Jul 2008 15:40:03 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:8761385</guid><dc:creator>Alik Levin's</dc:creator><description>&lt;p&gt;This post contains string search patterns that can help identifying authentication vulnerabilities during&lt;/p&gt;
</description></item><item><title>Security Code Review – String Search Patterns For Authorization Vulnerabilities</title><link>http://blogs.msdn.com/alikl/archive/2008/07/11/security-code-review-string-search-patterns-for-finding-input-validation-vulnerabilities.aspx#8769969</link><pubDate>Thu, 24 Jul 2008 22:53:13 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:8769969</guid><dc:creator>Alik Levin's</dc:creator><description>&lt;p&gt;These are the questions and the search criteria I use to identify authorization vulnerabilities in the&lt;/p&gt;
</description></item></channel></rss>