<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" media="screen" href="/styles/xslt/rss.xslt"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:trackback="http://madskills.com/public/xml/rss/module/trackback/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:media="http://search.yahoo.com/mrss/" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:c9="http://channel9.msdn.com">
<channel>
	<title>Channel 9 - Entries tagged with Antixss</title>
    <atom:link rel="self" type="application/rss+xml" href="http://channel9.msdn.com/Tags/antixss/RSS"></atom:link>
    <itunes:summary></itunes:summary>
    <itunes:author>Microsoft</itunes:author>
    <itunes:subtitle></itunes:subtitle>
    <image>
      <url>http://mschnlnine.vo.llnwd.net/d1/Dev/App_Themes/C9/images/feedimage.png</url>
      <title>Channel 9 - Entries tagged with Antixss</title>
      <link>http://channel9.msdn.com/Tags/antixss</link>
    </image>
    <itunes:image href=""></itunes:image>
    <itunes:category text="Technology"></itunes:category>
    <description>Channel 9 keeps you up to date with the latest news and behind the scenes info from Microsoft that developers love to keep up with. From LINQ to SilverLight – Watch videos and hear about all the cool technologies coming and the people behind them.</description>
    <link>http://channel9.msdn.com/Tags/antixss</link>
    <language>en</language>
    <pubDate>Sat, 18 May 2013 22:44:40 GMT</pubDate>
    <lastBuildDate>Sat, 18 May 2013 22:44:40 GMT</lastBuildDate>
    <generator>Rev9</generator>
    <c9:totalResults>6</c9:totalResults>
    <c9:pageCount>1</c9:pageCount>
    <c9:pageSize>25</c9:pageSize>
  <item>
      <title>TWC9:  Sharing Code, Cheat Sheets, and Jump Starting!</title>
      <description><![CDATA[<p>This week on Channel 9, Duncan and Rick discuss the week's top developer news, including;</p><ul><li><a href="http://channel9.msdn.com/Shows/This&#43;Week&#43;On&#43;Channel&#43;9/TWC9-December-07-2012#time=49s">[0:49]</a>&nbsp;<a href="http://www.matthidinger.com/archive/2012/12/05/sharing-code-windows-8-and-windows-phone.aspx">Sharing Code: Windows 8 and Windows Phone</a> (Matt Hidinger) </li><li><a href="http://channel9.msdn.com/Shows/This&#43;Week&#43;On&#43;Channel&#43;9/TWC9-December-07-2012#time=2m51s">[2:51]</a>&nbsp;<a href="http://blogs.msdn.com/b/mvpawardprogram/archive/2012/12/03/mvp-monday-connected-apps-made-wicked-easy-with-windows-azure-mobile-services.aspx">MVP Monday - Connected Apps Made Wicked Easy with Windows Azure Mobile Services</a> (Scott Seely) </li><li><a href="http://channel9.msdn.com/Shows/This&#43;Week&#43;On&#43;Channel&#43;9/TWC9-December-07-2012#time=5m13s">[5:13]</a>&nbsp;<a href="http://www.notsotrivial.net/blog/post/2012/12/04/TouchDevelop-The-Fast-Path-to-Windows-8-and-Phone-Apps.aspx">TouchDevelop: The Fast Path to Windows 8 and Phone Apps</a> [Clint Edmonson] </li><li><a href="http://channel9.msdn.com/Shows/This&#43;Week&#43;On&#43;Channel&#43;9/TWC9-December-07-2012#time=8m44s">[8:44]</a>&nbsp;<a href="http://blogs.msdn.com/b/christopher_kane/archive/2012/12/06/web-development-csrf-and-xss-cheat-sheets.aspx">Web Development CSRF and XSS Cheat Sheets</a> (Christopher C. Kane), <a href="https://www.owasp.org/index.php/Cross-Site_Request_Forgery_%28CSRF%29_Prevention_Cheat_Sheet">Cross-Site Request Forgery (CSRF) Prevention Cheat Sheet</a> , <a href="https://www.owasp.org/index.php/XSS_Prevention_Cheat_Sheet">Cross-Site Scripting (XSS) Prevention Chat Sheet</a> </li><li><a href="http://channel9.msdn.com/Shows/This&#43;Week&#43;On&#43;Channel&#43;9/TWC9-December-07-2012#time=10m22s">[10:22]</a>&nbsp;<a href="http://blogs.msdn.com/b/tarawalker/archive/2012/12/04/windows-8-game-development-using-c-xna-and-monogame-3-0-building-a-shooter-game-walkthrough-part-1-overview-installation-monogame-3-0-project-creation.aspx">Windows 8 Game Development using C#, XNA and MonoGame 3.0: Building a Shooter Game Walkthrough – Part 1: Overview, Installation, MonoGame 3.0 Project Creation</a> (Tara E. Walker) </li><li><a href="http://channel9.msdn.com/Shows/This&#43;Week&#43;On&#43;Channel&#43;9/TWC9-December-07-2012#time=14m7s">[14:07]</a>&nbsp;<a href="http://channel9.msdn.com/Shows/Visual-Studio-Toolbox/Productivity-Power-Tools-for-Visual-Studio-2012">Channel 9 Highlight: Productivity Power Tools for Visual Studio 2012</a> (Robert Green, Krishna Hosabettu Kamalesha) </li><li><a href="http://channel9.msdn.com/Shows/This&#43;Week&#43;On&#43;Channel&#43;9/TWC9-December-07-2012#time=17m11s">[17:11]</a>&nbsp;<a href="http://blogs.msdn.com/b/netmfteam/archive/2012/12/04/netmf-4-3-released.aspx">NETMF 4.3 Released</a> (Colin Miller ) </li><li><a href="http://channel9.msdn.com/Shows/This&#43;Week&#43;On&#43;Channel&#43;9/TWC9-December-07-2012#time=20m25s">[20:25]</a>&nbsp;<a href="http://channel9.msdn.com/posts/Building-Apps-for-Windows-Phone-8-Jump-Start-01a-Introducing-Windows-Phone-8-Development-Part-1">Channel 9 Highlight: Building Apps for Windows Phone 8 Jump Start</a> (Andy Wigley, Rob Tiffany) </li><li><a href="http://channel9.msdn.com/Shows/This&#43;Week&#43;On&#43;Channel&#43;9/TWC9-December-07-2012#time=22m4s">[22:04]</a>&nbsp;<a href="http://channel9.msdn.com/Blogs/Subscribe">Subscribe</a>! (Clemens Vasters) </li></ul><p><strong>Picks of the Week!</strong></p><ul><li>Rick's Pick of the Week: <a href="http://www.petapixel.com/2012/12/01/nokia-launches-magical-slideshow-app-photobeamer-for-lumia-phones/">Nokia Launches Magical Slideshow App PhotoBeamer for Windows 8 Lumia Phones</a> </li><li>Duncan's Pick of the Week: Channel 9 App (No link yet...) </li></ul> <img src="http://m.webtrends.com/dcs1wotjh10000w0irc493s0e_6x1g/njs.gif?dcssip=channel9.msdn.com&dcsuri=http://channel9.msdn.com/Tags/antixss/RSS&WT.dl=0&WT.entryid=Entry:RSSView:7c142fd3587f4d92a0f1a11f0186e410">]]></description>
      <comments>http://channel9.msdn.com/Shows/This+Week+On+Channel+9/TWC9-December-07-2012</comments>
      <itunes:summary>This week on Channel 9, Duncan and Rick discuss the week&#39;s top developer news, including; [0:49]&amp;nbsp;Sharing Code: Windows 8 and Windows Phone (Matt Hidinger) [2:51]&amp;nbsp;MVP Monday - Connected Apps Made Wicked Easy with Windows Azure Mobile Services (Scott Seely) [5:13]&amp;nbsp;TouchDevelop: The Fast Path to Windows 8 and Phone Apps [Clint Edmonson] [8:44]&amp;nbsp;Web Development CSRF and XSS Cheat Sheets (Christopher C. Kane), Cross-Site Request Forgery (CSRF) Prevention Cheat Sheet , Cross-Site Scripting (XSS) Prevention Chat Sheet [10:22]&amp;nbsp;Windows 8 Game Development using C#, XNA and MonoGame 3.0: Building a Shooter Game Walkthrough – Part 1: Overview, Installation, MonoGame 3.0 Project Creation (Tara E. Walker) [14:07]&amp;nbsp;Channel 9 Highlight: Productivity Power Tools for Visual Studio 2012 (Robert Green, Krishna Hosabettu Kamalesha) [17:11]&amp;nbsp;NETMF 4.3 Released (Colin Miller ) [20:25]&amp;nbsp;Channel 9 Highlight: Building Apps for Windows Phone 8 Jump Start (Andy Wigley, Rob Tiffany) [22:04]&amp;nbsp;Subscribe! (Clemens Vasters) Picks of the Week! Rick&#39;s Pick of the Week: Nokia Launches Magical Slideshow App PhotoBeamer for Windows 8 Lumia Phones Duncan&#39;s Pick of the Week: Channel 9 App (No link yet...) </itunes:summary>
      <itunes:duration>1994</itunes:duration>
      <link>http://channel9.msdn.com/Shows/This+Week+On+Channel+9/TWC9-December-07-2012</link>
      <pubDate>Sun, 09 Dec 2012 03:06:25 GMT</pubDate>
      <guid isPermaLink="false">http://channel9.msdn.com/Shows/This+Week+On+Channel+9/TWC9-December-07-2012</guid>
      <media:thumbnail url="http://media.ch9.ms/ch9/8114/896e127f-92de-4e4c-a457-2a974a578114/20121207TWC9_100.jpg" height="56" width="100"></media:thumbnail>
      <media:thumbnail url="http://media.ch9.ms/ch9/8114/896e127f-92de-4e4c-a457-2a974a578114/20121207TWC9_220.jpg" height="123" width="220"></media:thumbnail>
      <media:thumbnail url="http://media.ch9.ms/ch9/8114/896e127f-92de-4e4c-a457-2a974a578114/20121207TWC9_512.jpg" height="288" width="512"></media:thumbnail>
      <media:thumbnail url="http://media.ch9.ms/ch9/8114/896e127f-92de-4e4c-a457-2a974a578114/20121207TWC9_960.jpg" height="540" width="960"></media:thumbnail>
      <media:group>
        <media:content url="http://media.ch9.ms/ch9/8114/896e127f-92de-4e4c-a457-2a974a578114/20121207TWC9.mp3" expression="full" duration="1994" fileSize="31910178" type="audio/mp3" medium="audio"></media:content>
        <media:content url="http://media.ch9.ms/ch9/8114/896e127f-92de-4e4c-a457-2a974a578114/20121207TWC9.mp4" expression="full" duration="1994" fileSize="188352780" type="video/mp4" medium="video"></media:content>
        <media:content url="http://media.ch9.ms/ch9/8114/896e127f-92de-4e4c-a457-2a974a578114/20121207TWC9.webm" expression="full" duration="1994" fileSize="109424538" type="video/webm" medium="video"></media:content>
        <media:content url="http://media.ch9.ms/ch9/8114/896e127f-92de-4e4c-a457-2a974a578114/20121207TWC9.wma" expression="full" duration="1994" fileSize="16133507" type="audio/x-ms-wma" medium="audio"></media:content>
        <media:content url="http://media.ch9.ms/ch9/8114/896e127f-92de-4e4c-a457-2a974a578114/20121207TWC9.wmv" expression="full" duration="1994" fileSize="99440081" type="video/x-ms-wmv" medium="video"></media:content>
        <media:content url="http://media.ch9.ms/ch9/8114/896e127f-92de-4e4c-a457-2a974a578114/20121207TWC9_high.mp4" expression="full" duration="1994" fileSize="413726558" type="video/mp4" medium="video"></media:content>
        <media:content url="http://media.ch9.ms/ch9/8114/896e127f-92de-4e4c-a457-2a974a578114/20121207TWC9_mid.mp4" expression="full" duration="1994" fileSize="288914305" type="video/mp4" medium="video"></media:content>
        <media:content url="http://media.ch9.ms/ch9/8114/896e127f-92de-4e4c-a457-2a974a578114/20121207TWC9_Source.wmv" expression="full" duration="1994" fileSize="290950867" type="video/x-ms-wmv" medium="video"></media:content>
        <media:content url="http://smooth.ch9.ms/ch9/8114/896e127f-92de-4e4c-a457-2a974a578114/20121207TWC9.ism/manifest" expression="full" duration="1994" fileSize="6036" type="video/x-ms-wmv" medium="video"></media:content>
      </media:group>      
      <enclosure url="http://media.ch9.ms/ch9/8114/896e127f-92de-4e4c-a457-2a974a578114/20121207TWC9.wmv" length="99440081" type="video/x-ms-wmv"></enclosure>
      <dc:creator>Duncan Mackenzie, Greg Duncan, Rick Barraza</dc:creator>
      <itunes:author>Duncan Mackenzie, Greg Duncan, Rick Barraza</itunes:author>
      <slash:comments>3</slash:comments>
      <wfw:commentRss>http://channel9.msdn.com/Shows/This+Week+On+Channel+9/TWC9-December-07-2012/RSS</wfw:commentRss>
      <category>Antixss</category>
      <category>XNA</category>
      <category>Visual Studio 2012</category>
    </item>
  <item>
      <title>Using the Web Protection Library (WPL) - CTP Version</title>
      <description><![CDATA[
<p>Anil Revuru (RV), from <a shape="rect" href="http://www.msinfosec.com/" target="_blank" shape="rect">
Microsoft Information Security</a>,&nbsp;walks&nbsp;us through&nbsp;the expansion of what used to be the Anti-XSS Library.&nbsp;This enhanced version of the library will introduce mitigation to other attacks like:</p>
<ul>
<li>SQL Injection </li><li>Cross-Site Request Forgery (CSRF) </li><li>Setting Enforcement like SSL &amp; HTTP_ONLY cookies </li><li>Security Runtime Engine for SQL Injection &amp; XSS </li><li>Among others </li></ul>
<p>The CTP (Community Technology Preview) is available in <a shape="rect" href="https://connect.microsoft.com/site/sitehome.aspx?SiteID=734" target="_blank" shape="rect">
Microsoft Connect – Information Security Tools</a>. <br /><br />Read&nbsp;<a shape="rect" href="http://blogs.msdn.com/securitytools/archive/2009/11/11/some-new-software-security-tools-for-web-developers-ctp-releases.aspx" target="_blank" shape="rect">CTP announcement</a> and follow the&nbsp;<a shape="rect" href="http://blogs.msdn.com/securitytools" target="_blank" shape="rect">Security
 Tools Team</a> blog. </p>
 <img src="http://m.webtrends.com/dcs1wotjh10000w0irc493s0e_6x1g/njs.gif?dcssip=channel9.msdn.com&dcsuri=http://channel9.msdn.com/Tags/antixss/RSS&WT.dl=0&WT.entryid=Entry:RSSView:f8a6b2207e4b45b581b99deb001b9404">]]></description>
      <comments>http://channel9.msdn.com/Blogs/Jossie/Using-the-Web-Protection-Library-WPL-CTP-Version</comments>
      <itunes:summary>
Anil Revuru (RV), from 
Microsoft Information Security,&amp;nbsp;walks&amp;nbsp;us through&amp;nbsp;the expansion of what used to be the Anti-XSS Library.&amp;nbsp;This enhanced version of the library will introduce mitigation to other attacks like: 

SQL Injection Cross-Site Request Forgery (CSRF) Setting Enforcement like SSL &amp;amp; HTTP_ONLY cookies Security Runtime Engine for SQL Injection &amp;amp; XSS Among others 
The CTP (Community Technology Preview) is available in 
Microsoft Connect – Information Security Tools. Read&amp;nbsp;CTP announcement and follow the&amp;nbsp;Security
 Tools Team blog.  
</itunes:summary>
      <itunes:duration>656</itunes:duration>
      <link>http://channel9.msdn.com/Blogs/Jossie/Using-the-Web-Protection-Library-WPL-CTP-Version</link>
      <pubDate>Wed, 25 Nov 2009 00:00:00 GMT</pubDate>
      <guid isPermaLink="false">http://channel9.msdn.com/Blogs/Jossie/Using-the-Web-Protection-Library-WPL-CTP-Version</guid>
      <media:thumbnail url="http://ecn.channel9.msdn.com/o9/previewImages/100/508747_100x75.jpg" height="75" width="100"></media:thumbnail>
      <media:thumbnail url="http://ecn.channel9.msdn.com/o9/previewImages/220/508747_220x165.jpg" height="165" width="220"></media:thumbnail>
      <media:thumbnail url="http://ecn.channel9.msdn.com/o9/ch9/7/4/7/8/0/5/WPLdemo_320_ch9.png" height="240" width="320"></media:thumbnail>
      <media:thumbnail url="http://ecn.channel9.msdn.com/o9/ch9/7/4/7/8/0/5/WPLdemo_512_ch9.png" height="384" width="512"></media:thumbnail>
      <media:thumbnail url="http://ecn.channel9.msdn.com/o9/ch9/7/4/7/8/0/5/WPLdemo_85_ch9.png" height="64" width="85"></media:thumbnail>
      <media:group>
        <media:content url="http://ecn.channel9.msdn.com/o9/ch9/7/4/7/8/0/5/WPLdemo_2MB_ch9.wmv" expression="full" duration="656" fileSize="50563911" type="video/x-ms-wmv" medium="video"></media:content>
        <media:content url="http://ecn.channel9.msdn.com/o9/ch9/7/4/7/8/0/5/WPLdemo_ch9.mp3" expression="full" duration="656" fileSize="5253700" type="audio/mp3" medium="audio"></media:content>
        <media:content url="http://ecn.channel9.msdn.com/o9/ch9/7/4/7/8/0/5/WPLdemo_ch9.mp4" expression="full" duration="656" fileSize="69586321" type="video/mp4" medium="video"></media:content>
        <media:content url="http://ecn.channel9.msdn.com/o9/ch9/7/4/7/8/0/5/WPLdemo_ch9.wma" expression="full" duration="656" fileSize="5316043" type="audio/x-ms-wma" medium="audio"></media:content>
        <media:content url="http://ecn.channel9.msdn.com/o9/ch9/7/4/7/8/0/5/WPLdemo_ch9.wmv" expression="full" duration="656" fileSize="95150711" type="video/x-ms-wmv" medium="video"></media:content>
        <media:content url="http://ecn.channel9.msdn.com/o9/ch9/7/4/7/8/0/5/WPLdemo_Zune_ch9.wmv" expression="full" duration="656" fileSize="53870763" type="video/x-ms-wmv" medium="video"></media:content>
      </media:group>      
      <enclosure url="http://ecn.channel9.msdn.com/o9/ch9/7/4/7/8/0/5/WPLdemo_2MB_ch9.wmv" length="50563911" type="video/x-ms-wmv"></enclosure>
      <dc:creator>Jossie</dc:creator>
      <itunes:author>Jossie</itunes:author>
      <slash:comments>0</slash:comments>
      <wfw:commentRss>http://channel9.msdn.com/Blogs/Jossie/Using-the-Web-Protection-Library-WPL-CTP-Version/RSS</wfw:commentRss>
      <category>Antixss</category>
      <category>Information</category>
      <category>information security</category>
      <category>infosec</category>
      <category>ist</category>
      <category>Security</category>
      <category>Tools</category>
      <category>wpl</category>
    </item>
  <item>
      <title>Assessment and Protection Suite</title>
      <description><![CDATA[
<p>Anil Revuru (RV) and Mark Curphey, from <a shape="rect" href="http://www.msinfosec.com" target="_blank" shape="rect">
Microsoft Information Security</a>, introduce what would be in the future a suite of tools that will help you assess your code as well as protect it. This is called the Assessment &amp; Protection (A&amp;P) Suite and it includes the following tools:
</p>
<ul>
<li>Web Protection Library (WPL) – which includes Anti-XSS, SRE, mitigation of SQL Injection, CSRF among others
</li><li>CAT.NET </li><li>Web Application Configuration Analyzer (WACA) </li><li>and room for more future add-ons </li></ul>
<p>The CTP (Community Technology Preview) for these tools are available in <a shape="rect" href="https://connect.microsoft.com/site/sitehome.aspx?SiteID=734" target="_blank" shape="rect">
Microsoft Connect – Information Security Tools</a>. These are currently individual as they shift to one-install.<br /><br />Read&nbsp;<a shape="rect" href="http://blogs.msdn.com/infosec/archive/2009/11/16/infosec-assessment-protection-a-p-suite-released.aspx" target="_blank" shape="rect">CTP announcement</a> and follow the&nbsp;<a shape="rect" href="http://blogs.msdn.com/securitytools" target="_blank" shape="rect">Security
 Tools Team</a> blog. </p>
 <img src="http://m.webtrends.com/dcs1wotjh10000w0irc493s0e_6x1g/njs.gif?dcssip=channel9.msdn.com&dcsuri=http://channel9.msdn.com/Tags/antixss/RSS&WT.dl=0&WT.entryid=Entry:RSSView:e21ffb3158bf4b2b81889deb001ba1e9">]]></description>
      <comments>http://channel9.msdn.com/Blogs/Jossie/Assessment-and-Protection-Suite</comments>
      <itunes:summary>
Anil Revuru (RV) and Mark Curphey, from 
Microsoft Information Security, introduce what would be in the future a suite of tools that will help you assess your code as well as protect it. This is called the Assessment &amp;amp; Protection (A&amp;amp;P) Suite and it includes the following tools:
 

Web Protection Library (WPL) – which includes Anti-XSS, SRE, mitigation of SQL Injection, CSRF among others
CAT.NET Web Application Configuration Analyzer (WACA) and room for more future add-ons 
The CTP (Community Technology Preview) for these tools are available in 
Microsoft Connect – Information Security Tools. These are currently individual as they shift to one-install.Read&amp;nbsp;CTP announcement and follow the&amp;nbsp;Security
 Tools Team blog.  
</itunes:summary>
      <itunes:duration>1044</itunes:duration>
      <link>http://channel9.msdn.com/Blogs/Jossie/Assessment-and-Protection-Suite</link>
      <pubDate>Thu, 12 Nov 2009 17:21:00 GMT</pubDate>
      <guid isPermaLink="false">http://channel9.msdn.com/Blogs/Jossie/Assessment-and-Protection-Suite</guid>
      <media:thumbnail url="http://ecn.channel9.msdn.com/o9/previewImages/100/505599_100x75.jpg" height="75" width="100"></media:thumbnail>
      <media:thumbnail url="http://ecn.channel9.msdn.com/o9/previewImages/220/505599_220x165.jpg" height="165" width="220"></media:thumbnail>
      <media:thumbnail url="http://ecn.channel9.msdn.com/o9/ch9/9/9/5/5/0/5/AnPoverview_320_ch9.png" height="240" width="320"></media:thumbnail>
      <media:thumbnail url="http://ecn.channel9.msdn.com/o9/ch9/9/9/5/5/0/5/AnPoverview_512_ch9.png" height="384" width="512"></media:thumbnail>
      <media:thumbnail url="http://ecn.channel9.msdn.com/o9/ch9/9/9/5/5/0/5/AnPoverview_85_ch9.png" height="64" width="85"></media:thumbnail>
      <media:group>
        <media:content url="http://ecn.channel9.msdn.com/o9/ch9/9/9/5/5/0/5/AnPoverview_2MB_ch9.wmv" expression="full" duration="1044" fileSize="127779102" type="video/x-ms-wmv" medium="video"></media:content>
        <media:content url="http://ecn.channel9.msdn.com/o9/ch9/9/9/5/5/0/5/AnPoverview_ch9.mp3" expression="full" duration="1044" fileSize="8359931" type="audio/mp3" medium="audio"></media:content>
        <media:content url="http://ecn.channel9.msdn.com/o9/ch9/9/9/5/5/0/5/AnPoverview_ch9.mp4" expression="full" duration="1044" fileSize="115680604" type="video/mp4" medium="video"></media:content>
        <media:content url="http://ecn.channel9.msdn.com/o9/ch9/9/9/5/5/0/5/AnPoverview_ch9.wma" expression="full" duration="1044" fileSize="8458227" type="audio/x-ms-wma" medium="audio"></media:content>
        <media:content url="http://ecn.channel9.msdn.com/o9/ch9/9/9/5/5/0/5/AnPoverview_ch9.wmv" expression="full" duration="1044" fileSize="169620143" type="video/x-ms-wmv" medium="video"></media:content>
        <media:content url="http://ecn.channel9.msdn.com/o9/ch9/9/9/5/5/0/5/AnPoverview_Zune_ch9.wmv" expression="full" duration="1044" fileSize="112564195" type="video/x-ms-wmv" medium="video"></media:content>
      </media:group>      
      <enclosure url="http://ecn.channel9.msdn.com/o9/ch9/9/9/5/5/0/5/AnPoverview_2MB_ch9.wmv" length="127779102" type="video/x-ms-wmv"></enclosure>
      <dc:creator>Jossie</dc:creator>
      <itunes:author>Jossie</itunes:author>
      <slash:comments>0</slash:comments>
      <wfw:commentRss>http://channel9.msdn.com/Blogs/Jossie/Assessment-and-Protection-Suite/RSS</wfw:commentRss>
      <category>Antixss</category>
      <category>Information</category>
      <category>information security</category>
      <category>infosec</category>
      <category>ist</category>
      <category>Security</category>
      <category>Tools</category>
      <category>waca</category>
      <category>wpl</category>
    </item>
  <item>
      <title>Enhanced Web Protection Library</title>
      <description><![CDATA[
<p>Anil Revuru (RV), from <a shape="rect" href="http://www.msinfosec.com/" target="_blank" shape="rect">
Microsoft Information Security</a>, introduces the expansion of what used to be the Anti-XSS Library. But web vulnerabilities are not only around Cross-Site Scripting (XSS) attacks. This enhanced version of the library will introduce mitigation to other attacks
 like:</p>
<ul>
<li>SQL Injection </li><li>Cross-Site Request Forgery (CSRF) </li><li>Setting Enforcement like SSL &amp; HTTP_ONLY cookies </li><li>Security Runtime Engine for SQL Injection &amp; XSS </li><li>Among others </li></ul>
<p>The CTP (Community Technology Preview) is available in <a shape="rect" href="https://connect.microsoft.com/site/sitehome.aspx?SiteID=734" target="_blank" shape="rect">
Microsoft Connect – Information Security Tools</a>. <br /><br />Read&nbsp;<a shape="rect" href="http://blogs.msdn.com/securitytools/archive/2009/11/11/some-new-software-security-tools-for-web-developers-ctp-releases.aspx" target="_blank" shape="rect">CTP announcement</a> and follow the&nbsp;<a shape="rect" href="http://blogs.msdn.com/securitytools" target="_blank" shape="rect">Security
 Tools Team</a> blog. </p>
 <img src="http://m.webtrends.com/dcs1wotjh10000w0irc493s0e_6x1g/njs.gif?dcssip=channel9.msdn.com&dcsuri=http://channel9.msdn.com/Tags/antixss/RSS&WT.dl=0&WT.entryid=Entry:RSSView:5c457ab422774b1aaccb9deb001ba6ca">]]></description>
      <comments>http://channel9.msdn.com/Blogs/Jossie/Enhanced-Web-Protection-Library</comments>
      <itunes:summary>
Anil Revuru (RV), from 
Microsoft Information Security, introduces the expansion of what used to be the Anti-XSS Library. But web vulnerabilities are not only around Cross-Site Scripting (XSS) attacks. This enhanced version of the library will introduce mitigation to other attacks
 like: 

SQL Injection Cross-Site Request Forgery (CSRF) Setting Enforcement like SSL &amp;amp; HTTP_ONLY cookies Security Runtime Engine for SQL Injection &amp;amp; XSS Among others 
The CTP (Community Technology Preview) is available in 
Microsoft Connect – Information Security Tools. Read&amp;nbsp;CTP announcement and follow the&amp;nbsp;Security
 Tools Team blog.  
</itunes:summary>
      <itunes:duration>928</itunes:duration>
      <link>http://channel9.msdn.com/Blogs/Jossie/Enhanced-Web-Protection-Library</link>
      <pubDate>Thu, 12 Nov 2009 17:21:00 GMT</pubDate>
      <guid isPermaLink="false">http://channel9.msdn.com/Blogs/Jossie/Enhanced-Web-Protection-Library</guid>
      <media:thumbnail url="http://ecn.channel9.msdn.com/o9/previewImages/100/505597_100x75.jpg" height="75" width="100"></media:thumbnail>
      <media:thumbnail url="http://ecn.channel9.msdn.com/o9/previewImages/220/505597_220x165.jpg" height="165" width="220"></media:thumbnail>
      <media:thumbnail url="http://ecn.channel9.msdn.com/o9/ch9/7/9/5/5/0/5/WPL_320_ch9.png" height="240" width="320"></media:thumbnail>
      <media:thumbnail url="http://ecn.channel9.msdn.com/o9/ch9/7/9/5/5/0/5/WPL_512_ch9.png" height="384" width="512"></media:thumbnail>
      <media:thumbnail url="http://ecn.channel9.msdn.com/o9/ch9/7/9/5/5/0/5/WPL_85_ch9.png" height="64" width="85"></media:thumbnail>
      <media:group>
        <media:content url="http://ecn.channel9.msdn.com/o9/ch9/7/9/5/5/0/5/WPL_2MB_ch9.wmv" expression="full" duration="928" fileSize="113545072" type="video/x-ms-wmv" medium="video"></media:content>
        <media:content url="http://ecn.channel9.msdn.com/o9/ch9/7/9/5/5/0/5/WPL_ch9.mp3" expression="full" duration="928" fileSize="7428509" type="audio/mp3" medium="audio"></media:content>
        <media:content url="http://ecn.channel9.msdn.com/o9/ch9/7/9/5/5/0/5/WPL_ch9.mp4" expression="full" duration="928" fileSize="125005100" type="video/mp4" medium="video"></media:content>
        <media:content url="http://ecn.channel9.msdn.com/o9/ch9/7/9/5/5/0/5/WPL_ch9.wma" expression="full" duration="928" fileSize="7517981" type="audio/x-ms-wma" medium="audio"></media:content>
        <media:content url="http://ecn.channel9.msdn.com/o9/ch9/7/9/5/5/0/5/WPL_ch9.wmv" expression="full" duration="928" fileSize="169042525" type="video/x-ms-wmv" medium="video"></media:content>
        <media:content url="http://ecn.channel9.msdn.com/o9/ch9/7/9/5/5/0/5/WPL_Zune_ch9.wmv" expression="full" duration="928" fileSize="105714577" type="video/x-ms-wmv" medium="video"></media:content>
      </media:group>      
      <enclosure url="http://ecn.channel9.msdn.com/o9/ch9/7/9/5/5/0/5/WPL_2MB_ch9.wmv" length="113545072" type="video/x-ms-wmv"></enclosure>
      <dc:creator>Jossie</dc:creator>
      <itunes:author>Jossie</itunes:author>
      <slash:comments>0</slash:comments>
      <wfw:commentRss>http://channel9.msdn.com/Blogs/Jossie/Enhanced-Web-Protection-Library/RSS</wfw:commentRss>
      <category>Antixss</category>
      <category>Information</category>
      <category>information security</category>
      <category>infosec</category>
      <category>ist</category>
      <category>Security</category>
      <category>Tools</category>
      <category>wpl</category>
    </item>
  <item>
      <title>Anti-XSS Library v3.1: Find, Fix, and Verify Errors</title>
      <description><![CDATA[
<p>Anil Revuru (RV) from <a shape="rect" href="http://www.msinfosec.com/" target="_blank" shape="rect">
Microsoft Information Security,</a> gives a demonstration of the new features on the Anti-XSS Library v3.1 &nbsp;including HTML Sanitization which provides new methods to the Anti-XSS class to strip malicious characters or scripts off of&nbsp;HTML and returns safe HTML.<br /><br />He talks about:</p>
<ul>
<li>
<div>What is Cross-Site Scripting Attack (XSS)</div>
</li><li>
<div>How to detect Cross Site Scripting Vulnerabilities</div>
</li><li>
<div>Introduction of Anti-XSS Library</div>
</li><li>
<div>What’s new in Anti-XSS Library 3.1</div>
</li><li>
<div>Anti-XSS 3.1 demo</div>
</li><li>
<div>Security Runtime Engine (SRE)</div>
</li><li>
<div>SRE Demo</div>
</li></ul>
<p>To learn more about this application and stay up to date on the latest news, read the following blogs from&nbsp;<a shape="rect" href="http://blogs.msdn.com/infosec/archive/2009/09/17/anti-xss-3-1-released.aspx" target="_blank" shape="rect">Information Security</a>
 and previous posts from the&nbsp;<a shape="rect" href="http://blogs.msdn.com/securitytools/archive/tags/Anti-XSS/default.aspx" target="_blank" shape="rect">Security Tools Team</a> blog.<br /><br /><a shape="rect" href="http://channel9.msdn.com/posts/Jossie/Anti-XSS-30-Released/" target="_blank" shape="rect">Overview of the Anti-XSS Library</a><br /><a shape="rect" href="http://www.microsoft.com/downloads/details.aspx?FamilyId=051ee83c-5ccf-48ed-8463-02f56a6bfc09&amp;displaylang=en" target="_blank" shape="rect">Download: Microsoft Anti-Cross Site Scripting Library v3.1</a></p>
 <img src="http://m.webtrends.com/dcs1wotjh10000w0irc493s0e_6x1g/njs.gif?dcssip=channel9.msdn.com&dcsuri=http://channel9.msdn.com/Tags/antixss/RSS&WT.dl=0&WT.entryid=Entry:RSSView:942aff168e87405aa50f9deb001bb062">]]></description>
      <comments>http://channel9.msdn.com/Blogs/Jossie/Anti-XSS-Library-v31-Find-Fix-and-Verify-Errors</comments>
      <itunes:summary>
Anil Revuru (RV) from 
Microsoft Information Security, gives a demonstration of the new features on the Anti-XSS Library v3.1 &amp;nbsp;including HTML Sanitization which provides new methods to the Anti-XSS class to strip malicious characters or scripts off of&amp;nbsp;HTML and returns safe HTML.He talks about: 


What is Cross-Site Scripting Attack (XSS)

How to detect Cross Site Scripting Vulnerabilities

Introduction of Anti-XSS Library

What’s new in Anti-XSS Library 3.1

Anti-XSS 3.1 demo

Security Runtime Engine (SRE)

SRE Demo

To learn more about this application and stay up to date on the latest news, read the following blogs from&amp;nbsp;Information Security
 and previous posts from the&amp;nbsp;Security Tools Team blog.Overview of the Anti-XSS LibraryDownload: Microsoft Anti-Cross Site Scripting Library v3.1 
</itunes:summary>
      <itunes:duration>1311</itunes:duration>
      <link>http://channel9.msdn.com/Blogs/Jossie/Anti-XSS-Library-v31-Find-Fix-and-Verify-Errors</link>
      <pubDate>Wed, 23 Sep 2009 17:20:00 GMT</pubDate>
      <guid isPermaLink="false">http://channel9.msdn.com/Blogs/Jossie/Anti-XSS-Library-v31-Find-Fix-and-Verify-Errors</guid>
      <media:thumbnail url="http://ecn.channel9.msdn.com/o9/previewImages/100/493696_100x75.jpg" height="75" width="100"></media:thumbnail>
      <media:thumbnail url="http://ecn.channel9.msdn.com/o9/previewImages/220/493696_220x165.jpg" height="165" width="220"></media:thumbnail>
      <media:thumbnail url="http://ecn.channel9.msdn.com/o9/ch9/6/9/6/3/9/4/antiXSS31_320_ch9.png" height="240" width="320"></media:thumbnail>
      <media:thumbnail url="http://ecn.channel9.msdn.com/o9/ch9/6/9/6/3/9/4/antiXSS31_512_ch9.png" height="384" width="512"></media:thumbnail>
      <media:thumbnail url="http://ecn.channel9.msdn.com/o9/ch9/6/9/6/3/9/4/antiXSS31_85_ch9.png" height="64" width="85"></media:thumbnail>
      <media:group>
        <media:content url="http://ecn.channel9.msdn.com/o9/ch9/6/9/6/3/9/4/antiXSS31_2MB_ch9.wmv" expression="full" duration="1311" fileSize="190365309" type="video/x-ms-wmv" medium="video"></media:content>
        <media:content url="http://ecn.channel9.msdn.com/o9/ch9/6/9/6/3/9/4/antiXSS31_ch9.mp3" expression="full" duration="1311" fileSize="10494270" type="audio/mp3" medium="audio"></media:content>
        <media:content url="http://ecn.channel9.msdn.com/o9/ch9/6/9/6/3/9/4/antiXSS31_ch9.mp4" expression="full" duration="1311" fileSize="30406648" type="video/mp4" medium="video"></media:content>
        <media:content url="http://ecn.channel9.msdn.com/o9/ch9/6/9/6/3/9/4/antiXSS31_ch9.wma" expression="full" duration="1311" fileSize="10612095" type="audio/x-ms-wma" medium="audio"></media:content>
        <media:content url="http://ecn.channel9.msdn.com/o9/ch9/6/9/6/3/9/4/antiXSS31_ch9.wmv" expression="full" duration="1311" fileSize="44119933" type="video/x-ms-wmv" medium="video"></media:content>
        <media:content url="http://ecn.channel9.msdn.com/o9/ch9/6/9/6/3/9/4/antiXSS31_Zune_ch9.wmv" expression="full" duration="1311" fileSize="31639861" type="video/x-ms-wmv" medium="video"></media:content>
      </media:group>      
      <enclosure url="http://ecn.channel9.msdn.com/o9/ch9/6/9/6/3/9/4/antiXSS31_2MB_ch9.wmv" length="190365309" type="video/x-ms-wmv"></enclosure>
      <dc:creator>Jossie</dc:creator>
      <itunes:author>Jossie</itunes:author>
      <slash:comments>9</slash:comments>
      <wfw:commentRss>http://channel9.msdn.com/Blogs/Jossie/Anti-XSS-Library-v31-Find-Fix-and-Verify-Errors/RSS</wfw:commentRss>
      <category>ace</category>
      <category>ace team</category>
      <category>Antixss</category>
      <category>Information</category>
      <category>information security</category>
      <category>infosec</category>
      <category>ist</category>
      <category>Security</category>
      <category>Tools</category>
    </item>
  <item>
      <title>Anti-XSS 3.0 Released</title>
      <description><![CDATA[
<p>Vineet Batta and Anil Revuru (RV), from <a shape="rect" href="http://www.msinfosec.com" target="_blank" shape="rect">
Microsoft&nbsp;Information Security</a>,&nbsp;talk about the release of the new version of the Anti-XSS library, which is&nbsp;designed to encode output to help developers protect their ASP.NET web-based applications from&nbsp;cross-site scripting&nbsp;attacks.<br>
<br>
They explain the new features and benefits found on version 3.0, including:</p>
<ul>
<li>Extended white list </li><li>Better performance </li><li>MSDN Style Help documentation </li><li>Marked Anti-XSS Output </li><li>Security Runtime Engine (SRE) </li></ul>
<p>To learn more about this library read the following blogs from the <a shape="rect" href="http://blogs.msdn.com/securitytools/archive/tags/Anti-XSS/default.aspx" target="_blank" shape="rect">
Security Tools Team blog</a>&nbsp;and previous <a shape="rect" href="http://blogs.msdn.com/cisg/archive/tags/Anti-XSS/default.aspx" target="_blank" shape="rect">
posts</a>.</p>
 <img src="http://m.webtrends.com/dcs1wotjh10000w0irc493s0e_6x1g/njs.gif?dcssip=channel9.msdn.com&dcsuri=http://channel9.msdn.com/Tags/antixss/RSS&WT.dl=0&WT.entryid=Entry:RSSView:c9a3a5ada73c4a08827d9deb0173162e">]]></description>
      <comments>http://channel9.msdn.com/Blogs/Jossie/Anti-XSS-30-Released</comments>
      <itunes:summary>
Vineet Batta and Anil Revuru (RV), from 
Microsoft&amp;nbsp;Information Security,&amp;nbsp;talk about the release of the new version of the Anti-XSS library, which is&amp;nbsp;designed to encode output to help developers protect their ASP.NET web-based applications from&amp;nbsp;cross-site scripting&amp;nbsp;attacks.

They explain the new features and benefits found on version 3.0, including: 

Extended white list Better performance MSDN Style Help documentation Marked Anti-XSS Output Security Runtime Engine (SRE) 
To learn more about this library read the following blogs from the 
Security Tools Team blog&amp;nbsp;and previous 
posts. 
</itunes:summary>
      <itunes:duration>1055</itunes:duration>
      <link>http://channel9.msdn.com/Blogs/Jossie/Anti-XSS-30-Released</link>
      <pubDate>Wed, 15 Jul 2009 16:12:00 GMT</pubDate>
      <guid isPermaLink="false">http://channel9.msdn.com/Blogs/Jossie/Anti-XSS-30-Released</guid>
      <media:thumbnail url="http://ecn.channel9.msdn.com/o9/previewImages/100/478820_100x75.jpg" height="75" width="100"></media:thumbnail>
      <media:thumbnail url="http://ecn.channel9.msdn.com/o9/previewImages/220/478820_220x165.jpg" height="165" width="220"></media:thumbnail>
      <media:thumbnail url="http://mschnlnine.vo.llnwd.net/d1/ch9/0/2/8/8/7/4/antixss3_large_ch9.png" height="240" width="320"></media:thumbnail>
      <media:thumbnail url="http://mschnlnine.vo.llnwd.net/d1/ch9/0/2/8/8/7/4/antixss3_small_ch9.png" height="64" width="85"></media:thumbnail>
      <media:group>
        <media:content url="http://mschnlnine.vo.llnwd.net/d1/ch9/0/2/8/8/7/4/antixss3_2MB_ch9.wmv" expression="full" duration="1055" fileSize="47180833" type="video/x-ms-wmv" medium="video"></media:content>
        <media:content url="http://mschnlnine.vo.llnwd.net/d1/ch9/0/2/8/8/7/4/antixss3_ch9.mp3" expression="full" duration="1055" fileSize="8447064" type="audio/mp3" medium="audio"></media:content>
        <media:content url="http://mschnlnine.vo.llnwd.net/d1/ch9/0/2/8/8/7/4/antixss3_ch9.mp4" expression="full" duration="1055" fileSize="79917703" type="video/mp4" medium="video"></media:content>
        <media:content url="http://mschnlnine.vo.llnwd.net/d1/ch9/0/2/8/8/7/4/antixss3_ch9.wma" expression="full" duration="1055" fileSize="17085733" type="audio/x-ms-wma" medium="audio"></media:content>
        <media:content url="http://mschnlnine.vo.llnwd.net/d1/ch9/0/2/8/8/7/4/antixss3_Zune_ch9.wmv" expression="full" duration="1055" fileSize="103371753" type="video/x-ms-wmv" medium="video"></media:content>
      </media:group>      
      <enclosure url="http://mschnlnine.vo.llnwd.net/d1/ch9/0/2/8/8/7/4/antixss3_Zune_ch9.wmv" length="103371753" type="video/x-ms-wmv"></enclosure>
      <dc:creator>Jossie</dc:creator>
      <itunes:author>Jossie</itunes:author>
      <slash:comments>0</slash:comments>
      <wfw:commentRss>http://channel9.msdn.com/Blogs/Jossie/Anti-XSS-30-Released/RSS</wfw:commentRss>
      <category>ace</category>
      <category>ace team</category>
      <category>Antixss</category>
      <category>Information</category>
      <category>information security</category>
      <category>infosec</category>
      <category>ist</category>
      <category>LOB</category>
      <category>Simple DirectMedia Layer</category>
      <category>sdl-lob</category>
      <category>Security</category>
      <category>Tools</category>
    </item>    
</channel>
</rss>