<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Ed Bellis - ClearText &#187; application security</title>
	<atom:link href="http://edbellis.com/category/application-security/feed/" rel="self" type="application/rss+xml" />
	<link>http://edbellis.com</link>
	<description>converting black signals to red</description>
	<lastBuildDate>Sun, 05 Feb 2012 17:41:43 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='edbellis.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Ed Bellis - ClearText &#187; application security</title>
		<link>http://edbellis.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://edbellis.com/osd.xml" title="Ed Bellis - ClearText" />
	<atom:link rel='hub' href='http://edbellis.com/?pushpress=hub'/>
		<item>
		<title>The Vulnerability Arms Race</title>
		<link>http://edbellis.com/2010/05/11/the-vulnerability-arms-race/</link>
		<comments>http://edbellis.com/2010/05/11/the-vulnerability-arms-race/#comments</comments>
		<pubDate>Tue, 11 May 2010 19:09:57 +0000</pubDate>
		<dc:creator>cleartext</dc:creator>
				<category><![CDATA[application security]]></category>
		<category><![CDATA[Risk Management]]></category>
		<category><![CDATA[security management]]></category>
		<category><![CDATA[vulnerabilities]]></category>
		<category><![CDATA[vulnerability scanning]]></category>
		<category><![CDATA[vulnerability management]]></category>

		<guid isPermaLink="false">http://edbellis.com/?p=161</guid>
		<description><![CDATA[This post was originally posted on CSO Online here. If you are working in an organization with any sizable technology infrastructure, it has probably become quite apparent that your vulnerability management program has a lot more &#8220;vulnerabilities&#8221; than &#8220;management&#8221;. I recently had an email exchange with Gene Kim, CTO at Tripwire, regarding this issue and [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=edbellis.com&amp;blog=345383&amp;post=161&amp;subd=cleartext&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://edbellis.com/2010/05/11/the-vulnerability-arms-race/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/5e4eb150ddc6e250691bb950ccedc3b5?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">cleartext</media:title>
		</media:content>
	</item>
		<item>
		<title>Streaming Announcements</title>
		<link>http://edbellis.com/2009/03/30/streaming-announcements/</link>
		<comments>http://edbellis.com/2009/03/30/streaming-announcements/#comments</comments>
		<pubDate>Mon, 30 Mar 2009 21:39:56 +0000</pubDate>
		<dc:creator>cleartext</dc:creator>
				<category><![CDATA[application security]]></category>
		<category><![CDATA[event]]></category>
		<category><![CDATA[PCI]]></category>
		<category><![CDATA[podcasts]]></category>
		<category><![CDATA[speaking engagements]]></category>
		<category><![CDATA[Anton Chuvakin]]></category>
		<category><![CDATA[BSIMM]]></category>
		<category><![CDATA[cso]]></category>
		<category><![CDATA[Matasano]]></category>
		<category><![CDATA[Mike Dahn]]></category>
		<category><![CDATA[OpenSAMM]]></category>
		<category><![CDATA[owasp]]></category>
		<category><![CDATA[SPSP]]></category>
		<category><![CDATA[Trey Ford]]></category>

		<guid isPermaLink="false">http://cleartext.wordpress.com/?p=115</guid>
		<description><![CDATA[Well March has been a BUSY month but I just wanted to post a bit of info out here about what&#8217;s been going on and what&#8217;s coming up. First off thanks to David Campbell, Kathy Thaxton and Eric Duprey for inviting me out to SnowFROC in Denver! I had a great time and just like [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=edbellis.com&amp;blog=345383&amp;post=115&amp;subd=cleartext&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://edbellis.com/2009/03/30/streaming-announcements/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/5e4eb150ddc6e250691bb950ccedc3b5?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">cleartext</media:title>
		</media:content>

		<media:content url="http://maplegate.info/assets/images/megaphone.jpg" medium="image">
			<media:title type="html">megaphone</media:title>
		</media:content>
	</item>
		<item>
		<title>March Events</title>
		<link>http://edbellis.com/2009/02/12/march-events/</link>
		<comments>http://edbellis.com/2009/02/12/march-events/#comments</comments>
		<pubDate>Thu, 12 Feb 2009 18:19:58 +0000</pubDate>
		<dc:creator>cleartext</dc:creator>
				<category><![CDATA[application security]]></category>
		<category><![CDATA[event]]></category>
		<category><![CDATA[security management]]></category>
		<category><![CDATA[speaking engagements]]></category>
		<category><![CDATA[vulnerabilities]]></category>
		<category><![CDATA[vulnerability scanning]]></category>
		<category><![CDATA[cso]]></category>
		<category><![CDATA[owasp]]></category>
		<category><![CDATA[pen testing]]></category>
		<category><![CDATA[vulnerability management]]></category>

		<guid isPermaLink="false">http://cleartext.wordpress.com/?p=107</guid>
		<description><![CDATA[Just a quick post to let you know of two events I&#8217;ll be participating in next month. On March 5th, OWASP SnowFROC is holding it&#8217;s second annual application security conference in Denver, Colorado. This promises to be a great event with a ton of good content and speakers. I&#8217;m honored to participate in this again [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=edbellis.com&amp;blog=345383&amp;post=107&amp;subd=cleartext&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://edbellis.com/2009/02/12/march-events/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/5e4eb150ddc6e250691bb950ccedc3b5?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">cleartext</media:title>
		</media:content>

		<media:content url="http://www.owasp.org/images/a/a2/SnowFROCblue.jpg" medium="image" />

		<media:content url="http://www.infosecuritywomen.com/images/CSO_cmky.jpg" medium="image" />
	</item>
		<item>
		<title>White List vs. Black List</title>
		<link>http://edbellis.com/2008/06/17/white-list-vs-black-list/</link>
		<comments>http://edbellis.com/2008/06/17/white-list-vs-black-list/#comments</comments>
		<pubDate>Tue, 17 Jun 2008 13:37:44 +0000</pubDate>
		<dc:creator>cleartext</dc:creator>
				<category><![CDATA[application security]]></category>
		<category><![CDATA[books]]></category>
		<category><![CDATA[economics]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[black list]]></category>
		<category><![CDATA[dan geer]]></category>
		<category><![CDATA[input validation]]></category>
		<category><![CDATA[jeremiah grossman]]></category>
		<category><![CDATA[white list]]></category>

		<guid isPermaLink="false">http://cleartext.wordpress.com/?p=50</guid>
		<description><![CDATA[Jeremiah Grossman posted an entry on his blog yesterday about why most WAF&#8217;s are not currently implemented in blocking mode. To steal from Jeremiah who borrows from Dan Geer, &#8220;When you know nothing, permit-all is the only option. When you know something, default-permit is what you can and should do. When you know everything, default-deny [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=edbellis.com&amp;blog=345383&amp;post=50&amp;subd=cleartext&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://edbellis.com/2008/06/17/white-list-vs-black-list/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/5e4eb150ddc6e250691bb950ccedc3b5?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">cleartext</media:title>
		</media:content>

		<media:content url="http://farm1.static.flickr.com/21/30406585_6b082c0df0_m.jpg" medium="image" />

		<media:content url="http://www.addthis.com/images/button1-bm.gif" medium="image">
			<media:title type="html">AddThis Social Bookmark Button</media:title>
		</media:content>
	</item>
	</channel>
</rss>
