<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/">
    <channel>
        <title>XSS Worm Library</title>
        <description>As xss worms become more prevelant in web applications so will the need to study and categorise them. Therefore I am proposing a project (to be coded by ourselves) that will provide a centralized storage point for them.

If you are interested in getting involved please post in here so we can start planning.</description>
        <link>http://sla.ckers.org/forum/read.php?12,5140,5140#msg-5140</link>
        <lastBuildDate>Mon, 20 May 2013 12:03:14 -0500</lastBuildDate>
        <generator>Phorum 5.2.15a</generator>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?12,5140,5772#msg-5772</guid>
            <title>Re: XSS Worm Library</title>
            <link>http://sla.ckers.org/forum/read.php?12,5140,5772#msg-5772</link>
            <description><![CDATA[Exactly, I was thinking a free webhost. Or just a sandbox type thing on a normal server.]]></description>
            <dc:creator>Spikeman</dc:creator>
            <category>Projects</category>
            <pubDate>Tue, 23 Jan 2007 16:41:48 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?12,5140,5643#msg-5643</guid>
            <title>Re: XSS Worm Library</title>
            <link>http://sla.ckers.org/forum/read.php?12,5140,5643#msg-5643</link>
            <description><![CDATA[@Spikeman, Mmkay what you're saying is to put up a server with real holes in it. Yeah could be done, but I guess into a protected/sandboxed area that is :)]]></description>
            <dc:creator>jungsonn</dc:creator>
            <category>Projects</category>
            <pubDate>Mon, 22 Jan 2007 04:21:19 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?12,5140,5639#msg-5639</guid>
            <title>Re: XSS Worm Library</title>
            <link>http://sla.ckers.org/forum/read.php?12,5140,5639#msg-5639</link>
            <description><![CDATA[That might be useful.]]></description>
            <dc:creator>Spikeman</dc:creator>
            <category>Projects</category>
            <pubDate>Sun, 21 Jan 2007 22:11:30 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?12,5140,5626#msg-5626</guid>
            <title>Re: XSS Worm Library</title>
            <link>http://sla.ckers.org/forum/read.php?12,5140,5626#msg-5626</link>
            <description><![CDATA[i have a sample shopping cart site on my local machine which i use...i can put it on the server for everyone to test it]]></description>
            <dc:creator>anurag</dc:creator>
            <category>Projects</category>
            <pubDate>Sun, 21 Jan 2007 13:16:58 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?12,5140,5613#msg-5613</guid>
            <title>Re: XSS Worm Library</title>
            <link>http://sla.ckers.org/forum/read.php?12,5140,5613#msg-5613</link>
            <description><![CDATA[You know what might be helpful? If someone sets up a test site, like a site with profiles or something, and some basic XSS filters. Just for a proof-of-concept/challenge.]]></description>
            <dc:creator>Spikeman</dc:creator>
            <category>Projects</category>
            <pubDate>Sat, 20 Jan 2007 22:17:05 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?12,5140,5594#msg-5594</guid>
            <title>Re: XSS Worm Library</title>
            <link>http://sla.ckers.org/forum/read.php?12,5140,5594#msg-5594</link>
            <description><![CDATA[I've started something like this here:<br />
http://www.gnucitizen.org/topics/atom-database]]></description>
            <dc:creator>pdp.gnucitizen</dc:creator>
            <category>Projects</category>
            <pubDate>Sat, 20 Jan 2007 08:02:02 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?12,5140,5525#msg-5525</guid>
            <title>Re: XSS Worm Library</title>
            <link>http://sla.ckers.org/forum/read.php?12,5140,5525#msg-5525</link>
            <description><![CDATA[RSnake wrote -<br />
&gt; There is one thing I got a request for and another <br />
&gt; thing I have felt has been seriously lacking for <br />
&gt; many years now. The first query was for a <br />
&gt; complete attack library. Sort of like the XSS <br />
&gt; cheat sheet, but more like, &quot;x function can be <br />
&gt; used for ....&quot; for all the event handlers, for <br />
&gt; all the browsers, etc... a far far more robust <br />
&gt; way to keep all the data at our disposal.<br />
<br />
<br />
Would you be demonstrating a Proof of concept for these as well?]]></description>
            <dc:creator>anurag</dc:creator>
            <category>Projects</category>
            <pubDate>Thu, 18 Jan 2007 22:22:50 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?12,5140,5332#msg-5332</guid>
            <title>Re: XSS Worm Library</title>
            <link>http://sla.ckers.org/forum/read.php?12,5140,5332#msg-5332</link>
            <description><![CDATA[going out of track ! (possibly)]]></description>
            <dc:creator>_sniff</dc:creator>
            <category>Projects</category>
            <pubDate>Mon, 15 Jan 2007 22:50:41 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?12,5140,5304#msg-5304</guid>
            <title>Re: XSS Worm Library</title>
            <link>http://sla.ckers.org/forum/read.php?12,5140,5304#msg-5304</link>
            <description><![CDATA[I've seen AttackAPI before, and although I think it's a good project, it's actually very heavyweight because it does literally too many things.  Most of the time I just want one function or two at most.  Slicing up AttackAPI into it's base components is really more what I'm talking about.  I don't think we'd be re-inventing the wheel, because what I am talking about is far more wide reaching than a simple module.  I'm talking about every JavaScript function mapped out from an attacker's perspective.  The concept of a library is more than just &quot;here it is&quot; mentality.  It's &quot;here's how it's built&quot; &quot;here's why it works&quot; &quot;here's the sites it has worked on&quot; blah blah.<br />
<br />
Further, and more interesting for the wiki is common answers to questions we have to repeat all the time.  I don't know how many times I've explained why POST vs GET doesn't secure people, but I still have to explain it again.  A wiki is ideal for that.  It's not ideal for giving someone an API to do attacks (like you have built) but it is a very versatile learning/teaching tool.]]></description>
            <dc:creator>rsnake</dc:creator>
            <category>Projects</category>
            <pubDate>Mon, 15 Jan 2007 16:39:01 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?12,5140,5281#msg-5281</guid>
            <title>Re: XSS Worm Library</title>
            <link>http://sla.ckers.org/forum/read.php?12,5140,5281#msg-5281</link>
            <description><![CDATA[RSnake, there is an Attack library for Web Related Attacks and it is getting quite big and stable now. May I bring everyone’s attention to AttackAPI (http://www.gnucitizen.org/projects/attackapi/). So far, it has quite a lot of features and others are coming. I am currently doing some quite interesting stuff that will be part of AttackAPI. I don't mind if you start another Attack library, actually it is a great news, however, don't you think that it is a bit like reinventing the wheel. We can improve on what we have now. Anyway, some great stuff are coming on this forum.<br />
<br />
I have started a Worm repository a couple of months ago. You can preview it here: http://www.gnucitizen.org/topics/myspace-worms<br />
<br />
This GNUCITIZEN Topic is about AJAX worms in general. If you discover an AJAX worm and you like to share it, please do so. It will be a good idea to keep some kind of source repository for these worms. There is a subversion for it on http://www.gnucitizen.org/svn but you won't be able to see it for now cuz I am currently doing some dev stuff.<br />
<br />
digi7al64, you have some cool ideas my man. :)<br />
<br />
Other then that, I believe that this project can be hosted anywhere. You don't need to buy domains and build some kind of organizational structure for it. After all, this is just a project. You don't want to become a slave of your own project, do you? :)<br />
<br />
I wanted to put it on GNUCITIZEN mainly because it will fit into GNUCITIZEN practice to release applications and services for free to the public. The members of the project will also be able to contribute with articles for the blog, which I believe is cool since others can have their say too. I am currently deploying a multi user blogging system. There still will be guest bloggers, one per month. :)<br />
<br />
rsnake Wrote:<br />
-------------------------------------------------------<br />
&gt; tra.ckers.org makes sense given the other things I<br />
&gt; want to do with a wiki.  Well I might as well<br />
&gt; spill the beans to get people's feedback.  <br />
&gt; <br />
&gt; There is one thing I got a request for and another<br />
&gt; thing I have felt has been seriously lacking for<br />
&gt; many years now.  The first query was for a<br />
&gt; complete attack library.  Sort of like the XSS<br />
&gt; cheat sheet, but more like, &quot;x function can be<br />
&gt; used for ....&quot;  for all the event handlers, for<br />
&gt; all the browsers, etc...  a far far more robust<br />
&gt; way to keep all the data at our disposal.<br />
&gt; <br />
&gt; The second thing that I've felt has been missing<br />
&gt; for years is a contact list.  Each company name<br />
&gt; could have an entry that lists both contact<br />
&gt; information and any known/fixed holes.  That way<br />
&gt; we can keep track of how fast things were closed<br />
&gt; (if that's interesting) but more importantly it<br />
&gt; can become a repository for allowing quick<br />
&gt; disclosure to the companies in question if they<br />
&gt; are willing to give support/security contact<br />
&gt; information.  What do you guys think?]]></description>
            <dc:creator>pdp.gnucitizen</dc:creator>
            <category>Projects</category>
            <pubDate>Mon, 15 Jan 2007 03:32:00 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?12,5140,5215#msg-5215</guid>
            <title>Re: XSS Worm Library</title>
            <link>http://sla.ckers.org/forum/read.php?12,5140,5215#msg-5215</link>
            <description><![CDATA[You are reading my mind :) Security contact information database is something I really wanted to exist. I was thinking about it in context of local, Polish companies, but maybe a good example here will have some positive influence. My vote is definitely for!]]></description>
            <dc:creator>lpilorz</dc:creator>
            <category>Projects</category>
            <pubDate>Sat, 13 Jan 2007 16:48:51 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?12,5140,5208#msg-5208</guid>
            <title>Re: XSS Worm Library</title>
            <link>http://sla.ckers.org/forum/read.php?12,5140,5208#msg-5208</link>
            <description><![CDATA[tra.ckers.org makes sense given the other things I want to do with a wiki.  Well I might as well spill the beans to get people's feedback.  <br />
<br />
There is one thing I got a request for and another thing I have felt has been seriously lacking for many years now.  The first query was for a complete attack library.  Sort of like the XSS cheat sheet, but more like, &quot;x function can be used for ....&quot;  for all the event handlers, for all the browsers, etc...  a far far more robust way to keep all the data at our disposal.<br />
<br />
The second thing that I've felt has been missing for years is a contact list.  Each company name could have an entry that lists both contact information and any known/fixed holes.  That way we can keep track of how fast things were closed (if that's interesting) but more importantly it can become a repository for allowing quick disclosure to the companies in question if they are willing to give support/security contact information.  What do you guys think?]]></description>
            <dc:creator>rsnake</dc:creator>
            <category>Projects</category>
            <pubDate>Sat, 13 Jan 2007 13:01:57 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?12,5140,5202#msg-5202</guid>
            <title>Re: XSS Worm Library</title>
            <link>http://sla.ckers.org/forum/read.php?12,5140,5202#msg-5202</link>
            <description><![CDATA[perhaps wormtra.ckers.org .-.<br />
<br />
assuming it were hosted here<br />
<br />
-maluc]]></description>
            <dc:creator>maluc</dc:creator>
            <category>Projects</category>
            <pubDate>Sat, 13 Jan 2007 12:32:12 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?12,5140,5195#msg-5195</guid>
            <title>Re: XSS Worm Library</title>
            <link>http://sla.ckers.org/forum/read.php?12,5140,5195#msg-5195</link>
            <description><![CDATA[A wiki is cool, ha.ckers.org wiki. ^^ great!]]></description>
            <dc:creator>jungsonn</dc:creator>
            <category>Projects</category>
            <pubDate>Sat, 13 Jan 2007 07:27:36 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?12,5140,5184#msg-5184</guid>
            <title>Re: XSS Worm Library</title>
            <link>http://sla.ckers.org/forum/read.php?12,5140,5184#msg-5184</link>
            <description><![CDATA[Alright - I think we can agree that it should be a wiki type style set up. However i would interested to here what pdp.gnucitizen has in mind in relation to interactive components.<br />
<br />
So the next questions are <br />
&gt; Where is it going to be hosted? <br />
&gt; How will we adminstrate it?<br />
&gt; Will we code it ourselves?<br />
&gt; What data should we record.<br />
<br />
And with that last one, the wiki needs to be able to support retriving and returning specific records from a database. There is no point in having all this data in a free form text field as it can't be analysed. Therefore the wiki we need some type of controlled layout.]]></description>
            <dc:creator>digi7al64</dc:creator>
            <category>Projects</category>
            <pubDate>Fri, 12 Jan 2007 22:18:00 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?12,5140,5175#msg-5175</guid>
            <title>Re: XSS Worm Library</title>
            <link>http://sla.ckers.org/forum/read.php?12,5140,5175#msg-5175</link>
            <description><![CDATA[ya, i really don't think a blog style setup with comments as the main input would be  satisfactory.. and would get real messy real quick<br />
<br />
The wiki seems to be the best setup..<br />
<br />
-maluc]]></description>
            <dc:creator>maluc</dc:creator>
            <category>Projects</category>
            <pubDate>Fri, 12 Jan 2007 16:13:33 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?12,5140,5163#msg-5163</guid>
            <title>Re: XSS Worm Library</title>
            <link>http://sla.ckers.org/forum/read.php?12,5140,5163#msg-5163</link>
            <description><![CDATA[I'd actually preferr a wiki in a lot of ways.  We will probably be building one soon, once our hardware issues are completely resolved.  There are lots of other reasons I'd rather use a wiki, but I'll save those for a later date.]]></description>
            <dc:creator>rsnake</dc:creator>
            <category>Projects</category>
            <pubDate>Fri, 12 Jan 2007 13:39:23 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?12,5140,5151#msg-5151</guid>
            <title>Re: XSS Worm Library</title>
            <link>http://sla.ckers.org/forum/read.php?12,5140,5151#msg-5151</link>
            <description><![CDATA[Great to see so many people wish to get involved.<br />
<br />
Couple of things that i wish to put out there at this time.<br />
<br />
1. Currently, there is no one single organisation/group as yet doing this. Therefore we should hopefully be the first and providing we do it correctly, it can become &quot;parent&quot; authority on such attacks and the history of them.<br />
2. I envisionage the project being greater then any one person. Thus, eventually we could look to putting this project together under a different domain as opposed to a current one. Would you be happy with that approach, and how would a group obtain a domain name so no single 1 person is in control?<br />
3. As suggested by maluc, we need to collect and record a number of key indicators along with the scripts themselves (also I believe some type of write up/review/breakdown and/or analysis on each worm is also required)<br />
4. As suggested by pdp.gnucitizen we should make the project interactive, thus we could have a sandbox type feature in which users could &quot;test&quot; the worm in real time. Or perhaps even create and or modify the worm itself.<br />
5. We will need to come together and agree to some concrete guidelines for classifications etc.<br />
6. Perhaps (though i doubt it) we could contact some developers of sites that have had xss worms and talk to them about detection methods etc.<br />
<br />
... so that is about it. feedback, comments and/or criticisms welcome. but most importantly how should we go be about approaching the project? Where shall we start, do we want a development team, research team etc or do we just want to contribute whatever we can, whereever we can?]]></description>
            <dc:creator>digi7al64</dc:creator>
            <category>Projects</category>
            <pubDate>Fri, 12 Jan 2007 10:21:31 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?12,5140,5150#msg-5150</guid>
            <title>Re: XSS Worm Library</title>
            <link>http://sla.ckers.org/forum/read.php?12,5140,5150#msg-5150</link>
            <description><![CDATA[shall we do it than? We need to talk about the interface a bit... like what kind of interactive components should be available.]]></description>
            <dc:creator>pdp.gnucitizen</dc:creator>
            <category>Projects</category>
            <pubDate>Fri, 12 Jan 2007 09:05:41 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?12,5140,5148#msg-5148</guid>
            <title>Re: XSS Worm Library</title>
            <link>http://sla.ckers.org/forum/read.php?12,5140,5148#msg-5148</link>
            <description><![CDATA[grt idea.<br />
i m intrested in this too..!]]></description>
            <dc:creator>_sniff</dc:creator>
            <category>Projects</category>
            <pubDate>Fri, 12 Jan 2007 08:10:43 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?12,5140,5145#msg-5145</guid>
            <title>Re: XSS Worm Library</title>
            <link>http://sla.ckers.org/forum/read.php?12,5140,5145#msg-5145</link>
            <description><![CDATA[i can code an application that will allow worms to be categories, commented on, and previewed if that will help. I had similar plans for gnucitizen.org/worms]]></description>
            <dc:creator>pdp.gnucitizen</dc:creator>
            <category>Projects</category>
            <pubDate>Fri, 12 Jan 2007 06:30:59 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?12,5140,5142#msg-5142</guid>
            <title>Re: XSS Worm Library</title>
            <link>http://sla.ckers.org/forum/read.php?12,5140,5142#msg-5142</link>
            <description><![CDATA[&lt;--very interested<br />
<br />
and since the background of each worm, like target site, things it did, and number affected are pretty important .. i think it's probably best to throw them in a wiki format<br />
<br />
-maluc]]></description>
            <dc:creator>maluc</dc:creator>
            <category>Projects</category>
            <pubDate>Fri, 12 Jan 2007 04:33:35 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?12,5140,5140#msg-5140</guid>
            <title>XSS Worm Library</title>
            <link>http://sla.ckers.org/forum/read.php?12,5140,5140#msg-5140</link>
            <description><![CDATA[As xss worms become more prevelant in web applications so will the need to study and categorise them. Therefore I am proposing a project (to be coded by ourselves) that will provide a centralized storage point for them.<br />
<br />
If you are interested in getting involved please post in here so we can start planning.]]></description>
            <dc:creator>digi7al64</dc:creator>
            <category>Projects</category>
            <pubDate>Fri, 12 Jan 2007 03:51:25 -0600</pubDate>
        </item>
    </channel>
</rss>
