<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://forums.iis.net/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:cs="http://blogs.iis.net/"><channel><title>Security</title><link>http://forums.iis.net/1031.aspx</link><description>A forum aimed at helping understand IIS security such as Authentication, IP restrictions, and SSL</description><dc:language>en</dc:language><generator>CommunityServer 2007 SP1 (Build: 20510.895)</generator><item><title>Re: How to grok current exploits on a IIS (6) server</title><link>http://forums.iis.net/thread/1909848.aspx</link><pubDate>Fri, 10 Jul 2009 08:33:20 GMT</pubDate><guid isPermaLink="false">50bcf3b4-f6fe-4638-adff-0c150e922e99:1909848</guid><dc:creator>Paul Lynch</dc:creator><slash:comments>0</slash:comments><comments>http://forums.iis.net/thread/1909848.aspx</comments><wfw:commentRss>http://forums.iis.net/commentrss.aspx?SectionID=1031&amp;PostID=1909848</wfw:commentRss><description>&lt;p&gt;Hi,&lt;/p&gt;&lt;p&gt;Use this for your platform :&lt;/p&gt;&lt;p&gt;&lt;a href="http://technet.microsoft.com/en-us/security/cc184923.aspx"&gt;http://technet.microsoft.com/en-us/security/cc184923.aspx&lt;/a&gt;&lt;/p&gt;&lt;p&gt;And this for your code :&lt;/p&gt;&lt;p&gt;&lt;a href="http://www.microsoft.com/technet/security/advisory/954462.mspx"&gt;http://www.microsoft.com/technet/security/advisory/954462.mspx&lt;/a&gt;&lt;/p&gt;&lt;p&gt;Regards, &lt;br /&gt;&lt;/p&gt;</description></item><item><title>How to grok current exploits on a IIS (6) server</title><link>http://forums.iis.net/thread/1909827.aspx</link><pubDate>Fri, 10 Jul 2009 04:06:43 GMT</pubDate><guid isPermaLink="false">50bcf3b4-f6fe-4638-adff-0c150e922e99:1909827</guid><dc:creator>MikeGale</dc:creator><slash:comments>0</slash:comments><comments>http://forums.iis.net/thread/1909827.aspx</comments><wfw:commentRss>http://forums.iis.net/commentrss.aspx?SectionID=1031&amp;PostID=1909827</wfw:commentRss><description>&lt;p&gt;I code up sites written for ASP.NET 3.5.&lt;/p&gt;
&lt;p&gt;They have security built in but I&amp;#39;d like to go further.&lt;/p&gt;
&lt;p&gt;&amp;nbsp;I&amp;#39;d like to understand what exploits are currently being used and attempt those on various versions of sites.&amp;nbsp; (Staging and live.)&lt;/p&gt;
&lt;p&gt;&amp;nbsp;Having had a quick look at&amp;nbsp;cracker tools, I&amp;#39;d prefer a tech. savvy high level view, and insight from others who&amp;#39;ve been through this.&lt;/p&gt;
&lt;p&gt;&amp;nbsp;What suggestions?&lt;/p&gt;</description></item></channel></rss>