<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
		>
<channel>
	<title>Comments on: Brute force attack on Twitter</title>
	<atom:link href="http://hackaday.com/2009/01/07/brute-force-attack-on-twitter/feed/" rel="self" type="application/rss+xml" />
	<link>http://hackaday.com/2009/01/07/brute-force-attack-on-twitter/</link>
	<description>Fresh hacks every day</description>
	<lastBuildDate>Wed, 25 Nov 2009 20:28:29 +0000</lastBuildDate>
	<generator>http://wordpress.com/</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: kfcguy</title>
		<link>http://hackaday.com/2009/01/07/brute-force-attack-on-twitter/comment-page-1/#comment-58964</link>
		<dc:creator>kfcguy</dc:creator>
		<pubDate>Mon, 12 Jan 2009 23:29:40 +0000</pubDate>
		<guid isPermaLink="false">http://hackaday.com/?p=7606#comment-58964</guid>
		<description>More entertaining version at 
youtube.com/watch?v=AVMW3Dq2KSY</description>
		<content:encoded><![CDATA[<p>More entertaining version at<br />
youtube.com/watch?v=AVMW3Dq2KSY</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: coffee</title>
		<link>http://hackaday.com/2009/01/07/brute-force-attack-on-twitter/comment-page-1/#comment-58500</link>
		<dc:creator>coffee</dc:creator>
		<pubDate>Sat, 10 Jan 2009 03:38:24 +0000</pubDate>
		<guid isPermaLink="false">http://hackaday.com/?p=7606#comment-58500</guid>
		<description>did the Twitter Admin change his password to &quot;sadness&quot; after he was hacked?  haha</description>
		<content:encoded><![CDATA[<p>did the Twitter Admin change his password to &#8220;sadness&#8221; after he was hacked?  haha</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: c0smic</title>
		<link>http://hackaday.com/2009/01/07/brute-force-attack-on-twitter/comment-page-1/#comment-58452</link>
		<dc:creator>c0smic</dc:creator>
		<pubDate>Fri, 09 Jan 2009 17:17:52 +0000</pubDate>
		<guid isPermaLink="false">http://hackaday.com/?p=7606#comment-58452</guid>
		<description>ahhaha .. i think i need to update my dictionary list .. &quot;happiness&quot; will be top 10 in the que .. lol ..</description>
		<content:encoded><![CDATA[<p>ahhaha .. i think i need to update my dictionary list .. &#8220;happiness&#8221; will be top 10 in the que .. lol ..</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: IceBrain</title>
		<link>http://hackaday.com/2009/01/07/brute-force-attack-on-twitter/comment-page-1/#comment-58450</link>
		<dc:creator>IceBrain</dc:creator>
		<pubDate>Fri, 09 Jan 2009 17:07:30 +0000</pubDate>
		<guid isPermaLink="false">http://hackaday.com/?p=7606#comment-58450</guid>
		<description>The best method is what PHPBB uses, imho: if you fail 3 password guesses you have to enter a captcha along with the password. The process would slow down so much that a good password would take days to find.

You could also, after 10 or 15 bad guesses, disable the login for that account and send an email with an activation link.

Even a dictionary attack would probably fail to find &#039;happiness&#039; with just 10 tries.</description>
		<content:encoded><![CDATA[<p>The best method is what PHPBB uses, imho: if you fail 3 password guesses you have to enter a captcha along with the password. The process would slow down so much that a good password would take days to find.</p>
<p>You could also, after 10 or 15 bad guesses, disable the login for that account and send an email with an activation link.</p>
<p>Even a dictionary attack would probably fail to find &#8216;happiness&#8217; with just 10 tries.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: bencoder</title>
		<link>http://hackaday.com/2009/01/07/brute-force-attack-on-twitter/comment-page-1/#comment-58432</link>
		<dc:creator>bencoder</dc:creator>
		<pubDate>Fri, 09 Jan 2009 14:39:59 +0000</pubDate>
		<guid isPermaLink="false">http://hackaday.com/?p=7606#comment-58432</guid>
		<description>Coderer: Awesome... so if I want to lock someone out of an account all I need to do is make a script to enter a fake password every hour or so.</description>
		<content:encoded><![CDATA[<p>Coderer: Awesome&#8230; so if I want to lock someone out of an account all I need to do is make a script to enter a fake password every hour or so.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: monster</title>
		<link>http://hackaday.com/2009/01/07/brute-force-attack-on-twitter/comment-page-1/#comment-58354</link>
		<dc:creator>monster</dc:creator>
		<pubDate>Thu, 08 Jan 2009 22:47:34 +0000</pubDate>
		<guid isPermaLink="false">http://hackaday.com/?p=7606#comment-58354</guid>
		<description>my passwords are all as brute-force proof as possible, i have all my passwords set to zzzzzzzzzzzzzzzzzzzzz</description>
		<content:encoded><![CDATA[<p>my passwords are all as brute-force proof as possible, i have all my passwords set to zzzzzzzzzzzzzzzzzzzzz</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: steve</title>
		<link>http://hackaday.com/2009/01/07/brute-force-attack-on-twitter/comment-page-1/#comment-58347</link>
		<dc:creator>steve</dc:creator>
		<pubDate>Thu, 08 Jan 2009 21:12:45 +0000</pubDate>
		<guid isPermaLink="false">http://hackaday.com/?p=7606#comment-58347</guid>
		<description>@shadyman

I thought for sure no one else would get that sed joke.

sed -e &#039;s/hacker/cracker/g&#039;</description>
		<content:encoded><![CDATA[<p>@shadyman</p>
<p>I thought for sure no one else would get that sed joke.</p>
<p>sed -e &#8217;s/hacker/cracker/g&#8217;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: tecNik</title>
		<link>http://hackaday.com/2009/01/07/brute-force-attack-on-twitter/comment-page-1/#comment-58346</link>
		<dc:creator>tecNik</dc:creator>
		<pubDate>Thu, 08 Jan 2009 20:42:48 +0000</pubDate>
		<guid isPermaLink="false">http://hackaday.com/?p=7606#comment-58346</guid>
		<description>Tw[i/a]tter example:
“Today as I was walking down [address] I was frustrated about the number of cameras, rfid’s, etc that track my every move….”

irony-zing.

I keeps my knifes sharp incase I meet anyone that twitters about updating there blog. =/

(Excuse the double post &gt; tags messed it up and with no edit...)</description>
		<content:encoded><![CDATA[<p>Tw[i/a]tter example:<br />
“Today as I was walking down [address] I was frustrated about the number of cameras, rfid’s, etc that track my every move….”</p>
<p>irony-zing.</p>
<p>I keeps my knifes sharp incase I meet anyone that twitters about updating there blog. =/</p>
<p>(Excuse the double post &gt; tags messed it up and with no edit&#8230;)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: tecNik</title>
		<link>http://hackaday.com/2009/01/07/brute-force-attack-on-twitter/comment-page-1/#comment-58345</link>
		<dc:creator>tecNik</dc:creator>
		<pubDate>Thu, 08 Jan 2009 20:39:58 +0000</pubDate>
		<guid isPermaLink="false">http://hackaday.com/?p=7606#comment-58345</guid>
		<description>Tw&lt;i&gt;tter example:
&quot;Today as I was walking down  I was frustrated about the number of cameras, rfid&#039;s, etc that track my every move....&quot;

irony-zing.

I keeps my knifes sharp incase I meet anyone that twitters about updating there blog. =/</description>
		<content:encoded><![CDATA[<p>Tw<i>tter example:<br />
&#8220;Today as I was walking down  I was frustrated about the number of cameras, rfid&#8217;s, etc that track my every move&#8230;.&#8221;</p>
<p>irony-zing.</p>
<p>I keeps my knifes sharp incase I meet anyone that twitters about updating there blog. =/</i></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Coderer</title>
		<link>http://hackaday.com/2009/01/07/brute-force-attack-on-twitter/comment-page-1/#comment-58331</link>
		<dc:creator>Coderer</dc:creator>
		<pubDate>Thu, 08 Jan 2009 17:30:55 +0000</pubDate>
		<guid isPermaLink="false">http://hackaday.com/?p=7606#comment-58331</guid>
		<description>It&#039;s *so easy* to prevent brute-forcing, yet few do -- @TJ, who said &quot;it&#039;s not software vulnerability&quot;... yes, yes it is.  Three (/four/five) retries, then you&#039;re locked out for an hour.  Bam, I&#039;ve solved your problem, where&#039;s my big fat check?</description>
		<content:encoded><![CDATA[<p>It&#8217;s *so easy* to prevent brute-forcing, yet few do &#8212; @TJ, who said &#8220;it&#8217;s not software vulnerability&#8221;&#8230; yes, yes it is.  Three (/four/five) retries, then you&#8217;re locked out for an hour.  Bam, I&#8217;ve solved your problem, where&#8217;s my big fat check?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jake D. Hipster</title>
		<link>http://hackaday.com/2009/01/07/brute-force-attack-on-twitter/comment-page-1/#comment-58302</link>
		<dc:creator>Jake D. Hipster</dc:creator>
		<pubDate>Thu, 08 Jan 2009 07:55:13 +0000</pubDate>
		<guid isPermaLink="false">http://hackaday.com/?p=7606#comment-58302</guid>
		<description>&quot;Since we know how much you all love twitter,&quot;

Nice :)
I like that.</description>
		<content:encoded><![CDATA[<p>&#8220;Since we know how much you all love twitter,&#8221;</p>
<p>Nice :)<br />
I like that.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: the game</title>
		<link>http://hackaday.com/2009/01/07/brute-force-attack-on-twitter/comment-page-1/#comment-58281</link>
		<dc:creator>the game</dc:creator>
		<pubDate>Thu, 08 Jan 2009 04:00:11 +0000</pubDate>
		<guid isPermaLink="false">http://hackaday.com/?p=7606#comment-58281</guid>
		<description>internet hate machine</description>
		<content:encoded><![CDATA[<p>internet hate machine</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Shadyman</title>
		<link>http://hackaday.com/2009/01/07/brute-force-attack-on-twitter/comment-page-1/#comment-58280</link>
		<dc:creator>Shadyman</dc:creator>
		<pubDate>Thu, 08 Jan 2009 03:58:21 +0000</pubDate>
		<guid isPermaLink="false">http://hackaday.com/?p=7606#comment-58280</guid>
		<description>@jkb:

It looks like you forgot the &#039;g&#039; at the end. The comments still seem to be unchanged.

s/hacker/cracker/g

Fixed it for you :)</description>
		<content:encoded><![CDATA[<p>@jkb:</p>
<p>It looks like you forgot the &#8216;g&#8217; at the end. The comments still seem to be unchanged.</p>
<p>s/hacker/cracker/g</p>
<p>Fixed it for you :)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: TJHooker</title>
		<link>http://hackaday.com/2009/01/07/brute-force-attack-on-twitter/comment-page-1/#comment-58265</link>
		<dc:creator>TJHooker</dc:creator>
		<pubDate>Thu, 08 Jan 2009 02:13:21 +0000</pubDate>
		<guid isPermaLink="false">http://hackaday.com/?p=7606#comment-58265</guid>
		<description>@#7: Maybe under some other ideology. The majority of them have no software engineering skills. They exploit stupidity; under your statement that insinuates the stupid people are in the social majority. Kind of makes sense I guess.

The most skilled person on 4chan probably runs metasploit or milworm modules. Which apparently fail because they got into myspace and a lot of other places by trivial means- such as weak passwords.</description>
		<content:encoded><![CDATA[<p>@#7: Maybe under some other ideology. The majority of them have no software engineering skills. They exploit stupidity; under your statement that insinuates the stupid people are in the social majority. Kind of makes sense I guess.</p>
<p>The most skilled person on 4chan probably runs metasploit or milworm modules. Which apparently fail because they got into myspace and a lot of other places by trivial means- such as weak passwords.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Drew</title>
		<link>http://hackaday.com/2009/01/07/brute-force-attack-on-twitter/comment-page-1/#comment-58264</link>
		<dc:creator>Drew</dc:creator>
		<pubDate>Thu, 08 Jan 2009 02:09:19 +0000</pubDate>
		<guid isPermaLink="false">http://hackaday.com/?p=7606#comment-58264</guid>
		<description>first palin now this, this is awesome no one is safe from hackers. you know if your famous its pretty much inevitable that you will get hacked it seems.</description>
		<content:encoded><![CDATA[<p>first palin now this, this is awesome no one is safe from hackers. you know if your famous its pretty much inevitable that you will get hacked it seems.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
