<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Soulseek P2P Application Vulnerable to Remote Takeover</title>
	<atom:link href="http://torrentfreak.com/soulseek-p2p-application-vulnerable-to-remote-takeover-090530/feed/" rel="self" type="application/rss+xml" />
	<link>http://torrentfreak.com/soulseek-p2p-application-vulnerable-to-remote-takeover-090530/</link>
	<description>Torrent News, Torrent Sites and the latest Scoops</description>
	<lastBuildDate>Sun, 22 Nov 2009 17:03:18 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.3</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Chiquitin</title>
		<link>http://torrentfreak.com/soulseek-p2p-application-vulnerable-to-remote-takeover-090530/#comment-567466</link>
		<dc:creator>Chiquitin</dc:creator>
		<pubDate>Mon, 08 Jun 2009 07:28:38 +0000</pubDate>
		<guid isPermaLink="false">http://torrentfreak.com/?p=13583#comment-567466</guid>
		<description>It&#039;s visible again.

http://forums.slsknet.org/ipb/index.php?showtopic=24110</description>
		<content:encoded><![CDATA[<p>It&#8217;s visible again.</p>
<p><a href="http://forums.slsknet.org/ipb/index.php?showtopic=24110" rel="nofollow">http://forums.slsknet.org/ipb/index.php?showtopic=24110</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Chiquitin</title>
		<link>http://torrentfreak.com/soulseek-p2p-application-vulnerable-to-remote-takeover-090530/#comment-566758</link>
		<dc:creator>Chiquitin</dc:creator>
		<pubDate>Sat, 06 Jun 2009 09:32:21 +0000</pubDate>
		<guid isPermaLink="false">http://torrentfreak.com/?p=13583#comment-566758</guid>
		<description>Edit:

the topic was made invisible as suggested by Laurent Gaffié.</description>
		<content:encoded><![CDATA[<p>Edit:</p>
<p>the topic was made invisible as suggested by Laurent Gaffié.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Chiquitin</title>
		<link>http://torrentfreak.com/soulseek-p2p-application-vulnerable-to-remote-takeover-090530/#comment-566757</link>
		<dc:creator>Chiquitin</dc:creator>
		<pubDate>Sat, 06 Jun 2009 09:29:30 +0000</pubDate>
		<guid isPermaLink="false">http://torrentfreak.com/?p=13583#comment-566757</guid>
		<description>It&#039;s fixed. The first patch was on the server side, the remaining issue on the client side is now also patched, so, &quot;updateslsk&quot;, you&#039;re wrong. And &quot;/usr/local/dick&quot;, as explained, the topic was make invisible as suggested by the Laurent Gaffié.

http://forums.slsknet.org/ipb/index.php?showtopic=24181</description>
		<content:encoded><![CDATA[<p>It&#8217;s fixed. The first patch was on the server side, the remaining issue on the client side is now also patched, so, &#8220;updateslsk&#8221;, you&#8217;re wrong. And &#8220;/usr/local/dick&#8221;, as explained, the topic was make invisible as suggested by the Laurent Gaffié.</p>
<p><a href="http://forums.slsknet.org/ipb/index.php?showtopic=24181" rel="nofollow">http://forums.slsknet.org/ipb/index.php?showtopic=24181</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: /usr/local/dick</title>
		<link>http://torrentfreak.com/soulseek-p2p-application-vulnerable-to-remote-takeover-090530/#comment-566691</link>
		<dc:creator>/usr/local/dick</dc:creator>
		<pubDate>Fri, 05 Jun 2009 18:06:21 +0000</pubDate>
		<guid isPermaLink="false">http://torrentfreak.com/?p=13583#comment-566691</guid>
		<description>After responding to a worried user last week on the SLSK forum that he should not use the buggy Windows client software any more until a fix was released, I found out the entire topic had been deleted!

The lame developers just do not respond to security reports for almost a year, and only after researcher Laurent Gaffié goes public on FD they suddenly wake up and fix their app.

Way to go guys.</description>
		<content:encoded><![CDATA[<p>After responding to a worried user last week on the SLSK forum that he should not use the buggy Windows client software any more until a fix was released, I found out the entire topic had been deleted!</p>
<p>The lame developers just do not respond to security reports for almost a year, and only after researcher Laurent Gaffié goes public on FD they suddenly wake up and fix their app.</p>
<p>Way to go guys.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: updateslsk</title>
		<link>http://torrentfreak.com/soulseek-p2p-application-vulnerable-to-remote-takeover-090530/#comment-566454</link>
		<dc:creator>updateslsk</dc:creator>
		<pubDate>Thu, 04 Jun 2009 17:35:24 +0000</pubDate>
		<guid isPermaLink="false">http://torrentfreak.com/?p=13583#comment-566454</guid>
		<description>A new client as been released patching this issue according to the changelog file : slsknet.org/changelog.html
Also it seems that you can still exploit this security hole by sending directly a search query to another peer using another soulseek version than 157 NS 13e</description>
		<content:encoded><![CDATA[<p>A new client as been released patching this issue according to the changelog file : slsknet.org/changelog.html<br />
Also it seems that you can still exploit this security hole by sending directly a search query to another peer using another soulseek version than 157 NS 13e</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: updateslsk</title>
		<link>http://torrentfreak.com/soulseek-p2p-application-vulnerable-to-remote-takeover-090530/#comment-566452</link>
		<dc:creator>updateslsk</dc:creator>
		<pubDate>Thu, 04 Jun 2009 17:33:47 +0000</pubDate>
		<guid isPermaLink="false">http://torrentfreak.com/?p=13583#comment-566452</guid>
		<description>A new client as been released patching this issue according to the changelog file : http://slsknet.org/changelog.html
Also it seems that you can still exploit this security hole by sending directly a search query to another peer using another soulseek version than 157 NS 13e</description>
		<content:encoded><![CDATA[<p>A new client as been released patching this issue according to the changelog file : <a href="http://slsknet.org/changelog.html" rel="nofollow">http://slsknet.org/changelog.html</a><br />
Also it seems that you can still exploit this security hole by sending directly a search query to another peer using another soulseek version than 157 NS 13e</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Soulseek inseguro &#124; Remixtures</title>
		<link>http://torrentfreak.com/soulseek-p2p-application-vulnerable-to-remote-takeover-090530/#comment-566113</link>
		<dc:creator>Soulseek inseguro &#124; Remixtures</dc:creator>
		<pubDate>Wed, 03 Jun 2009 06:55:59 +0000</pubDate>
		<guid isPermaLink="false">http://torrentfreak.com/?p=13583#comment-566113</guid>
		<description>[...] o TorrentFreak, a falha foi detectada em Julho de 2008 pelo investigador em segurança informática Laurent [...]</description>
		<content:encoded><![CDATA[<p>[...] o TorrentFreak, a falha foi detectada em Julho de 2008 pelo investigador em segurança informática Laurent [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Nir Arbel</title>
		<link>http://torrentfreak.com/soulseek-p2p-application-vulnerable-to-remote-takeover-090530/#comment-566064</link>
		<dc:creator>Nir Arbel</dc:creator>
		<pubDate>Tue, 02 Jun 2009 23:08:17 +0000</pubDate>
		<guid isPermaLink="false">http://torrentfreak.com/?p=13583#comment-566064</guid>
		<description>It wasn&#039;t a fake patch, all major avenues of search have been protected from this kind of abuse. The last remaining avenue has to do with some legacy code, is harder to exploit, and likely to affect a much smaller number of users. A client will be released very soon to prevent this last contingency.</description>
		<content:encoded><![CDATA[<p>It wasn&#8217;t a fake patch, all major avenues of search have been protected from this kind of abuse. The last remaining avenue has to do with some legacy code, is harder to exploit, and likely to affect a much smaller number of users. A client will be released very soon to prevent this last contingency.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: phil</title>
		<link>http://torrentfreak.com/soulseek-p2p-application-vulnerable-to-remote-takeover-090530/#comment-566043</link>
		<dc:creator>phil</dc:creator>
		<pubDate>Tue, 02 Jun 2009 21:01:03 +0000</pubDate>
		<guid isPermaLink="false">http://torrentfreak.com/?p=13583#comment-566043</guid>
		<description>Fake patch !
Still works !

http://forums.slsknet.org/ipb/index.php?showtopic=24110&amp;st=0&amp;gopid=270684</description>
		<content:encoded><![CDATA[<p>Fake patch !<br />
Still works !</p>
<p><a href="http://forums.slsknet.org/ipb/index.php?showtopic=24110&amp;st=0&amp;gopid=270684" rel="nofollow">http://forums.slsknet.org/ipb/index.php?showtopic=24110&amp;st=0&amp;gopid=270684</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Bedazzler</title>
		<link>http://torrentfreak.com/soulseek-p2p-application-vulnerable-to-remote-takeover-090530/#comment-565716</link>
		<dc:creator>Bedazzler</dc:creator>
		<pubDate>Mon, 01 Jun 2009 17:50:12 +0000</pubDate>
		<guid isPermaLink="false">http://torrentfreak.com/?p=13583#comment-565716</guid>
		<description>let us know if there&#039;s update thx</description>
		<content:encoded><![CDATA[<p>let us know if there&#8217;s update thx</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Anonymous</title>
		<link>http://torrentfreak.com/soulseek-p2p-application-vulnerable-to-remote-takeover-090530/#comment-565708</link>
		<dc:creator>Anonymous</dc:creator>
		<pubDate>Mon, 01 Jun 2009 17:20:42 +0000</pubDate>
		<guid isPermaLink="false">http://torrentfreak.com/?p=13583#comment-565708</guid>
		<description>all i can say is, that everyone pays ...


http://rockimg.com/share-22F0_4A244FF7.html</description>
		<content:encoded><![CDATA[<p>all i can say is, that everyone pays &#8230;</p>
<p><a href="http://rockimg.com/share-22F0_4A244FF7.html" rel="nofollow">http://rockimg.com/share-22F0_4A244FF7.html</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jons</title>
		<link>http://torrentfreak.com/soulseek-p2p-application-vulnerable-to-remote-takeover-090530/#comment-565664</link>
		<dc:creator>Jons</dc:creator>
		<pubDate>Mon, 01 Jun 2009 15:12:46 +0000</pubDate>
		<guid isPermaLink="false">http://torrentfreak.com/?p=13583#comment-565664</guid>
		<description>With how ungodly often I hear about it, you’d think that programmers would start taking special precautions to make sure it doesn’t happen.
http://pdfstack.com/</description>
		<content:encoded><![CDATA[<p>With how ungodly often I hear about it, you’d think that programmers would start taking special precautions to make sure it doesn’t happen.<br />
<a href="http://pdfstack.com/" rel="nofollow">http://pdfstack.com/</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: FIRSTMAN</title>
		<link>http://torrentfreak.com/soulseek-p2p-application-vulnerable-to-remote-takeover-090530/#comment-565573</link>
		<dc:creator>FIRSTMAN</dc:creator>
		<pubDate>Mon, 01 Jun 2009 04:58:21 +0000</pubDate>
		<guid isPermaLink="false">http://torrentfreak.com/?p=13583#comment-565573</guid>
		<description>F
I
R
S
T
!
!
!
!</description>
		<content:encoded><![CDATA[<p>F<br />
I<br />
R<br />
S<br />
T<br />
!<br />
!<br />
!<br />
!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Anonymous</title>
		<link>http://torrentfreak.com/soulseek-p2p-application-vulnerable-to-remote-takeover-090530/#comment-565498</link>
		<dc:creator>Anonymous</dc:creator>
		<pubDate>Sun, 31 May 2009 18:13:54 +0000</pubDate>
		<guid isPermaLink="false">http://torrentfreak.com/?p=13583#comment-565498</guid>
		<description>yay fixeded!11</description>
		<content:encoded><![CDATA[<p>yay fixeded!11</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: mirrormagic</title>
		<link>http://torrentfreak.com/soulseek-p2p-application-vulnerable-to-remote-takeover-090530/#comment-565470</link>
		<dc:creator>mirrormagic</dc:creator>
		<pubDate>Sun, 31 May 2009 15:34:58 +0000</pubDate>
		<guid isPermaLink="false">http://torrentfreak.com/?p=13583#comment-565470</guid>
		<description>Using spotify now, and happy. 

But I remember the soulseek days as a slow, but exciting pleasure in a not to distant past. Funny how quick-fast things change lately. Makes me think of Terence McKenna and his singularity concept.</description>
		<content:encoded><![CDATA[<p>Using spotify now, and happy. </p>
<p>But I remember the soulseek days as a slow, but exciting pleasure in a not to distant past. Funny how quick-fast things change lately. Makes me think of Terence McKenna and his singularity concept.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: phil</title>
		<link>http://torrentfreak.com/soulseek-p2p-application-vulnerable-to-remote-takeover-090530/#comment-565425</link>
		<dc:creator>phil</dc:creator>
		<pubDate>Sun, 31 May 2009 11:16:30 +0000</pubDate>
		<guid isPermaLink="false">http://torrentfreak.com/?p=13583#comment-565425</guid>
		<description>looks like it as been patched today !
http://forums.slsknet.org/ipb/index.php?s=&amp;showtopic=24110&amp;view=findpost&amp;p=270519

Maybe having an email like security@slsknet.org would avoid this kind of situation !</description>
		<content:encoded><![CDATA[<p>looks like it as been patched today !<br />
<a href="http://forums.slsknet.org/ipb/index.php?s=&amp;showtopic=24110&amp;view=findpost&amp;p=270519" rel="nofollow">http://forums.slsknet.org/ipb/index.php?s=&amp;showtopic=24110&amp;view=findpost&amp;p=270519</a></p>
<p>Maybe having an email like <a href="mailto:security@slsknet.org">security@slsknet.org</a> would avoid this kind of situation !</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Anonymous</title>
		<link>http://torrentfreak.com/soulseek-p2p-application-vulnerable-to-remote-takeover-090530/#comment-565392</link>
		<dc:creator>Anonymous</dc:creator>
		<pubDate>Sun, 31 May 2009 09:21:56 +0000</pubDate>
		<guid isPermaLink="false">http://torrentfreak.com/?p=13583#comment-565392</guid>
		<description>I can&#039;t download anything from Soulseek anymore, it&#039;s ruined.</description>
		<content:encoded><![CDATA[<p>I can&#8217;t download anything from Soulseek anymore, it&#8217;s ruined.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: q eye</title>
		<link>http://torrentfreak.com/soulseek-p2p-application-vulnerable-to-remote-takeover-090530/#comment-565361</link>
		<dc:creator>q eye</dc:creator>
		<pubDate>Sun, 31 May 2009 02:17:53 +0000</pubDate>
		<guid isPermaLink="false">http://torrentfreak.com/?p=13583#comment-565361</guid>
		<description>Sounds FABuLoUs darling !</description>
		<content:encoded><![CDATA[<p>Sounds FABuLoUs darling !</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Anonymous</title>
		<link>http://torrentfreak.com/soulseek-p2p-application-vulnerable-to-remote-takeover-090530/#comment-565351</link>
		<dc:creator>Anonymous</dc:creator>
		<pubDate>Sun, 31 May 2009 01:05:25 +0000</pubDate>
		<guid isPermaLink="false">http://torrentfreak.com/?p=13583#comment-565351</guid>
		<description>Oops!

@34
Yep, the key word being &quot;most&quot; of the time and that is why people pay other people to revise their work after they finished writing, at least those who can afford to do it which I think Soulseek can’t because it’s not opensource, it’s a closed source app.</description>
		<content:encoded><![CDATA[<p>Oops!</p>
<p>@34<br />
Yep, the key word being &#8220;most&#8221; of the time and that is why people pay other people to revise their work after they finished writing, at least those who can afford to do it which I think Soulseek can’t because it’s not opensource, it’s a closed source app.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Anonymous</title>
		<link>http://torrentfreak.com/soulseek-p2p-application-vulnerable-to-remote-takeover-090530/#comment-565350</link>
		<dc:creator>Anonymous</dc:creator>
		<pubDate>Sun, 31 May 2009 01:01:39 +0000</pubDate>
		<guid isPermaLink="false">http://torrentfreak.com/?p=13583#comment-565350</guid>
		<description>@32:

Yep, that is why people pay people to revise their work after they finish writing at least those who can afford to do it which I think soulseek can&#039;t because it&#039;s not opensource it&#039;s a closed source app.</description>
		<content:encoded><![CDATA[<p>@32:</p>
<p>Yep, that is why people pay people to revise their work after they finish writing at least those who can afford to do it which I think soulseek can&#8217;t because it&#8217;s not opensource it&#8217;s a closed source app.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
