<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-8655943742409728731</id><updated>2011-07-08T09:47:25.064-07:00</updated><title type='text'>Security Reading Group</title><subtitle type='html'></subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://berkeley-security.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8655943742409728731/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://berkeley-security.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>Adrienne</name><uri>http://www.blogger.com/profile/02239287504359672100</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>5</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-8655943742409728731.post-8089940572712967172</id><published>2009-10-13T12:22:00.001-07:00</published><updated>2009-10-19T12:26:46.766-07:00</updated><title type='text'>Multiple Password Interference in Text Passwords and Click-Based Graphical Passwords</title><content type='html'>Sonia Chiasson et al, Carleton University.  Presented by Adrian Mettler.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8655943742409728731-8089940572712967172?l=berkeley-security.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://berkeley-security.blogspot.com/feeds/8089940572712967172/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://berkeley-security.blogspot.com/2009/10/multiple-password-interference-in-text.html#comment-form' title='40 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8655943742409728731/posts/default/8089940572712967172'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8655943742409728731/posts/default/8089940572712967172'/><link rel='alternate' type='text/html' href='http://berkeley-security.blogspot.com/2009/10/multiple-password-interference-in-text.html' title='Multiple Password Interference in Text Passwords and Click-Based Graphical Passwords'/><author><name>Adrienne</name><uri>http://www.blogger.com/profile/02239287504359672100</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>40</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8655943742409728731.post-6449834044368988223</id><published>2009-10-06T13:13:00.000-07:00</published><updated>2009-10-19T13:14:26.401-07:00</updated><title type='text'>Ripley: Automatically Securing Web 2.0 Applications Through Replicated Execution</title><content type='html'>K.Vikram, Abhishek Prateek, and Ben Livshits.  Presented by Joel Weinberger.  The paper presents a system, Ripley, which allows for the automatic replicated execution of a client-side program. In modern web applications and AJAX frameworks, more and more computation is pushed to the client in order to reduce the amount of communication between the client and server. However, as computation is pushed to the client, malicious users can abuse this to violate the integrity of data on the server. Ripley automatically extracts client computation so it can be replicated on the server and verified.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8655943742409728731-6449834044368988223?l=berkeley-security.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://berkeley-security.blogspot.com/feeds/6449834044368988223/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://berkeley-security.blogspot.com/2009/10/ripley-automatically-securing-web-20.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8655943742409728731/posts/default/6449834044368988223'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8655943742409728731/posts/default/6449834044368988223'/><link rel='alternate' type='text/html' href='http://berkeley-security.blogspot.com/2009/10/ripley-automatically-securing-web-20.html' title='Ripley: Automatically Securing Web 2.0 Applications Through Replicated Execution'/><author><name>Adrienne</name><uri>http://www.blogger.com/profile/02239287504359672100</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8655943742409728731.post-1043877485288595602</id><published>2009-09-29T12:24:00.000-07:00</published><updated>2009-10-19T12:25:29.098-07:00</updated><title type='text'>Static Enforcement of Web Application Integrity Through Strong Typing</title><content type='html'>Wil Robertson and Giovanni Vigna of UCSB.  Presented by Matthew Finifter.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8655943742409728731-1043877485288595602?l=berkeley-security.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://berkeley-security.blogspot.com/feeds/1043877485288595602/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://berkeley-security.blogspot.com/2009/09/static-enforcement-of-web-application.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8655943742409728731/posts/default/1043877485288595602'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8655943742409728731/posts/default/1043877485288595602'/><link rel='alternate' type='text/html' href='http://berkeley-security.blogspot.com/2009/09/static-enforcement-of-web-application.html' title='Static Enforcement of Web Application Integrity Through Strong Typing'/><author><name>Adrienne</name><uri>http://www.blogger.com/profile/02239287504359672100</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8655943742409728731.post-4355772702036214092</id><published>2009-09-22T13:14:00.000-07:00</published><updated>2009-10-19T13:15:22.164-07:00</updated><title type='text'>S.773, the cybersecurity bill in the Senate</title><content type='html'>Presented by Ari Rabkin.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8655943742409728731-4355772702036214092?l=berkeley-security.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://berkeley-security.blogspot.com/feeds/4355772702036214092/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://berkeley-security.blogspot.com/2009/09/s773-cybersecurity-bill-in-senate.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8655943742409728731/posts/default/4355772702036214092'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8655943742409728731/posts/default/4355772702036214092'/><link rel='alternate' type='text/html' href='http://berkeley-security.blogspot.com/2009/09/s773-cybersecurity-bill-in-senate.html' title='S.773, the cybersecurity bill in the Senate'/><author><name>Adrienne</name><uri>http://www.blogger.com/profile/02239287504359672100</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8655943742409728731.post-8801491525456998694</id><published>2009-09-08T12:25:00.000-07:00</published><updated>2009-10-19T13:03:40.334-07:00</updated><title type='text'>Crying Wolf: An Empirical Study of SSL Warning Effectiveness</title><content type='html'>Joshua Sunshine, Serge Egelman, Hazim Almuhimedi, Neha Atri, and Lorrie Faith Cranor, Carnegie Mellon University.  Presented by Erika Chin.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8655943742409728731-8801491525456998694?l=berkeley-security.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://berkeley-security.blogspot.com/feeds/8801491525456998694/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://berkeley-security.blogspot.com/2009/09/crying-wolf-empirical-study-of-ssl.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8655943742409728731/posts/default/8801491525456998694'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8655943742409728731/posts/default/8801491525456998694'/><link rel='alternate' type='text/html' href='http://berkeley-security.blogspot.com/2009/09/crying-wolf-empirical-study-of-ssl.html' title='Crying Wolf: An Empirical Study of SSL Warning Effectiveness'/><author><name>Adrienne</name><uri>http://www.blogger.com/profile/02239287504359672100</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry></feed>
