<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>farscan blogs &#187; Software</title>
	<atom:link href="http://www.farscan.com/blogs/tag/software/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.farscan.com/blogs</link>
	<description>technology, innovation &#38; real-world expertise</description>
	<lastBuildDate>Wed, 09 Feb 2011 18:41:26 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
		<item>
		<title>Security Audit tool of the month: sqlmap</title>
		<link>http://www.farscan.com/blogs/2009/04/security-audit-tool-of-the-month-sqlmap/</link>
		<comments>http://www.farscan.com/blogs/2009/04/security-audit-tool-of-the-month-sqlmap/#comments</comments>
		<pubDate>Thu, 30 Apr 2009 19:56:57 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[Review]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Open Source]]></category>
		<category><![CDATA[Software]]></category>
		<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://www.farscan.com/blogs/?p=1985</guid>
		<description><![CDATA[A brief review of sqlmap: A SQL injection vulnerability / exploit tool.]]></description>
			<content:encoded><![CDATA[<p>One of the most common and dangerous web application vulnerabilities revolve around unsafe SQL (Structured Query Language) handling in applications. SQL injection is a type of security exploit in which the attacker inserts SQL code to a Web form input box to gain access to resources or make changes to data.</p>
<p>Successful SQL injection attempts can cause an attacker to not only steal data from a database, but also modify and/or delete it. Certain SQL Servers may also contain Stored and Extended Procedures (database server functions). If an attacker can obtain access to these Procedures it may be possible to compromise the entire system and through it, access other systems on the network.</p>
<p>Testing for SQL injection vulnerabilities is often a tedious and labor intensive process. Sqlmap is a powerful tool that aid in this test process. Currently at version 0.7 release candidate 1, sqlmap is a command-line automatic SQL Injection tool developed in python. </p>
<p>Its goal is to detect and take advantage of SQL injection vulnerabilities in web applications. Once it detects one or more SQL injections on the target host, the user can choose among a variety of options to retrieve remote DBMS databases, user names, tables, columns, enumerate entire DBMS, read system files and much more taking advantage of web application programming security flaws that lead to SQL injection vulnerabilities.</p>
<p>sqlmap implements multiple techniques to attempt and exploit a SQL injection vulnerability. Inferential blind SQL injection, also known as boolean based blind SQL injection, UNION query (inband) SQL injection, also known as full UNION query SQL injection and Batched (stacked) queries support, also known as multiple statements support.</p>
<p>In addition to the common input sources, the tool can also test cookies. Since many applications store their session information using a cookie, this is a common practice during SQL injection attempts — one that most penetration tests often overlook.</p>
<p>Sqlmap excels more at exploiting an identified SQL injection vulnerability than finding it. Even with the high degree of automation, it still takes some time to identify vulnerabilities and requires some knowledge of SQL injection techniques. </p>
<p>Latest version of sqlmap is available at <a href="http://sqlmap.sourceforge.net/">sourceforge</a>. For information on preventing SQL injection vulnerabilities, refer to this <a href="http://www.owasp.org/index.php/SQL_Injection_Prevention_Cheat_Sheet">cheat sheet</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.farscan.com/blogs/2009/04/security-audit-tool-of-the-month-sqlmap/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Open Source alternatives for Business</title>
		<link>http://www.farscan.com/blogs/2009/03/open-source-alternatives-for-business/</link>
		<comments>http://www.farscan.com/blogs/2009/03/open-source-alternatives-for-business/#comments</comments>
		<pubDate>Wed, 18 Mar 2009 20:46:36 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Developer]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[Open Source]]></category>
		<category><![CDATA[Software]]></category>
		<category><![CDATA[java]]></category>
		<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://www.farscan.com/blogs/?p=6</guid>
		<description><![CDATA[One of the common questions that come up during IT strategy discussions is around open source alternatives that businesses should keep an eye on, if not actively considering a migration to. This article examines some of the common open source alternatives that I have found most clients have been happy with in their production environment. [...]]]></description>
			<content:encoded><![CDATA[<p class="MsoNormal">One of the common questions that come up during IT strategy discussions is around open source alternatives that businesses should keep an eye on, if not actively considering a migration to. This article examines some of the common open source alternatives that I have found most clients have been happy with in their production environment. This is not intended to be an exhaustive list of open source alternatives. But, some of the top choices in selected categories that can get you started.<br />
<span id="more-6"></span></p>
<p class="MsoNormal">
<p class="MsoNormal">
<table class="MsoTableGrid" style="border: medium none; border-collapse: collapse;" border="0" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td style="border: 1pt solid windowtext; padding: 0in 5.4pt; background: #009999 none repeat scroll 0% 0%; width: 6.15in;" colspan="4" width="590" valign="top">
<h3 class="MsoNormal" style="text-align: center;"><span style="font-size: 14pt; color: white;">Part 1 &#8211; Developer tools<br />
</span></h3>
</td>
</tr>
<tr>
<td style="padding: 0in 5.4pt; width: 20.85pt;" width="28" valign="top">
<h4 class="MsoNormal"><strong>#</strong></h4>
</td>
<td style="padding: 0in 5.4pt; width: 76.4pt;" width="102" valign="top">
<h4 class="MsoNormal"><strong>Type of APP</strong></h4>
</td>
<td style="padding: 0in 5.4pt; width: 149.45pt;" width="199" valign="top">
<h4 class="MsoNormal"><strong>Open Source Solution</strong></h4>
</td>
<td style="padding: 0in 5.4pt; width: 196.1pt;" width="261" valign="top">
<h4 class="MsoNormal"><strong>Comments</strong></h4>
</td>
</tr>
<tr>
<td style="padding: 0in 5.4pt; width: 20.85pt;" width="28" valign="top">
<p class="MsoNormal">1</p>
</td>
<td style="padding: 0in 5.4pt; width: 76.4pt;" width="102" valign="top">
<p class="MsoNormal">IDE</p>
</td>
<td style="padding: 0in 5.4pt; width: 149.45pt;" width="199" valign="top">
<p class="MsoNormal"><strong>Eclipse</strong></p>
<p class="MsoNormal"><a href="http://www.eclipse.org/">http://www.eclipse.org/</a></p>
<p class="MsoNormal"><img class="alignnone size-full wp-image-38" title="eclipse2" src="http://www.farscan.com/blogs/wp-content/upLoads/eclipse2.jpg" alt="eclipse2" width="200" height="141" /></p>
<p class="MsoNormal">
<p class="MsoNormal">
</td>
<td style="padding: 0in 5.4pt; width: 196.1pt;" width="261" valign="top">
<p class="MsoNormal">To quote from the eclipse wiki – “<span lang="EN">Eclipse means a lot of different things to   different people. To some Eclipse is a free, state-of-the-art Java   development environment. To others, Eclipse is a flexible environment to   experiment with new computer languages or extensions to existing languages.”</span></p>
<p class="MsoNormal"><span lang="EN"> </span></p>
<p class="MsoNormal"><span lang="EN">Written in   Java, and available for Mac OS, Windows in addition to many others, </span>this   is the most popular multi-language IDE with extensive community support.   Truly amazing!</p>
</td>
</tr>
<tr>
<td style="padding: 0in 5.4pt; width: 20.85pt;" width="28" valign="top">
<p class="MsoNormal">2</p>
</td>
<td style="padding: 0in 5.4pt; width: 76.4pt;" width="102" valign="top">
<p class="MsoNormal">Web Dev Editor / IDE</p>
</td>
<td style="padding: 0in 5.4pt; width: 149.45pt;" width="199" valign="top">
<p class="MsoNormal"><strong>Bluefish</strong></p>
<p class="MsoNormal"><a href="http://bluefish.openoffice.nl/">http://bluefish.openoffice.nl</a></p>
<p class="MsoNormal"><img class="alignnone size-full wp-image-16" title="bluefish" src="http://www.farscan.com/blogs/wp-content/upLoads/bluefish.jpg" alt="bluefish" width="200" height="150" /></p>
<p class="MsoNormal">
</td>
<td style="padding: 0in 5.4pt; width: 196.1pt;" width="261" valign="top">
<p class="MsoNormal">A lightweight editor/IDE for Linux that supports multiple documents,   tons of wizards and allows creation of dynamic web sites.</p>
<p class="MsoNormal">
</td>
</tr>
<tr>
<td style="padding: 0in 5.4pt; width: 20.85pt;" width="28" valign="top">
<p class="MsoNormal">3</p>
</td>
<td style="padding: 0in 5.4pt; width: 76.4pt;" width="102" valign="top">
<p class="MsoNormal">C/C++ IDE</p>
</td>
<td style="padding: 0in 5.4pt; width: 149.45pt;" width="199" valign="top">
<p class="MsoNormal"><strong>Anjuta</strong></p>
<p class="MsoNormal"><a href="http://anjuta.sourceforge.net/">http://anjuta.sourceforge.net</a></p>
<p class="MsoNormal"><img class="alignnone size-full wp-image-46" title="anjuta1" src="http://www.farscan.com/blogs/wp-content/upLoads/anjuta1.jpg" alt="anjuta1" width="200" height="153" /></p>
<p class="MsoNormal">
<p class="MsoNormal">
</td>
<td style="padding: 0in 5.4pt; width: 196.1pt;" width="261" valign="top">
<p class="MsoNormal"><span style="font-family: Verdana;">A full featured User   Friendly C++ oriented IDE for GNU/Linux. Works great with GLADE</span></p>
</td>
</tr>
<tr>
<td style="padding: 0in 5.4pt; width: 20.85pt;" width="28" valign="top">
<p class="MsoNormal">4</p>
</td>
<td style="padding: 0in 5.4pt; width: 76.4pt;" width="102" valign="top">
<p class="MsoNormal">UI Designer</p>
</td>
<td style="padding: 0in 5.4pt; width: 149.45pt;" width="199" valign="top">
<p class="MsoNormal"><strong>Glade</strong></p>
<p class="MsoNormal"><a href="http://glade.gnome.org/">http://glade.gnome.org</a></p>
<p class="MsoNormal"><img class="alignnone size-full wp-image-18" title="glade" src="http://www.farscan.com/blogs/wp-content/upLoads/glade.jpg" alt="glade" width="200" height="150" /></p>
</td>
<td style="padding: 0in 5.4pt; width: 196.1pt;" width="261" valign="top">
<p class="MsoNormal"><span style="font-family: Verdana;">A </span>a RAD (rapid   application development) tool used to create <span style="font-family: Verdana;">GTK+/GNOME   WYSIWYG graphical user interfaces. Can work with / even be embedded into   Anjuta.</span></p>
<p class="MsoNormal">
</td>
</tr>
</tbody>
</table>
<p class="MsoNormal">
<p class="MsoNormal">In the next part, we&#8217;ll look at one of my favorite topics for leveraging Open Source &#8211; Content Management. Stay tuned.</p>
<p><a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save#url=http%3A%2F%2Fwww.farscan.com%2Fblogs%2F2009%2F03%2Fopen-source-alternatives-for-business%2F&amp;title=Open%20Source%20alternatives%20for%20Business"><img src="http://www.farscan.com/blogs/wp-content/plugins/add-to-any/share_save_120_16.png" width="120" height="16" alt="Share"/></a> </p>]]></content:encoded>
			<wfw:commentRss>http://www.farscan.com/blogs/2009/03/open-source-alternatives-for-business/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>

