<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Hinnerk Altenburg&#187; epublica | Hinnerk Altenburg, Hamburg</title>
	<atom:link href="http://www.hinnerk-altenburg.de/weblog/tags/epublica/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.hinnerk-altenburg.de</link>
	<description>Web Developer in Hamburg, Germany</description>
	<lastBuildDate>Wed, 07 Jul 2010 08:41:08 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Moved from epublica GmbH to XING AG</title>
		<link>http://www.hinnerk-altenburg.de/weblog/moved-from-epublica-gmbh-to-xing-ag/</link>
		<comments>http://www.hinnerk-altenburg.de/weblog/moved-from-epublica-gmbh-to-xing-ag/#comments</comments>
		<pubDate>Fri, 06 Feb 2009 11:16:17 +0000</pubDate>
		<dc:creator>Hinnerk</dc:creator>
				<category><![CDATA[English]]></category>
		<category><![CDATA[epublica]]></category>
		<category><![CDATA[Hamburg]]></category>
		<category><![CDATA[Job]]></category>
		<category><![CDATA[Personal]]></category>
		<category><![CDATA[XING]]></category>

		<guid isPermaLink="false">http://www.hinnerk-altenburg.de/?p=120</guid>
		<description><![CDATA[
As per February, 1st I moved with epublica&#8217;s entire XING.com core development team to the XING AG itself, now developing the platform &#8216;inhouse&#8217; as XING employee.
]]></description>
			<content:encoded><![CDATA[<div>
<p>As per February, 1st I <a href="http://corporate.xing.com/no_cache/deutsch/presse/willkommen/news-detailansicht/article/pressemitteilungbrxing-ag-erweitert-vorstand-um-neuen-chief-technical-officer-cto/6/9c5d29d1b2/" target="_blank">moved with epublica&#8217;s entire XING.com core development team</a> to the <a href="http://corporate.xing.com/" target="_blank">XING AG</a> itself, now developing the platform &#8216;inhouse&#8217; as XING employee.</div>
]]></content:encoded>
			<wfw:commentRss>http://www.hinnerk-altenburg.de/weblog/moved-from-epublica-gmbh-to-xing-ag/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>PerlIDS-Artikel im deutschen Perl-Magazin $foo erschienen</title>
		<link>http://www.hinnerk-altenburg.de/weblog/perlids-artikel-im-deutschen-perl-magazin-foo-erschienen/</link>
		<comments>http://www.hinnerk-altenburg.de/weblog/perlids-artikel-im-deutschen-perl-magazin-foo-erschienen/#comments</comments>
		<pubDate>Tue, 03 Feb 2009 17:27:50 +0000</pubDate>
		<dc:creator>Hinnerk</dc:creator>
				<category><![CDATA[Deutsch]]></category>
		<category><![CDATA[Article]]></category>
		<category><![CDATA[epublica]]></category>
		<category><![CDATA[Perl]]></category>
		<category><![CDATA[PerlIDS]]></category>
		<category><![CDATA[Web]]></category>
		<category><![CDATA[XING]]></category>

		<guid isPermaLink="false">http://www.hinnerk-altenburg.de/?p=112</guid>
		<description><![CDATA[Mein vierseitiger Artikel zum Perl-CPAN-Modul CGI::IDS ist in der aktuellen Ausgabe 1/2009 des deutschen Perl-Magazins $foo erschienen.
Ich gebe darin einen Überblick über die Funktion und den Einsatz von PerlIDS zur frühzeitigen Erkennung von CrossSite-Scripting, SQL-Injections und ähnlichen Angriffen auf Webapplikationen.
I just published a four pages long article in the German Perl magazine $foo about my Perl [...]]]></description>
			<content:encoded><![CDATA[<p>Mein <a href="http://www.perl-nachrichten.de/index.cgi/details/418" target="_blank">vierseitiger Artikel zum Perl-CPAN-Modul CGI::IDS</a> ist in der aktuellen <a href="http://perl-magazin.de/?issue=14" target="_blank">Ausgabe 1/2009</a> des deutschen <a href="http://perl-magazin.de/" target="_blank">Perl-Magazins $foo</a> erschienen.<br />
Ich gebe darin einen Überblick über die Funktion und den Einsatz von <a title="Perl Website Intrusion Detection System" href="http://search.cpan.org/~hinnerk/CGI-IDS/">PerlIDS</a> zur frühzeitigen Erkennung von CrossSite-Scripting, SQL-Injections und ähnlichen Angriffen auf Webapplikationen.</p>
<p>I just published a four pages long article in the <a href="http://perl-magazin.de/" target="_blank">German Perl magazine $foo</a> about my <a title="PerlIDS CGI::IDS" href="http://search.cpan.org/~hinnerk/CGI-IDS/">Perl CPAN module CGI::IDS, a Website Intrusion Detection System</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.hinnerk-altenburg.de/weblog/perlids-artikel-im-deutschen-perl-magazin-foo-erschienen/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>OpenSource Perl Website Intrusion Detection System PerlIDS (CGI::IDS) released</title>
		<link>http://www.hinnerk-altenburg.de/weblog/opensource-perl-website-intrusion-detection-system-perlids-cgiids-released/</link>
		<comments>http://www.hinnerk-altenburg.de/weblog/opensource-perl-website-intrusion-detection-system-perlids-cgiids-released/#comments</comments>
		<pubDate>Thu, 06 Nov 2008 12:36:51 +0000</pubDate>
		<dc:creator>Hinnerk</dc:creator>
				<category><![CDATA[English]]></category>
		<category><![CDATA[epublica]]></category>
		<category><![CDATA[OpenSource]]></category>
		<category><![CDATA[Perl]]></category>
		<category><![CDATA[PerlIDS]]></category>
		<category><![CDATA[PHPIDS]]></category>
		<category><![CDATA[Web]]></category>
		<category><![CDATA[XING]]></category>

		<guid isPermaLink="false">http://www.hinnerk-altenburg.de/?p=88</guid>
		<description><![CDATA[Today, we at epublica have officially released my work of the last months &#8211; a Perl port of PHPIDS, a tool for detection of Cross-Site-Scripting (XSS), Cross-Site-Request-Forgery (CSRF), SQL-Injections (SQLI), Local-File-Inclusions (LFI) etc. in website requests.
The tool is released as CGI::IDS Perl module ‘PerlIDS’ on CPAN.org under the OpenSource ‘Lesser GNU Public License’ (LGPL).

The intrusion [...]]]></description>
			<content:encoded><![CDATA[<p>Today, we at <a href="http://www.epublica.de" target="_blank">epublica</a> have officially released my work of the last months &#8211; a <a title="PerlIDS - Perl Port of PHPIDS" href="http://php-ids.org/2008/11/06/release-of-perl-port-perlids/" target="_blank">Perl port of PHPIDS</a>, a tool for detection of Cross-Site-Scripting (XSS), Cross-Site-Request-Forgery (CSRF), SQL-Injections (SQLI), Local-File-Inclusions (LFI) etc. in website requests.<br />
The tool is released as <a title="IDS PerlIDS Perl Website Intrusion Detection System" href="http://search.cpan.org/%7Ehinnerk/CGI-IDS/lib/CGI/IDS.pm" target="_blank">CGI::IDS Perl module ‘PerlIDS’</a> on <a title="CPAN" href="http://www.cpan.org/" target="_blank">CPAN.org</a> under the OpenSource ‘Lesser GNU Public License’ (LGPL).</p>
<p><span id="more-88"></span></p>
<p>The intrusion detection is based on a set of converters that convert the request according to common techniques that are used to hide attacks. These converted strings are checked for attacks by running a filter set of currently 68 regular expressions and a generic attack detector to find obfuscated attacks. For easily keeping the filter set up-to-date, PerlIDS is compatible to the original XML filter set of PHPIDS, which is frequently updated.<br />
Each matching regular expression has it’s own impact value that increases the tested string’s total attack impact.</p>
<p>Using these total impacts, a threshold can be defined by the calling application to log the suspicious requests to database and send out warnings via e-mail or even SMS on high impacts that indicate critical attack activity. These impacts can be summed per IP address, session or user to identify attackers who are testing the website with small impact attacks over a time.</p>
<p>During our development we have made some speed-improvements to PerlIDS and PHPIDS for the use on really large websites. With our experience of running it on websites with much user traffic, we could help to improve the converters and filter mechanism to reduce the rate of false alarms.</p>
<p>For heavily reducing the server load we introduced a whitelist mechanism to tell PerlIDS which request parameters don’t have to be checked with the expensive regular expressions if they match the whitelist rules.</p>
<p>We’d love to receive your feedback on the module!</p>
]]></content:encoded>
			<wfw:commentRss>http://www.hinnerk-altenburg.de/weblog/opensource-perl-website-intrusion-detection-system-perlids-cgiids-released/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>My New Jobs since May 2008</title>
		<link>http://www.hinnerk-altenburg.de/weblog/my-new-jobs-since-may-2008/</link>
		<comments>http://www.hinnerk-altenburg.de/weblog/my-new-jobs-since-may-2008/#comments</comments>
		<pubDate>Tue, 24 Jun 2008 23:10:16 +0000</pubDate>
		<dc:creator>Hinnerk</dc:creator>
				<category><![CDATA[English]]></category>
		<category><![CDATA[epublica]]></category>
		<category><![CDATA[Exinit]]></category>
		<category><![CDATA[Freelancer]]></category>
		<category><![CDATA[Hamburg]]></category>
		<category><![CDATA[Job]]></category>
		<category><![CDATA[Perl]]></category>
		<category><![CDATA[Personal]]></category>
		<category><![CDATA[PHP]]></category>
		<category><![CDATA[TYPO3]]></category>
		<category><![CDATA[XING]]></category>

		<guid isPermaLink="false">http://www.hinnerk-altenburg.de/weblog/my-new-jobs-since-may-2008/</guid>
		<description><![CDATA[Since May, I am employed by epublica GmbH, Hamburg, doing Perl development mainly for the XING Web platform. Have a look at their brand new office in the heart of the city upstairs from XING.
Also I am working as a freelancer for the TYPO3 agency EXINIT GmbH &#38; Co. KG, Hamburg doing TYPO3 extension development [...]]]></description>
			<content:encoded><![CDATA[<p>Since May, I am employed by <a href="http://www.epublica.de" target="_blank">epublica GmbH, Hamburg</a>, doing Perl development mainly for the <a href="https://www.xing.com">XING Web platform</a>. Have a look at their <a href="http://www.epublica.de/blog/hallo-neues-buro" target="_blank">brand new office</a> in the <a title="Google Maps" href="http://maps.google.de/maps?f=q&amp;hl=de&amp;geocode=&amp;q=G%C3%A4nsemarkt+43,+Hamburg,+Deutschland&amp;sll=53.555567,9.987928&amp;sspn=0.00877,0.017209&amp;ie=UTF8&amp;t=h&amp;ll=53.557059,9.990993&amp;spn=0.017539,0.034418&amp;z=15&amp;iwloc=r6" target="_blank">heart of the city</a> upstairs from XING.</p>
<p>Also I am working as a freelancer for the TYPO3 agency <a href="http://www.exinit.de" target="_blank">EXINIT GmbH &amp; Co. KG, Hamburg</a> doing TYPO3 extension development in PHP.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.hinnerk-altenburg.de/weblog/my-new-jobs-since-may-2008/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
