<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: On Twply and giving out your Twitter password (updated)</title>
	<atom:link href="http://helloform.com/blog/2009/01/on-twply-and-giving-out-your-twitter-password/feed/" rel="self" type="application/rss+xml" />
	<link>http://helloform.com/blog/2009/01/on-twply-and-giving-out-your-twitter-password/</link>
	<description>A blog on building experiences</description>
	<lastBuildDate>Tue, 09 Mar 2010 13:30:46 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Crilushinhile</title>
		<link>http://helloform.com/blog/2009/01/on-twply-and-giving-out-your-twitter-password/comment-page-1/#comment-359</link>
		<dc:creator>Crilushinhile</dc:creator>
		<pubDate>Fri, 05 Mar 2010 12:10:49 +0000</pubDate>
		<guid isPermaLink="false">http://helloform.com/blog/?p=167#comment-359</guid>
		<description>Заходи к нам:
http://family.freehostwebs.com</description>
		<content:encoded><![CDATA[<p>Заходи к нам:<br />
<a href="http://family.freehostwebs.com" rel="nofollow">http://family.freehostwebs.com</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: zopumoup</title>
		<link>http://helloform.com/blog/2009/01/on-twply-and-giving-out-your-twitter-password/comment-page-1/#comment-345</link>
		<dc:creator>zopumoup</dc:creator>
		<pubDate>Mon, 08 Feb 2010 05:34:04 +0000</pubDate>
		<guid isPermaLink="false">http://helloform.com/blog/?p=167#comment-345</guid>
		<description>а все таки: восхитительно.


&lt;a href=&quot;http://myzhchini.co.cc/uhta1/?p=28&quot; rel=&quot;nofollow&quot;&gt;общение с иностранцами&lt;/a&gt;: познакомлюсь с парнем 17 лет Ухта
&lt;a href=&quot;http://myzhchini.co.cc/zhukovskij7/?p=31&quot; rel=&quot;nofollow&quot;&gt;в Жуковском женщина желает познакомится&lt;/a&gt; - знакомства мужчины москва
&lt;a href=&quot;http://myzhchini.co.cc/novoshahtinsk5/?p=13&quot; rel=&quot;nofollow&quot;&gt;познакомлюсь с парнем icq в Новошахтинске&lt;/a&gt; - женщина желает познакомиться Новошахтинск
&lt;a href=&quot;http://myzhchini.co.cc/cheboksary6/?p=25&quot; rel=&quot;nofollow&quot;&gt;Чебоксары познакомлюсь с парнем 17 лет&lt;/a&gt;: как оригинально познакомиться с парнем
&lt;a href=&quot;http://myzhchini.co.cc/izhevsk3/?p=26&quot; rel=&quot;nofollow&quot;&gt;Ижевск познакомиться с австралийцем&lt;/a&gt;: девушка познакомится с мужчиной Ижевск
&lt;a href=&quot;http://myzhchini.co.cc/noyabrsk8/?p=28&quot; rel=&quot;nofollow&quot;&gt;как познакомиться с соседом&lt;/a&gt; Ноябрьск познакомлюсь с нудистами
&lt;a href=&quot;http://myzhchini.co.cc/kaluga6/?p=6&quot; rel=&quot;nofollow&quot;&gt;хочу попробывать секс с парнем&lt;/a&gt;: знакомство с мальчиками в Калуге
&lt;a href=&quot;http://myzhchini.co.cc/murom2/?p=12&quot; rel=&quot;nofollow&quot;&gt;женщина желает познакомится&lt;/a&gt;: познакомиться с японцем
&lt;a href=&quot;http://myzhchini.co.cc/tolyatti2/?p=19&quot; rel=&quot;nofollow&quot;&gt;женщина в Тольяттах с большим бюстом познакомится&lt;/a&gt;: как познакомиться со звездой
&lt;a href=&quot;http://myzhchini.co.cc/murom2/?p=31&quot; rel=&quot;nofollow&quot;&gt;как познакомиться с хакером&lt;/a&gt;: хочу познакомиться с байкером в Муроме
&lt;a href=&quot;http://myzhchini.co.cc/moskva4/?p=13&quot; rel=&quot;nofollow&quot;&gt;познакомлюсь замужем&lt;/a&gt;: в Москве секс знакомства с парнями</description>
		<content:encoded><![CDATA[<p>а все таки: восхитительно.</p>
<p><a href="http://myzhchini.co.cc/uhta1/?p=28" rel="nofollow">общение с иностранцами</a>: познакомлюсь с парнем 17 лет Ухта<br />
<a href="http://myzhchini.co.cc/zhukovskij7/?p=31" rel="nofollow">в Жуковском женщина желает познакомится</a> &#8211; знакомства мужчины москва<br />
<a href="http://myzhchini.co.cc/novoshahtinsk5/?p=13" rel="nofollow">познакомлюсь с парнем icq в Новошахтинске</a> &#8211; женщина желает познакомиться Новошахтинск<br />
<a href="http://myzhchini.co.cc/cheboksary6/?p=25" rel="nofollow">Чебоксары познакомлюсь с парнем 17 лет</a>: как оригинально познакомиться с парнем<br />
<a href="http://myzhchini.co.cc/izhevsk3/?p=26" rel="nofollow">Ижевск познакомиться с австралийцем</a>: девушка познакомится с мужчиной Ижевск<br />
<a href="http://myzhchini.co.cc/noyabrsk8/?p=28" rel="nofollow">как познакомиться с соседом</a> Ноябрьск познакомлюсь с нудистами<br />
<a href="http://myzhchini.co.cc/kaluga6/?p=6" rel="nofollow">хочу попробывать секс с парнем</a>: знакомство с мальчиками в Калуге<br />
<a href="http://myzhchini.co.cc/murom2/?p=12" rel="nofollow">женщина желает познакомится</a>: познакомиться с японцем<br />
<a href="http://myzhchini.co.cc/tolyatti2/?p=19" rel="nofollow">женщина в Тольяттах с большим бюстом познакомится</a>: как познакомиться со звездой<br />
<a href="http://myzhchini.co.cc/murom2/?p=31" rel="nofollow">как познакомиться с хакером</a>: хочу познакомиться с байкером в Муроме<br />
<a href="http://myzhchini.co.cc/moskva4/?p=13" rel="nofollow">познакомлюсь замужем</a>: в Москве секс знакомства с парнями</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Marcelinea</title>
		<link>http://helloform.com/blog/2009/01/on-twply-and-giving-out-your-twitter-password/comment-page-1/#comment-341</link>
		<dc:creator>Marcelinea</dc:creator>
		<pubDate>Sat, 30 Jan 2010 06:39:18 +0000</pubDate>
		<guid isPermaLink="false">http://helloform.com/blog/?p=167#comment-341</guid>
		<description>Hey
I would like to present interesting site:
&lt;a href=&quot;http://veryacom.co.cc/&quot; rel=&quot;nofollow&quot;&gt;acomplia online&lt;/a&gt; &lt;a href=&quot;http://veryacom.co.cc/&quot; rel=&quot;nofollow&quot;&gt;acomplia overnight&lt;/a&gt; &lt;a href=&quot;http://veryceft.co.cc/&quot; rel=&quot;nofollow&quot;&gt;ceftin oral&lt;/a&gt; &lt;a href=&quot;http://veryceft.co.cc/&quot; rel=&quot;nofollow&quot;&gt;ceftin prices&lt;/a&gt; &lt;a href=&quot;http://verycelex.co.cc/&quot; rel=&quot;nofollow&quot;&gt;celexa prescription&lt;/a&gt; &lt;a href=&quot;http://verycelex.co.cc/&quot; rel=&quot;nofollow&quot;&gt;celexa toronto&lt;/a&gt; &lt;a href=&quot;http://verycleo.co.cc/&quot; rel=&quot;nofollow&quot;&gt;cleocin pharmacy&lt;/a&gt; &lt;a href=&quot;http://verycleo.co.cc/&quot; rel=&quot;nofollow&quot;&gt;cleocin sale&lt;/a&gt; &lt;a href=&quot;http://verydifl.co.cc/&quot; rel=&quot;nofollow&quot;&gt;diflucan medikament&lt;/a&gt; &lt;a href=&quot;http://verydifl.co.cc/&quot; rel=&quot;nofollow&quot;&gt;diflucan oral&lt;/a&gt; &lt;a href=&quot;http://veryelav.co.cc/&quot; rel=&quot;nofollow&quot;&gt;elavil drug&lt;/a&gt; &lt;a href=&quot;http://veryelav.co.cc/&quot; rel=&quot;nofollow&quot;&gt;elavil doctor&lt;/a&gt; &lt;a href=&quot;http://veryhytr.co.cc/&quot; rel=&quot;nofollow&quot;&gt;hytrin order&lt;/a&gt; &lt;a href=&quot;http://veryhytr.co.cc/&quot; rel=&quot;nofollow&quot;&gt;hytrin medikament&lt;/a&gt; &lt;a href=&quot;http://veryimit.co.cc/&quot; rel=&quot;nofollow&quot;&gt;imitrex online&lt;/a&gt; &lt;a href=&quot;http://veryimit.co.cc/&quot; rel=&quot;nofollow&quot;&gt;imitrex generic&lt;/a&gt; &lt;a href=&quot;http://verylexa.co.cc/&quot; rel=&quot;nofollow&quot;&gt;lexapro drug&lt;/a&gt; &lt;a href=&quot;http://verylexa.co.cc/&quot; rel=&quot;nofollow&quot;&gt;lexapro sale&lt;/a&gt; &lt;a href=&quot;http://verypred.co.cc/&quot; rel=&quot;nofollow&quot;&gt;prednisone espana&lt;/a&gt; &lt;a href=&quot;http://verypred.co.cc/&quot; rel=&quot;nofollow&quot;&gt;prednisone prezzo&lt;/a&gt; &lt;a href=&quot;http://veryprem.co.cc/&quot; rel=&quot;nofollow&quot;&gt;remarin discount&lt;/a&gt; &lt;a href=&quot;http://veryprem.co.cc/&quot; rel=&quot;nofollow&quot;&gt;remarin generic&lt;/a&gt; &lt;a href=&quot;http://veryprev.co.cc/&quot; rel=&quot;nofollow&quot;&gt;prevacid prezzo&lt;/a&gt; &lt;a href=&quot;http://veryprev.co.cc/&quot; rel=&quot;nofollow&quot;&gt;prevacid online&lt;/a&gt; &lt;a href=&quot;http://verysust.co.cc/&quot; rel=&quot;nofollow&quot;&gt;sustiva prescription&lt;/a&gt; &lt;a href=&quot;http://verysust.co.cc/&quot; rel=&quot;nofollow&quot;&gt;sustiva uk&lt;/a&gt; &lt;a href=&quot;http://verytest.co.cc/&quot; rel=&quot;nofollow&quot;&gt;testosterone purchase&lt;/a&gt; &lt;a href=&quot;http://verytest.co.cc/&quot; rel=&quot;nofollow&quot;&gt;testosterone espana&lt;/a&gt; &lt;a href=&quot;http://verytopa.co.cc/&quot; rel=&quot;nofollow&quot;&gt;topamax buy&lt;/a&gt; &lt;a href=&quot;http://verytopa.co.cc/&quot; rel=&quot;nofollow&quot;&gt;topamax prezzo&lt;/a&gt; &lt;a href=&quot;http://veryvira.co.cc/&quot; rel=&quot;nofollow&quot;&gt;viramune prescription&lt;/a&gt; &lt;a href=&quot;http://veryvira.co.cc/&quot; rel=&quot;nofollow&quot;&gt;viramune oral&lt;/a&gt; &lt;a href=&quot;http://veryxeni.co.cc/&quot; rel=&quot;nofollow&quot;&gt;xenical rezept&lt;/a&gt; &lt;a href=&quot;http://veryxeni.co.cc/&quot; rel=&quot;nofollow&quot;&gt;xenical toronto&lt;/a&gt; &lt;a href=&quot;http://veryzyba.co.cc/&quot; rel=&quot;nofollow&quot;&gt;zyban espana&lt;/a&gt; &lt;a href=&quot;http://veryzyba.co.cc/&quot; rel=&quot;nofollow&quot;&gt;zyban doctor&lt;/a&gt; &lt;a href=&quot;http://veryzylo.co.cc/&quot; rel=&quot;nofollow&quot;&gt;zyloprim prescription&lt;/a&gt; &lt;a href=&quot;http://veryzylo.co.cc/&quot; rel=&quot;nofollow&quot;&gt;zyloprim overnight&lt;/a&gt; &lt;a href=&quot;http://veryzypr.co.cc/&quot; rel=&quot;nofollow&quot;&gt;zyprexa effects&lt;/a&gt; &lt;a href=&quot;http://veryzypr.co.cc/&quot; rel=&quot;nofollow&quot;&gt;zyprexa uk&lt;/a&gt;
To greet!
See you!</description>
		<content:encoded><![CDATA[<p>Hey<br />
I would like to present interesting site:<br />
<a href="http://veryacom.co.cc/" rel="nofollow">acomplia online</a> <a href="http://veryacom.co.cc/" rel="nofollow">acomplia overnight</a> <a href="http://veryceft.co.cc/" rel="nofollow">ceftin oral</a> <a href="http://veryceft.co.cc/" rel="nofollow">ceftin prices</a> <a href="http://verycelex.co.cc/" rel="nofollow">celexa prescription</a> <a href="http://verycelex.co.cc/" rel="nofollow">celexa toronto</a> <a href="http://verycleo.co.cc/" rel="nofollow">cleocin pharmacy</a> <a href="http://verycleo.co.cc/" rel="nofollow">cleocin sale</a> <a href="http://verydifl.co.cc/" rel="nofollow">diflucan medikament</a> <a href="http://verydifl.co.cc/" rel="nofollow">diflucan oral</a> <a href="http://veryelav.co.cc/" rel="nofollow">elavil drug</a> <a href="http://veryelav.co.cc/" rel="nofollow">elavil doctor</a> <a href="http://veryhytr.co.cc/" rel="nofollow">hytrin order</a> <a href="http://veryhytr.co.cc/" rel="nofollow">hytrin medikament</a> <a href="http://veryimit.co.cc/" rel="nofollow">imitrex online</a> <a href="http://veryimit.co.cc/" rel="nofollow">imitrex generic</a> <a href="http://verylexa.co.cc/" rel="nofollow">lexapro drug</a> <a href="http://verylexa.co.cc/" rel="nofollow">lexapro sale</a> <a href="http://verypred.co.cc/" rel="nofollow">prednisone espana</a> <a href="http://verypred.co.cc/" rel="nofollow">prednisone prezzo</a> <a href="http://veryprem.co.cc/" rel="nofollow">remarin discount</a> <a href="http://veryprem.co.cc/" rel="nofollow">remarin generic</a> <a href="http://veryprev.co.cc/" rel="nofollow">prevacid prezzo</a> <a href="http://veryprev.co.cc/" rel="nofollow">prevacid online</a> <a href="http://verysust.co.cc/" rel="nofollow">sustiva prescription</a> <a href="http://verysust.co.cc/" rel="nofollow">sustiva uk</a> <a href="http://verytest.co.cc/" rel="nofollow">testosterone purchase</a> <a href="http://verytest.co.cc/" rel="nofollow">testosterone espana</a> <a href="http://verytopa.co.cc/" rel="nofollow">topamax buy</a> <a href="http://verytopa.co.cc/" rel="nofollow">topamax prezzo</a> <a href="http://veryvira.co.cc/" rel="nofollow">viramune prescription</a> <a href="http://veryvira.co.cc/" rel="nofollow">viramune oral</a> <a href="http://veryxeni.co.cc/" rel="nofollow">xenical rezept</a> <a href="http://veryxeni.co.cc/" rel="nofollow">xenical toronto</a> <a href="http://veryzyba.co.cc/" rel="nofollow">zyban espana</a> <a href="http://veryzyba.co.cc/" rel="nofollow">zyban doctor</a> <a href="http://veryzylo.co.cc/" rel="nofollow">zyloprim prescription</a> <a href="http://veryzylo.co.cc/" rel="nofollow">zyloprim overnight</a> <a href="http://veryzypr.co.cc/" rel="nofollow">zyprexa effects</a> <a href="http://veryzypr.co.cc/" rel="nofollow">zyprexa uk</a><br />
To greet!<br />
See you!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: do the pee wee herman</title>
		<link>http://helloform.com/blog/2009/01/on-twply-and-giving-out-your-twitter-password/comment-page-1/#comment-243</link>
		<dc:creator>do the pee wee herman</dc:creator>
		<pubDate>Sun, 19 Jul 2009 00:17:54 +0000</pubDate>
		<guid isPermaLink="false">http://helloform.com/blog/?p=167#comment-243</guid>
		<description>any news coming ?</description>
		<content:encoded><![CDATA[<p>any news coming ?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Nick</title>
		<link>http://helloform.com/blog/2009/01/on-twply-and-giving-out-your-twitter-password/comment-page-1/#comment-242</link>
		<dc:creator>Nick</dc:creator>
		<pubDate>Mon, 13 Jul 2009 10:16:10 +0000</pubDate>
		<guid isPermaLink="false">http://helloform.com/blog/?p=167#comment-242</guid>
		<description>I was robbed on craigslist by some lowlife using a pager number.  Jerkwad was speechless when I got his addy info and paid a visit lol!

&lt;a href=&quot;http://spaces.msn.com/members/reverse-phone-lookup/&quot; rel=&quot;nofollow&quot;&gt;Reverse Number Lookup&lt;/a&gt;</description>
		<content:encoded><![CDATA[<p>I was robbed on craigslist by some lowlife using a pager number.  Jerkwad was speechless when I got his addy info and paid a visit lol!</p>
<p><a href="http://spaces.msn.com/members/reverse-phone-lookup/" rel="nofollow">Reverse Number Lookup</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Galgalo</title>
		<link>http://helloform.com/blog/2009/01/on-twply-and-giving-out-your-twitter-password/comment-page-1/#comment-214</link>
		<dc:creator>Galgalo</dc:creator>
		<pubDate>Mon, 04 May 2009 11:50:32 +0000</pubDate>
		<guid isPermaLink="false">http://helloform.com/blog/?p=167#comment-214</guid>
		<description>emm.. love it.</description>
		<content:encoded><![CDATA[<p>emm.. love it.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dave</title>
		<link>http://helloform.com/blog/2009/01/on-twply-and-giving-out-your-twitter-password/comment-page-1/#comment-131</link>
		<dc:creator>Dave</dc:creator>
		<pubDate>Wed, 14 Jan 2009 19:20:55 +0000</pubDate>
		<guid isPermaLink="false">http://helloform.com/blog/?p=167#comment-131</guid>
		<description>I think you&#039;re confusing encryption and hashing.

Encryption is what you do when you need to get the data (maybe a password, maybe something else) back out intact. Hashing is a one-way process - you hash a password and you can&#039;t retrieve the password text.

Someone else (who evidently knows the Twitter API, where I do not) posted that it&#039;s possible to access twitter&#039;s API by providing the credential hash. So if Twply were being honest (I&#039;m not making that claim) they COULD handle credentials safely and not store your password...</description>
		<content:encoded><![CDATA[<p>I think you&#8217;re confusing encryption and hashing.</p>
<p>Encryption is what you do when you need to get the data (maybe a password, maybe something else) back out intact. Hashing is a one-way process &#8211; you hash a password and you can&#8217;t retrieve the password text.</p>
<p>Someone else (who evidently knows the Twitter API, where I do not) posted that it&#8217;s possible to access twitter&#8217;s API by providing the credential hash. So if Twply were being honest (I&#8217;m not making that claim) they COULD handle credentials safely and not store your password&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: The Curious Case of Twply and Twitter - Bokardo</title>
		<link>http://helloform.com/blog/2009/01/on-twply-and-giving-out-your-twitter-password/comment-page-1/#comment-114</link>
		<dc:creator>The Curious Case of Twply and Twitter - Bokardo</dc:creator>
		<pubDate>Fri, 09 Jan 2009 15:07:59 +0000</pubDate>
		<guid isPermaLink="false">http://helloform.com/blog/?p=167#comment-114</guid>
		<description>[...] Twply story is a lesson in many ways (see the discussion about the password anti-pattern here, here, and here), but I going to focus on the interface of the service in [...]</description>
		<content:encoded><![CDATA[<p>[...] Twply story is a lesson in many ways (see the discussion about the password anti-pattern here, here, and here), but I going to focus on the interface of the service in [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Identity, relationships and why OAuth and OpenID matter &#171; Derivadow.com</title>
		<link>http://helloform.com/blog/2009/01/on-twply-and-giving-out-your-twitter-password/comment-page-1/#comment-109</link>
		<dc:creator>Identity, relationships and why OAuth and OpenID matter &#171; Derivadow.com</dc:creator>
		<pubDate>Thu, 08 Jan 2009 15:13:21 +0000</pubDate>
		<guid isPermaLink="false">http://helloform.com/blog/?p=167#comment-109</guid>
		<description>[...]    Twitter hasn&#8217;t had a good start to 2009, it was hacked and then there were concerns that your passwords were up for sale and that&#8217;s not a good thing; except there may be a silver lining to Twitter&#8217;s cloud [...]</description>
		<content:encoded><![CDATA[<p>[...]    Twitter hasn&#8217;t had a good start to 2009, it was hacked and then there were concerns that your passwords were up for sale and that&#8217;s not a good thing; except there may be a silver lining to Twitter&#8217;s cloud [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Andreas Pizsa</title>
		<link>http://helloform.com/blog/2009/01/on-twply-and-giving-out-your-twitter-password/comment-page-1/#comment-106</link>
		<dc:creator>Andreas Pizsa</dc:creator>
		<pubDate>Sun, 04 Jan 2009 06:49:14 +0000</pubDate>
		<guid isPermaLink="false">http://helloform.com/blog/?p=167#comment-106</guid>
		<description>Following up on my own post: sorry, I was wrong. Username and password are not protected by twitters current authentication scheme.

To quote from the Specs (RFC 2617):

  To receive authorization, the client sends the userid and password,
   separated by a single colon (&quot;:&quot;) character, within a base64 [7]
   encoded string in the credentials.

So even if you encrypt credentials in the database, they still get sent as quite easily readable text through the wire.

Ouch :)</description>
		<content:encoded><![CDATA[<p>Following up on my own post: sorry, I was wrong. Username and password are not protected by twitters current authentication scheme.</p>
<p>To quote from the Specs (RFC 2617):</p>
<p>  To receive authorization, the client sends the userid and password,<br />
   separated by a single colon (&#8220;:&#8221;) character, within a base64 [7]<br />
   encoded string in the credentials.</p>
<p>So even if you encrypt credentials in the database, they still get sent as quite easily readable text through the wire.</p>
<p>Ouch :)</p>
]]></content:encoded>
	</item>
</channel>
</rss>
