<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: I Repeat Myself When Under Stress, I Repeat Myself When Under Stress</title>
	<atom:link href="http://www.cigital.com/justice-league-blog/2010/02/17/i-repeat-myself-when-under-stress-i-repeat-myself-when-under-stress/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.cigital.com/justice-league-blog/2010/02/17/i-repeat-myself-when-under-stress-i-repeat-myself-when-under-stress/</link>
	<description></description>
	<lastBuildDate>Wed, 30 Nov 2011 15:50:04 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
	<item>
		<title>By: gem</title>
		<link>http://www.cigital.com/justice-league-blog/2010/02/17/i-repeat-myself-when-under-stress-i-repeat-myself-when-under-stress/#comment-180</link>
		<dc:creator>gem</dc:creator>
		<pubDate>Fri, 30 Apr 2010 13:12:30 +0000</pubDate>
		<guid isPermaLink="false">http://www.cigital.com/justiceleague/?p=320#comment-180</guid>
		<description>Not to be outdone, the OWASP guys updated their top ten list as well.  Once again, the target of these lists seems to be &quot;the reporters who cover software security&quot; more than anyone else.  My major beef with the OWASP Top 10 is that I can see no sane way to calculate &quot;worldwide risk.&quot;  Is it some kind of average of &quot;actual business risk&quot; over all enterprises on earth?

My view is covered here:
http://searchsecurity.techtarget.com/magazineFeature/0,296894,sid14_gci1510785_mem1,00.html

Oh well, maybe these crazy ideas will go out of vogue one day.

gem</description>
		<content:encoded><![CDATA[<p>Not to be outdone, the OWASP guys updated their top ten list as well.  Once again, the target of these lists seems to be &#8220;the reporters who cover software security&#8221; more than anyone else.  My major beef with the OWASP Top 10 is that I can see no sane way to calculate &#8220;worldwide risk.&#8221;  Is it some kind of average of &#8220;actual business risk&#8221; over all enterprises on earth?</p>
<p>My view is covered here:<br />
<a href="http://searchsecurity.techtarget.com/magazineFeature/0,296894,sid14_gci1510785_mem1,00.html" rel="nofollow">http://searchsecurity.techtarget.com/magazineFeature/0,296894,sid14_gci1510785_mem1,00.html</a></p>
<p>Oh well, maybe these crazy ideas will go out of vogue one day.</p>
<p>gem</p>
]]></content:encoded>
	</item>
</channel>
</rss>

