<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd"
	xmlns:media="http://search.yahoo.com/mrss/"
>

<channel>
	<title>Agile Ali</title>
	<atom:link href="http://www.agileali.com/myblog/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.agileali.com/myblog</link>
	<description>I.T. and QA, My Way !</description>
	<lastBuildDate>Wed, 05 May 2010 04:09:12 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=abc</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<!-- podcast_generator="podPress/8.8" - maintenance_release="8.8.4" -->
		<copyright>2006-2007 </copyright>
		<managingEditor>ali@agileali.com (Agile Ali)</managingEditor>
		<webMaster>ali@agileali.com (Agile Ali)</webMaster>
		<category>posts</category>
		<itunes:keywords></itunes:keywords>
		<itunes:subtitle></itunes:subtitle>
		<itunes:summary>Just another WordPress weblog</itunes:summary>
		<itunes:author>Agile Ali</itunes:author>
		<itunes:category text="Society &amp; Culture"/>
		<itunes:owner>
			<itunes:name>Agile Ali</itunes:name>
			<itunes:email>ali@agileali.com</itunes:email>
		</itunes:owner>
		<itunes:block>No</itunes:block>
		<itunes:explicit>no</itunes:explicit>
		<itunes:image href="http://www.agileali.com/myblog/wp-content/plugins/podpress/images/powered_by_podpress_large.jpg" />
		<image>
			<url>http://www.agileali.com/myblog/wp-content/plugins/podpress/images/powered_by_podpress.jpg</url>
			<title>Agile Ali</title>
			<link>http://www.agileali.com/myblog</link>
			<width>144</width>
			<height>144</height>
		</image>
		<item>
		<title>Selenium Blog &#8211; new usefull updates</title>
		<link>http://www.agileali.com/myblog/2010/04/16/selenium-blog-new-usefull-updates/</link>
		<comments>http://www.agileali.com/myblog/2010/04/16/selenium-blog-new-usefull-updates/#comments</comments>
		<pubDate>Fri, 16 Apr 2010 08:00:00 +0000</pubDate>
		<dc:creator>Ali</dc:creator>
				<category><![CDATA[Useful if needed]]></category>
		<category><![CDATA[selenium updates]]></category>

		<guid isPermaLink="false">http://www.agileali.com/myblog/?p=333</guid>
		<description><![CDATA[Troubles  with Selenium supporting SSL in Google Chrome ?
Your browser doesnt support Xml Http  Request – but the test passed ! errrrrorrr??


]]></description>
			<content:encoded><![CDATA[<p><strong><a title="Edit “Troubles with Selenium supporting SSL in Google Chrome ?”" href="../../selenium/wp-admin/post.php?action=edit&amp;post=44">Troubles  with Selenium supporting SSL in Google Chrome ?</a></strong></p>
<p><strong></strong><strong><a title="Edit “Your browser doesnt support Xml Http Request – but the  test passed ! errrrrorrr??”" href="../../selenium/wp-admin/post.php?action=edit&amp;post=41">Your browser doesnt support Xml Http  Request – but the test passed ! errrrrorrr??</a></strong><br />
<a href="http://www.dpbolvw.net/click-3678012-2948356" target="_top"><br />
<img src="http://www.tqlkg.com/image-3678012-2948356" width="468" height="60" alt="Click for a FREE Psychic Reading from Keen!" border="0"/></a></p>
<a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.agileali.com%2Fmyblog%2F2010%2F04%2F16%2Fselenium-blog-new-usefull-updates%2F&amp;linkname=Selenium%20Blog%20%26%238211%3B%20new%20usefull%20updates"><img src="http://www.agileali.com/myblog/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share/Bookmark"/></a>]]></content:encoded>
			<wfw:commentRss>http://www.agileali.com/myblog/2010/04/16/selenium-blog-new-usefull-updates/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>QTP 10.0 &#8211; Menu Bar Items are Missing ? Gone ? Here is the Fix !</title>
		<link>http://www.agileali.com/myblog/2010/03/30/qtp-10-0-menu-bar-items-are-missing-gone-here-is-the-fix/</link>
		<comments>http://www.agileali.com/myblog/2010/03/30/qtp-10-0-menu-bar-items-are-missing-gone-here-is-the-fix/#comments</comments>
		<pubDate>Tue, 30 Mar 2010 21:56:28 +0000</pubDate>
		<dc:creator>Ali</dc:creator>
				<category><![CDATA[Do QA Right!]]></category>
		<category><![CDATA[Testing Tools]]></category>
		<category><![CDATA[Useful if needed]]></category>
		<category><![CDATA[menu bar]]></category>
		<category><![CDATA[missing]]></category>
		<category><![CDATA[QTP]]></category>
		<category><![CDATA[tool bar]]></category>

		<guid isPermaLink="false">http://www.agileali.com/myblog/?p=331</guid>
		<description><![CDATA[I am not sure why QTP is behaving like this ! But here is the Fix for it:
1. Open / Start QTP2. Right click on the Menu toolbar (File  Edit View Insert &#8230;.)3. Select &#8220;Customize&#8221;4. Click on the &#8220;Toolbars&#8221; tab5. then Click on &#8220;Restore All&#8221; button at the lower right hand side.
Wallah ! now All [...]]]></description>
			<content:encoded><![CDATA[<p>I am not sure why QTP is behaving like this ! But here is the Fix for it:</p>
<p>1. Open / Start QTP<br style="padding: 0px; margin: 0px;" />2. Right click on the Menu toolbar (File  Edit View Insert &#8230;.)<br style="padding: 0px; margin: 0px;" />3. Select &#8220;Customize&#8221;<br style="padding: 0px; margin: 0px;" />4. Click on the &#8220;Toolbars&#8221; tab<br style="padding: 0px; margin: 0px;" />5. then Click on &#8220;Restore All&#8221; button at the lower right hand side.</p>
<p>Wallah ! now All iz Well !<br />
<a href="http://www.tkqlhce.com/click-3678012-10708931" target="_top"><br />
<img src="http://www.tqlkg.com/image-3678012-10708931" width="468" height="60" alt="" border="0"/></a></p>
<a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.agileali.com%2Fmyblog%2F2010%2F03%2F30%2Fqtp-10-0-menu-bar-items-are-missing-gone-here-is-the-fix%2F&amp;linkname=QTP%2010.0%20%26%238211%3B%20Menu%20Bar%20Items%20are%20Missing%20%3F%20Gone%20%3F%20Here%20is%20the%20Fix%20%21"><img src="http://www.agileali.com/myblog/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share/Bookmark"/></a>]]></content:encoded>
			<wfw:commentRss>http://www.agileali.com/myblog/2010/03/30/qtp-10-0-menu-bar-items-are-missing-gone-here-is-the-fix/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>SEC: Hacker Manipulated Stock Prices &#8211; or The one who got caught</title>
		<link>http://www.agileali.com/myblog/2010/03/17/sec-hacker-manipulated-stock-prices-or-the-one-who-got-caught/</link>
		<comments>http://www.agileali.com/myblog/2010/03/17/sec-hacker-manipulated-stock-prices-or-the-one-who-got-caught/#comments</comments>
		<pubDate>Wed, 17 Mar 2010 19:30:57 +0000</pubDate>
		<dc:creator>Ali</dc:creator>
				<category><![CDATA[Crazy IT]]></category>

		<guid isPermaLink="false">http://www.agileali.com/myblog/?p=329</guid>
		<description><![CDATA[I personally feel that either this guy was ratted out, or the SEC is going after him because he is a small timer. All the big companies play games with their stock prices, heck even big investors are playign games with their stocks. But since they are too big of a fish to catch, SEC realizes that [...]]]></description>
			<content:encoded><![CDATA[<p style="margin-top: 15px; margin-right: 0px; margin-bottom: 15px; margin-left: 0px; padding: 0px;"><img class="alignleft" title="nasdaqhack" src="http://www.wired.com/images_blogs/threatlevel/2010/03/picture-7.png" alt="" width="498" height="330" />I personally feel that either this guy was ratted out, or the SEC is going after him because he is a small timer. All the big companies play games with their stock prices, heck even big investors are playign games with their stocks. But since they are too big of a fish to catch, SEC realizes that going after them not worth the lawyer fees and time, so it and continues to catch the small ones to paying their lawyers the salaries. __ My 2 cents __ Ali</p>
<p style="margin-top: 15px; margin-right: 0px; margin-bottom: 15px; margin-left: 0px; padding: 0px;">&#8212;-</p>
<p style="margin-top: 15px; margin-right: 0px; margin-bottom: 15px; margin-left: 0px; padding: 0px;">U.S. regulators are moving to freeze the assets and trading accounts of a Russian accused of hacking into personal online portfolios and manipulating the price of dozens of stocks listed on the Nasdaq Stock Market and New York Stock Exchange.</p>
<p style="margin-top: 15px; margin-right: 0px; margin-bottom: 15px; margin-left: 0px; padding: 0px;">A New York federal judge on Tuesday sided with the Securities and Exchange Commission and froze the assets of Broco Investments, believed to be a one-trader operation based in St. Petersburg, Russia. The SEC said Broco capitalized by artificially moving prices of more 38 thinly traded securities — enabling Broco to profit from up-or-down price swings.</p>
<p style="margin-top: 15px; margin-right: 0px; margin-bottom: 15px; margin-left: 0px; padding: 0px;">“These transactions have created the appearance of legitimate trading activity and have <a style="color: #238db1; text-decoration: none; outline-style: none; outline-width: initial; outline-color: initial; padding: 0px; margin: 0px;" href="http://www.wired.com/images_blogs/threatlevel/2010/03/brocosec.pdf">artificially affected the prices of at least 38 issuers</a>,” (.pdf)  the Securities and Exchange Commission said in court filing.</p>
<p style="margin-top: 15px; margin-right: 0px; margin-bottom: 15px; margin-left: 0px; padding: 0px;">The so-called “hack, pump and dump” scheme is among the latest illicit methods of gaming the market though hacking.</p>
<p style="margin-top: 15px; margin-right: 0px; margin-bottom: 15px; margin-left: 0px; padding: 0px;">An Indian man was sentenced to two years in prison for <a style="color: #007ca5; text-decoration: none; outline-style: none; outline-width: initial; outline-color: initial; padding: 0px; margin: 0px;" href="http://www.wired.com/threatlevel/2008/09/from-riches-to/">undertaking a similar scam in 2008</a>. That same year, a Ukrainian <a style="color: #007ca5; text-decoration: none; outline-style: none; outline-width: initial; outline-color: initial; padding: 0px; margin: 0px;" href="http://www.wired.com/threatlevel/2008/02/ukrainian-hacke/">hacked into Thomson Financial</a> to get a peek about an upcoming negative earnings report for IMS Health, earning nearly $300,000 for a few minutes’ work.</p>
<p style="margin-top: 15px; margin-right: 0px; margin-bottom: 15px; margin-left: 0px; padding: 0px;">And in July, a computer programmer working for Goldman Sachs was arrested on charges  <a style="color: #007ca5; text-decoration: none; outline-style: none; outline-width: initial; outline-color: initial; padding: 0px; margin: 0px;" href="http://www.wired.com/threatlevel/2009/07/aleynikov/">he stole proprietary source code</a> for software his employer uses to make sophisticated, high-speed stock and commodities trades.</p>
<p style="margin-top: 15px; margin-right: 0px; margin-bottom: 15px; margin-left: 0px; padding: 0px;">In the latest case, the affected stocks ranged from Akeena Solar, Magellan Petroleum to Xerium Technologies. The prices fluctuated more than 20 percent in some instances.</p>
<p style="margin-top: 15px; margin-right: 0px; margin-bottom: 15px; margin-left: 0px; padding: 0px;">Broco would purchase these and other stocks in its own portfolio and immediately place unauthorized buy orders at inflated prices of the same securities in hacked Scottrade accounts, the SEC said.</p>
<p style="margin-top: 15px; margin-right: 0px; margin-bottom: 15px; margin-left: 0px; padding: 0px;">“Immediately or shortly thereafter, the defendants capitalized on the artificially inflated share prices of the targeted securities by selling the shares previously acquired in their account,” the SEC alleged. “In other instances, the defendants profited by covering short positions previously established in their account while placing unauthorized sell orders through the compromised accounts at substantially lower prices.”</p>
<p style="margin-top: 15px; margin-right: 0px; margin-bottom: 15px; margin-left: 0px; padding: 0px;"><span id="more-14347" style="padding: 0px; margin: 0px;"> </span></p>
<p style="margin-top: 15px; margin-right: 0px; margin-bottom: 15px; margin-left: 0px; padding: 0px;">Along the way, victims lost $600,000 in market value the last few months alone, the SEC said. And Broco, believed to be a one-person company run by Valery Maltsev, reaped $255,000 in ill-gotten gains during the same time.</p>
<p style="margin-top: 15px; margin-right: 0px; margin-bottom: 15px; margin-left: 0px; padding: 0px;">Daily trading volume in Pennsylvania-based financial services company AmeriServe Financial averaged about 11,300 shares in from Dec. 1 to Dec. 20, the SEC said. The next day, volume increased 20 times. At least 200,000 shares were bought and sold through Broco or hacked Scottrade accounts, allowing Broco to leverage the prices for its own profits.</p>
<p style="margin-top: 15px; margin-right: 0px; margin-bottom: 15px; margin-left: 0px; padding: 0px;">“Broco grossed $141,500 in approximately 15 minutes,” the SEC said.</p>
<p>[via <a href="http://www.wired.com">Wired</a>]<br />
<a href="http://www.tkqlhce.com/click-3678012-10771355" target="_top"><br />
<img src="http://www.awltovhc.com/image-3678012-10771355" width="300" height="250" alt="" border="0"/></a>
<p><script type="text/javascript"><!--
google_ad_client = "pub-7761582637194267";
/* 468x60, created 9/23/09 */
google_ad_slot = "0787846384";
google_ad_width = 468;
google_ad_height = 60;
//-->
</script><br />
<script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></p>
<a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.agileali.com%2Fmyblog%2F2010%2F03%2F17%2Fsec-hacker-manipulated-stock-prices-or-the-one-who-got-caught%2F&amp;linkname=SEC%3A%20Hacker%20Manipulated%20Stock%20Prices%20%26%238211%3B%20or%20The%20one%20who%20got%20caught"><img src="http://www.agileali.com/myblog/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share/Bookmark"/></a>]]></content:encoded>
			<wfw:commentRss>http://www.agileali.com/myblog/2010/03/17/sec-hacker-manipulated-stock-prices-or-the-one-who-got-caught/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Warning! Warning! Pink Mal-ware Rabbit Approaching!</title>
		<link>http://www.agileali.com/myblog/2010/03/08/warning-warning-pink-mal-ware-rabbit-approaching/</link>
		<comments>http://www.agileali.com/myblog/2010/03/08/warning-warning-pink-mal-ware-rabbit-approaching/#comments</comments>
		<pubDate>Tue, 09 Mar 2010 01:20:42 +0000</pubDate>
		<dc:creator>Ali</dc:creator>
				<category><![CDATA[Crazy IT]]></category>
		<category><![CDATA[What THE |= ?]]></category>
		<category><![CDATA[energizer error]]></category>

		<guid isPermaLink="false">http://www.agileali.com/myblog/?p=326</guid>
		<description><![CDATA[The U.S. Department of Homeland Security found software for Energizer&#8217;s Duo USB battery charger can leave computers vulnerable to attack.
The Duo battery chargers for NiMH batteries are safe, but the software that enables the user to monitor the batteries is infected, PC World reported Monday.
The infected software includes a &#8220;backdoor&#8221; that allows some computer files [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignleft size-full wp-image-327" title="energizer-bunny" src="http://www.agileali.com/myblog/wp-content/uploads/2010/03/energizer-bunny.jpg" alt="energizer-bunny" width="162" height="220" />The U.S. Department of Homeland Security found software for Energizer&#8217;s Duo USB battery charger can leave computers vulnerable to attack.</p>
<p>The Duo battery chargers for NiMH batteries are safe, but the software that enables the user to monitor the batteries is infected, PC World reported Monday.</p>
<p>The infected software includes a &#8220;backdoor&#8221; that allows some computer files to be to be remotely controlled, PC World said.</p>
<p>The trouble begins if the consumer downloads Windows software from the Energizer company website If this was not done or if the consumer uses a Macintosh computer, consumer files are safe.</p>
<p>Consumers were advised to uninstall the infected software, reboot the computers and then go to the System32 directory in Windows. There, consumers were advised to delete &#8220;arucer.dll,&#8221; the file that is the actual backdoor, PC World said.</p>
<p>Energizer has discontinued the software, but you can still buy the DUO at Amazon for about $20.</p>
<a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.agileali.com%2Fmyblog%2F2010%2F03%2F08%2Fwarning-warning-pink-mal-ware-rabbit-approaching%2F&amp;linkname=Warning%21%20Warning%21%20Pink%20Mal-ware%20Rabbit%20Approaching%21"><img src="http://www.agileali.com/myblog/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share/Bookmark"/></a>]]></content:encoded>
			<wfw:commentRss>http://www.agileali.com/myblog/2010/03/08/warning-warning-pink-mal-ware-rabbit-approaching/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>How Facebook QA/Tests its code !</title>
		<link>http://www.agileali.com/myblog/2010/03/03/how-facebook-qatests-its-code/</link>
		<comments>http://www.agileali.com/myblog/2010/03/03/how-facebook-qatests-its-code/#comments</comments>
		<pubDate>Wed, 03 Mar 2010 23:42:21 +0000</pubDate>
		<dc:creator>Ali</dc:creator>
				<category><![CDATA[Crazy IT]]></category>
		<category><![CDATA[facebook]]></category>

		<guid isPermaLink="false">http://www.agileali.com/myblog/?p=318</guid>
		<description><![CDATA[Last week, Facebook was affected by a glitch that sent what appear to be thousands of private messages to the wrong people — a very alarming security breach given the amount of data 400 million users have entrusted to the service. News of the bug hit the press, Facebook issued a typically vague statement saying very few people [...]]]></description>
			<content:encoded><![CDATA[<p style="line-height: 19px; margin-top: 1em; margin-right: 0px; margin-bottom: 1em; margin-left: 0px;">Last week, Facebook was affected by a glitch that sent what appear to be thousands of private messages to the wrong people — a very alarming security breach given the amount of data 400 million users have entrusted to the service. News of the bug hit the press, Facebook issued a typically vague statement saying very few people were affected and that an investigation was looking into the matter, and that was that.</p>
<p style="line-height: 19px; margin-top: 1em; margin-right: 0px; margin-bottom: 1em; margin-left: 0px;">Most people probably just shrugged their shoulders at the news, but it’s yet another blemish against the company’s security record. This isn’t the first time Facebook has run into security issues, and I’ve grown increasingly concerned that the company might be playing fast and loose with its quality assurance policies because it doesn’t want to sacrifice the rapid iteration it’s famous for.  With this in mind, I reached out to Facebook late last week to ask about their protocol for deploying code and how the bug made it through in the first place. The company responded to some of my questions, and refused to answer others.<span id="more-318"></span></p>
<p style="line-height: 19px; margin-top: 1em; margin-right: 0px; margin-bottom: 1em; margin-left: 0px;">At least, Facebook <em>eventually</em> answered some of my questions. At first, the company sent me a vague statement reiterating that they were investigating the issue, and that they “maintain industry-leading quality assurance and security systems, and the reliability of Facebook is our top priority.”</p>
<p style="line-height: 19px; margin-top: 1em; margin-right: 0px; margin-bottom: 1em; margin-left: 0px;">In response, I reminded the Facebook spokesperson that it had just sent thousands of messages to people who weren’t meant to receive them, which would seem to indicate that it is not, in fact, on the bleeding edge of online security. I restated my questions and the company got back to me with this more detailed overview of its QA and code deployment policies, found below. Note that it begins with a general statement Facebook provided, along with more direct answers to my questions (which are in bold).</p>
<blockquote style="font-size: 1em; line-height: 13px; color: #5d5d5d; border-left-width: 5px; border-left-style: solid; border-left-color: #f1f1f1; padding-top: 0px; padding-right: 0px; padding-bottom: 0px; padding-left: 20px; margin: 0px;">
<p style="line-height: 19px; margin-top: 1em; margin-right: 0px; margin-bottom: 1em; margin-left: 0px;">Facebook hires the most qualified and highly-skilled engineers we can find – most from industry or from top universities. Upon joining the company, every engineer and engineering manager participates in a six-week intensive ‘boot camp’ training. Our code review process is rigorous, and we phase out changes and test them before they go live for real users to detect any potential issues. During code pushes, our engineering, user support, and operations teams work cross-functionally to monitor the state of the push and to identify any problems early. We also have the capability to quickly push code updates to all of our datacenters worldwide, and to enable or disable critical features of the site if there is a problem.</p>
<p style="line-height: 19px; margin-top: 1em; margin-right: 0px; margin-bottom: 1em; margin-left: 0px;">All of these checks worked together on Wednesday, as designed, to limit the impact of the error and stopped it within minutes. We were able to swiftly disable access to the users who received messages and remove those messages from Facebook, although we were unable to prevent email notifications from being sent to affected users. It is important to recognize that no system is perfect and no company avoids mistakes all of the time. However, we would like to take this opportunity to sincerely apologize to all affected users and ensure them that we are committed to investigating Wednesday’s issue and to learning from it.</p>
</blockquote>
<p style="line-height: 19px; margin-top: 1em; margin-right: 0px; margin-bottom: 1em; margin-left: 0px;"><strong style="color: black;">What are your protocols for pushing code?</strong></p>
<blockquote style="font-size: 1em; line-height: 13px; color: #5d5d5d; border-left-width: 5px; border-left-style: solid; border-left-color: #f1f1f1; padding-top: 0px; padding-right: 0px; padding-bottom: 0px; padding-left: 20px; margin: 0px;">
<p style="line-height: 19px; margin-top: 1em; margin-right: 0px; margin-bottom: 1em; margin-left: 0px;">We have staged rollout changes that go through multiple phases before going to end users, so we can proactively detect any problems. As the changes get rolled out to users, a set of support, engineering, and operation leaders are actively engaged to monitor the state of the push. As soon as any issue is identified, we have multiple tools to quickly disable critical features. The combination of these mechanisms dramatically limited the exposure related to Wednesday’s issue.</p>
</blockquote>
<p style="line-height: 19px; margin-top: 1em; margin-right: 0px; margin-bottom: 1em; margin-left: 0px;"><strong style="color: black;">Are there multiple people reviewing all code that gets pushed?</strong></p>
<blockquote style="font-size: 1em; line-height: 13px; color: #5d5d5d; border-left-width: 5px; border-left-style: solid; border-left-color: #f1f1f1; padding-top: 0px; padding-right: 0px; padding-bottom: 0px; padding-left: 20px; margin: 0px;">
<p style="line-height: 19px; margin-top: 1em; margin-right: 0px; margin-bottom: 1em; margin-left: 0px;">Yes, we have a rigorous code review process and no code goes live on the site unless it has been reviewed and approved by a skilled engineer.</p>
</blockquote>
<p style="line-height: 19px; margin-top: 1em; margin-right: 0px; margin-bottom: 1em; margin-left: 0px;"><strong style="color: black;">What changes are you making to ensure that this does not happen again?</strong></p>
<blockquote style="font-size: 1em; line-height: 13px; color: #5d5d5d; border-left-width: 5px; border-left-style: solid; border-left-color: #f1f1f1; padding-top: 0px; padding-right: 0px; padding-bottom: 0px; padding-left: 20px; margin: 0px;">
<p style="line-height: 19px; margin-top: 1em; margin-right: 0px; margin-bottom: 1em; margin-left: 0px;">We cannot discuss specific improvements, but we take privacy and security very seriously and are continually improving our code standards, processes, and systems to help us build high quality products quickly.</p>
</blockquote>
<p style="line-height: 19px; margin-top: 1em; margin-right: 0px; margin-bottom: 1em; margin-left: 0px;"><strong style="color: black;">When do you expect to conclude your investigation, because I will certainly be following up for the details about it?</strong></p>
<blockquote style="font-size: 1em; line-height: 13px; color: #5d5d5d; border-left-width: 5px; border-left-style: solid; border-left-color: #f1f1f1; padding-top: 0px; padding-right: 0px; padding-bottom: 0px; padding-left: 20px; margin: 0px;">
<p style="line-height: 19px; margin-top: 1em; margin-right: 0px; margin-bottom: 1em; margin-left: 0px;">As a general practice, we do not comment on investigations like this.</p>
</blockquote>
<p style="line-height: 19px; margin-top: 1em; margin-right: 0px; margin-bottom: 1em; margin-left: 0px;">While interesting, none of this is particularly surprising. And because Facebook isn’t commenting on the outcome of the investigation, we’ll probably never find out what caused the bug (or if company protocol was even followed in this case).  But hey, at least they <em>say</em>they’re doing the right things.</p>
<p style="line-height: 19px; margin-top: 1em; margin-right: 0px; margin-bottom: 1em; margin-left: 0px;">It’s worth pointing out that Facebook is by no means the only company affected by such issues.  Last year, I wrote a post called the <a style="text-decoration: none; font-weight: bold; color: #009f00;" href="http://techcrunch.com/2009/04/26/the-sorry-state-of-online-privacy/">Sorry State of Online Privacy</a>, where I detailed some of the security lapses that had hit Facebook, Twitter, and Google (and of course there’s the recent Google Buzz <a style="text-decoration: none; font-weight: bold; color: #009f00;" href="http://techcrunch.com/2010/02/12/google-buzz-privacy/">fiasco</a>). All of these companies would likely claim to have state of the art testing and security measures, yet such problems seem to pop up every few months.  I’m aware that it’s impossible to have a fully secure system, but that doesn’t mean engineering teams should be treating these problems as inevitabilities.  To reiterate what I wrote last year, the word ‘private’ should not mean “this will remain hidden until we accidentally break something”.</p>
<p style="line-height: 19px; margin-top: 1em; margin-right: 0px; margin-bottom: 1em; margin-left: 0px;">[via <a href="http://techcrunch.com/" target="_blank">TechCrunch</a>]</p>
<a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.agileali.com%2Fmyblog%2F2010%2F03%2F03%2Fhow-facebook-qatests-its-code%2F&amp;linkname=How%20Facebook%20QA%2FTests%20its%20code%20%21"><img src="http://www.agileali.com/myblog/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share/Bookmark"/></a>]]></content:encoded>
			<wfw:commentRss>http://www.agileali.com/myblog/2010/03/03/how-facebook-qatests-its-code/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Still using XP ? This bug might just make you upgrade !</title>
		<link>http://www.agileali.com/myblog/2010/03/03/still-using-xp-this-bug-might-just-make-you-upgrade/</link>
		<comments>http://www.agileali.com/myblog/2010/03/03/still-using-xp-this-bug-might-just-make-you-upgrade/#comments</comments>
		<pubDate>Wed, 03 Mar 2010 23:34:55 +0000</pubDate>
		<dc:creator>Ali</dc:creator>
				<category><![CDATA[Do QA Right!]]></category>
		<category><![CDATA[Useful if needed]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[ms bug]]></category>
		<category><![CDATA[windows xp]]></category>

		<guid isPermaLink="false">http://www.agileali.com/myblog/?p=316</guid>
		<description><![CDATA[Microsoft has warned of a new security hole that could be exploited by attackers to take control of older Windows systems running Internet Explorer and for which proof-of-concept exploit code has been released publicly.
The vulnerability affects Windows 2000, XP and Server 2003-based systems, Microsoft said in a security advisory dated March 1.
Microsoft said that the [...]]]></description>
			<content:encoded><![CDATA[<p style="margin-top: 0px; margin-right: 3px; margin-bottom: 15px; margin-left: 3px;">Microsoft has warned of a new security hole that could be exploited by attackers to take control of older Windows systems running Internet Explorer and for which proof-of-concept exploit code has been released publicly.</p>
<p style="margin-top: 0px; margin-right: 3px; margin-bottom: 15px; margin-left: 3px;">The vulnerability affects Windows 2000, XP and Server 2003-based systems, Microsoft said in a security advisory dated March 1.</p>
<p style="margin-top: 0px; margin-right: 3px; margin-bottom: 15px; margin-left: 3px;">Microsoft said that the vulnerability in VBScript could allow remote code execution of computers. &#8220;If a malicious Web site displayed a specially crafted dialog box and a user pressed the F1 key, arbitrary code could be executed in the security context of the currently logged-on user,&#8221; Microsoft said on its Web site, &#8220;On systems running Windows Server 2003, Internet Explorer Enhanced Security Configuration is enabled by default, which helps to mitigate against this issue.&#8221; Windows Vista, Windows 7, and Windows Server 2008 are not affected.<span id="more-316"></span></p>
<p style="margin-top: 0px; margin-right: 3px; margin-bottom: 15px; margin-left: 3px;">The advisory includes several workarounds, including advice to avoid pressing the F1 key when prompted by a Web site.</p>
<p style="margin-top: 0px; margin-right: 3px; margin-bottom: 15px; margin-left: 3px;">It also suggests restricting access to the Windows Help System, setting Internet and Local intranet security zone settings to &#8220;high&#8221; to block ActiveX Controls and Active Scripting, and configuring Internet Explorer to prompt before running Active Scripting or disable Active Scripting in the Internet and Local intranet security zone.</p>
<p style="margin-top: 0px; margin-right: 3px; margin-bottom: 15px; margin-left: 3px;">Microsoft complained in its advisory and a statement that the vulnerability was not responsibly disclosed.</p>
<a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.agileali.com%2Fmyblog%2F2010%2F03%2F03%2Fstill-using-xp-this-bug-might-just-make-you-upgrade%2F&amp;linkname=Still%20using%20XP%20%3F%20This%20bug%20might%20just%20make%20you%20upgrade%20%21"><img src="http://www.agileali.com/myblog/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share/Bookmark"/></a>]]></content:encoded>
			<wfw:commentRss>http://www.agileali.com/myblog/2010/03/03/still-using-xp-this-bug-might-just-make-you-upgrade/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Its Alive, Its Alive ! again ! PS3 bug fixed</title>
		<link>http://www.agileali.com/myblog/2010/03/03/its-alive-its-alive-again-ps3-bug-fixed/</link>
		<comments>http://www.agileali.com/myblog/2010/03/03/its-alive-its-alive-again-ps3-bug-fixed/#comments</comments>
		<pubDate>Wed, 03 Mar 2010 23:32:20 +0000</pubDate>
		<dc:creator>Ali</dc:creator>
				<category><![CDATA[Do QA Right!]]></category>
		<category><![CDATA[playstation]]></category>
		<category><![CDATA[playstation 3]]></category>
		<category><![CDATA[sony ps3]]></category>

		<guid isPermaLink="false">http://www.agileali.com/myblog/?p=313</guid>
		<description><![CDATA[Sony PS3, the bug is fixed : The issue date of which affected the older model PlayStation 3 (PS3) is just a bad memory. Sony has indeed fixed this bug that prevented players from connecting to the Playstation Network.
Two days was all it took to Sony engineers to solve the problem of time that affected [...]]]></description>
			<content:encoded><![CDATA[<p style="margin-top: 10px; margin-right: 0px; margin-bottom: 10px; margin-left: 0px; padding: 0px;">Sony PS3, the bug is fixed : The issue date of which affected the older model PlayStation 3 (PS3) is just a bad memory. Sony has indeed fixed this bug that prevented players from connecting to the Playstation Network.</p>
<p style="margin-top: 10px; margin-right: 0px; margin-bottom: 10px; margin-left: 0px; padding: 0px;">Two days was all it took to Sony engineers to solve the problem of time that affected some models of the PS3. A concern due to the passage of the month from February to March and that has prevented some users from connecting to the PlayStation Network on Sunday and Monday. This bug has been identified as the older model PS3 (called Fat) and does not cover PS3 Slim sold since September 2009.</p>
<p style="margin-top: 10px; margin-right: 0px; margin-bottom: 10px; margin-left: 0px; padding: 0px;">On its blog, Sony states that if, on consoles impacted by this bug, the date does not always gets updated automatically, you can now force it manually or via the Internet. The Japanese company also said that if it has new elements to correct any other recurring concerns, it will update the console via the web to solve them. Evidence that the connection problems are only the past now.</p>
<a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.agileali.com%2Fmyblog%2F2010%2F03%2F03%2Fits-alive-its-alive-again-ps3-bug-fixed%2F&amp;linkname=Its%20Alive%2C%20Its%20Alive%20%21%20again%20%21%20PS3%20bug%20fixed"><img src="http://www.agileali.com/myblog/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share/Bookmark"/></a>]]></content:encoded>
			<wfw:commentRss>http://www.agileali.com/myblog/2010/03/03/its-alive-its-alive-again-ps3-bug-fixed/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Turn the Love-Hate relationship with QA to just Loving QA ! :) !</title>
		<link>http://www.agileali.com/myblog/2010/03/03/turn-the-love-hate-relationship-with-qa-to-just-loving-qa/</link>
		<comments>http://www.agileali.com/myblog/2010/03/03/turn-the-love-hate-relationship-with-qa-to-just-loving-qa/#comments</comments>
		<pubDate>Wed, 03 Mar 2010 23:19:33 +0000</pubDate>
		<dc:creator>Ali</dc:creator>
				<category><![CDATA[Do QA Right!]]></category>
		<category><![CDATA[qa]]></category>

		<guid isPermaLink="false">http://www.agileali.com/myblog/?p=311</guid>
		<description><![CDATA[You&#8217;re QA Team is the last line of defense before your software gets to the end-user. They are your last, best hope at finding any bugs that may be detrimental to a successful product. Treat them well and you will be well rewarded in the end with good communication and a successful product.
I&#8217;ve worked at [...]]]></description>
			<content:encoded><![CDATA[<p>You&#8217;re QA Team is the last line of defense before your software gets to the end-user. They are your last, best hope at finding any bugs that may be detrimental to a successful product. Treat them well and you will be well rewarded in the end with good communication and a successful product.</p>
<p>I&#8217;ve worked at places and with developers that see the QA Team as a nuisance. Constantly interrupting with bug issues when you&#8217;re just trying to move on to the next step. I mean, you tested it yourself right? What could some QA person have found that you didn&#8217;t account for? That&#8217;s the point. As the old phrase goes:</p>
<blockquote><p>&#8220;It takes more intelligence to debug code than to write it. Therefore, if you write the most difficult code you can create, you are not smart enough to debug it.&#8221;</p></blockquote>
<p>The other thing to remember is that when you as a developer test code you have the bias of knowing <em>exactly</em> how it works and will test with that in mind, there&#8217;s no escaping it. The QA Team is there to not only test it to see if it works, but to try the most asinine tests that end-users <strong>will</strong> do and see if it breaks. No matter how well you design your software the end-user will use it in ways you never thought possible, the QA Team is there to help you in these cases by testing obscure scenarios and reporting what they&#8217;ve found.</p>
<p>There&#8217;s more to it than understanding QA&#8217;s role and respecting them and relying on them. We as Developers need to be engaging them. When I turn over my software to QA, if I don&#8217;t hear anything within a few days I go bug them. My ultimate goal as should be the goal of all developers is customer satisfaction, if the customer isn&#8217;t happy you&#8217;re not going to be doing much development for them. We should be asking QA what we can provide so they can better test the code. Maybe creating a tool that will allow them to automate certain interactions or giving them DB access to see what&#8217;s getting stored. In any case we also need to be sitting down with them and making sure they understand exactly how the software works. Sit down and explain the DB table structure with them, make sure they understand the process flow. The more they understand of it the more they will know how to test it. Also keep in mind that a good rule of thumb to follow is however long it took you to develop it, it may take twice as long for QA to debug it. Your QA Team is your friend, not your enemy. QA is the body armor to failure. The more you help QA the better your chances of success.</p>
<p>So, Bottom Line : LOVE YOUR QA TEAM !</p>
<a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.agileali.com%2Fmyblog%2F2010%2F03%2F03%2Fturn-the-love-hate-relationship-with-qa-to-just-loving-qa%2F&amp;linkname=Turn%20the%20Love-Hate%20relationship%20with%20QA%20to%20just%20Loving%20QA%20%21%20%3A%29%20%21"><img src="http://www.agileali.com/myblog/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share/Bookmark"/></a>]]></content:encoded>
			<wfw:commentRss>http://www.agileali.com/myblog/2010/03/03/turn-the-love-hate-relationship-with-qa-to-just-loving-qa/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Upcoming Updates on AgileAli.com</title>
		<link>http://www.agileali.com/myblog/2010/02/22/upcoming-updates-on-agileali-com/</link>
		<comments>http://www.agileali.com/myblog/2010/02/22/upcoming-updates-on-agileali-com/#comments</comments>
		<pubDate>Mon, 22 Feb 2010 23:26:08 +0000</pubDate>
		<dc:creator>Ali</dc:creator>
				<category><![CDATA[Official Memo]]></category>

		<guid isPermaLink="false">http://www.agileali.com/myblog/?p=309</guid>
		<description><![CDATA[I have been busy building my very own Automation Testing Framework/Tools. But this week you shall see a lot of activity of the QTP / Selenium and LoadRunner Blogs.
the Selenium blogs have been updated recently, QTP will be next followed by more Selenium updates and then Loadrunner.
So Keep Reading and stay Agile !!!
]]></description>
			<content:encoded><![CDATA[<p>I have been busy building my very own Automation Testing Framework/Tools. But this week you shall see a lot of activity of the QTP / Selenium and LoadRunner Blogs.</p>
<p>the Selenium blogs have been updated recently, QTP will be next followed by more Selenium updates and then Loadrunner.</p>
<p>So Keep Reading and stay Agile !!!</p>
<a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.agileali.com%2Fmyblog%2F2010%2F02%2F22%2Fupcoming-updates-on-agileali-com%2F&amp;linkname=Upcoming%20Updates%20on%20AgileAli.com"><img src="http://www.agileali.com/myblog/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share/Bookmark"/></a>]]></content:encoded>
			<wfw:commentRss>http://www.agileali.com/myblog/2010/02/22/upcoming-updates-on-agileali-com/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Watch-out for Mozilla&#8217;s security updates for Firefox</title>
		<link>http://www.agileali.com/myblog/2010/02/22/watch-out-for-mozillas-security-updates-for-firefox/</link>
		<comments>http://www.agileali.com/myblog/2010/02/22/watch-out-for-mozillas-security-updates-for-firefox/#comments</comments>
		<pubDate>Mon, 22 Feb 2010 23:22:45 +0000</pubDate>
		<dc:creator>Ali</dc:creator>
				<category><![CDATA[Useful if needed]]></category>
		<category><![CDATA[firefox]]></category>
		<category><![CDATA[mozilla]]></category>

		<guid isPermaLink="false">http://www.agileali.com/myblog/?p=307</guid>
		<description><![CDATA[The Mozilla Foundation, the software group behind the Firefox browser, has released five security advisories relating to its Firefox and Thunderbird software.
Three of the notices relate to critical vulnerabilities, with the two just classed as &#8220;moderate&#8221;, while all of which could potentially allow a hacker to executive arbitrary code.
It is understood the US-CERT department is [...]]]></description>
			<content:encoded><![CDATA[<p>The Mozilla Foundation, the software group behind the Firefox browser, has released five security advisories relating to its Firefox and Thunderbird software.</p>
<p style="color: #333333; margin-top: 0.8em; margin-right: 0px; margin-bottom: 0.8em; margin-left: 0px; font-size: 13.5px; line-height: 18px; padding: 0px;">Three of the notices relate to critical vulnerabilities, with the two just classed as &#8220;moderate&#8221;, while all of which could potentially allow a hacker to executive arbitrary code.</p>
<p style="color: #333333; margin-top: 0.8em; margin-right: 0px; margin-bottom: 0.8em; margin-left: 0px; font-size: 13.5px; line-height: 18px; padding: 0px;">It is understood the US-CERT department is advising Firefox users to upgrade to version 3.0.18, 3.5.8 or 3.6. Thunderbird users have been told to upgrade to 3.0.2, with SeaMonkey users also advised to upgrade to 2.0.3.</p>
<p style="color: #333333; margin-top: 0.8em; margin-right: 0px; margin-bottom: 0.8em; margin-left: 0px; font-size: 13.5px; line-height: 18px; padding: 0px;">The notices come after Mozilla employee Jess Ruderman wrote in a security blog post last week the company has begun to deliver updates and notices about security problems more quickly.</p>
<a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.agileali.com%2Fmyblog%2F2010%2F02%2F22%2Fwatch-out-for-mozillas-security-updates-for-firefox%2F&amp;linkname=Watch-out%20for%20Mozilla%26%238217%3Bs%20security%20updates%20for%20Firefox"><img src="http://www.agileali.com/myblog/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share/Bookmark"/></a>]]></content:encoded>
			<wfw:commentRss>http://www.agileali.com/myblog/2010/02/22/watch-out-for-mozillas-security-updates-for-firefox/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

<!-- Dynamic page generated in 0.491 seconds. -->
<!-- Cached page generated by WP-Super-Cache on 2010-09-03 18:52:07 -->
