8
tytho
7y

PSA Cloudflare had a bug in there system where they were dumping random pieces of memory in the body of HTML responses, things like passwords, API tokens, personal information, chats, hotel bookings, in plain text, unencrypted. Once discovered they were able to fix it pretty quickly, but it could have been out in the wild as early as September of last year. The major issue with this is that many of those results were cached by search engines. The bug itself was discovered when people found this stuff on the google search results page.

It's not quite end of the world, but it's much worse than Heartbleed.

Now excuse me this weekend as I have to go change all of my passwords.

Comments
  • 3
    Haha geez how would this even happen??
  • 0
    @qlasico I haven't read through all the technical details, but it had something to deal with their HTML Parsing stuff at a C++ layer and was leaking random bits of memory
  • 2
    *Rust intensify*
Add Comment