Jan 21, 2011
6 notes

daverecycles.com: Heroku Hacked? Dissecting Heroku's Critical Security Flaw

davecnet:

Today, Heroku announced a serious security flaw that I discovered in their platform:

The vulnerability was a window through which an unauthorized user could potentially gain read-only access to an app’s deployed code and configuration variables… We confirmed the vulnerability, determining that…

  1. elwoodicious reblogged this from daverecycles
  2. daverecycles posted this
About
Extras, flotsam, and the ever important jetsam that didn't make it to elwoodicious but needed a little less ephemerality than Twitter offers. Subscribe via RSS.