Thursday
Sep282006
A security glitch in the matrix
Thursday, September 28, 2006 at 01:57PM Google had a glitch in the matrix this morning. Instead of showing the normal user at domain in the top right corner of all their hosted apps, Google now showed the actual file system directory path.
This is a security glitch. One of the rules of secure web apps is to never reveal anything about the underlying systems architecture. The attacker now can easily deduce every hosted domain’s actual file system path (the reversal of the string is not hard crypto, Google!), and possibly use that in an attack.
Hans |
Post a Comment | 


Reader Comments