Slashdot Mirror


Cache On Delivery — Memcached Opens an Accidental Security Hole

jamie spotted this eye-opening presentation (here's a longer explanation) about how easy it is to access sensitive data on many sites using memcached, writing "If you already know what memcached is, skim to slide #17. The jaw-drop will happen around slide #33. Turns out many websites expose their totally-non-protected memcached interface to the Internet, including gowalla, bit.ly, and PBS."

2 of 149 comments (clear)

  1. Re:More Boiled and Distilled. by Lord+Kano · · Score: 0, Redundant

    Is that an underwear design flaw?

    Well, kinda. That's why I don't use them.

    LK

    --
    "Hi. This is my friend, Jack Shit, and you don't know him." - Lord Kano
  2. Re:I fail to see why this is news by flimflammer · · Score: 0, Redundant

    I really wish I had mod points right now. +1