JUST GOT HACKED

Tim Chase python.list at tim.thechases.com
Tue Oct 1 20:14:13 EDT 2013


On 2013-10-02 09:48, Tim Delaney wrote:
> Because there's no chance with the brilliance you display that
> there could be any possibility of login details being kept in
> plaintext in your database.
> 
> And of course your database is so well locked down that no attacker
> with a login to it could then execute arbitrary code on your system.
> 
> And there's also zero chance that your personal account login
> details are also available in plaintext somewhere that you're
> unaware of.

And there's no way an elephant-sized hole in the web application
allowed for dropping files/scripts on the server to do the arbitrary
bidding of anybody who read the source...

-tkc





More information about the Python-list mailing list