post

CloudFlare Hack and More Password Reset Woes

CloudFlare Hack Time Line

The CloudFlare hack is interesting not because of the damage that was done, but because of the multiple authentication system failures that were exploited to make it happen. It also sheds some light on the Achilles’ Heel of web-based services, the password reset procedure.