The group you are posting to is a Usenet group. Messages posted to this group will make your email address visible to anyone on the Internet.
Your reply message has not been sent.
Your post was successful
From: Luke Plant <L.Plant...@cantab.net>
Date: Fri, 25 Sep 2009 12:54:52 +0100
Local: Fri, Sep 25 2009 7:54 am
Subject: Re: Adding signing (and signed cookies) to Django core
On Friday 25 September 2009 12:27:53 Simon Willison wrote:
> Do you have any further information on the WordPress problems? No, I can't find it. It might not have been WordPress. All I remember is that it was along the lines of what I outlined in my previous e- mail -- one part of the application was essentially allowing the user to retrieve MD5(secret_key + user_supplied_data) (might have been HMAC or SHA1), which allowed them to get past another bit of security. Luke -- Luke Plant || http://lukeplant.me.uk/ You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
| ||||||||||||||