Eagle Eye Networks

Cloudflare Security Bug

February 27, 2017 Eagle Eye Networks

Eagle Eye Networks does not use Cloudflare – a website performance enhancement service.

cloudflare - Cloudflare Security Bug

There was a relatively severe security issue detected by Tavis Ormandy at Project Zero in the Cloudflare service. He found that certain private information could be extracted under some rare circumstances. It’s a severe security issue, but it’s been fixed.

It’s particularly interesting because once the vulnerability was known, Cloudflare was able to completely fix it in 7 hours and 47 minutes. That’s a great response time and is indicative of what you get with a professional cloud service.

In order to deliver that kind of service, companies need a full in-house engineering team, a top-notch operations team, and a full in-house security team. You are not going to get this level of response when outsourcing or using a service that is not fully staffed and professional. Too many operators in the physical security business operate using an outsourced model or lightly staffed security.

Eagle Eye has a full level of professional all in-house staff, and we work hard on our cybersecurity.

https://arstechnica.com/security/2017/02/serious-cloudflare-bug-exposed-a-potpourri-of-secret-customer-data/
https://blog.cloudflare.com/incident-report-on-memory-leak-caused-by-cloudflare-parser-bug/

Other posts that might interest you

loading

145,000 DVRs Compromised

Several articles, including one by the Wall Street Journal, have recently reported that approximately 145,000 hacked DVRs and cameras were used to create some of the largest denial of service…

September 30, 2016 Eagle Eye Networks

Are You Afraid of Your DVR?

You should be if it's connected to the internet. It could be the doorway for hackers to access your entire network. Once a DVR is compromised, it can be used…

October 31, 2016 Eagle Eye Networks

DDOS Cyber Attacks Update

Last week hackers forced Brian Krebs to take down his security journalism site because of a large scale Denial of Service Attack - likely one of the largest ever seen.…

September 29, 2016 Eagle Eye Networks