Someone Who Should Know Better

Considering that Dan Gillmor is supposed to be one of the blog savvy professional journalist, but he certainly didn't do bloggers favors by publicisizing a Blogrolling.com security vulerability this morning. The site he linked to published the exploit which in effect gave you the ability to any other users blogroll without every notifying the vendor of the issue.

Good job to Dan for being the first to link to someone who provides instructions (and an example) on how to hack the Blogrolling.com software service. Very tech savvy of you...

Note - I only included a link to Gillmor's post because Blogrolling.com has patched the vulnerability.

Update: Blogrolling has resolved the problem and Gillmor issued an update, and agrees that linking to the actual post was a bad idea. The author of the post - Hoder - now claims he notified Blogrolling, which given the time line and their rapid response, seems unlikely. Even if he did notify them, giving them a few hours to fix a problem is hardly a whitehat maneuver.


Listed below are links to weblogs that reference Someone Who Should Know Better:

» Neil's World linked with Security flaw in Blogrolling

» Editor: Myself (English) linked with Blogrolling's big security issue

Comments (3)

Oh, well, so much for takin... (Below threshold)

Oh, well, so much for taking InstaPundit off of everyone's blogroll. JK, of course.

I hear there's a job openin... (Below threshold)

I hear there's a job opening that just opened up in Iraq for a telecommunications expert... maybe Dan Gilmour should consider taking it. *shrug*

Don't forget about security... (Below threshold)

Don't forget about security. Secureroot.org






Section Editor: Maggie Whitton

Editors: Jay Tea, Lorie Byrd, Kim Priestap, DJ Drummond, Michael Laprarie, Baron Von Ottomatic, Shawn Mallow, Rick, Dan Karipides, Michael Avitablile, Charlie Quidnunc, Steve Schippert

Emeritus: Paul, Mary Katherine Ham, Jim Addison, Alexander K. McClure, Cassy Fiano, Bill Jempty, John Stansbury, Rob Port

In Memorium: HughS

