Leaves Server Logs Public, Leaks All Your Searches

Discussion in 'News Archive' started by MalwareTips Bot, Apr 7, 2017.

  1. MalwareTips Bot

    MalwareTips Bot MT Robot
    Staff Member Content Creator

    Apr 21, 2016
    #1 MalwareTips Bot, Apr 7, 2017
    Last edited by a moderator: Apr 7, 2017
    [​IMG]'s Apache server status page is open to the public, and everyone can see what people are searching for. Any queries and user actions done on that particular server on are open to anyone who wants to have a look.

    The discovery was made by researcher Paul Shapiro earlier today, and even though it's been a couple of hours since the revelation was made, has not hidden its server from people's eyes.

    It's unclear for how long this page has been open to the public and given's inaction, for how long it's going to be left like this. The server status page was restarted over three days ago, and the running theory is that during that reboot the server page was accidentally left exposed.

    There are also details regarding the total accesses since the server reset - 4.4 million, the total traffic - 237.9 GB, and so on.

    Not a security threat

    Thankfu... (read more)

    Read more: Leaves Server Logs Public, Leaks All Your Searches
    DardiM, mal1, frogboy and 2 others like this.
  2. ZeroDay

    ZeroDay Level 22

    Aug 17, 2013
    Birmingham UK
    Windows 10
    Don't Norton/Symantec use ASK as their search engine?
    DardiM, mal1, Spawn and 1 other person like this.
  3. lab34

    lab34 Level 6

    Mar 28, 2017
    work in IT
    Windows 10
  4. Spawn

    Spawn Administrator
    Staff Member Content Creator

    Jan 8, 2011
    DardiM, lab34, ZeroDay and 1 other person like this.