Reply to post:

Thousands of Firefox users accidentally commit login cookies on GitHub

Pascal

"You'll be authenticated on any services which the user was logged in on when they committed the database"

Not to diminish the importance of the issue but the above statement assumes that "all authentication/session cookies for any and all web sites ever have no server-side expiration mechanism".

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon