Actions
Idea #2661
closedSecurity audit
Status:
Closed
Priority:
Normal
Assigned To:
-
Category:
-
Target version:
-
Start date:
Due date:
Story points:
-
Updated by Tim Pierce almost 11 years ago
- Tracker changed from Bug to Idea
Adding this story as a placeholder for performing a general security audit on Arvados infrastructure.
Some items that we want to prove and document we have covered, an incomplete list (please add to this)- URL path traversal attacks, e.g. GET /somevalidhash+size/../../../../etc/passwd
Updated by Tom Clegg over 10 years ago
- Target version set to Arvados Future Sprints
Updated by Tom Clegg almost 8 years ago
- Target version deleted (
Arvados Future Sprints)
Actions