High load reveals passwords
December 6th, 2006 by noam, Filed under: Commentary
I have seen it happen more than once, and still it baffels me every time, web sites that get slashdotted ™ or just plain heavy-loaded sometime spit out information such as:
SQL Timeout while connecting to: mysql://i40604admin:Pem4Jc2f@mysql4-i/i40604_db
Which is nice as it provided me with a username and password combination for the remote server to try out… you are right there is no fail-safe method of causing this kind of error to prompt out, still why is it providing me with this information in the first case?




Pingback: Clipperz