
Squidbleed leaks plaintext HTTP since 1997, fixed June 8 in Squid v7.6
A Heartbleed-style memory bug in Squid’s FTP parser let attackers overread memory and steal creds and tokens for decades.
By Lama Al-Rashid·· 4 min
1 briefing · “squid”

A Heartbleed-style memory bug in Squid’s FTP parser let attackers overread memory and steal creds and tokens for decades.