Simon Willison’s Weblog

Subscribe

Posts tagged http in Dec, 2007

Filters: Year: 2007 × Month: Dec × http × Sorted by date

The backdooring of SquirrelMail. A SquirrelMail developer’s account was compromised and used to insert a backdoor: the other developers initially missed the hole because it used $_SERVER[’HTTP_BASE_PATH’], which can be set with a Base-Path: HTTP header.

# 28th December 2007, 11:40 pm / backdoor, http, php, security, squirrelmail

Techniques for safely consuming external HTTP on demand? I asked this question on programming.reddit.com yesterday and got some really insightful answers, including Joe Stump from Digg describing how Digg Images uses Danga’s Gearman worker queue.

# 15th December 2007, 12:29 pm / askreddit, danga, digg, gearman, http, joe-stump, queue, reddit, scaling, workers

Two HTTP Caching Extensions. stale-while-revalidate serves cached content even while a refresh has been triggered and is currently being pulled in to the cache; stale-if-error serves cached content if a service has gone down.

# 12th December 2007, 11:23 am / caching, http, mark-nottingham, squid