Top Stories published by Cloudflare in February of 2017

Incident report on memory leak caused by Cloudflare parser bug

by John Graham-Cumming

Last Friday, Tavis Ormandy from Google’s Project Zero contacted Cloudflare to report a security problem with our edge servers. He was seeing corrupted web pages being…


LuaJIT Hacking: Getting next() out of the NYI list

by Javier Guerra

At Cloudflare we’re heavy users of LuaJIT and in the past have sponsored many improvements to its performance


TLS 1.3 explained by the Cloudflare Crypto Team at 33c3

by Filippo Valsorda

Nick Sullivan and I gave a talk about TLS 1.3 at 33c3, the latest Chaos Communication Congress. The congress, attended by more that 13,000 hackers in Hamburg, has been one of the hallmark…


Protecting everyone from WordPress Content Injection

by Ben Cartwright-Cox

Today a severe vulnerability was announced by the WordPress Security Team that allows unauthenticated users to change content on a site using unpatched (below version 4.7.2) WordPress.


Cloudflare Crypto Meetup #5: February 28, 2017

by Nick Sullivan

Come join us on Cloudflare HQ in San Francisco on Tuesday, Febrary 28, 2017 for another cryptography meetup. We again had a great time at the last one, we decided to host another. It’s becoming a pattern.