For completeness here... Google is aware of the post from Security Explorations on the Full Disclosure mailing list. We definitely take reports of vulnerabilities in our products very seriously and we are investigating the findings in this post. We are working with the researcher who has reported these issues to understand and fix them.
Most importantly, we currently have no reason to believe that customer data or applications are at risk. Google App Engine customers do not need to take any action. -- Chris Product Manager, Google App Engine On Tue, Dec 9, 2014 at 2:16 PM, Darien Caldwell <[email protected]> wrote: > > I like that they hope Google lets them continue to do expliots. Shouldn't > they hope that Google fixes the exploits? > > > -- > You received this message because you are subscribed to the Google Groups > "Google App Engine" group. > To unsubscribe from this group and stop receiving emails from it, send an > email to [email protected]. > To post to this group, send email to [email protected]. > Visit this group at http://groups.google.com/group/google-appengine. > For more options, visit https://groups.google.com/d/optout. > -- You received this message because you are subscribed to the Google Groups "Google App Engine" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. To post to this group, send email to [email protected]. Visit this group at http://groups.google.com/group/google-appengine. For more options, visit https://groups.google.com/d/optout.
