A lot of the talk was theoretical and the examples run were I think all within a user's own space.
If not though, then you're absolutely right that those are contradictory. If, even during disclosure, one user's data was made available to another user, that constitutes a data leak.
These are some of the strings I pulled off the root blockdev
- I have no such /var/deploy/chegou, or any of these files. I was
able to recover someone else's webserver logs from yesterday, as well.
Right now, as far as I can tell, that's speculative on both sides. Simply not enough evidence to say without corroboration that it's factually incorrect.
Comments
A lot of the talk was theoretical and the examples run were I think all within a user's own space.
If not though, then you're absolutely right that those are contradictory. If, even during disclosure, one user's data was made available to another user, that constitutes a data leak.
https://github.com/fog/fog/issues/2525
https://f.cloud.github.com/assets/408977/1820859/8658298e-71...
Yep, in that case that's absolutely a leak of user data.
The blog post is factually incorrect on that point, what a shame.
Right now, as far as I can tell, that's speculative on both sides. Simply not enough evidence to say without corroboration that it's factually incorrect.