{"id":427,"date":"2007-11-29T10:35:30","date_gmt":"2007-11-29T09:35:30","guid":{"rendered":"http:\/\/www.itwriting.com\/blog\/?p=427"},"modified":"2007-11-29T10:35:30","modified_gmt":"2007-11-29T09:35:30","slug":"zoho-users-logging-into-other-accounts-by-accident","status":"publish","type":"post","link":"https:\/\/www.itwriting.com\/blog\/427-zoho-users-logging-into-other-accounts-by-accident.html","title":{"rendered":"Zoho users logging into other accounts by accident"},"content":{"rendered":"<p>Zoho users beware. There appears to be a nasty bug whereby a user logs in with their own credentials, but <a href=\"http:\/\/forums.zoho.com\/viewtopic.php?p=190441\">finds themselves logged into another user&#8217;s account<\/a>:<\/p>\n<blockquote>\n<p>I have the last couple of weeks experienced that I get logged on into another account that I do not know! <br \/>I can see the other account documents. Just a few minutes ago I tried to use my own logon but was logged in to the account of &lt;&#8230;&gt; <\/p>\n<\/blockquote>\n<p>says a user on the Zoho forums. <\/p>\n<p>Zoho says it is fixing this urgently: <\/p>\n<blockquote>\n<p>We have analyzed the logs and found some race conditions that could happen under high load. We have a fix in, and are continuing to monitor it very closely. We have also launched a complete review of security, so that this type of issue does not recur. We are taking it very seriously and apologize profusely.<\/p>\n<\/blockquote>\n<p>Food for thought nonetheless. This is the kind of reason people cite for sticking with on-premise applications. I argue that data is often safer in the cloud, but this kind of incident makes you wonder.<\/p>\n<div class=\"wlWriterSmartContent\" id=\"scid:0767317B-992E-4b12-91E0-4F059A8CECA8:b80c9d78-1ed2-4c9f-8d7b-b00c05d862e2\" style=\"padding-right: 0px; display: inline; padding-left: 0px; padding-bottom: 0px; margin: 0px; padding-top: 0px\">Technorati tags: <a href=\"http:\/\/technorati.com\/tags\/zoho\" rel=\"tag\">zoho<\/a>, <a href=\"http:\/\/technorati.com\/tags\/on-demand\" rel=\"tag\">on-demand<\/a>, <a href=\"http:\/\/technorati.com\/tags\/security\" rel=\"tag\">security<\/a><\/div>\n","protected":false},"excerpt":{"rendered":"<p>Zoho users beware. There appears to be a nasty bug whereby a user logs in with their own credentials, but finds themselves logged into another user&#8217;s account: I have the last couple of weeks experienced that I get logged on into another account that I do not know! I can see the other account documents. &hellip; <a href=\"https:\/\/www.itwriting.com\/blog\/427-zoho-users-logging-into-other-accounts-by-accident.html\" class=\"more-link\">Continue reading <span class=\"screen-reader-text\">Zoho users logging into other accounts by accident<\/span> <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[44,75],"tags":[],"class_list":["post-427","post","type-post","status-publish","format-standard","hentry","category-internet","category-security"],"_links":{"self":[{"href":"https:\/\/www.itwriting.com\/blog\/wp-json\/wp\/v2\/posts\/427","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.itwriting.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.itwriting.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.itwriting.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.itwriting.com\/blog\/wp-json\/wp\/v2\/comments?post=427"}],"version-history":[{"count":0,"href":"https:\/\/www.itwriting.com\/blog\/wp-json\/wp\/v2\/posts\/427\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.itwriting.com\/blog\/wp-json\/wp\/v2\/media?parent=427"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.itwriting.com\/blog\/wp-json\/wp\/v2\/categories?post=427"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.itwriting.com\/blog\/wp-json\/wp\/v2\/tags?post=427"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}