CloudFlare, eRepublik and You.

Day 3,384, 03:33 Published in USA USA by Yui MHCP001

For the record, I'm not talking in any official eRepublik Labs capacity.



By now you may have heard from Clopoyaur or Master_rg that eRepublik was supposedly compromised.

The site itself wasn't directly compromised, but the security system provided by CloudFlare experienced some more or less severe difficulties.

eRepublik uses CloudFlare to prevent malicious attacks. It's one of the best security systems for websites out there, so many popular websites such as 4chan and Discord use it.

However, last Friday a security problem was exposed. Under very certain circumstances, memory containing private information, could be returned in an HTTP response, and would be cached (or saved) in search engines. (If you want more detailed information, read the CloudFlare Blog on this bug)

The problem is now fixed, and any search engine result giving out private information resulting from this bug was found and removed, but it's unknown what information was uncovered by malicious users, and on what sites.

While it's extremely unlikely anyone tried to target eRepublik, and the fact that eRepublik traffic should be encrypted, I would personally STRONGLY RECOMMEND you to change your eRepublik and Discord passwords, and any passwords on websites found on this list of the top 10,000 websites that use CloudFlare

Stay safe nerds.
-Yui