Why should zoo cages be kept closed?
This article will be a story about one very specific vulnerability in the ClickHouse replication protocol, and will also show how you can expand the attack plane. ClickHouse is a database for storing large amounts of data, most often more than one replica is used. Clustering and replication in ClickHouse are built on top of Apache ZooKeeper (ZK) and require write permissions. […]