Welcome, Guest. Please login or register.

Author Topic: Heartbleed  (Read 2734 times)

Description:

0 Members and 1 Guest are viewing this topic.

Offline Duce

  • Off to greener pastures
  • Hero Member
  • *****
  • Join Date: Jul 2009
  • Posts: 1699
    • Show all replies
    • http://amigabbs.blogspot.com/
Re: Heartbleed
« on: April 10, 2014, 01:53:17 AM »
This weeks Security Now podcast was all about Heartbleed - a must watch for anyone interested in security as a whole or Heartbleed specifically.

http://twit.tv/show/security-now/450
 

Offline Duce

  • Off to greener pastures
  • Hero Member
  • *****
  • Join Date: Jul 2009
  • Posts: 1699
    • Show all replies
    • http://amigabbs.blogspot.com/
Re: Heartbleed
« Reply #1 on: April 10, 2014, 02:53:25 PM »
As Slaap said, it's very important that the general end user understands where the issue with Heartbleed lies.

It is solely dependent on having the "broken" versions of OpenSSL installed and operational on server side.  You're not going to find an OS patch to fix this on your respective user grade operating systems, the problem lies with what version of OpenSSL any respective server uses.

I'd hope that a good number of hosts have been patched by now, but I know better than to assume it :)
 

Offline Duce

  • Off to greener pastures
  • Hero Member
  • *****
  • Join Date: Jul 2009
  • Posts: 1699
    • Show all replies
    • http://amigabbs.blogspot.com/
Re: Heartbleed
« Reply #2 on: April 11, 2014, 09:03:01 AM »
Don't worry, John still does all his internet communications via tin cans connected with strings and smoke signals  :)

Just giving you a hard time, John :)