|
#1
●
04-09-2014, 02:48 AM
|
|
Passwords Vulnerable After Security Flaw Found
Passwords, credit cards and other sensitive data are at risk after security researchers discovered a problem with an encryption technology used to securely transmit email, e-commerce transactions, social networking posts and other Web traffic. |
|
#2
●
04-09-2014, 02:53 AM
|
|
Re: Passwords Vulnerable After Security Flaw Found
References •CVE-2014-0160 •NCSC-FI case# 788210 •http://www.openssl.org/news/secadv_20140407.txt (published 7th of April 2014, ~17:30 UTC) •http://blog.cloudflare.com/staying-a...ulnerabilities (published 7th of April 2014, ~18:00 UTC) •http://heartbleed.com (published 7th of April 2014, ~19:00 UTC) •http://www.ubuntu.com/usn/usn-2165-1/ •http://www.freshports.org/security/openssl/ •https://blog.torproject.org/blog/ope...-cve-2014-0160 •https://rhn.redhat.com/errata/RHSA-2014-0376.html •http://lists.centos.org/pipermail/ce...il/020249.html •https://lists.fedoraproject.org/pipe...il/003205.html •http://www.kb.cert.org/vuls/id/720951 •https://www.cert.fi/en/reports/2014/...ity788210.html •https://www.cert.at/warnings/all/20140408.html •http://www.circl.lu/pub/tr-21/ |
|
#4
●
04-10-2014, 12:06 AM
| ||||||||
| ★ Legacy Member ★ Poster Rank:12 Join Date: Jun 2009 Posts: 81,663 Mentioned: 282 Post(s) Quoted: 32531 Post(s)
| ||||||||
|
Re: Passwords Vulnerable After Security Flaw Found
You can check any sites ssl configuration here.... https://www.ssllabs.com/ssltest/analyze They've fixed the bug with OpenSSL 1.0.1g. DR is safe lolz |
|
#7
●
04-11-2014, 12:50 AM
|
|
Re: Passwords Vulnerable After Security Flaw Found
Check all the websites you use, but don't bother changing the password yet. We're all already shagged so we'd only broadcast our new password if we do that. Just wait for them to be patched. How to check a website: http://filippo.io/Heartbleed/ https://www.ssllabs.com/ssltest/ |