Monday, April 7, 2014

You know those “security vulnerabilities” you hear about… well, this is a bad one

Apparently, the internet has not been quite as secure as we had thought, not for the past year or so anyways. There’s a bug in the software that makes “https” secure. An attacker can see all encrypted traffic on a server in real time. Chances are many of the web sites you visit use an affected version of OpenSSL.


The affected scenario is if an attacker targeted a bank’s web site and picked up usernames and passwords that were entered during his capture session.


http://heartbleed.com/


http://ift.tt/1imrMww





No comments:

Post a Comment