Council IT services hit by so called 'sleeper' malware, with media reports pointing the finger of blame at Russian hackers
News Heartbleed
US Charges Extradited Russian Over Massive Hacking Scheme
Georgian Andrei Tyurin was allegedly part of the hacking ring that breached JPMorgan Chase and other US financial firms, making hundreds of millions from stolen data
ICO Fines Gloucester City Council £100,000 For Heartbleed Hack
The affects of Heartbleed are still being felt
Recent Cloud Issues Show Security Can Fail Dramatically
CloudBleed and TicketBleed showed how cloud services, while usually more secure, can fail significantly. Will they turn off companies to the cloud?
Heartbleed OpenSSL Bug Is Still Alive And Kicking & Affects 200,000 Services
Nearly 200,000 services are still at risk from the OpenSSL bug, with majority coming from the US
Mozilla Splashes £350,000 On SOS Open Source Security Fund
Firefox creator wants to save open source by starting fund to help community prevent security threats
Linux Foundation: Security Challenges Threaten ‘Golden Age’ Of Open Source
Jim Zemlin, executive director of the Linux Foundation, addresses the challenges facing open source technology and CII's plans to make the Internet safer
Heartbleed ‘Still Affects’ 200,000 Devices
Figures from IoT search engine Shodan suggest not all devices have been patched while experts ponder whether Heartbleed will ever be eliminated
OpenSSL Delivers Patch To Fix Critical Vulnerability
New version of OpenSSL arrives to address a single ‘high severity’ vulnerability
Incoming OpenSSL Patch Draws Heartbleed Comparisons
OpenSSL patch will fix 'high severity' vulnerability, but no other details are known
Linux Foundation Invests $452,000 in Open Source Security Projects
The Linux Foundation's Core Infrastructure Initiative (CII) is funding three projects aimed at helping to improve security for open-source code
Mobile App Flaw Exposes ‘Billions’ Of Records
Heartbleed-like security flaw found in thousands of top Android and iOS apps
What Can We Learn From Our Cyber Security Mistakes?
Carl Leonard, principal security analyst at Websense, explains how cyber attacks in the past year have affected businesses
Heartbleed a Year Later: How the Security Conversation Changed
BLOG: In the year since Heartbleed's discovery, there is more scrutiny than ever on OpenSSL and critical infrastructure overall.
What Is The Shellshock Bug And Should You Be Worried?
A serious vulnerability in Bash has been discovered in OS X. They say it's as bad as Heartbleed, but is it really?
Hacked US Hospital Operator Thought To Be Victim Of Heartbleed
TrustedSec says hackers got into Community Health Systems database through unpatched Juniper equipement
BoringSSL: Google Creates Its Own OpenSSL After Heartbleed Pain
Google isn't changing the world with BoringSSL, it's just creating its own version of OpenSSL for its own products
OpenSSL Patch Issued To Prevent Another Heartbleed
New flaws in OpenSSL detected and quickly patched to prevent another Heartbleed vulnerability
The Impact Of Heartbleed On Open Source Security
Thanks to Heartbleed open source software will be better engineered and more secure, says Steve Nice, CTO at Reconnix
Industry Leaders Respond To ‘Heartbleed’ Crisis With Infrastructure Drive
Companies including Amazon, Cisco and Google are contributing to an initiative that will target underfunded open source projects such as OpenSSL
iOS 7.1.1 Adds Touch ID Improvements And Fixes SSL Vulnerability
Apple adds usability improvements and security fixes in iOS 7.1.1, including an SSL flaw not related to Heartbleed
Android Users Downloaded 220m Apps Containing Heartbleed Bug
Updates have reduced the number of vulnerable apps, but millions still running flawed software on Android
Heartbleed: Websites Are Patched, But VPNs Still At Risk
The Heartbleed OpenSSL flaw is fixed on websites - but security firms have spotted attacks on SSL VPNs, warns Sean Michael Kerner
Canadian Police Make First Heartbleed Hack Arrest
The first arrest over attacks using the Heartbleed vulnerability has been announced in Canada following a hit on the country's tax agency
How To Use Money To Prevent The Next Heartbleed
Support open source with time and money, stop a repeat of the Heartbleed OpenSSL flaw, says Seean Michael Kerner
Heartbleed Hackers Hit Mumsnet
Canadian tax authority also compromised, as Heartbleed affects masses of companies
NSA Denies Prior Knowledge Of Heartbleed Vulnerability
The Office of the Director of National Intelligence says disclosing the vulnerability would be “in the national interest”
BlackBerry Plans Heartbleed Patches But Says Its Own Phones Unaffected
BlackBerry works on Heartbleed patches for some services, but says its own handsets, BES 10 and its infrastructure aren't affected
The Heartbleed Lesson: Open Source Needs Attention
Heartbleed happened because web giants thought that open source provided them with a free ride, says Wayne Rash
Private Keys Can Be Pilfered With Heartbleed Exploits
CloudFlare challenge to steal private keys via Heartbleed flaw finds a handful of winners