OpenSSL

Heartbleed OpenSSL Bug Is Still Alive And Kicking & Affects 200,000 Services

Nearly 200,000 services are still at risk from the OpenSSL bug, with majority coming from the US

8 years ago

OpenSSL Patched After Being Hit By Two ‘Severe’ Flaws

The bugs could help attackers steal login data or take control of servers

9 years ago

A Third Of All HTTPS Servers Are Vulnerable To DROWN OpenSSL Bug

Researchers detail how DROWN can be used to decrypt communications on HTTPS-secure websites and urge server operators to update now

9 years ago

Heartbleed ‘Still Affects’ 200,000 Devices

Figures from IoT search engine Shodan suggest not all devices have been patched while experts ponder whether Heartbleed will ever…

9 years ago

OpenSSL Delivers Patch To Fix Critical Vulnerability

New version of OpenSSL arrives to address a single ‘high severity’ vulnerability

9 years ago

Incoming OpenSSL Patch Draws Heartbleed Comparisons

OpenSSL patch will fix 'high severity' vulnerability, but no other details are known

9 years ago

Heartbleed a Year Later: How the Security Conversation Changed

BLOG: In the year since Heartbleed's discovery, there is more scrutiny than ever on OpenSSL and critical infrastructure overall.

10 years ago

Hacked US Hospital Operator Thought To Be Victim Of Heartbleed

TrustedSec says hackers got into Community Health Systems database through unpatched Juniper equipement

10 years ago

“Catastrophic” Flaw In LibreSSL Found And Fixed

The random number generator in the library that's meant to replace OpenSSL was not really random

10 years ago

BoringSSL: Google Creates Its Own OpenSSL After Heartbleed Pain

Google isn't changing the world with BoringSSL, it's just creating its own version of OpenSSL for its own products

11 years ago

OpenSSL Patch Issued To Prevent Another Heartbleed

New flaws in OpenSSL detected and quickly patched to prevent another Heartbleed vulnerability

11 years ago

The Impact Of Heartbleed On Open Source Security

Thanks to Heartbleed open source software will be better engineered and more secure, says Steve Nice, CTO at Reconnix

11 years ago

Industry Leaders Respond To ‘Heartbleed’ Crisis With Infrastructure Drive

Companies including Amazon, Cisco and Google are contributing to an initiative that will target underfunded open source projects such as…

11 years ago

Android Users Downloaded 220m Apps Containing Heartbleed Bug

Updates have reduced the number of vulnerable apps, but millions still running flawed software on Android

11 years ago

Heartbleed: Websites Are Patched, But VPNs Still At Risk

The Heartbleed OpenSSL flaw is fixed on websites - but security firms have spotted attacks on SSL VPNs, warns Sean…

11 years ago

NSA Denies Prior Knowledge Of Heartbleed Vulnerability

The Office of the Director of National Intelligence says disclosing the vulnerability would be “in the national interest”

11 years ago

BlackBerry Plans Heartbleed Patches But Says Its Own Phones Unaffected

BlackBerry works on Heartbleed patches for some services, but says its own handsets, BES 10 and its infrastructure aren't affected

11 years ago