Friday, April 11, 2014

Heartbleed bug in routers too :-(

I have been somewhat worried about the security compromise over SSL over the last couple of days and was wondering why are our authorities so slow in responding. Nothing I have read give me any assurance on how to effectively protect against this vulnerability. The best response is to do nothing which is the equivalent of hiding in a cave until danger passes.

Good grief, even the network hardware is vulnerable. Fortunately I quit using Cisco products long ago but fixing this is a real headache. IT departments must be cursing under their breath with so much extra work for nothing.

  1. probably tells a lot of who is exploiting viruses affecting human beings

    check this out
    NSA Abused Heartbleed Bug For Years, Left Consumers Exposed To Attack
    and referenced article from Bloomberg
    NSA Said to Exploit Heartbleed Bug for Intelligence for Years