Real or hoax: Heartbleed

Vent, Rant, Chat or just talk about whatever is on your mind! Keep it civil though!

Moderators: BlackDuck, Beer-lord, LouieMacGoo, philm00x, gwcr

Post Reply
User avatar
Beer-lord
Moderator
Moderator
Posts: 9635
Joined: Mon Aug 05, 2013 2:48 pm
Location: Burbs of the Big Easy

Real or hoax: Heartbleed

Post by Beer-lord »

WARNING! READ: "The biggest network security vulnerability in history was revealed in the last 24 hours. It's called "heartbleed." Everything you do for the next 24-48 hours will be viewable by random 3rd parties. Encrypted connections are not secure until this vulnerability is fixed. Billions will be affected. DO NOT LOG in to anything. DO NOT change any passwords. DO NOT say or do anything online that you would not want anonymous 3rd parties observing or copying. (This came from a reliable source in my family; he said it was okay to write on fb... or to read email from known sources as long as you observe the above "do nots.") Don't buy anything online today! Don't log into your bank account, etc.
Read more at http://www.snopes.co...g8OtfS6sA2MH.99

WARNING! READ: "The biggest network security vulnerability in history was revealed in the last 24 hours. It's called "heartbleed."

https://www.google.c...el=np&source=hp
PABs Brewing
Planning
Brew good beer and live a hoppy life
Fermenting

Drinking
Disfucted
Smelly Hops
(split batch) A Many Stringed Bow
Up Next
Men In Black
User avatar
FrozenInTime
FrozenInTime
FrozenInTime
Posts: 2808
Joined: Mon Aug 05, 2013 10:19 pm
Location: Frozen Tundra

Re: Real or hoax: Heartbleed

Post by FrozenInTime »

Neither link works for me.
Life is short, live it to it's fullest!
User avatar
Gymrat
Brew Guru
Brew Guru
Posts: 2155
Joined: Thu Aug 08, 2013 9:49 pm

Re: Real or hoax: Heartbleed

Post by Gymrat »

User avatar
FrozenInTime
FrozenInTime
FrozenInTime
Posts: 2808
Joined: Mon Aug 05, 2013 10:19 pm
Location: Frozen Tundra

Re: Real or hoax: Heartbleed

Post by FrozenInTime »

Life is short, live it to it's fullest!
User avatar
FrozenInTime
FrozenInTime
FrozenInTime
Posts: 2808
Joined: Mon Aug 05, 2013 10:19 pm
Location: Frozen Tundra

Re: Real or hoax: Heartbleed

Post by FrozenInTime »

Thanks for the heads up. I just read that then sent it to everyone I know... took bout 3 seconds...lol
Life is short, live it to it's fullest!
mtsoxfan
Uber Brewer
Uber Brewer
Posts: 1055
Joined: Wed Aug 14, 2013 7:18 am
Location: Vermont

Re: Real or hoax: Heartbleed

Post by mtsoxfan »

The local and national news didn't report it like that. They said what and how, but they recommended changing your passwords. My thought is, is this a one time thing to think about, or is changing of the passwords going to become a Friday night ritual??
User avatar
Beer-lord
Moderator
Moderator
Posts: 9635
Joined: Mon Aug 05, 2013 2:48 pm
Location: Burbs of the Big Easy

Re: Real or hoax: Heartbleed

Post by Beer-lord »

Here's a list of the websites you should change passwords for in case anyone cares.
http://mashable.com/2014/04/09/heartble ... l2am52aCJ9
PABs Brewing
Planning
Brew good beer and live a hoppy life
Fermenting

Drinking
Disfucted
Smelly Hops
(split batch) A Many Stringed Bow
Up Next
Men In Black
User avatar
philm00x
Moderator
Moderator
Posts: 2990
Joined: Tue Jul 09, 2013 9:11 pm
Location: Winter Park, FL
Contact:

Re: Real or hoax: Heartbleed

Post by philm00x »

The thing about the passwords is that you can change them now, but you might have to change them again and again until the site(s) you're changing it(them) for have upgraded their encryption software to the protected version, at which point, the site might ask you to change it again anyhow.
Official page of Mr. Rufus Brewing Co.

Up Next
Koning Oranje

Currently at Mr. Rufus Brewing Co.
Fermenting
Nothing :(
Conditioning
Nothing :(
Drinking
58. Choco Brown
60. Etcitra, Etcitra
61. Bubs' Pale Wheat Xtra
62. Ottoberfest
Brew Queue
ROAR! Bacon
Bombay
Saint Sebastian Tripel
Bubs' Pale Ale

User avatar
Chuck N
Braumeister
Braumeister
Posts: 989
Joined: Fri Aug 09, 2013 7:41 am
Location: The Land of 10,000 Casseroles. Uf-Da! ©

Re: Real or hoax: Heartbleed

Post by Chuck N »

I think all "random 3rd party" individuals are big stupid poopy-butts that eat their poop and are stupid.
Things men have made with wakened hands, and put soft life into
Are awake through years with transferred touch and go on glowing
For long years.
And for this reason some old things are lovely
Warm still with the life of forgotten men who made them.

― D.H. Lawrence
User avatar
BlackDuck
Moderator
Moderator
Posts: 5156
Joined: Wed Aug 07, 2013 7:49 am
Location: Canal Winchester, Ohio

Re: Real or hoax: Heartbleed

Post by BlackDuck »

In order to change your password, don't you have to log in to begin with, then make the change? So if the site was already compromised, whould't they be able to figure out your new password since you had to log in with your original first?
ANTLER BREWING
Drinking
#93 - Gerst Amber Ale
Conditioning and Carbing

Fermenting

On Deck
User avatar
berryman
Brew Guru
Brew Guru
Posts: 3280
Joined: Tue Aug 20, 2013 5:16 pm
Location: Western NY

Re: Real or hoax: Heartbleed

Post by berryman »

BlackDuck wrote:In order to change your password, don't you have to log in to begin with, then make the change? So if the site was already compromised, whould't they be able to figure out your new password since you had to log in with your original first?
This is what I was thinking also, so if this thing is for real, just lay low for awhile and not log into anything and it will pass. As far as my FarceBook account , they can have at it if they want :)
Happy Hound Brewery

“I have not failed. I've just found 10,000 ways that won't work.”
― Thomas A. Edison
User avatar
Beer-lord
Moderator
Moderator
Posts: 9635
Joined: Mon Aug 05, 2013 2:48 pm
Location: Burbs of the Big Easy

Re: Real or hoax: Heartbleed

Post by Beer-lord »

I'll donate my FB account too. They'd use it in place of Ambien.
PABs Brewing
Planning
Brew good beer and live a hoppy life
Fermenting

Drinking
Disfucted
Smelly Hops
(split batch) A Many Stringed Bow
Up Next
Men In Black
User avatar
evily
Brew Fool
Brew Fool
Posts: 212
Joined: Wed Aug 21, 2013 9:11 am
Location: Mil-ee-wah-kay

Re: Real or hoax: Heartbleed

Post by evily »

Here's a website that shows which sites have upgraded their OpenSSL so that you can safely change your password. It also shows ones that are not affected by Heartbleed, and ones that have not yet upgraded (or yet responded to inquiry about updating their software). Good info. Like Phil said, there's no point in changing your password on a site that hasn't updated their software yet, as you'll just have to do it again once they update.

http://www.cnet.com/news/which-sites-ha ... bleed-bug/

Of course, this list does not include lesser-known websites, such as your local banking institution, etc. So you'll have to contact them directly to find out if they were affected, and whether they've updated their software.
~*~*~I like big beers and I cannot lie!~*~*~
User avatar
Brewbirds
Brew Guru
Brew Guru
Posts: 2814
Joined: Tue Aug 06, 2013 7:32 am
Location: A Tree Somewhere

Re: Real or hoax: Heartbleed

Post by Brewbirds »

To heck with my banking info what I want to know is if they can compromise the Borg and steal all of our recipes. :sweat:
Sibling Brewers
Post Reply