The impact of this Heartbleed bugs, many infected sites such as Yahoo.com, imgur.com, stackoverflow.com, adf.ly, etc. Even the local sites including Kaskus.co.id (for a complete list HERE). With Heartbleed infected, then a hacker will easily take encrypting data transmitted via OpenSSL.
What it Heartbleed
Stated that, if the exploitation of bugs in OpenSSL, a hacker (hacker) can only steal information though. A simple way of working this Heartbleed as described by Neel Mehta, researchers from Google that said, this Heartbleed defects exploiting loopholes that allow important data that we send in the OpenSSL path can be taken unauthorized persons.
"Terminology like this, it's like OpenSSL safe path that connects your computer to the site. Once connected, the computer once in a while we send a special code (called Heartbleed) in the safe path to determine whether the server on the other end is connected. Well, bugs Heartbleed exploit it, "said Neel.
Neel Mehta added, we can make the code disguised as Heartbleed. Not only disguise, fake Heartbleed it could even ask the server a site providing data stored in its memory.
According to data from Netcraft, 17% of all sites in the world, or about 500 million websites, threatened this bug. Meanwhile OpenSSL team also has published the latest version to handle the defect by presenting OpenSSL 1.0.1g, where the big sites like Yahoo, Google, Twitter has to deal with them.
Google and Facebook Optimistic
Google sure overcame "Heartbleed" before the bug is capable of causing damage. The company is headquartered in Mountain View, California is telling customers to not have to change the keywords to access Gmail, YouTube and Akkub other products. Currently there are more than 425 million accounts worldwide Gmail.
Facebook with more than 1.2 billion owner of the account, also optimistic has managed to overcome the threat of "Heartbleed". But the company is also advised to "take advantage of the opportunity to replace keywords with unique words that are not used as keywords in other sites".
However, according to some computer security experts, replacing keywords on other online services that have been affected by "Heartbleed" there would be no point until the issue is resolved. Software to solve these malfunctions newly released Monday (07.04.14).
Is it safe to Blogger from Heartbleed?
As mentioned above, that Google has to deal with them. Because Google's blogger, for current users of bloggers can breathe. However, in anticipation of the various possibilities, it does not hurt my friend change the password (keywords) pal google account.
0 komentar:
Post a Comment