HomeInvestigationsURGENT: Check your website for the new OpenSSL vulnerability! Update immediately!

URGENT: Check your website for the new OpenSSL vulnerability! Update immediately!

OpenSSL_bug1

As we informed you a little while ago, a particularly dangerous vulnerability has already been announced that makes two-thirds of Web servers vulnerable to data leakage and credential theft attacks. The targeting mainly concerns high-security services such as e-banking systems, webmail, and encrypted web services.

The “HeartBleed” vulnerability, as it has been called - read details here - allows the leakage of encryption codes, essentially disabling the SSL/TLS encryption protocols that ensure privacy when transferring information over the internet. Examples of encrypted communication include Instant Messaging applications, VPNs, and access to encrypted websites or webmail systems.

The attack leaves absolutely no trace on the server, and allows the leakage of encrypted security keys, usernames and passwords.

[box_warning]

Read more about the weakness and ways to fix it [here]

Additionally, check your website for the possible existence of the vulnerability through the following service:

https://filippo.io/Heartbleed/

[/box_warning]

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS