[Ach] OpenSSL 'heartbleed' bug

L. Aaron Kaplan kaplan at cert.at
Tue Apr 8 23:59:14 CEST 2014


Hi!

Unrelated to the previous posts but nevertheless showing quite clearly how urgent this is now:

Just stumbled across the first automatic user session hijacking script:

https://michael-p-davis.com/using-heartbleed-for-hijacking-user-sessions/


a.


--- 
// L. Aaron Kaplan <kaplan at cert.at> - T: +43 1 5056416 78
// CERT Austria - http://www.cert.at/
// Eine Initiative der nic.at GmbH - http://www.nic.at/
// Firmenbuchnummer 172568b, LG Salzburg




-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 801 bytes
Desc: Message signed with OpenPGP using GPGMail
URL: <http://lists.cert.at/pipermail/ach/attachments/20140408/6e242bf4/attachment.sig>


More information about the Ach mailing list