The Heartbleed password-leaking vulnerability in OpenSSL has almost been eradicated from the web just weeks after its discovery, according to an encryption expert. Ivan Ristic, director of engineering at cloud security firm Qualys, estimates that 25 per cent of websites worldwide were vulnerable to the data-disclosing bug on 8 …
Just waiting for firmware update on DD-WRT for my router and everything will be back to "normal". But nothing is really "normal" on the interweb.
DD-WRT was fixed a while back.
Their website is full of pointless ajax and it's bloody hard to find the current firmwares. It's via the "other downloads" link in the router database.
You need to enter the Router database to find firmware.
I found new firmware released April 22nd which installed without problems.
And here I sit with a 2012 DD-WRT router bought in 2013 running firmware from 2008 with no updates available.
Thanks Buffalo, you useless shits. Never again will I buy your garbage.
Patch Vs New Feature
Heartbleed was fixed quickly because it was a (simple) source patch to apply.
It took TLS 1.2 years to become standard because that's a new feature and requires new libraries and so on to support it. You'd only get it once your distro supported it and you updated to the new distro, or if you manually supply (e.g compile from source) OpenSSL.
- Review This is why we CAN have nice things: Samsung Galaxy Alpha
- Hey, YouTube lovers! How about you pay us, we start paying for STUFF? - Google
- MEN: For pity's sake SLEEP with LOTS of WOMEN - and avoid Prostate Cancer
- Vid BONFIRE of the MEGA-BUCKS: $200m+ BURNED in SECONDS in Antares launch blast
- Tim Cook: The classic iPod HAD to DIE, and this is WHY