1. Forums
  2. Discord
  3. About Mapcore
  4. Patreon Supporters
  • Login
  • Register
  • Search
This Thread
  • Everywhere
  • This Thread
  • This Forum
  • Articles
  • Pages
  • Forum
  • More Options
  1. Mapcore
  2. Discussions
  3. Off-Topic

Heartbleed security bug

  • Jord
  • April 10, 2014 at 3:51 PM
  • Jord
    • April 10, 2014 at 3:51 PM
    • #1

    Being all tech guys I'm sure most have heard about this but I thought it would probably be a good idea to share it. There's a bug in OpenSSL which could have compromised accounts.


    http://www.bbc.co.uk/news/technology-26969629


    The big sites to change are listed in the report below.


    http://mashable.com/2014/04/09/hea…om-fb-main-link

  • AlexM
    • April 12, 2014 at 3:46 AM
    • #2

    I'm wating a week or so before I go and redo all the passwords on all my accounts. FFS it's gonna take like 6 hours.


    EDIT: CHECK DEM C STRINGS BWAR

  • Sentura
    • April 12, 2014 at 10:11 AM
    • #3

    Why the wait?

  • ng.aniki
    • April 12, 2014 at 10:22 AM
    • #4

    Because not every website has fixed the vulnerability yet... Which is really ridiculous.

    I am wondering if there would have been a way to push most website to update without openly explaining the vulnerability everywhere, by now most good hackers probably know how to exploit it, and all the website still vulnerable are listed online. Sounds like open market...


    Do someone here really understand the openSSL vulnerability ? I would like to concretely understand what hackers could get.

    Do they havve access to stored data on servers ? Allowing them to download huge list of users logins/password ?

    Or is it more of a case by case vulnerability, where the hacker would need to look for my login information to get it ?

  • Sentura
    • April 12, 2014 at 10:51 AM
    • #5

    [Blocked Image: http://imgs.xkcd.com/comics/heartbleed_explanation.png]

  • twiz
    • April 13, 2014 at 5:21 AM
    • #6

    To my uninformed mind, it sounds like doing nothing is the best thing right now.. as long as you don't give the vulnerable sites reason to put your information in memory, I don't see why they would. Changing your password would definitely put your info in memory, so it seems like laying low is the best strategy until the exploit is fixed..

    But again, I'm not a programmer or really familiar at all with the details of the exploit, so correct me if I'm wrong.

  • ng.aniki
    • April 13, 2014 at 1:33 PM
    • #7

    Not specially. if the bug is fixed on a website, it is better to change your password so if a hacker got your data he cannot access your account..


    If you are using lastpass, you can see which of your passwords are safe to change:


    [Blocked Image: http://korben.info/wp-content/uploads/2014/04/lastpass.jpg]


    Click on the lastpass icon > Tools > Security check.

Participate now!

Don’t have an account yet? Register yourself now and be a part of our community!

Register Yourself Login
Discord

The Mapcore Discord is our lively IRC channel of the 2000s reborn. Chat about level design, gaming, and more.

Latest Posts

  1. Tangerine

    Harry Poster
    July 18, 2026 at 11:10 AM
  2. Any of the old guard still around? D:

    Warby
    July 12, 2026 at 8:23 PM
  3. About our archived forums

    Thrik
    June 30, 2026 at 2:12 PM
  4. Mapcore Discord

    mason_fan123
    June 24, 2026 at 8:52 PM
  5. [CS2] Valley

    Serialmapper
    June 22, 2026 at 11:56 AM
  6. Free Music / SFX Resource - Over 2500 Tracks

    Eric Matyas
    June 18, 2026 at 12:32 PM
  7. Pango [WIP]

    Elowen
    June 11, 2026 at 10:13 AM
  8. [CS2] Dvina

    Jeremy Rivera
    June 11, 2026 at 10:03 AM
  9. Bridges 2.0 by NEXSIDE, MAP SHOWCASE. ( Steam Workshop )

    MrTrane18
    June 1, 2026 at 7:46 PM
  10. Classic Maps Reborn For CS2

    SillySpaceCat
    May 31, 2026 at 10:33 PM
  1. Privacy Policy
  2. Contact
Powered by WoltLab Suite™