Heartbleed Bug Leaks Information flaw in the OpenSSL software

Heartbleed Bug Leaks Information flaw in the OpenSSL software - we say welcome to you who have been searching for information via search engines such as Google, in a blog Tech Gallery, now we will discuss information about the Heartbleed Bug Leaks Information flaw in the OpenSSL software, we have been looking for a lot of information from a trusted and collect it in this blog, so you get the information complete and easy to understand, please read through:


You can also see our article on:



OpenSSL, Neil Mehta, Heartbleed, cryptographic

Appeared in the OpenSSL, which is an open source software is used widely in encrypted Web connections, Vulnerability is described as serious to the extent that it enables hackers to access websites from just beyond the user's own data.

Where vulnerability allows new officially called "C in E - 2014 - 0160" CVE-2014-0160 for hackers to access the numeric keypad own servers and is used to encrypt communications previous and next.

The company Codenomicon along with the security researcher and engineer at the company "Google", "Neil Mehta," are two of the loophole was discovered and fired upon the name of "bleeding heart" Heartbleed.

The loophole allows Heartbleed for hackers to read 64K bytes of memory on the server and then Tabotha most sensitive data.

The Codenmicon that this loophole able to get the secret keys used to identify the service providers in the encrypted data traffic, as well as the names and passwords of users, and the actual content.

The company added that the competent security solutions that gap discovered allow hackers to eavesdrop on communications and steal data directly from service users, and enable them to impersonate services and users.

Described loophole "Hart Blade" as very serious, they do not require a radical change to the web, but requires anyone used to change passwords.

The vulnerability affects versions 1.0.1 to 1.0.2 and demo of "Open SSL" servers as a program that comes with several versions of "Linux" and is used in many common web servers.

To fix the gap, the company has developed for "Open SSL" by issuing the update "1.0.1 LG" 1.0.1g, which should be on the operators of Web sites to install it along with the abolition of security certificates that may be exposed to penetrate.

The "Open SSL" is one of the applications of cryptographic protocols "SSL" SSL or "T-feed" TLS, which is responsible for examining the communications between the web browser and the server.



Information about the Heartbleed Bug Leaks Information flaw in the OpenSSL software we have conveyed

A few of our information about the Heartbleed Bug Leaks Information flaw in the OpenSSL software, I hope you can exploit carefully

You have finished reading Heartbleed Bug Leaks Information flaw in the OpenSSL software and many articles about Tech Gallery in our blog this, please read it. and url link of this article is https://littlebitjohnny.blogspot.com/2014/04/heartbleed-bug-leaks-information-flaw.html Hopefully discussion articles on provide more knowledge about the world of new tech gadgets.

Tag :
Share on Facebook
Share on Twitter
Share on Google+
Tags :

Related : Heartbleed Bug Leaks Information flaw in the OpenSSL software

0 comments:

Post a Comment