abc
QUICK LINKS:

New Online Security Risk 'Heartbleed' Leaves Millions Vulnerable, Experts Recommend Password Changes

Updated: 04/09/2014 11:47 PM
Created: 04/09/2014 11:07 PM WDIO.com

A huge gap in the security software used by some of the biggest Internet companies has been found. It has been dubbed the 'Heartbleed' bug, and because of it, the private information of millions was sitting exposed. 

You may recognize the little padlock in the top left corner of some websites you visit. It is supposed to designate the site as secure, but for the last two years that has not been case.  

"The people that wrote this software for this part of that network communication forgot to check a part of that message," Pete Willemsen explained, an associate professor in UMD's computer science department. 

Think of it like this: when your computer connects to a server it sends out a ping known as a heartbeat to check for a secure connection. But with this hole in the code, a hacker could send out a secret heartbeat and retrieve any information that is still in memory — that is where the name "Heartbleed" comes from.

"So, that could include your user names and your passwords," said Mark Lanterman, CEO of computer analysis company Computer Forensic Services. "In our testing it returned my VPN credentials. This is very, very serious."

Experts are advising people to consider changing all their online passwords.

But changing passwords will not do any good until the services install the recently-released software to fix the problem. 

"This vulnerability, or bug, is really unfortunate in the sense that it sits with software on the servers... on the machines that you typically would connect to," said Prof. Willemsen. "They are responsible for updating that software."

Lanterman adds that "Amazon, your banks, any server, 66 percent of the web servers on the Internet are vulnerable to this attack."

Cyber security firm LastPass has created a search engine to determine if a website you use may have been affected. Find it by clicking here.

Front Page

  • New York Officials: Doctor has Ebola, 1st in City

    A Doctors Without Borders physician who recently returned to the city after treating Ebola patients in West Africa has tested positive for the virus, according to preliminary test results, city officials said Thursday. He's the fourth confirmed case in the U.S. and the first in the nation's biggest city.

  • Minn. Officials Walk Through Mock Ebola Scenario

    More than 100 representatives from several Minnesota agencies are going through a mock exercise to review the state's preparedness in the event of a case of Ebola.

  • Lydia Marie Barney Woman Charged with Murder after Stabbing in Stoney Brook Township

    There is new development in the murder case on the Fond du Lac Reservation. The husband of the victim has been released, and he is facing no charges. Instead, the woman who police had been searching for, Lydia Marie Barney, has been charged with second degree murder.

  • No Injuries in Early Morning Esko Structure Fire

    Deputies say there were no injuries in an early morning structure fire in Esko Thursday. Crews responded to the 200 block of Nelson Road around 4:30 a.m. Deputies said the cause of the fire was not suspicious.

  • 1 Dead, 1 Arrested in Cass County Crash

    An Aitkin County man is in custody and another person is dead after a two-vehicle head-on collision in Cass County. 

 

Dense Fog Advisory

MN AREAS AFFECTED: Carlton, South St. Louis; Central St. Louis; North St. Louis; Northern Cook, Northern Lake; Pine; Southern Cook, North Shore; Southern Lake, North Shore
Expires: 10/24/2014 10:00 AM

Dense Fog Advisory

WI AREAS AFFECTED: Douglas
Expires: 10/24/2014 10:00 AM

Dense Fog Advisory

WI AREAS AFFECTED: Ashland; Bayfield; Iron
Expires: 10/24/2014 10:00 AM

Dense Fog Advisory

WI AREAS AFFECTED: Burnett; Price; Sawyer; Washburn
Expires: 10/24/2014 10:00 AM

Advertisement
Advertisement
Advertisement
Advertisement