Club Cobra

Club Cobra (http://www.clubcobra.com/forums/)
-   Lounge (http://www.clubcobra.com/forums/lounge/)
-   -   Heartbleed Security Flaw (http://www.clubcobra.com/forums/lounge/128516-heartbleed-security-flaw.html)

Don 04-11-2014 08:24 AM

Heartbleed Security Flaw
 
With the recent publicity on Heartbleed, thought the following would be of interest as a condensed explanation. Published by re/Code Daily, comments by Walt Mossberg, formerly the journalist for computer tech etc. at the Wall St Journal. Most important, should anyone have additional clarification or correction to the information below, please post.

Q.Reading about the “Heartbleed” security flaw leaves me confused. What can I as a consumer do to protect my data? Must I change all my passwords?

A.There’s very little any average consumer can do to ensure that her data is safe, because this extremely nasty security vulnerability directly affected servers of the websites you use, and not individual computers or other devices. Still, if hackers exploited it, experts say they could have stolen consumers’ passwords. Trouble is, even sites that now say they were affected can’t say for sure if anything was stolen.

The best thing to do is to wait until a site you frequent tells you it has patched the security hole, and then change your password. You can also check if a site is fixed or still vulnerable by typing its address into the online tool here, provided by the security company Qualys, which rates sites’ security by letter grade. If a site gets any variation of an A, I’d advise continuing to use it, but with a new password. If it gets anything less, I’d try and stay off of it for now and wait to change the password. (If you are an Apple user, the company says its operating systems and “key Web-based services” weren’t affected, but that doesn’t mean that sites you visit on Apple devices were unaffected.)

https://www.ssllabs.com/ssltest/index.html

Double Venom 04-11-2014 08:41 AM

Just for info ???
Looking up www.moroso yesterday and all kinds of red flags popped up. Moroso for heavens sake;
No validation code available
Invalid Signature
Don't trust
Do you want to leave immediately
Do you trust this site? DON'T!

OK, already, I called instead. Said they were looking into it.
This is before I heard the news last night! Don't know if it is the new "Heartbleed" or not? Just passing it along as I assume it's that time of year for guys looking for parts.
DV

Don 04-11-2014 10:18 AM

Re/code web site, daily auto feed e-mail upon signing up is free:

Security | Re/code

Walt Mossberg's articles appeared in the WSJ for years ++, Walt mentioning Qualys as a source for web site validation. As a WSJ reader with no expertise in computer tech, Walt's articles were very informative, especially in product comparisons.

Walt Mossberg | Re/code

Would add to the discussion for an accomplished security expert to comment.

Don 04-12-2014 01:06 PM

Computer Talk With Tab, 50,000 watt AM 1080 Hartford CT, Saturday mornings 9 to 11

Computer Talk with TAB-Live Computer Radio Talk Show,Free Technical Support,Computer Help,Listen via WTIC.COM stream

Links to topics regarding Heartbleed

Computer Talk with TAB


All times are GMT -7. The time now is 05:55 AM.

Powered by vBulletin® Version 3.8.0
Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.6.0
The representations expressed are the representations and opinions of the clubcobra.com forum members and do not necessarily reflect the opinions and viewpoints of the site owners, moderators, Shelby American, any other replica manufacturer, Ford Motor Company. This website has been planned and developed by clubcobra.com and its forum members and should not be construed as being endorsed by Ford Motor Company, or Shelby American or any other manufacturer unless expressly noted by that entity. "Cobra" and the Cobra logo are registered trademarks for Ford Motor Co., Inc. clubcobra.com forum members agree not to post any copyrighted material unless the copyrighted material is owned by you. Although we do not and cannot review the messages posted and are not responsible for the content of any of these messages, we reserve the right to delete any message for any reason whatsoever. You remain solely responsible for the content of your messages, and you agree to indemnify and hold us harmless with respect to any claim based upon transmission of your message(s). Thank you for visiting clubcobra.com. For full policy documentation refer to the following link: