- The Strategist - https://www.aspistrategist.org.au -
Cyber wrap
Posted By David Lang on April 22, 2014 @ 12:15
‘Catastrophic is the right word. On the scale of 1 to 10, this is an 11’, says Bruce Schneier of the Heartbleed bug that emerged since our last cyberwrap. Heartbleed has been revealed as a flaw in the OpenSSL code that, under normal conditions, encrypts and protects Internet traffic, like usernames, passwords, digital certificates, cookies and credit card numbers. The faulty code has been in place since March 2012 and affects a huge swathe of the Internet including big names like Facebook, Google, Instagram, YouTube, Dropbox and Twitter. The bottom line seems to be change your passwords now and then again once the websites you use have patched the flaw. Mashable have put together a list of popular sites where password changes might be necessary. You can do your own searches here.Article printed from The Strategist: https://www.aspistrategist.org.au
URL to article: https://www.aspistrategist.org.au/cyber-wrap-24/
[1] Image: http://www.aspistrategist.org.au/wp-content/uploads/2014/03/cyber-logo-1024x385.jpg
[2] says Bruce Schneier: https://www.schneier.com/blog/archives/2014/04/heartbleed.html
[3] Heartbleed: http://heartbleed.com/
[4] since March 2012: http://www.npr.org/blogs/alltechconsidered/2014/04/08/300602785/the-security-bug-that-affects-most-of-the-internet-explained?utm_campaign=storyshare&utm_source=share&utm_medium=twitter
[5] change your passwords: http://www.nytimes.com/2014/04/10/technology/flaw-calls-for-altering-passwords-experts-say.html
[6] put together a list of popular sites: http://mashable.com/2014/04/09/heartbleed-bug-websites-affected/?utm_cid=mash-com-Tw-main-link
[7] here: https://filippo.io/Heartbleed/
[8] handful of volunteers: http://www.newyorker.com/online/blogs/elements/2014/04/the-internets-telltale-heartbleed.html
[9] fingerpointing directed: http://www.zdnet.com/heartbleed-heartache-this-was-not-a-drill-people-and-you-failed-7000028434/
[10] awarded: http://www.theguardian.com/media/2014/apr/14/guardian-washington-post-pulitzer-nsa-revelations
[11] believes: http://www.csmonitor.com/USA/2014/0414/First-cyber-Pulitzer-honors-publishers-of-NSA-leaks-for-public-service-video
[12] some outlets: http://www.bloomberg.com/news/2014-04-11/nsa-said-to-have-used-heartbleed-bug-exposing-consumers.html.
[13] NSA: http://www.washingtonpost.com/blogs/the-switch/wp/2014/04/11/the-nsa-denies-it-knew-of-the-heartbleed-bug/
[14] White House: https://twitter.com/stuartmillar159/status/454738423946153985/photo/1
[15] released a consultation paper: http://www.zdnet.com/australia-depending-on-vulnerable-cyber-environment-dsto-7000028379/
[16] here: http://www.dsto.defence.gov.au/attachments/Policy-and-Program-consultation%20paper-April%202014.pdf
[17] M-Threats paper: https://www.mandiant.com/blog/mtrends-2014-threat-report-revealed/
[18] Pew Research Centre polls: http://www.pewresearch.org/fact-tank/2014/04/14/more-online-americans-say-theyve-experienced-a-personal-data-breach/
[19] International Cyber Policy Centre: http://cyberpolicy.aspi.org.au/
[20] report: https://www.aspi.org.au/publications/cyber-maturity-in-the-asia-pacific-region-2014
[21] interactive map: http://cybermap.aspi.org.au/
[22] suitably controversial: https://twitter.com/ASPI_ICPC/status/455976364491800576
[23] @ASPI_ICPC: https://twitter.com/ASPI_ICPC/status/451887352751722496/photo/1