Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search

Jesus Malverde

(10,274 posts)
Fri Apr 11, 2014, 08:42 PM Apr 2014

The Heartbleed Hit List: The Passwords You Need to Change Right Now

An encryption flaw called the Heartbleed bug is already being called one of the biggest security threats the Internet has ever seen. The bug has affected many popular websites and services — ones you might use every day, like Gmail and Facebook — and could have quietly exposed your sensitive account information (such as passwords and credit card numbers) over the past two years.

But it hasn't always been clear which sites have been affected. Mashable reached out some of the most popular social, email, banking and commerce sites on the web. We've rounded up their responses below.

Some Internet companies that were vulnerable to the bug have already updated their servers with a security patch to fix the issue. This means you'll need to go in and change your passwords immediately for these sites. Even that is no guarantee that your information wasn't already compromised, but there's also no indication that hackers knew about the exploit before this week. The companies that are advising customers to change their passwords are doing so as a precautionary measure.

Although changing your password regularly is always good practice, if a site or service hasn't yet patched the problem, your information will still be vulnerable.

http://mashable.com/2014/04/09/heartbleed-bug-websites-affected/

10 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies
The Heartbleed Hit List: The Passwords You Need to Change Right Now (Original Post) Jesus Malverde Apr 2014 OP
Thanks for finding and posting this. Staph Apr 2014 #1
Just changed my USAA account. NuclearDem Apr 2014 #2
changed all relevant passwords, what a PITA nt steve2470 Apr 2014 #3
K&R DeSwiss Apr 2014 #4
None of the services I use was affected, but thanks for posting this Denzil_DC Apr 2014 #5
^^^^THIS^^^^^^^ alittlelark Apr 2014 #6
Somebody changed my Gmail password. Lugnut Apr 2014 #7
K&R Raksha Apr 2014 #8
Last pass is great if you are concerned about this. Egnever Apr 2014 #9
bump... nt Jesus Malverde Apr 2014 #10

Staph

(6,251 posts)
1. Thanks for finding and posting this.
Fri Apr 11, 2014, 09:47 PM
Apr 2014

It looks like I'm in the clear. I don't use most of the sites that use or used OpenSSL. Thank heavens for my Luddite tendencies -- I'm not on social media!


Lugnut

(9,791 posts)
7. Somebody changed my Gmail password.
Sat Apr 12, 2014, 02:11 AM
Apr 2014

I had to reset that one. My credit union called to let me know that somebody tried to use my debit card to make a $258 purchase but they denied it. I was told it didn't fit my typical use pattern so they spragged it. They didn't say where it was trying to be used but I would very rarely make a transaction for that much. I'm thrilled that they were on the ball.

The local newspaper reported that state police here have been inundated with complaints from residents about unauthorized charges to their credit card accounts.

 

Egnever

(21,506 posts)
9. Last pass is great if you are concerned about this.
Sat Apr 12, 2014, 02:26 AM
Apr 2014

Not only is it good for keeping your passwords but it will look at all of the sites it has saved logins for you and let you know if they are affected.


This is what mine looked like.

Site Age of Password Updated Cert? Action
box.com 2 years YES (5 days ago) Go update!
dropbox.com 2 years YES (1 day ago) Go update!
facebook.com 2 years YES (1 month ago)Go update!
google.com 1 year YES (1 week ago) Go update!
netflix.com 2 years YES (2 days ago) Go update!

Latest Discussions»General Discussion»The Heartbleed Hit List: ...