Multiple popular websites were exposed to a major Internet bug called Heartbleed earlier this week. The bug was discovered by a member of Google's security team and the software security firm Codenomicon.
Heartbleed is a serious security threat that has the potential to expose users' private information, including passwords, financial details and instant messages, among other things.
See also: How to Protect Yourself From the Heartbleed Bug
To help you understand the bug and what you should be doing to protect your information, Mashable editor-at-large Lance Ulanoff answered user questions on our Facebook page. Here are highlights from the chat:
Heartbleed is a bug in the code running on the servers of millions of websites. It leaves open a hole that allows hackers to get in and around the encryption between you and the site. This means that the information stored on the servers, and passed between you, could be stolen.
Just the Internet: Sites running OpenSSL.
Not exactly. It is a hole that could leave websites and user information open to attack.
The code error was small. It was not an attack; it was simply some bad code written by the people who built OpenSSL. It sounds like more of an accident.
There are millions of sites that use OpenSSL, so a full list might not be that easy to peruse. LastPass unveiled a tool to help you search for specific websites to find out if there are issues. [Update: We've compiled a list of popular sites and whether they were affected.]
Changing passwords right now might be a pointless exercise. The sites you visit could still have the vulnerability and your new password could be stolen.
If you run OpenSSL, update it as soon as possible.
It's not really a firewall attack. If the vulnerability exists (on a site or service), the communication between you and it is open to compromise.
It's pretty safe.
No.
Have something to add to this story? Share it in the comments.
অনলাইনে ছড়িয়ে ছিটিয়ে থাকা কথা গুলোকেই সহজে জানবার সুবিধার জন্য একত্রিত করে আমাদের কথা । এখানে সংগৃহিত কথা গুলোর সত্ব (copyright) সম্পূর্ণভাবে সোর্স সাইটের লেখকের এবং আমাদের কথাতে প্রতিটা কথাতেই সোর্স সাইটের রেফারেন্স লিংক উধৃত আছে ।