Friday, April 11, 2014

NSA knew about, exploited Heartbleed for years: Bloomberg report.

NSA knew about, exploited Heartbleed for years: Bloomberg report.: By Lily Hay Newman

"It just doesn't end. Bloomberg is reporting that, according to “two people familiar with the matter,” the NSA has known about the Heartbleed vulnerability for at least two years—and was using it to collect information about people instead of, you know, telling someone about it and getting it fixed.

With millions of websites compromised, people all over the world changing their passwords for protection, the Canadian government suspending electronic tax filing, and people speculating about whether Heartbleed is the “worst vulnerability ever,” this could end up looking pretty bad for the agency. Good thing it already has a sparkly-clean public image, or it might be in trouble.

According to Bloomberg, it doesn’t seem that the NSA created Heartbleed—it just  found the bug and used it. "

'via Blog this'

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.