Heart Bleed Bug Test: Are Google, Facebook, Yahoo, Amazon, Paypal, Gmail Affected?

9743955

A major vulnerability known as Heartbleed (or CVE-2014-0160) was discovered in the widely used Web encryption program called OpenSSL. 

SSL is the most common technology used to secure websites. Web servers that use it securely send an encryption key to the visitor; that is then used to protect all other information coming to and from the server 

The OpenSSL computer virus went undetected for two years and it allows attackers to steal the keys that protect communication, user passwords, stored files, bank and financial information, and even social security numbers, in a way that goes unnoticed without leaving any trace.   

The widespread bug surfaced on Monday April 7, developers rushed out patches to fix affected web servers when they disclosed the problem, which affected companies including Google, Facebook, Yahoo, Pinterst, YouTube etc.

A fixed version of OpenSSL has been released before the problem was announced publicly, CNET has reseached on the top 100 sites in the US and list out which companies are affected and have already patched the bug. On the other hand, developer and cryptography consultant Filippo Valsorda published a tool that lets people check Web sites for Heartbleed vulnerability.   

Google said it had applied the Heartbleed patch on its search engine, Gmail, YouTube, Wallet and Play store for mobile apps and other digital content. 

Yahoo Inc., which has more than 800 million users around the world, said Tuesday that most of its popular services - including sports, finance and Tumblr - had been fixed, but work was still being done on other products that it didn't identify.

Facebook, which has more than 1.2 billion users, says it had already addressed the issue when it was publicly disclosed. 

Twitter and Amazon.com say their websites weren't exposed to Heartbleed. Ebay which runs the PayPal payment service as well as online shopping bazaars, says most of its services avoided the bug.  

Computer security experts are advising people to consider changing all their online passwords.

"I would change every password everywhere because it's possible something was sniffed out," said Wolfgang Kandek, chief technology officer for Qualys, a maker of security-analysis software. "You don't know because an attack wouldn't have left a distinct footprint."

This bug was independently discovered by a team of security engineers at Codenomicon and Neel Mehta of Google Security, who first reported it to the OpenSSL team. The researchers worked with the OpenSSL team to fix the problem. The bug afflicts version 1.0.1 and 1.0.2-beta releases of OpenSSL, server software that ships with many versions of Linux and is used in popular Web servers, according to the OpenSSL project's advisory



    Most Popular
  • Is 'The Last Supper' worth watching? Audience and critics weigh in

    Is 'The Last Supper' worth watching? Audience and critics weigh in

    Faith-based films often receive mixed reactions, and The Last Supper is no exception. The movie attempts to bring a fresh perspective to one of the most iconic moments in Christian history, but does it succeed? Some reviews from critics and audiences provide insight into its strengths and shortcomings.

  • ‘The Chosen’ Season 5: The darkest season yet—What to know before watching

    The wait is over—The Chosen is back with its fifth season, and this time, things are getting intense. The new episodes dive straight into the final days of Jesus’ life, covering some of the most emotional and dramatic moments in the Bible. If you’ve been following the series, you already know that The Chosen isn’t just about retelling familiar stories—it’s about bringing them to life in a way that feels real.

  • Massacres in Syria: Over 1,000 dead, including Christians and Alawites

    Syria’s coastal regions have been devastated by a series of massacres, with reports indicating that over 1,000 people—many from Christian and Alawite communities—have been killed in brutal attacks. Entire families have been wiped out, and survivors are fleeing in search of safety as sectarian violence escalates.

  • Kim Sae-ron and Wheesung: The tragic irony of Korean society and the principles of happiness

    Not long ago, the media was in an uproar over actress Kim Sae-ron’s passing. Just months before, the same people who had relentlessly criticized her for her DUI incident were now expressing sympathy, saying, "The world was too harsh on her." The irony is impossible to ignore.

  • Newsboys move forward as a quartet after Michael Tait’s departure

    After more than a decade as the lead singer of the Newsboys, Michael Tait has officially parted ways with the band, marking a significant shift in the Christian rock group’s lineup. The remaining members—Jeff Frankenstein, Jody Davis, Duncan Phillips, and Adam Agee—have assured fans that they will continue forward, embracing a new season of music and ministry.