Heartbleed could have you bleeding from more than your heart.
What’s it all mean to us Mac and iDevice users? Bob sent along this very informative, understandable piece he received this afternoon from Intego (his anti-virus/anti-malware/anti-other-yucky-stuff package):
Earlier this month, the OpenSSL project issued an emergency security advisory that warned about an open bug called “Heartbleed”. This serious vulnerability could lead to malicious hackers spying on what were thought to be secure Internet communications.
Here at Intego, we take our responsibility to protect you very seriously. It’s to this end that we wanted to send out an update and provide some resources to keep you well-informed. See the Mac Security Blog for the top FAQs on Heartbleed for Mac and iOS users.
Am I at risk if I use a Mac? What about an iPhone or iPad?
We cannot stress this enough: while Apple products may be “safe” encrypted data is not. The Heartbleed bug enables the theft of information otherwise protected by SSL/TLS encryption, and it affects many of the Web sites and other Internet services you use. If the services use OpenSSL to help manage the flow of encrypted data, it doesn’t matter if you’re on a Mac or a Windows computer, your data may be at risk.
Which Web sites are vulnerable to the Heartbleed bug? Continue reading →