TechCampus(@techcampuscom) 's Twitter Profile Photo

🕵️‍♂️ اصطياد الثغرات: قصص الاكتشاف
🚩في 2014، ثغرة 'Heartbleed' في OpenSSL سمحت بسرقة البيانات
🚩2018، ثغرتي 'Spectre' و'Meltdown' في المعالجات سمحت بسرقة البيانات
🚩2021، ثغرة 'Log4j' في Java سمحت بتنفيذ تعليمات برمجية عن بُعد

🕵️‍♂️ اصطياد الثغرات: قصص الاكتشاف
🚩في 2014، ثغرة 'Heartbleed' في OpenSSL سمحت بسرقة البيانات
🚩2018، ثغرتي 'Spectre' و'Meltdown' في المعالجات سمحت بسرقة البيانات
🚩2021، ثغرة 'Log4j' في Java سمحت بتنفيذ تعليمات برمجية عن بُعد
account_circle
Today In Infosec(@todayininfosec) 's Twitter Profile Photo

2014: The Heartbleed Bug was publicly disclosed. The buffer over-read vulnerability had been discovered by Neel Mehta and later privately reported to the OpenSSL project, which patched it the next day. The vulnerability was inadvertently introduced into OpenSSL 2 years prior.

2014: The Heartbleed Bug was publicly disclosed. The buffer over-read vulnerability had been discovered by Neel Mehta and later privately reported to the OpenSSL project, which patched it the next day. The vulnerability was inadvertently introduced into OpenSSL 2 years prior.
account_circle
Edgescan(@edgescan) 's Twitter Profile Photo

This critical flaw in , a widely used cryptography library, affected about 17% of the Internet's secure web servers at the time of its disclosure.

Learn more about the impact of and the long-term solutions that emerged in its wake: hubs.li/Q02wKHw60

account_circle
Shobhit Shubhankar(@shobhitshubhnkr) 's Twitter Profile Photo

On the 2014 Heartbleed exploit that built upon a flaw in the OpenSSL encryption protocol.

It's extraordinary how so much of the internet infra today utilizes open source building blocks and these are so often reliant on very small teams or solitary individuals for upkeep.

On the 2014 Heartbleed exploit that built upon a flaw in the OpenSSL encryption protocol. 

It's extraordinary how so much of the internet infra today utilizes open source building blocks and these are so often reliant on very small teams or solitary individuals for upkeep.
account_circle
silosrc(@silosrc) 's Twitter Profile Photo

对于推上的程序员讨论实在是无力吐槽了… 一个个都这么强,也没见谁去拦一下这次的 xz,修个 heartbleed,或者随便找个藏了十来年的基础软件 bug 啊…
随便打开一个几千 star 的 Github 项目,读读代码都能找到无数个 bug,去拯救世界去吧。

account_circle
Ed Sim(@edsim) 's Twitter Profile Photo

Heartbleed is 10 Years Old – Farewell Heartbleed, Hello QuantumBleed!

'Heartbleed made most certificates vulnerable. The future problem is that quantum decryption will make all certificates and everything else using RSA encryption vulnerable to everyone.'…

Heartbleed is 10 Years Old – Farewell Heartbleed, Hello QuantumBleed!

'Heartbleed made most certificates vulnerable. The future problem is that quantum decryption will make all certificates and everything else using RSA encryption vulnerable to everyone.'…
account_circle
Thought Markets(@ThoughtMarkets) 's Twitter Profile Photo

Things you may not know about the Heartbleed Bug:
1) A serious vulnerability in OpenSSL.
2) Discovered in 2014, affected millions of websites.
3) Led to significant changes in internet security practices.

Things you may not know about the Heartbleed Bug:
1) A serious vulnerability in OpenSSL.
2) Discovered in 2014, affected millions of websites.
3) Led to significant changes in internet security practices.
account_circle
Halle Verkehrt #StopBurningFossilFuels(@HalleVerkehrt) 's Twitter Profile Photo

Die gesamte westliche IT ist ganz ganz ganz knapp und rein zufällig an einem Supergau vorbeigeschrammt, gegen den selbst Heartbleed nur ein blauer Fleck war, und in der Medienwelt sehe ich so absolut gar nichts davon.

Naja. Nächstes mal ist dann das Gejammer wieder groß.

account_circle
Tib3rius(@0xTib3rius) 's Twitter Profile Photo

If you find an interesting CVE and want a fun name for it (y'know like Heartbleed, Shellshock, etc.) might I suggest 'CrowdStrike Falcon'?

I believe that's how things work these days. At least that's how it works at CrowdStrike.

account_circle
jin(@dankvr) 's Twitter Profile Photo

vx-underground Almost 10 years since heartbleed, and yet 45% of open source maintainers report the biggest challenge they face is burnout as of 2023. Governments direct trillions in public goods funding, I feel they could be doing more to support digital infra we all rely upon 🧐

@vxunderground Almost 10 years since heartbleed, and yet 45% of open source maintainers report the biggest challenge they face is burnout as of 2023. Governments direct trillions in public goods funding, I feel they could be doing more to support digital infra we all rely upon 🧐
account_circle