The Heartbleed Bug, explained http://ift.tt/1F7HHvM...

Please Visit: http://ift.tt/1ajReyV



The Heartbleed Bug, explained

http://ift.tt/PNCzZU

http://ift.tt/Q44epu

the SSL standard includes a heartbeat option, which allows a computer at one end of an SSL connection to send a short message to verify that the other computer is still online and get a response back



The fix for this problem is easy: the server just needs to be less trusting. Rather than blindly sending back as much data as is requested, the server needs to check that it's not being asked to send back more characters than it received in the first place.






from Public RSS-Feed of Jeffery yuan. Created with the PIXELMECHANICS 'GPlusRSS-Webtool' at http://gplusrss.com http://ift.tt/1F7HGry

via LifeLong Community

No comments:

Post a Comment