Highest Rated Comments


FiloSottile818 karma

  • Install the Chromebleed or Foxbleed browser extension and not login to the sites that trigger an alert;
  • Think hard about all the important accounts one have, and go changing the passwords there (always a good thing); REMINDER: using different passwords is more important than using complex ones, write them down on paper if you need!
  • Wait for statements by the affected websites about what might have been leaked.

FiloSottile611 karma

:D

I don't know, I'm afraid we will discover it in the coming days. IMHO the most impacted will be the ones that are or have been slowest to fix, so some .gov, embedded...

Yeah, I did get some amazing offers, and I'm considering them these days (damn US immigration law, by the way!)

FiloSottile565 karma

I got a couple of thousands dollars, mainly via PayPal.

Ad companies offered more, and the donation link is tiny, but thinking that every time my phone buzz with a PayPal notification someone went to the trouble of clicking it and decided to send me money is AWESOME.

FiloSottile274 karma

This week I've almost lived on US time, but being in Italy this means waking up at 12-13 and having lunch.

So, pasta al pesto.

FiloSottile198 karma

I feel like this data will make for a great overview of the impact, and it helped a lot debugging the site.

I tweeted a few times about logs and I want to stress that I don't log anything about the clients. Only results, and on a different system HTTP Referrals. Also there is no analytics or ads on the page to protect user privacy.

See also https://filippo.io/Heartbleed/faq.html#logs