Author :
Carvalho, Marco ; DeMott, Jared ; Ford, Richard ; Wheeler, David A.
Author_Institution :
Comput. Sci., Florida Inst. of Technol., Melbourne, FL, USA
Abstract :
The media furor around the Heartbleed vulnerability was incredible and crossed over from security mailing lists to the national press with remarkable speed. The authors look at this vulnerability in OpenSSL and outline how it was fixed. They also address why the Heartbleed vulnerability was missed for so long.
Keywords :
Internet; computer network security; computer viruses; electronic commerce; Internet; OpenSSL; e-commerce; heartbleed vulnerability; security mailing lists; Computer crashes; Electronic commerce; Payloads; Privacy; Resource management; Software development; Heartbleed; cybercrime; hackers; security;
Journal_Title :
Security & Privacy, IEEE
DOI :
10.1109/MSP.2014.66