Cloudbleed exploit

Lucky Day

Daywatch
Joined
October 19, 2006
Messages
5,217
Location
The Uncanny Valley
Oh my

https://www.forbes.com/sites/thomas...nt-to-change-all-your-passwords/#1eda74603ca3

Tavis Omley discovered the exploit and report it to Cloudfare.

Reports saying it may have been as bad as Heartbleed - or at least its similar.

Cloudfare downplayed it in their personal response to him, however they've publicly disclosed they feel its serious and it even leaked one of their internal private keys.

Cloudfare hosts and serves content for 2 million customers, the most famous are uber, yelp, fitbit and OKCupid. (What the heck is tfl.gov.uk?)

Check if any of the websites you use are listed here.

Rpgwatch does not appear to be affected but our codex members should especially be wary of their 4chan accounts.
 
Joined
Oct 19, 2006
Messages
5,217
Location
The Uncanny Valley
Thanks.

TFL is Transport For London. Major operation.
 
Joined
Nov 8, 2014
Messages
12,085
Rpgwatch does not appear to be affected but our codex members should especially be wary of their 4chan accounts.

You got it wrong , /dex is not a 4chan subforum , but a stormfront subforum.
 
Joined
Dec 26, 2011
Messages
118
It is not nearly as bad as heartbleed; because with heartbleed you could attack the secret you desired. With Cloudfar oops; you went on a fishing expedition and got random secrets.
 
Joined
Oct 20, 2006
Messages
7,758
Location
usa - no longer boston
We are not using Cloudfare, so are indeed not affected by it.
 
Joined
Aug 30, 2006
Messages
11,223
Back
Top Bottom