possible.lv
@possiblelv
IT security consulting, penetration testing. Security research, hardware.
EU · possible.lv
Trends
Trends, speziell für Dich.
Mit Trends kommst Du den Themen, die Dir wichtig sind, auf ganz besondere Weise näher. Sie werden speziell für Dich erstellt, basierend auf Deinem Standort und den Personen, denen Du folgst.
Tweets
-
@sklep_z_bitcoin it *is* valid before 0day. your provider issued a retrospective cert. this doesn't make it insecure, simply "valid before". -
@CraftByte there's nothing we can do about that, since SSL cert does not carry such info.@gandibar should not be issuing predated certs. -
@PingTrip tentatively added additional tests simulating different versions. can we have the domain now? -
@CraftByte Moved "from" up 7 hours to 30 minutes before the first advisory. -
@PingTrip DM with example domain would be appreciated. -
@Richcoz81 highly doubtful. maybe statically compiled libs? you can send me the name. -
#heartbleed How to be safe as a user? 1. Check server http://possible.lv/tools/hb/ 2. When server patched and cert reissued, change your password. -
Retweetet von possible.lv
@sambowne that's because EDUs never patch their servers ;) We got lucky this time running old OpenSSLs -
@GambitDash It tries to fully negotiate the ext first. If it succeeds, it runs separate tests for different vuln. flavors. -
@GambitDash You are correct, extension negotiation is a prerequisite for the following tests. What use case do you envision? -
@GambitDash One of the tests already does this. -
Retweetet von possible.lv
Someone mass-tested the
#heartbleed vulnerability: https://github.com/musalbas/heartbleed-masstest … -
Retweetet von possible.lv
Here we see some bay area sysadmins dealing with the Heartbleed issue. pic.twitter.com/lG0Icl87uh
07:00 - 8. Apr. 2014 · Details Gemeldet (mehr erfahren) -
@JBird_Vegas That was the original idea as no fixed userland packages were available. Now updated to actually test the bug. -
Check if you are possibly affected by the heartbleed CVE-2014-0160 bug now: http://possible.lv/tools/hb/ Upgrade ASAP!
-
A serious openSSL vulnerability discovered. Upgrade/downgrade your systems now! http://heartbleed.com
-
Uzmanību! Šis konts nav īsts!! -> “
@BiteLatvija: Jaunumi un informācija, bites izmantošanā.”
@possiblelv hat noch nichts getwittert.
Das Laden scheint etwas zu dauern.
Twitter ist möglicherweise überlastet oder hat einen vorübergehenden Schlucklauf. Probiere es erneut oder besuche Twitter Status für weitere Informationen.
Dieses Medium melden
Dies wurde bereits als fragwürdiger Inhalt markiert.


Nick Turley
Thomas Skora
Kieran Healy