@delroth_ #Heartbleed you must not be following the right people... some one got a private key on free BSD
-
-
-
@jduck right, freebsd and first request on the server. Now can we talk about practical cases that are worth caring about?
End of conversation
New conversation -
-
-
@el_suisse only freebsd and only first request to the server. Not what I consider major. Show me some PoC that doesn't rely on gimmicks.
End of conversation
New conversation -
-
@delroth_ restart server services, exploit heartbleed on the first request. Seems to do the trick ? http://arstechnica.com/security/2014/04/heartbleed-vulnerability-may-have-been-exploited-months-before-patch/?utm_source=feedburner&utm_medium=feed&utm_campaign=Feed%3A+arstechnica%2Ftechnology-lab+(Ars+Technica%3A+Technology+Lab …) -
@SimPeccaud right, that was also only reproduced on FreeBSD AFAIK. A lot of people pointed me to that PoC, but it looks very gimmicky to me.
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.