Title: Apple Confirms 'Heartbleed' Security Issue Did Not Affect Apple Software and 'Key Services' Post by: HCK on April 17, 2014, 02:00:12 pm Apple Confirms 'Heartbleed' Security Issue Did Not Affect Apple Software and 'Key Services'
(http://cdn.macrumors.com/article-new/2014/04/heartbleed_200.jpg)Apple today released a statement (http://recode.net/2014/04/10/apple-says-ios-osx-and-key-web-services-not-affected-by-heartbleed-security-flaw/) to Re/code confirming that iOS, OS X and "key web services" were unaffected by the widely publicized security flaw known as Heartbleed (http://heartbleed.com) which was disclosed earlier this week. “Apple takes security very seriously. iOS and OS X never incorporated the vulnerable software and key web-based services were not affected,” an Apple spokesperson told Re/code.Heartbleed was a security flaw in the popular open-source software OpenSSL which helps provide secure connections between clients and servers. Due the ubiquity of OpenSSL, Heartbleed is believed to have affected approximately 66% of the internet (http://venturebeat.com/2014/04/08/what-to-do-about-heartbleed-a-gaping-security-hole-affecting-66-percent-of-the-internet-at-least/). Security blogger Bruce Schneier describes (https://www.schneier.com/blog/archives/2014/04/heartbleed.html) the issue as "catastrophic" and on "the scale of 1 to 10, this is an 11." The flaw allowed servers to leak server memory to a malicious attacker, allowing hackers to extract login/password and other private data from a server. Users are recommended to change their passwords on all services that may have been affected. Mashable provides (http://mashable.com/2014/04/09/heartbleed-bug-websites-affected/) a list of services where you should change your password. Fortunately, MacRumors Forums (http://forums.macrumors.com) were unaffected by the security flaw. Recent Mac and iOS Blog Stories • 'Family Guy: The Quest for Stuff' Launches for iPhone and iPad (http://www.macrumors.com/2014/04/10/family-guy-ios-launch/) • Delivery Status Touch Updated with Revamped Background Notifications, Various Bug Fixes (http://www.macrumors.com/2014/04/10/delivery-status-touch-revamped-notifications/) • U.S. Mac Sales Fall in Winter Quarter, Global PC Market Sees Continued Sales Falloff (http://www.macrumors.com/2014/04/09/gartner-1q14-pc-market/) • Apple Seeds OS X Mavericks 10.9.3 Build 13D38 to Developers (http://www.macrumors.com/2014/04/09/mavericks-10-9-3-build-13d38/) • 'PayPal Here' for iOS Updated with Revamped User Interface, Dynamic Search (http://www.macrumors.com/2014/04/08/paypal-here-revamped-interface-dynamic-search/) • Apple Bringing More Chip Development In House (http://www.macrumors.com/2014/04/08/apple-baseband-chip-in-house/) • American Express Offers $5 off a $5 iTunes/App Store Purchase (http://www.macrumors.com/2014/04/07/american-express-5-amex/) • Intel Expands Thunderbolt Networking with PC Support for Ultra-Fast Connections (http://www.macrumors.com/2014/04/07/intel-expands-thunderbolt-networking/) <img width='1' height='1' src='http://rss.feedsportal.com/c/35070/f/648327/s/3939a07b/sc/15/mf.gif' border='0'/><br clear='all'/> <a href="http://da.feedsportal.com/r/194479998215/u/49/f/648327/c/35070/s/3939a07b/sc/15/rc/1/rc.htm" rel="nofollow"><img src="http://da.feedsportal.com/r/194479998215/u/49/f/648327/c/35070/s/3939a07b/sc/15/rc/1/rc.img" border="0"/>[/url] <a href="http://da.feedsportal.com/r/194479998215/u/49/f/648327/c/35070/s/3939a07b/sc/15/rc/2/rc.htm" rel="nofollow"><img src="http://da.feedsportal.com/r/194479998215/u/49/f/648327/c/35070/s/3939a07b/sc/15/rc/2/rc.img" border="0"/>[/url] <a href="http://da.feedsportal.com/r/194479998215/u/49/f/648327/c/35070/s/3939a07b/sc/15/rc/3/rc.htm" rel="nofollow"><img src="http://da.feedsportal.com/r/194479998215/u/49/f/648327/c/35070/s/3939a07b/sc/15/rc/3/rc.img" border="0"/>[/url] <img src="http://da.feedsportal.com/r/194479998215/u/49/f/648327/c/35070/s/3939a07b/sc/15/a2.img" border="0"/> (http://da.feedsportal.com/r/194479998215/u/49/f/648327/c/35070/s/3939a07b/sc/15/a2.htm)<img width="1" height="1" src="http://pi.feedsportal.com/r/194479998215/u/49/f/648327/c/35070/s/3939a07b/sc/15/a2t.img" border="0"/><iframe src="//res3.feedsportal.com/test/i.html" frameborder="0" width="1" height="1" scrolling="no" seamless></iframe><div class="feedflare"> <img src="http://feeds.feedburner.com/~ff/MacRumors-Front?d=yIl2AUoC8zA" border="0"></img> (http://feeds.macrumors.com/~ff/MacRumors-Front?a=hAJhxt6HuRY:1r1MThI1wpQ:yIl2AUoC8zA) <img src="http://feeds.feedburner.com/~ff/MacRumors-Front?d=6W8y8wAjSf4" border="0"></img> (http://feeds.macrumors.com/~ff/MacRumors-Front?a=hAJhxt6HuRY:1r1MThI1wpQ:6W8y8wAjSf4) <img src="http://feeds.feedburner.com/~ff/MacRumors-Front?d=qj6IDK7rITs" border="0"></img> (http://feeds.macrumors.com/~ff/MacRumors-Front?a=hAJhxt6HuRY:1r1MThI1wpQ:qj6IDK7rITs) </div><img src="http://feeds.feedburner.com/~r/MacRumors-Front/~4/hAJhxt6HuRY" height="1" width="1"/> Source: Apple Confirms 'Heartbleed' Security Issue Did Not Affect Apple Software and 'Key Services' (http://www.macrumors.com/2014/04/10/apple-heartbleed/) |