Special Report: Heartbleednado-apoco-geddon

Whois for heartbleed was registered 5 April 2014 by Marko Laasko:   Whois Server Version 2.0 Domain names in the .com and .net domains can now be registered with many different competing registrars. Go to http://www.internic.net for detailed information. Domain Name: HEARTBLEED.COMRegistry Domain ID: 1853534635_DOMAIN_COM-VRSNRegistrar WHOIS Server: whois.godaddy.comRegistrar URL: http://www.godaddy.comUpdate Date: 2014-04-05 15:13:33Creation Date: 2014-04-05 15:13:33Registrar Registration Expiration Date: 2015-04-05 15:13:33Registrar: GoDaddy.com, LLCRegistrar IANA ID: 146Registrar Abuse Contact Email: @godaddy.comRegistrar Abuse Contact Phone: +1.480-624-2505Domain Status: clientTransferProhibitedDomain Status: clientUpdateProhibitedDomain Status: clientRenewProhibitedDomain Status: clientDeleteProhibitedRegistry Registrant ID: Registrant Name: Marko LaaksoRegistrant Organization: Codenomicon OyRegistrant Street: Tutkijantie 4ERegistrant City: OuluRegistrant State/Province: OuluRegistrant Postal Code: 90590Registrant Country: FinlandRegistrant Phone: +358.451302656Registrant Phone Ext: Registrant Fax: +358.3588340141Registrant Fax Ext: Registrant Email: @codenomicon.comRegistry Admin ID: Admin Name: Marko LaaksoAdmin Organization: Codenomicon OyAdmin Street: Tutkijantie 4EAdmin City: OuluAdmin State/Province: OuluAdmin Postal Code: 90590Admin Country: FinlandAdmin Phone: +358.451302656Admin Phone Ext: Admin Fax: +358.3588340141Admin Fax Ext: Admin Email: @codenomicon.comRegistry Tech ID: Tech Name: Marko LaaksoTech Organization: Codenomicon OyTech Street: Tutkijantie 4ETech City: OuluTech State/Province: OuluTech Postal Code: 90590Tech Country: FinlandTech Phone: +358.451302656Tech Phone Ext: Tech Fax: +358.3588340141Tech Fax Ext: Tech Email: @codenomicon.comName Server: NS-697.AWSDNS-23.NETName Server: NS-1338.AWSDNS-39.ORGName Server: NS-1621.AWSDNS-10.CO.UKName Server: NS-473.AWSDNS-59.COMDNSSEC: unsignedURL of the ICANN WHOIS Data Problem Reporting System: http://wdprs.internic.net/Last update of WHOIS database: 2014-04-13T12:00:00Z NSA exploting HeartBleed for years:  http://www.bloomberg.com/news/2014-04-11/nsa-said-to-have-used-heartbleed-bug-exposing-consumers.html RFC6520 - TLS Heartbeat (co-authored by the the guy Robin Seggelmann) https://tools.ietf.org/html/rfc6520   Slashdot article: http://it.slashdot.org/story/14/04/10/2235225/heartbleed-coder-bug-in-openssl-was-an-honest-mistake   OpenBSD's Theo De Raadt having a rant about OpenSSL: http://it.slashdot.org/story/14/04/10/1343236/theo-de-raadts-small-rant-on-openssl   OpenSSL's malloc issues: http://www.tedunangst.com/flak/post/analysis-of-openssl-freelist-reuse and http://www.tedunangst.com/flak/post/heartbleed-vs-mallocconf Custom Snort rules to detect HeartBleed: http://blog.snort.org/2014/04/sourcefire-vrt-certified-snort-rules_10.html     Intro/Outro Music: "All This" Kevin MacLeod (incompetech.com) Licensed under Creative Commons: By Attribution 3.0 http://creativecommons.org/licenses/by/3.0/  

2356 232