Your Web News in One Place

Help Webnuz

Referal links:

Sign up for GreenGeeks web hosting
April 11, 2014 01:45 am GMT

The Programmer Behind Heartbleed Speaks Out: It Was an Accident

Heartbleed-genesis

The Internet bug known as Heartbleed was introduced to the world on New Year's Eve in December 2011. Now, one of the people involved is sharing his side of the story.

Programmer Robin Seggelmann says he wrote the code for the part of OpenSSL that led to Heartbleed. But it was an accident. He submitted the code to the OpenSSL project and other members reviewed it. Seggelmann later added another piece of code for a new feature, which the members then added. It was this added feature that introduced the bug.

See also: The Heartbleed Hit List: The Passwords You Need to Change Right Now

Seggelmann told the Sydney Morning Herald that the actual error was "trivial," but that its impact was clearly severe. Since he and the reviewers missed the flaw, it eventually made its way to the official release, which went live on Dec. 31, 2011, according to logs. Read more...

More about Open Source, Security, Free And Open Source Software, Heartbleed, and Openssl

Original Link: http://feeds.mashable.com/~r/Mashable/~3/dSGJF6otPFo/

Share this article:    Share on Facebook
View Full Article

Mashable

Mashable is the top source for news in social and digital media, technology and web culture.

More About this Source Visit Mashable