Notices

Heartbleed Vulnerability

Old 04-20-2014, 04:28 PM
  #1  
512bb
Drifting
Thread Starter
 
512bb's Avatar
 
Join Date: May 2004
Location: NJ
Posts: 2,195
Received 32 Likes on 29 Posts
Default Heartbleed Vulnerability

I was checking with Norton's Heartbleed Vulnerability tool and it could not verify whether rennlist.com was safe from this vulnerability. Can you verify whether it is or not?

I think it worthwhile that you make an announced on the site's welcome page regarding this matter.

Thank you.
Old 04-26-2014, 08:48 PM
  #2  
512bb
Drifting
Thread Starter
 
512bb's Avatar
 
Join Date: May 2004
Location: NJ
Posts: 2,195
Received 32 Likes on 29 Posts
Default

No response from the administrators?
Old 04-27-2014, 04:44 PM
  #3  
Randy V
Addict
Lifetime Rennlist
Member
 
Randy V's Avatar
 
Join Date: Jun 2000
Location: Insane Diego, California
Posts: 40,428
Received 92 Likes on 62 Posts
Default

Passed along to IB tech support.
Old 04-27-2014, 07:02 PM
  #4  
Bob Rouleau

Still plays with cars.
Lifetime Rennlist
Member
 
Bob Rouleau's Avatar
 
Join Date: Jul 2001
Location: Montreal
Posts: 15,078
Received 255 Likes on 119 Posts
Default

Checking .....
Old 04-29-2014, 05:09 PM
  #5  
pmalenfa
Racer
 
pmalenfa's Avatar
 
Join Date: Aug 2009
Location: Montreal, Canada
Posts: 281
Likes: 0
Received 0 Likes on 0 Posts
Default

Heartbleed is a bug in SSL/TLS (used by HTTPS). Rennlist.com does not use HTTPS, so it is not affected. If you look into the URL address bar with rennlist.com, there is no padlock.

Since you are concerned about privacy... When you login rennlist.com, you use HTTP only. So your username and password are passed along, not encrypted. The viewing of your "private" messages is NOT encrypted. Same for everything on rennlist.com.

Everytime your submit/view information on a non-https site, the information is sent/received accross the network. Anybody between your browser (Internet Explorer) and the HTTP server scanning the packets can see the information in clear. Very similar as taping a telephone line.

Pierre
Old 04-29-2014, 09:13 PM
  #6  
Robb M.
IB Staff
 
Robb M.'s Avatar
 
Join Date: May 2001
Location: Barrie, ON
Posts: 5,101
Received 666 Likes on 462 Posts
Default

Thanks Pierre, you beat me to the punch.

ps, long time no see, old friend!

cheers,
robb


Thread Tools
Search this Thread
Quick Reply: Heartbleed Vulnerability



All times are GMT -3. The time now is 07:03 AM.