SUBSIM Radio Room Forums



SUBSIM: The Web's #1 resource for all submarine & naval simulations since 1997

Go Back   SUBSIM Radio Room Forums > General > General Topics
Forget password? Reset here

Reply
 
Thread Tools Display Modes
Old 04-10-14, 07:53 AM   #1
Skybird
Soaring
 
Skybird's Avatar
 
Join Date: Sep 2001
Location: the mental asylum named Germany
Posts: 42,612
Downloads: 10
Uploads: 0


subsim.com is NOT affected by Heartbleed

UPDATE:
OK, THERE IS NO ISSUE HERE,

Quote:
You are not vulnerable. You don't have Ssl enabled.
per my server manager.



-- Neal



.


.



.


.I just ran a test from this site:

http://possible.lv/tools/hb/

Result:




Uncle Neal, take over!!!

A test being negative and concluding the tested site is not vulnerable, would look like this:



Once Neal has fixed this, change of passwords is on order, guys. The risk lies in malicious trolls abuzsing your identity, and maybe even in the linking from subsim to Amazon - I do not know the latter, just remind that such a link exists on this website via the direct-buttons that Neal advertises. Whether your Amazon account could become corrupted if contacting Amazon via the subsim-buttons, I do not know. This heartbleed thing just is a core meltdown, and so I say: better safe than sorry.
__________________
If you feel nuts, consult an expert.

Last edited by Skybird; 04-10-14 at 04:28 PM.
Skybird is offline   Reply With Quote
Old 04-10-14, 08:32 AM   #2
kranz
The Old Man
 
Join Date: Aug 2007
Location: Poland
Posts: 1,430
Downloads: 5
Uploads: 0
Default

I read '...is affected by butthurt'.

well, not much of a difference.
kranz is offline   Reply With Quote
Old 04-10-14, 08:34 AM   #3
STEED
Lucky Jack
 
Join Date: Jan 2006
Location: Down Town UK
Posts: 27,695
Downloads: 89
Uploads: 48


Default

NOOOOOOOOOOOOO........
__________________
Dr Who rest in peace 1963-2017.

To borrow Davros saying...I NAME YOU CHIBNALL THE DESTROYER OF DR WHO YOU KILLED IT!
STEED is offline   Reply With Quote
Old 04-10-14, 08:43 AM   #4
Jimbuna
Chief of the Boat
 
Jimbuna's Avatar
 
Join Date: Feb 2006
Location: 250 metres below the surface
Posts: 190,500
Downloads: 63
Uploads: 13


Default

I'll run a few of my usuals through this...cheers.
__________________
Wise men speak because they have something to say; Fools because they have to say something.
Oh my God, not again!!

Jimbuna is offline   Reply With Quote
Old 04-10-14, 08:55 AM   #5
BossMark
Fleet Admiral
 
BossMark's Avatar
 
Join Date: May 2011
Location: Leeds, West Yorkshire
Posts: 15,272
Downloads: 278
Uploads: 0
Default

Oh bugger!! so what does that mean?
__________________
Never trust the Tories look what Thatcher and Major did in the 80s and 90s and look what the wicked witch May is doing now doing now
BossMark is offline   Reply With Quote
Old 04-10-14, 09:08 AM   #6
STEED
Lucky Jack
 
Join Date: Jan 2006
Location: Down Town UK
Posts: 27,695
Downloads: 89
Uploads: 48


Default

OK I have changed my password for here to sexysod@sexy4589.
__________________
Dr Who rest in peace 1963-2017.

To borrow Davros saying...I NAME YOU CHIBNALL THE DESTROYER OF DR WHO YOU KILLED IT!
STEED is offline   Reply With Quote
Old 04-10-14, 09:18 AM   #7
Rhodes
Silent Hunter
 
Join Date: Aug 2005
Location: Figueira da Foz, Portugal
Posts: 4,515
Downloads: 110
Uploads: 0
Default

Quote:
Originally Posted by STEED View Post
sexysod@sexy4589.
uhhhhhh.....
Rhodes is offline   Reply With Quote
Old 04-10-14, 09:23 AM   #8
STEED
Lucky Jack
 
Join Date: Jan 2006
Location: Down Town UK
Posts: 27,695
Downloads: 89
Uploads: 48


Default

Quote:
Originally Posted by Rhodes View Post
uhhhhhh.....
That was a password but no longer.

That is to say not here but else where.
__________________
Dr Who rest in peace 1963-2017.

To borrow Davros saying...I NAME YOU CHIBNALL THE DESTROYER OF DR WHO YOU KILLED IT!
STEED is offline   Reply With Quote
Old 04-10-14, 09:40 AM   #9
adrian_airbaby
Nub
 
Join Date: Nov 2011
Posts: 3
Downloads: 121
Uploads: 0
Default

Apparently it's not an actual threat just yet. It's a future threat though,
and hi everyone, long time lurker here
adrian_airbaby is offline   Reply With Quote
Old 04-10-14, 11:14 AM   #10
Skybird
Soaring
 
Skybird's Avatar
 
Join Date: Sep 2001
Location: the mental asylum named Germany
Posts: 42,612
Downloads: 10
Uploads: 0


Default

No, it is a thread coming from data that since long has been copied from servers. Since that data already is lost and the security certificates are corrupted, one must assume that all data that can be lost indeed IS lost. That data can reveal your identity can contain relevant codes and data allowing access to accounts you use, can decypher encrypted emails, and much more. You cannot press that genie back into the bottle anymore, it escaped. Possible that some people will get hit by that. Even if certificates and SSL software on servers can changed and patched, the already lost data remains to be lost, and can be used against you.

It's like a bottle leaking. The liquid already lost, remains to be lost, and may ruin your carpet. You can tighten the cap and replace it, and it then is properly sealed - but the liquid that already escaped, doe snot come back, and when it hit the carpet, you still will see the effect, no matter new cap or not.

Maybe this will heal some of the many incorrigible digital optimists who never see no harm coming from destruction of data protection and privacy, and from new technology in general, but I doubt it. Some cattle may stumble and drown when crossing a river. But the mass of the herd will just move on, uncaring.
__________________
If you feel nuts, consult an expert.
Skybird is offline   Reply With Quote
Old 04-10-14, 11:42 AM   #11
Wolferz
Navy Seal
 
Wolferz's Avatar
 
Join Date: May 2007
Location: On a mighty quest for the Stick of Truth
Posts: 5,963
Downloads: 52
Uploads: 0
Somebody changed my password to... 12345
__________________

Tomorrow never comes
Wolferz is offline   Reply With Quote
Old 04-10-14, 12:44 PM   #12
the_tyrant
Admiral
 
Join Date: Jun 2010
Location: Canada
Posts: 2,272
Downloads: 58
Uploads: 0
Default

There is nothing to worry about guys, nothing to see here.

heartbleed is an ssl vulnerability. AKA, what you thought was encrypted may very well not have been encrypted.

However, subsim never even used SSL! In fact, if you read the message in the first picture, it said "error connecting" on port 443, well of course it would say that, subsim doesn't support SSL in the first place!


Now Neal, if you would like to enable SSL encryption for subsim, I'll gladly buy a certificate for you. PM me.
__________________
My own open source project on Sourceforge
OTP.net KGB grade encryption for the rest of us
the_tyrant is offline   Reply With Quote
Old 04-10-14, 01:00 PM   #13
Onkel Neal
Born to Run Silent
 
Onkel Neal's Avatar
 
Join Date: Jan 1997
Location: Cougar Trap, Texas
Posts: 21,383
Downloads: 541
Uploads: 224


Default

I'm on it.

Although Subsim is not https
Onkel Neal is offline   Reply With Quote
Old 04-10-14, 01:02 PM   #14
Jimbuna
Chief of the Boat
 
Jimbuna's Avatar
 
Join Date: Feb 2006
Location: 250 metres below the surface
Posts: 190,500
Downloads: 63
Uploads: 13


Default

Quote:
Originally Posted by adrian_airbaby View Post
Apparently it's not an actual threat just yet. It's a future threat though,
and hi everyone, long time lurker here
Welcome
__________________
Wise men speak because they have something to say; Fools because they have to say something.
Oh my God, not again!!

Jimbuna is offline   Reply With Quote
Old 04-10-14, 01:03 PM   #15
Jimbuna
Chief of the Boat
 
Jimbuna's Avatar
 
Join Date: Feb 2006
Location: 250 metres below the surface
Posts: 190,500
Downloads: 63
Uploads: 13


Default

Quote:
Originally Posted by BossMark View Post
Oh bugger!! so what does that mean?
Your bank account details are now in my possession
__________________
Wise men speak because they have something to say; Fools because they have to say something.
Oh my God, not again!!

Jimbuna is offline   Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -5. The time now is 01:29 AM.


Powered by vBulletin® Version 3.8.11
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.
Copyright © 1995- 2025 Subsim®
"Subsim" is a registered trademark, all rights reserved.