Showing posts with label passwords. Show all posts
Showing posts with label passwords. Show all posts

Monday, 14 April 2014

online companies and security

I'm holding my hands up ...  I am not just a bad mummy I'm a typical useless on line user too.  I will admit I cannot remember 500+ passwords to have a different one for every site..... heck i can't even remember which 10 sites I signed up to in the last week let alone forever.

So imagine my anger when I receive email such as this "On Thursday 10 April we at **** became aware of the bug [heartbleed] and immediately ran tests to see if the ***** servers were vulnerable. As soon as it became apparent that we were, we applied the fix to close the OpenSSL security hole (known as the Heartbleed patch).  However, it seems that users’ data was accessed prior to our applying this fix".  Now aside from the fact they KNEW on Thursday of the issue but didn't tell users until 5.45 on Monday 14th is bad enough in itself but for companies not to have effective virus software to stop this happening is appalling.  These are companies we trust to keep data safe who simply can't due to their own lax security.