The Hacker Mind Podcast: Hunting The Next Heartbleed
ForAllSecure
NOVEMBER 24, 2020
Such a scenario isn’t fantasy; something like this actually existed between 2012 and 2014. And if you could initiate a heartbeat before authentication was complete on the site, you could smash and grab the encrypted information before anyone even knew who you were. I’m talking about Heartbleed or CVE 2014-0160.
Let's personalize your content