Patching Heartbleed, a major Web security wound
2:54

Patching Heartbleed, a major Web security wound

Culture
On the internet, things are not always as secure as they seem. On the internet, things are not always as secure as they seem. I am Bridget Carey and this is your CNET update. I am Bridget Carey and this is your CNET update. [MUSIC]. [MUSIC]. Folks we have to have a talk about heart bleed. Folks we have to have a talk about heart bleed. It's a cool sounding name given to a serious security flaw, that many major websites are scrambling to fix, including Amazon, Yahoo and Google, and it means we will have to refresh our passwords for many websites. It's a cool sounding name given to a serious security flaw, that many major websites are scrambling to fix, including Amazon, Yahoo and Google, and it means we will have to refresh our passwords for many websites. Explaining heart bleed can get pretty technical. Explaining heart bleed can get pretty technical. But here's a simple way to think about it. But here's a simple way to think about it. When you're on a website entering in your secure information like a password or credit card info, there's a little padlock icon near the URL to let you know the website is encrypted and your data is private. When you're on a website entering in your secure information like a password or credit card info, there's a little padlock icon near the URL to let you know the website is encrypted and your data is private. Well, there's this open-source system that many sites. Well, there's this open-source system that many sites. Have been using for encryption. Have been using for encryption. It's called Open SSL, and it had a leak. It's called Open SSL, and it had a leak. Someone could trick a server into sharing the encrypted data, and even share the keys to unlock the encryption. Someone could trick a server into sharing the encrypted data, and even share the keys to unlock the encryption. It's believed that about 2 3rds of websites were vulnerable to this flawed security system. It's believed that about 2 3rds of websites were vulnerable to this flawed security system. And what's worse, is that the problem has existed for the past two years and security experts had no idea. And what's worse, is that the problem has existed for the past two years and security experts had no idea. If someone has been taking advantage of this bug to steal info, it leaves no trace. If someone has been taking advantage of this bug to steal info, it leaves no trace. There are no fingerprints left behind, so websites don't even know if they were compromised. There are no fingerprints left behind, so websites don't even know if they were compromised. That's comforting. That's comforting. So what can you do? So what can you do? I mean, besides get angry at the internet. I mean, besides get angry at the internet. Well, the smart thing to do is to wait for website to announce that they have patched the problem. Well, the smart thing to do is to wait for website to announce that they have patched the problem. Then you can change your passwords. Then you can change your passwords. Big sites like Yahoo and Google have fixed the issue, but not all smaller sites may have plugged the leak just yet. Big sites like Yahoo and Google have fixed the issue, but not all smaller sites may have plugged the leak just yet. Also, keep a close eye on your banking statements for any fraudulent activity. Also, keep a close eye on your banking statements for any fraudulent activity. Which you should always do anyway. Which you should always do anyway. Let's move on to a different kind of privacy. Let's move on to a different kind of privacy. Facebook privacy. Facebook privacy. The social network has admitted that sometimes its privacy settings can be confusing. The social network has admitted that sometimes its privacy settings can be confusing. So it's making some changes. So it's making some changes. If you haven't touched your privacy settings in a while, you'll get a popup With a little dinosaur asking you to double check your settings in case you didn't realize you've been making all your posts public. If you haven't touched your privacy settings in a while, you'll get a popup With a little dinosaur asking you to double check your settings in case you didn't realize you've been making all your posts public. And on the Facebook IOS app, you may have noticed that the audience selector which was on the lower-right corner is now clearly visible on the top of your status form. And on the Facebook IOS app, you may have noticed that the audience selector which was on the lower-right corner is now clearly visible on the top of your status form. Facebook will also add more descriptions on what public means, on the desktop drop-down menu. Facebook will also add more descriptions on what public means, on the desktop drop-down menu. And, as more of us watch video online and cut the cable subscription, there's another streaming video option making its debut. And, as more of us watch video online and cut the cable subscription, there's another streaming video option making its debut. Sesame Street Go, offers on-demand access to hundreds of full length episodes of the classic children's program. Sesame Street Go, offers on-demand access to hundreds of full length episodes of the classic children's program. And, it can be accessed on any device at sesamego.com. And, it can be accessed on any device at sesamego.com. Sesame Street Go is brought to you by the number four because it'll cost you $4 a month. Sesame Street Go is brought to you by the number four because it'll cost you $4 a month. That's your tech news update. That's your tech news update. Head to cnet.com for more details on these stories. Head to cnet.com for more details on these stories. From our studios in New York, I'm Bridget Carey. From our studios in New York, I'm Bridget Carey. [SOUND] [SOUND] On the internet, things are not always as secure as they seem. On the internet, things are not always as secure as they seem. I am Bridget Carey and this is your CNET update. I am Bridget Carey and this is your CNET update. [MUSIC]. [MUSIC]. Folks we have to have a talk about heart bleed. Folks we have to have a talk about heart bleed. It's a cool sounding name given to a serious security flaw, that many major websites are scrambling to fix, including Amazon, Yahoo and Google, and it means we will have to refresh our passwords for many websites. It's a cool sounding name given to a serious security flaw, that many major websites are scrambling to fix, including Amazon, Yahoo and Google, and it means we will have to refresh our passwords for many websites. Explaining heart bleed can get pretty technical. Explaining heart bleed can get pretty technical. But here's a simple way to think about it. But here's a simple way to think about it. When you're on a website entering in your secure information like a password or credit card info, there's a little padlock icon near the URL to let you know the website is encrypted and your data is private. When you're on a website entering in your secure information like a password or credit card info, there's a little padlock icon near the URL to let you know the website is encrypted and your data is private. Well, there's this open-source system that many sites. Well, there's this open-source system that many sites. Have been using for encryption. Have been using for encryption. It's called Open SSL, and it had a leak. It's called Open SSL, and it had a leak. Someone could trick a server into sharing the encrypted data, and even share the keys to unlock the encryption. Someone could trick a server into sharing the encrypted data, and even share the keys to unlock the encryption. It's believed that about 2 3rds of websites were vulnerable to this flawed security system. It's believed that about 2 3rds of websites were vulnerable to this flawed security system. And what's worse, is that the problem has existed for the past two years and security experts had no idea. And what's worse, is that the problem has existed for the past two years and security experts had no idea. If someone has been taking advantage of this bug to steal info, it leaves no trace. If someone has been taking advantage of this bug to steal info, it leaves no trace. There are no fingerprints left behind, so websites don't even know if they were compromised. There are no fingerprints left behind, so websites don't even know if they were compromised. That's comforting. That's comforting. So what can you do? So what can you do? I mean, besides get angry at the internet. I mean, besides get angry at the internet. Well, the smart thing to do is to wait for website to announce that they have patched the problem. Well, the smart thing to do is to wait for website to announce that they have patched the problem. Then you can change your passwords. Then you can change your passwords. Big sites like Yahoo and Google have fixed the issue, but not all smaller sites may have plugged the leak just yet. Big sites like Yahoo and Google have fixed the issue, but not all smaller sites may have plugged the leak just yet. Also, keep a close eye on your banking statements for any fraudulent activity. Also, keep a close eye on your banking statements for any fraudulent activity. Which you should always do anyway. Which you should always do anyway. Let's move on to a different kind of privacy. Let's move on to a different kind of privacy. Facebook privacy. Facebook privacy. The social network has admitted that sometimes its privacy settings can be confusing. The social network has admitted that sometimes its privacy settings can be confusing. So it's making some changes. So it's making some changes. If you haven't touched your privacy settings in a while, you'll get a popup With a little dinosaur asking you to double check your settings in case you didn't realize you've been making all your posts public. If you haven't touched your privacy settings in a while, you'll get a popup With a little dinosaur asking you to double check your settings in case you didn't realize you've been making all your posts public. And on the Facebook IOS app, you may have noticed that the audience selector which was on the lower-right corner is now clearly visible on the top of your status form. And on the Facebook IOS app, you may have noticed that the audience selector which was on the lower-right corner is now clearly visible on the top of your status form. Facebook will also add more descriptions on what public means, on the desktop drop-down menu. Facebook will also add more descriptions on what public means, on the desktop drop-down menu. And, as more of us watch video online and cut the cable subscription, there's another streaming video option making its debut. And, as more of us watch video online and cut the cable subscription, there's another streaming video option making its debut. Sesame Street Go, offers on-demand access to hundreds of full length episodes of the classic children's program. Sesame Street Go, offers on-demand access to hundreds of full length episodes of the classic children's program. And, it can be accessed on any device at sesamego.com. And, it can be accessed on any device at sesamego.com. Sesame Street Go is brought to you by the number four because it'll cost you $4 a month. Sesame Street Go is brought to you by the number four because it'll cost you $4 a month. That's your tech news update. That's your tech news update. Head to cnet.com for more details on these stories. Head to cnet.com for more details on these stories. From our studios in New York, I'm Bridget Carey. From our studios in New York, I'm Bridget Carey. [SOUND] [SOUND]

Up Next

Download Netflix shows to watch offline
ud113016.jpg

Up Next

Download Netflix shows to watch offline

Amazon's next Echo said to come with a screen
ud112916.jpg

Amazon's next Echo said to come with a screen

Curved iPhone 8? Apple said to be exploring OLED screens
ud112816.jpg

Curved iPhone 8? Apple said to be exploring OLED screens

Black Friday and other turkey traditions are evolving
ud1123162.jpg

Black Friday and other turkey traditions are evolving

Facebook drone accident under investigation
ud112216.jpg

Facebook drone accident under investigation

Facebook needs you to fight fake news
ud112116.jpg

Facebook needs you to fight fake news

Airbnb wants to be your travel agent
ud111816.jpg

Airbnb wants to be your travel agent

Wait, how fast can Qualcomm charge a phone?
ud111716.jpg

Wait, how fast can Qualcomm charge a phone?

Snapchat may be worth $30 billion with IPO filing
ud111616.jpg

Snapchat may be worth $30 billion with IPO filing

Tech Shows

The Apple Core
apple-core-w

The Apple Core

Alphabet City
alphabet-city-w

Alphabet City

CNET Top 5
cnet-top-5-w

CNET Top 5

The Daily Charge
dc-site-1color-logo.png

The Daily Charge

What the Future
what-the-future-w

What the Future

Tech Today
tech-today-w

Tech Today

Latest News All latest news

Fun Amazon Finds Under $150 for October 2022
amazonmusthavesoct-24fps-00-07-57-17-still001

Fun Amazon Finds Under $150 for October 2022

Elon Musk Wants to Sell You an Optimus Robot for Less Than the Price of a Tesla
optimus-for-cms-1

Elon Musk Wants to Sell You an Optimus Robot for Less Than the Price of a Tesla

Tesla AI Day 2022: The Biggest Announcements
supercutcnet

Tesla AI Day 2022: The Biggest Announcements

Watch Elon Musk Unveil Optimus Robot Prototype
teslarobot

Watch Elon Musk Unveil Optimus Robot Prototype

How Apple Could Bring Back the iPhone Mini
220922-yt-apple-stuff-ep-13-iphone-mini-isnt-dead-3

How Apple Could Bring Back the iPhone Mini

Fitbit Sense 2 First Look: New Software Makes a Difference
fitbit-aroll-00-00-46-14-still001

Fitbit Sense 2 First Look: New Software Makes a Difference

Most Popular All most popular

Watch Elon Musk Unveil Optimus Robot Prototype
teslarobot

Watch Elon Musk Unveil Optimus Robot Prototype

Tesla AI Day 2022: The Biggest Announcements
supercutcnet

Tesla AI Day 2022: The Biggest Announcements

DART Explained: First Asteroid Crash Images
dart-crash

DART Explained: First Asteroid Crash Images

Elon Musk Wants to Sell You an Optimus Robot for Less Than the Price of a Tesla
optimus-for-cms-1

Elon Musk Wants to Sell You an Optimus Robot for Less Than the Price of a Tesla

See NASA's DART Probe Make Impact With Asteroid Dimorphos
astroid-image-cms

See NASA's DART Probe Make Impact With Asteroid Dimorphos

How Apple Could Bring Back the iPhone Mini
220922-yt-apple-stuff-ep-13-iphone-mini-isnt-dead-3

How Apple Could Bring Back the iPhone Mini

Latest Products All latest products

Fitbit Sense 2 First Look: New Software Makes a Difference
fitbit-aroll-00-00-46-14-still001

Fitbit Sense 2 First Look: New Software Makes a Difference

GoPro Hero 11 Black Hands-on: Super-sized Sensor for All Your Socials
gopro1

GoPro Hero 11 Black Hands-on: Super-sized Sensor for All Your Socials

I Tried Out Sony's Upcoming VR Headset on the PlayStation 5
psvr2

I Tried Out Sony's Upcoming VR Headset on the PlayStation 5

Apple Watch Series 8 and Apple Watch SE: First Look
watch8-sepic

Apple Watch Series 8 and Apple Watch SE: First Look

Bose QuietComfort EarBuds 2: Better design, better performance
bose-quietcomforst-ii

Bose QuietComfort EarBuds 2: Better design, better performance

Galaxy Z Flip 4 Review: A Diminutive but Fun Upgrade
flip4

Galaxy Z Flip 4 Review: A Diminutive but Fun Upgrade

Latest How To All how to videos

How to Clean Your Keyboard's Sticky Keys
3keyboards

How to Clean Your Keyboard's Sticky Keys

How to Play Games from PlayStation Plus on PC
psstill

How to Play Games from PlayStation Plus on PC

How to Delete or Disable Your Instagram Account
phoneonorange

How to Delete or Disable Your Instagram Account

Fix Your iPhone Screen With Apple's Self-Service Repair Kit
dsc00641

Fix Your iPhone Screen With Apple's Self-Service Repair Kit

How to Buy a Budget Laptop in 2022
budgetlaptops-00-08-35-15-still001

How to Buy a Budget Laptop in 2022

Google Pay: How to Set Up and Use
googlepay-inhand

Google Pay: How to Set Up and Use