Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Note that by visiting, your IP and referer become accessible by anyone running an heartbleed exploit:

  93.142.x.x - - [11/Apr/2014:10:44:36 -0400] "GET /heartbleed HTTP/1.1" 200 1148 "https://news.ycombinator.com/" "Mozilla/5.0 (Windows NT 6.1; WOW64)AppleWebKit/537.36 (KHTML, like Gecko) Chrome/34.0.1847.116 Safari/537.36"


Whoops, too late. Were you able to get that info from actually running the exploit?


Yes, I was. I extracted access-log entries from 23 unique IPs in a few hours, though most came from a single IP




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: