Heartbleed, an encryption bug, become one of the biggest security threats the Internet has ever seen.
The security bug has disturbed many well-known services and websites — ones you may utilize consistently, like Facebook, Twitter and Google — and may have silently revealed your sensitive personal information, for example, login names, passwords and credit card numbers.
Heartbleed is a serious vulnerability in the popular OpenSSL cryptographic application collection library by a software security firm known as Codenomicon and a member of Google’s security crew.
It compromises the secret keys that used to recognize the service providers and to encode the activity. Assuming that the vulnerable version of OpenSSL is in use, it can be abused.
Half a million sites are thought to have been affected.
A security patch to fix the bug was already out. Some Companies which were vulnerable to the bug have already up-to-date their servers, including WordPress, Google, Dropbox, Amazon Web Services and Akamai etc, but a lot of websites are still playing catch up.
Although changing your password regularly is always good practice, if a site or service hasn’t yet patched the problem, your information will still be vulnerable.
Beware
You can check by yourself, any website, its vulnerability by using Filippo Heartbleed Checker and LastPass Heartbleed Checker Tools, or you can ask for your company if they have already fixed the flaw. Update your password using upper case, lower case, numbers and symbols, if you found the particular website is not vulnerable.
Tip from Experts
- Do not use the same username and password on the multiple website.
- For banking and email you should have to use different username and passwords.
- Keep an eye on any suspicious activity against your online accounts (banking, webmail) for at least the next week.
- Keey changing your password regularly
Have something to add to this story? Share it in the comments.

This plug-in only blocks advertisements which helps to clean up websites with ads all over them making them easier to read and scan. This one is particularly interesting because it allows you to tweak it. You can white-list sites that you want to be able to display ads. You can also use a malicious ad blocklist for additional security when browsing the web. This one can be used with
This plug-in helps in securing the connection between the servers you are connecting to and your browser. Even when a website does not offer added security, this will help in encrypting your connection. For example, you know a server is secure when the beginning of the web address has “https” instead of just “http.” This plug-in pretty much adds the “s” even when the website does not offer this itself. This allows you to be further protected from several different hacking tools as well. This one works with Firefox.
This plug-in is a password protector. When this is turned on, your password is stored and encrypted. As an added bonus, you can use this to generate new passwords that are not easy to figure out whenever you feel the need for a new password. Every browser can use this plug-in, so you can always keep your passwords safe.
This one only does a single thing, but it is very helpful. It blocks scripts like Flash, Quicktime and JavaScript from loading in your browser. This is important because “bad” websites will sometimes use scripts to attack vectors. This can result in your browser crashing and the hacker getting into your computer. Blocking these greatly increases your web security. You can choose to only block unsafe domains or third party scripts. Some scripts have to be allowed to use most of the popular internet sites. This one only works with Firefox.
This one is very handy. It will tell you whether or not a website is safe before you click on it. It will provide a warning that is clear so that you can choose to avoid using this website. User ratings determine which sites are safe or not, making it rather useful and accurate. This one works with all browsers.