How Does The Heartbleed Bug Affect My Bank and Me?
§ We have conducted necessary tests to be certain that the Bank’s software programs are NOT affected by this software vulnerability
§ However YOU may have other programs on your computers or cell phones that could be affected by this breach
What is the Heartbleed Bug Ramification and Remediation
The recently identified Heartbleed Bug is a serious vulnerability in the popular OpenSSL cryptographic software library. This vulnerability allows hackers to steal information protected under normal conditions by SSL/TLS encryption used to secure many of the Internet’s popular web applications. At the time of its discovery an estimated 66% of the Internet’s web applications were susceptible to Heartbleed, a vulnerability which has existed in the implementation of OpenSSL for 2 years.
Should I personally be worried?
The short answer is yes. When executed, Heartbleed allowed the leaking of secret keys for X.509 certificates, usernames and passwords, instant messages, emails, and business critical documents and communication; all without leaving a trace of exploitation or requiring the use of credentials. Heartbleed is not a malware based attack, therefore the exploitation of Heartbleed simply requires an internet connection and knowledge of a vulnerable web application.
What should I do personally to protect myself?
To better insure the security of your personal information, experts in the field strongly recommended that you change all of your internet use passwords to include: e-mail, Search engines, Facebook, shopping sites, credit card accounts, anywhere you have a recorded Username and Password combination. Given that users tend to re-use passwords on multiple web applications, the same Username/Password combination could have been used on another vulnerable web application.
Going forward: There will always be unscrupulous people who will want to de-fraud you of your identity and money. Remain aware and informed of reports and news accounts of new or potential risks. You can protect yourself by using the tools and practices that will keep your risk at the lowest possible level. If we can assist you in any way, please feel free to contact us here at the Bank.
Thank you for being our customer.