3 ms·
I see a funny thing when I test it against yahoo.com: $ ./Heartbleed yahoo.com:443 (bunch of returned bytes) 2014/04/08 12:59:46 yahoo.com:443 - VULNERAB
by fexl 13y ago
I see a funny thing when I test it against yahoo.com:
$ ./Heartbleed yahoo.com:443
(bunch of returned bytes)
2014/04/08 12:59:46 yahoo.com:443 - VULNERABLE
Near the front of the returned bytes is the sequence "yheartbleed.filippo.ioYELLOW SUBMARINE". That is some padding buried inside the Heartbleed source code.
I assume that the returned bytes are a peek inside the memory of a yahoo.com server, and we can see the padding supplied by Heartbleed, followed by some more bytes that depend on the server state.
Am I interpreting that correctly?
- revelation 13y agoInterestingly, I just got that for HackerNews, but not on a second try. I thought they were using CloudFlare anyway? (And yes, you interpreted that correctly. Notice that this online test does not request even a fraction of the 64k possible, and you can always repeat it to get more)