Jump to content

Heartbleed bug: IL2 Shop insecure?


Recommended Posts

sturmkraehe
Posted

Do we know if the shop and forum of this site is secure from the heartbleed bug inside OpenSSL?

 

http://heartbleed.com/

FuriousMeow
Posted

Forum isn't SSL. The SSL side of the site, the web developer would have to answer.

Posted

NB: I'm not security engineer and this is not official response from 1C-777.

 

All payments in IL-2 Shop are handled by payment providers such as PayPal or authorize.net.

PayPal have stated that it is not vulnerable to CVE-2014-0160, see here.

I've not found any authorize.net's press-release, but they say in twitter https://twitter.com/authorizenet they are not affected.

IL2 Shop site authentication - AFAIK - is not based on OpenSSL as well.

 

Game client uses OpenSSL, but not the versions 1.0.1x/1.0.2x, which are affected by this security bug.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...