Reply to post: Re: Wrong culprit identified

Heartbleed implicated in US hospital megahack

Sven Coenye

Re: Wrong culprit identified

Sure, but note the breach point: a Juniper firewall. A quick search shows Juniper was not done updating their Heartbleed vulnerability advisories until April 30th. The patch advisory updates ran until May 6th. That falls right in the middle of the attack window. Without knowing the exact model, one can't say when the vulnerability was disclosed and when the patch was available.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon