
4/17/2014 · Nick Sullivan
What this post added
This post details Cloudflare's response to the Heartbleed vulnerability, including the immediate patching of their systems, the investigation into potential private key compromise, and the subsequent mass revocation and reissuance of all SSL certificates they manage. It also provides a technical deep-dive into how the Heartbleed vulnerability worked, explaining the memory leakage of private keys and RSA cryptosystem components, and highlights the winners of the Cloudflare Challenge to find the private key.