Skip to main content

This Heartbleed Bug is going to turn me into a hermit

this heartbleed bug is going to turn me into a hermit
Image used with permission by copyright holder

Screw it. I’m done.

Someone buy me a rotary phone, a copy of the Yellow Pages, and a box of paper checks. Nothing online is safe anymore.

Recommended Videos

This is how I feel after dealing with the massive Heartbleed OpenSSL bug for the better part of a week. For two years, a majority of websites, mobile apps, operating systems, and Internet services we all use — and as a tech reporter I use way too many of them — have been open season for hacking, all thanks to a tiny error in a few lines of code in an open-source security protocol. All of our logins, passwords, credit card information, personal data — everything; it’s all out there and may have been for a while. Even Gmail was vulnerable. Facebook, too. The problem is so vast that we’re discovering new equipment and software every day that’s going to need patching and fixing. It makes Y2K feel like a fart in the wind.

The worst part is, there’s absolutely nothing we, as users, did to cause this, and we’re powerless to protect ourselves. We just have to sit here and hope we don’t die of this Heartbleed bug.

We shouldn’t call it a “bug” at all. It’s more like the horde of locusts from the Book of Revelation. Sadly, even the Bible was more optimistic than what’s ahead for the Internet. Those locusts only tormented the Earth for five months. I doubt we’ll be so lucky.

Security advisors are telling us crazy things like:

  • Don’t reset your passwords until services have been patched
  • Reset all your passwords once a service is safe, just to make sure
  • Don’t visit any affected websites
  • Don’t use any affected smartphone apps
  • Don’t make purchases online until this clears up
  • Call all your banks and services to see if they’re affected by this

The problem is that there’s no way to even know if a website or app is affected by this bug without using a search engine like Yahoo, Google, or DuckDuckGo (all of which were also hit by this bug), or downloading an app from Google Play (also affected). Most of us probably can’t find a phone number without a Web search. And the links you’ll find in these search engines might be to sites that are vulnerable themselves. Or you could find out from your email, which has probably been compromised itself.

Few companies are taking any real responsibility either. Google quietly admitted on its blog that any person with a phone running Android 4.1.1 is vulnerable to this problem, but didn’t say which handsets except admitting to DT via email that it “estimate[s] use of Android 4.1.1 to be at single digit percentages.” Sounds small, right? It’s not. There are more than a billion Android devices in people’s hands around the world, meaning anywhere from 10 to 100 million people have a phone that is open season for hackers. And those phones might continue to be exposed for months, until the manufacturers, then carriers, of said phones release an update, and those users all install said update. When are the patches coming? Who’s affected? We don’t know. No company wants to take any blame.

When every service is a potential landmine and you’re running around blind, what other option do you have?

I am positive that there are at least a few dozen services I use that are compromised by this OpenSSL Heartbleed bug. Yet I’ve received only two emails from these sites warning me. One was from a European AirBNB competitor called Roomarama (thanks, guys!) and the other was from a finance app called Manilla. Manilla wasn’t even vulnerable, but they sent me a note to make sure I check other services.

So thank you to Roomarama and Manilla for notifying your users directly about Heartbleed. You’re a lot nicer than Google, Facebook, Yahoo, GoDaddy, TurboTax, Minecraft, OKCupid, Tumblr, Pinterest, Instagram, Dropbox, BlackBerry, Etsy, Fandango, GrubHub, Hulu, Steam, Netflix, and god knows how many other services out there.

How in hell I’m supposed to think up new passwords for all these services? I don’t know.

According to a Symantec report, 552 million people’s identities were exposed by corporate or government data breaches in 2013 that weren’t their fault. In 2012, that number was 93 million. What will 2014 hold? Will we hit a billion? How many times will I have to change my passwords next year?

Today, I will browse the Web, use apps, and do everything I normally do. I have no other option. When every service is a potential landmine and you’re running around blind, what other option do you have?

I just want to give up, move to a cabin, see if I can grow a beard, buy a shotgun, and defend my gated dirt driveway the old fashioned way. Digital life is getting so complicated.

[Image courtesy of Jens Ottoson/Photographee.eu/Shutterstock]

Jeffrey Van Camp
Former Digital Trends Contributor
As DT's Deputy Editor, Jeff helps oversee editorial operations at Digital Trends. Previously, he ran the site's…
Does the OnePlus 13 have a 120Hz refresh rate?
A person holding the OnePlus 13 showing the screen.

OnePlus has just launched its latest flagship, the OnePlus 13, alongside its budget sibling, the OnePlus 13R. As well as packing a Qualcomm Snapdragon 8 Elite processor and both an IP68 and IP69 rating that allows you to use the phone in the shower, it looks like we can expect great things from the OnePlus 13's 6.82-inch screen, particularly when it comes to the refresh rate.
Does the OnePlus 13 have a 120Hz refresh rate?
The OnePlus 13's screen looks set to impress, with a 2K resolution and peak brightness of 4,500 nits. It's the refresh rate we're most excited about, however. The flagship phone's display will boast a variable refresh rate of between 1Hz to 120Hz. That means the phone adjusts its refresh rate to suit the content displayed on the screen, ensuring a smoother display and saving battery life.
Does the OnePlus 13R have a 120Hz refresh rate?
The OnePlus 13R may retail for only $600, but we can confirm that the successor to the OnePlus 12R will also pack a variable 1 to 120Hz refresh rate, just like its flagship sibling and predecessor. This time around, expect a 6.78-inch AMOLED screen with 2,780 x 1,264 resolution and a peak brightness of 4,500 nits.
How higher refresh rates evolved and their benefits

Whether you're planning to pick up the OnePlus 13 or OnePlus 13R, or you have your eye on another 120Hz device, how much do you really know about the benefits of higher refresh rates and why you should shop for a device that offers them?

Read more
The Amazfit Active 2 was just announced, so the first model is on sale
A person running while wearing the Amazfit Active Smartwatch.

Investing in a smartwatch is one of the best ways to get on top of your daily, weekly, and long-term health and fitness goals. Big brands like Apple, Samsung, Google, and Garmin are the brains behind some of the top models on the market, but if you’re looking for a solid alternative, we recommend the Amazfit Active Smartwatch 35.9mm.

We also heard news at CES 2025 that we’ll be getting an Amazfit Active 2 reasonably soon, so it comes as no surprise that the O.G. model went on sale. Still, it’s one of our favorite smartwatch deals of the day, and it’s about time a company gave the Apple Watch a run for its money!

Read more
The Livall PikaBoost 2 turns any old bicycle into a powerful e-bike
Livall PikaBoost 2

E-bikes are great, but they're a lot more expensive than traditional bikes and often heavier, too. That's not to mention that they can require maintenance and suffer from technical issues. But what if you could turn your traditional bicycle into an e-bike? That's the idea behind the Livall PikaBoost, now in its second generation. It’s basically a small, motorized device that can attach to your bicycle to give it e-bike power.

I got a chance to check out the PikaBoost 2 on the show floor at CES 2025. Livall’s PR firm, WeBranding, flew me out to Las Vegas for CES 2025 to check out the PikaBoost 2, among its other brands’ devices, for myself — and I have to say, it seems to be a powerful yet inexpensive way to get the power of an e-bike without having to replace the bicycle you already have.

Read more