logo

Certificate Interruptus: Survey Finds Heartbleed Fixes Incomplete At Most Firms

ID: 343c6939-7021-52c1-8249-1b05e608b27b

STIX ID: report--343c6939-7021-52c1-8249-1b05e608b27b

Feed Name: Security Ledger

Threat Score
70/100

Date Published: 2015-04-07

Date Updated: 2026-04-26

Author: Paul Roberts

...
...

One year after the Heartbleed disclosure, Venafi found that roughly 74% of Global 2000 organizations with public-facing systems remained incompletely remediated, leaving approximately 580,000 hosts vulnerable; many firms patched OpenSSL but neglected to revoke/reissue certificates and private keys, preserving the risk of undetectable man-in-the-middle attacks and reuse of stolen keys, with evidence of exploitation and at least one breach linked to Heartbleed.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.