When you purchase through links on our site, we may earn an affiliate commission. Hereโ€™s how it works.

Healthcare.gov forces users to change passwords due to 'Heartbleed'

The "Heartbleed" OpenSSL exploit has led the U.S. government's Healthcare.gov site to require its users to change their passwords, saying that the decision was made "out of an abundance of caution."

While most major websites have now been updated to address issues caused by the "Heartbleed" OpenSSL exploit,ย it looks like its effects will continue to be felt for some time. The latest development involves the U.S. government's Heathcare.gov site, which has had its own well-publicized server issues in its short history.

The site is now telling its users that they must create a new password before signing in again. The post says that while there is no evidence of any personal information being taken from Healthcare.gov, the Heartbleed exploit has caused the people who run the site to address these issues "out of an abundance of caution."

Re/code reports that the move was made after a review of Healthcare.gov by the Department of Homeland Security. In its own post on the subject ofย Heartbleed, the DHS states that many major government websites don't use OpenSSL and therefore are not affected by the exploit.

As we reported this weekend, the first known arrest of a hacker who exploitedย Heartbleed for his own ends was made by the Canadian government. 19-year-old Stephen Arthuro Solis-Reyes of London, Ontario is charged with attempting to take personal information from the Canada Revenue Agencyโ€™s website.

Source: Healthcare.gov via Re/code | ย Heartbleed image via Shutterstock

Next Article

Microsoft gives Bing a way to predict who will win in The Voice, American Idol and more

Previous Article

Former Microsoft programmer looks back at AOL-MSN chat client wars

6 Comments

Load the comments and join the conversation!

Read the comments, ask the editors questions, show respect and join the conversation.

Click here