ChronoFive Play today’s puzzle
2014 CE The modern era Technology

Heartbleed Vulnerability Disclosed

Researchers publicly disclosed the Heartbleed OpenSSL bug on April 7, 2014, though fixes were coordinated quietly first.

Setting the scene

Missing bounds checks let attackers request oversized payloads that echoed adjacent RAM holding private keys or session cookies.

What happened

Distros and CDNs pushed emergency rebuilds; users learned to patch routers and printers too.

Why it still matters

Branded logos and merch ironically commodified a security crisis. Memorable detail: Cloudflare's public blog explaining unaffected status became a trust-marketing masterclass.

Background

The incident renewed funding debates for critical open-source maintainers and accelerated memory-safe language advocacy.

Sources

ChronoFive is a free daily history game — guess the year for five real events, then read the story behind each one.

Play today’s puzzle