Skip to main content

Heartbleed Bug claims 900 Canadian taxpayers as its first victims

cupid the new heartbleed attack method that affects android devices bug
Image used with permission by copyright holder

In the days following the discovery of the Heartbleed bug, the Internet has gone from sheer panic to anger over allegations that the NSA used the vulnerability for intelligence purposes. Then there was the denial phase, which Cloudflare instigated by saying that the bug does not allow access to the private SSL keys of websites. Now we’re about to circle back to fear with news that attackers exploited the vulnerability to remove the Social Insurance Numbers (SIN) of hundreds of taxpayers from the registry of the Canada Revenue Agency (CRA). The SIN is a nine-digit number that is required to work in the country and receive government benefits; it’s the Canadian version of U.S. Social Security Numbers.

According to a statement from CRA Commissioner Andrew Treusch, the agency shut down its online services on April 8. Its website went back online on April 13, after implementing a patch for the Heartbleed bug. 

“Regrettably, the CSA has been notified by the Government of Canada’s lead security agencies  of a malicious breach of taxpayer data that occurred over a six-hour period. Based on our analysis to data, Social Insurance Numbers of approximately 900 taxpayers were removed from CRA systems by exploiting the Heartbleed vulnerability,” Treusch said. 

Aside from the SINs of taxpayers, other fragments of data that relate to businesses were also removed. The Royal Canadian Mounted Police (RCMP) is currently investigating the matter. 

To make it up to affected taxpayers, the CRA will provide credit protection services for free. It will also send registered mail to inform them of the breach, in hopes of side-stepping phishing schemes. The letter will contain a 1-800 number to help people protect their SINs.

Christian Brazil Bautista
Christian Brazil Bautista is an experienced journalist who has been writing about technology and music for the past decade…
The first HMD Android phones are here, and they’re super cheap
Rear shell of HMD Vibe smartphone.

Finnish company Human Mobile Devices is renewing its journey under the HMD branding, shedding aside the Nokia naming it used to use for all of its smartphones. The first handsets to bear the HMD branding are the HMD Pulse, HMD Pulse+, HMD Pulse Pro, and the HMD Vibe. All phones share similar aesthetics, with a few splashy colors thrown in for certain trims, and target the budget segment.

The HMD Vibe, for example, serves a 6.56-inch display with an HD+ resolution and a 90Hz refresh rate. Qualcomm’s Snapdragon 680 silicon runs the show, alongside 4GB of RAM and 128GB storage. Notably, there’s a microSD card slot that supports storage expansion up to 512GB.

Read more
How to view Instagram without an account
An iPhone 15 Pro Max showing Instagram via a web browser.

Instagram is one of the largest social media platforms on the planet. Whether you want to share a family photo, what you had for lunch at your favorite cafe, or a silly video of your cat, Instagram is the place to do it.

Read more
Something odd is happening with Samsung’s two new budget phones
A person holding the Samsung Galaxy A35 and Galaxy A55.

The Samsung Galaxy A35 (left) and Galaxy A55 Andy Boxall / Digital Trends

I’ve been using the Samsung Galaxy A55 for almost two weeks and have now swapped my SIM card over to the Samsung Galaxy A35. These are the latest entries in Samsung's budget-minded Galaxy-A series. In all honestly, I can barely tell the difference between them.

Read more