Heartbleed Vulnerability

Some of you may have noticed in the news, recent info about the Heartbleed Vulnerability. While we have been silent until now about the issue, it does not mean in any way that we don't take your privacy or security seriously. In fact it means quite the opposite.

When news of Heartbleed first hit the public wires, we rushed to check all our servers and services to discover that only our newest servers were vulnerable. The older servers were always using an older version of SSL that never had the Heartbleed Vulnerability. As many of you know, BigCloset was only on the new servers for a matter of days before Heartbleed was announced, and they were patched almost immediately, just as soon as our upstream OS vendor made a patch available.

On the flip side of the coin, I should mention that when you connect to BigCloset using SSL you aren't actually connecting to our SSL server, you are connecting to Cloudflare, our CDN service. Cloudflare patched their servers before Heartbleed was made public, and has since revoked all their SSL Certificates and Key Pairs.

On the Other flip side, after everything was patched, we tested ALL our services known to use SSL (Webservers, Mailservers [inbound and outbound], File Transfer Servers, etc) and found them ALL to be patched or Not Affected by Heartbleed. We also tested several tools that go out and "request" information from other servers, to see if they were vulnerable to the less talked about, but just as malicious "Reverse Heartbleed" only to have the same, results aka, the absence of any vulnerabilty.

While we feel we have done EVERYTHING possible to protect your data, and privacy it might be best if you went ahead, and Changed Your Password just in case.

Changing your Password is as simple as clicking on "My Account" in the menu on the Right Hand column, then clicking the "Edit" tab at the top, filling out the "Password" and "Confirm Password" boxes and then scrolling to the bottom and clicking "Save".

Please remember, not everyone on the internet is as diligent with your privacy and data as we are, so be careful with your passwords, and try to NOT use the same password on every site!

-Piper, Erin, Cat and the BigCloset Elves.