
As you may have seen, the latest in the world’s vulnerability nightmares is around OpenSSL. Whilst many will push for chaos, it may not be the case.
As GossiTheDog shared, Wiz.io found that a small portion of their customers used v3+.

https://www.wiz.io/blog/critical-openssl-vulnerability-everything-you-need-to-know
Should I panic?
It really depends on your infrastructure, but a simple check would be to load cmd.exe or Terminal and run:
OpenSSL Version
If it outputs anything v3+, you will need to watch for more information on v3.0.7

For those that have enterprise systems, here are a few blogs to read:
Qualys: vulnerabilities.vulnerability.qid:38879
— More information to come —
Leave a Reply