The general media has picked up on a huge bug that rocked the tech world this week. I’m sure it’s partially because it has such a great name and logo. But what is Heartbleed and how does it affect you?
This isn’t a virus or malware that affects your computer. It’s a bug in some very critical code that is run by a lot of web servers. Basically, it gives out somewhat random chunks of computer memory to anyone who asks for it. That memory usually contains gibberish but sometimes it will contain things like user passwords or keys to the encryption of all the traffic going in and out of the server. The webcomic xkcd has a very simple explanation of the bug.
There are a bunch of things that need to happen to fix the hole. First the server admins need to patch their systems, get new encryption keys, and replace their SSL certificate. Once that happens, you can complete the final piece of the puzzle by changing your password. Some websites are being proactive and telling you when they’re ready for you to change your passwords. Others are being more quiet about it.
This whole thing has been *gasp* overhyped by the media. Yes, it’s a potentially big vulnerability but the odds of someone exploiting you are low, the patch is relatively quick and easy, and there’s evidence that nobody launched a widespread attack using this vulnerability before it was announced. That being said, updating your passwords is still a good idea. There are various lists around the internet that tell you which sites were affected, but this is one a pretty good resource. They are updating it regularly and telling you when it’s time to change your password (if you need to change your password at all.)
If you’re changing all these passwords but you aren’t using a password manager, consider getting started with something like LastPass.com. It’s free and easy. If you’re already a LastPass member, run their security checker tool. They’ll tell you which of your passwords need to be changed. LastPass was affected by Heartbleed too, but because they encrypt all of their traffic even underneath the SSL encryption, there’s no chance that any of the LastPass data was exploited.
So don’t fret about this too much, but do make sure you’re changing passwords as needed.

I know I’ve been making a lot of Power Query posts lately, but once you get into it, you start seeing data everywhere! The latest example is a movie draft that I participate in with some friends. I won’t explain what a movie draft is except to say that it’s like fantasy football for movies. We participate in a huge league run by Brian Brushwood and friends. They post a spreadsheet with all the data here:
It seems like a short chunk of time
If you’re running Windows 8, you probably got a pretty big update this week. The Windows team has been listening to the feedback and has made some pretty key tweaks to improve your user experience. PCWorld
When I look back at all the things I did around the house before our son was born, I’m amazed at all the free time I had. But there are a few home improvements that stick out and continue to pay benefits. If you’re having a baby and you’re a little bit handy, consider these projects:
What If I Don’t?
As my free time at home gets squeezed more and more (parenting takes a lot of time!), I’ve been trying hard to apply this at home too. I regularly ask myself “What if I don’t do X?” What if I don’t mow the lawn or clean the furnace filter? Well that’s clearly not good. But what if I don’t watch that television series or watch that movie or spend a day doing a hobby? It takes some practice to answer that question honestly because there are many activities that I think make me who I am. But once I forced myself to find a good answer, I’ve been able to remove a ton of old habits from my life. And you know what? I don’t miss them! In fact, it feels liberating to have all this time handed back to me.
Having a child was a forcing function to make this happen since it put such a huge constraint on my available free time, but it feels like a very healthy experience. Instead of trying to schedule in a bunch of habits, I now schedule in time to just “veg” and do some random activity that used to be a time-sucking habit. It’s a good balance for me right now and lets me focus on things that I really do consider important and high priority.