Hacker News new | ask | show | jobs
by trapexit 4448 days ago
Yes. https://forums.aws.amazon.com/thread.jspa?threadID=149690
1 comments

Note that until it gets patched, you can go to your ELB config and disable TLS support, which I believe (someone please correct me if not) will protect you from this particular attack. Whether the cure is better than the disease is up to you.
Disabling TLS in the ELB config seemed to work for me until AWS finishes the patch rollout. (Looks like they're partway on the rollout.)