Hacker News new | ask | show | jobs
by justinhj 4442 days ago
In order to know this they must have stored and subsequently analysed the ssl traffic. Something that I would think is quite unusual. So the true scope of data theft is probably much larger.
1 comments

They might have turned on that logging when the bug was announced so that they'd have an idea of the threat they were under while updating.