Your Healthcare.gov password has been reset. Blame the Heartbleed bug.
Joe Raedle / Getty Images


Healthcare.gov may be vulnerable to a catastrophic bug, and this time it's not one of the administration's making. Regarded as one of the biggest security risks to ever hit the Internet, Heartbleed's extent is still so unknown that the administration is asking everyone who used the federal exchange website to come up with new passwords for their accounts, just in case.
To be clear, the administration says there is "no indication" anyone's information has been compromised. But because the bug is so vast and complex, its existence so newly-discovered, they've already gone ahead and reset all users' passwords "out of an abundance of caution."
A little over a week ago, the web learned of Heartbleed, which left about two-thirds of all web servers and a quarter of all sites exposed to a serious flaw that could have allowed hackers to swipe encrypted information, like passwords. Yet it remains unclear to what extent sensitive information was compromised, so sites from Gmail to OKCupid have suggested users take the extra precaution and change their passwords.
Subscribe to The Week
Escape your echo chamber. Get the facts behind the news, plus analysis from multiple perspectives.

Sign up for The Week's Free Newsletters
From our morning news briefing to a weekly Good News Newsletter, get the best of The Week delivered directly to your inbox.
From our morning news briefing to a weekly Good News Newsletter, get the best of The Week delivered directly to your inbox.
A free daily email with the biggest news stories of the day – and the best features from TheWeek.com
Jon Terbush is an associate editor at TheWeek.com covering politics, sports, and other things he finds interesting. He has previously written for Talking Points Memo, Raw Story, and Business Insider.
-
Magazine solutions - June 27, 2025
Puzzles and Quizzes Issue - June 27, 2025
-
Magazine printables - June 27, 2025
Puzzles and Quizzes Issue - June 27, 2025
-
Army commissions tech execs as officer recruits
IN THE SPOTLIGHT Some of the tech industry's most powerful players are answering the call of Uncle Sam
-
Kennedy ousts entire CDC vaccine advisory panel
speed read Health Secretary RFK Jr. is a longtime anti-vaccine activist who has criticized the panel of experts
-
RFK Jr. scraps Covid shots for pregnant women, kids
Speed Read The Health Secretary announced a policy change without informing CDC officials
-
New FDA chiefs limit Covid-19 shots to elderly, sick
speed read The FDA set stricter approval standards for booster shots
-
US overdose deaths plunged 27% last year
speed read Drug overdose still 'remains the leading cause of death for Americans aged 18-44,' said the CDC
-
Trump seeks to cut drug prices via executive order
speed read The president's order tells pharmaceutical companies to lower prescription drug prices, but it will likely be thrown out by the courts
-
RFK Jr. visits Texas as 2nd child dies from measles
Speed Read An outbreak of the vaccine-preventable disease continues to grow following a decade of no recorded US measles deaths
-
Shingles vaccine cuts dementia risk, study finds
Speed Read Getting vaccinated appears to significantly reduce the chances of developing Alzheimer's and other forms of dementia
-
Measles outbreak spreads, as does RFK Jr.'s influence
Speed Read The outbreak centered in Texas has grown to at least three states and Health Secretary Robert F. Kennedy Jr. is promoting unproven treatments