And here's a list of high profile web services hist by the bug:
http://hackingnews.com/vulnerability/heartbleed-hit-list-aff...
It's pointless for Google, Yahoo et al, to enable inter-datacenter encryption if the front-end (TLS/SSL) is left wide open.