There is no doubt that content owners and publishers have a duty to encourage trust and the confidence during internet usage by adopting security best practices. If a customer b…
PKI Consortium blog
Posts by author Rick Andrews
It might be hard to believe, but the SSL/TLS Ecosystem is nearly 20 years old. It’s time to take stock and see how we’re doing with regards to TLS certificates. In this article,…
Last week I attended and presented at the National Institute of Standards and Technology (NIST) [Workshop on Elliptic Curve Cryptography Standards][1]. In NIST’s words, “The wor…
Recently, we read about lots of SSL/TLS related vulnerabilities found in mobile apps, which should come as no surprise. We were warned about this back in 2012 (see [these][1] [s…
All the major browsers provide “security user interface”, meaning visual elements to inform the user of the security of their connection to the web page they’re visiting. Up unt…
It was [recently disclosed][1] that Gogo, a provider of Wi Fi Internet services on commercial aircraft, has been issuing spoofed SSL certificates for Google sites that were view…
SHA 1 is a cryptographic hash algorithm that is most commonly used today in TLS/SSL certificates on the Internet. It has almost completely replaced older algorithms like MD2, MD…
With the announcement of the Heartbleed bug and the resulting need to revoke large numbers of SSL certificates, the topic of certificate revocation has, once again, come to the …
Recent revelations from Edward Snowden about pervasive government surveillance have led to many questions about the safety of communications using the SSL/TLS protocol. Such com…
There is no doubt that content owners and publishers have a duty to encourage trust and the confidence during internet usage by adopting security best practices. If a customer b…
