What Is a Website Security Certificate and What Does It Do for Your Business?

Understanding what this validation and encryption tool does is the first step to protecting your website and customers alike In a way, a website security certificate is like a driver’s…
The post What Is a Website Security Certificate and What … Continue reading What Is a Website Security Certificate and What Does It Do for Your Business?

Imperva Breach Exposes WAF Customers’ Data, Including SSL Certs, API Keys

Imperva, one of the leading cybersecurity startups that helps businesses protect critical data and applications from cyberattacks, has suffered a data breach that has exposed sensitive information for some of its customers, the company revealed today.
Continue reading Imperva Breach Exposes WAF Customers’ Data, Including SSL Certs, API Keys

Qualys Partners With CIS to Identify Lapsed Site Certificates

The Center for Internet Security (CIS) will leverage a cloud-based service from Qualys that will enable CIS to notify members of expiring, vulnerable or misconfigured site certificates as part of the customized monthly reports they already receive. Qu… Continue reading Qualys Partners With CIS to Identify Lapsed Site Certificates

All I Want for Christmas… Is a New SSL Certificate

On Thursday 6th December, 2018, I realized how dependent I was on my mobile phone having an internet connection. That particular day, I was out and about away from Wi-Fi networks. The first time I noticed I had no connectivity was when I used my phone … Continue reading All I Want for Christmas… Is a New SSL Certificate

Chrome, Firefox, Edge and Safari Plans to Disable TLS 1.0 and 1.1 in 2020

All major web browsers, including Google Chrome, Apple Safari, Microsoft Edge, Internet Explorer, and Mozilla Firefox, altogether today announced to soon remove support for TLS 1.0 (20-year-old) and TLS 1.1 (12-year-old) communication encryption protoc… Continue reading Chrome, Firefox, Edge and Safari Plans to Disable TLS 1.0 and 1.1 in 2020

From today, Google Chrome starts marking all non-HTTPS sites ‘Not Secure’

Starting today with the release of Chrome 68, Google Chrome prominently marks all non-HTTPS websites as ‘Not Secure’ in its years-long effort to make the web a more secure place for Internet users.

So if you are still running an insecure HTTP (Hyperte… Continue reading From today, Google Chrome starts marking all non-HTTPS sites ‘Not Secure’

GitHub Hit by Record DDoS Attack Through Exposed Memcached Servers

In what might be the largest ever recorded distributed denial-of-service (DDoS) attack, GitHub was hit this week with more than 1TB of malicious traffic per second generated by hijacked Memcached servers. DDoS mitigation providers had warned recently t… Continue reading GitHub Hit by Record DDoS Attack Through Exposed Memcached Servers

Google to Ditch Public Key Pinning in Chrome

Google says upcoming version of Chrome will deprecate the browser’s support for HTTP public key pinning. Continue reading Google to Ditch Public Key Pinning in Chrome

Google reminds website owners to move to HTTPS before October deadline

To encourage website owners and service providers to move to HTTPS, Google began sending out emails to remind them that their sites will be marked as insecure if they don’t comply. This is the latest step in the search giant’s long-term effort of crea… Continue reading Google reminds website owners to move to HTTPS before October deadline

Google Chrome Bans Chinese SSL Certificate Authorities WoSign and StartCom

As a punishment announced last October, Google will no longer trust SSL/TLS certificate authorities WoSign and its subsidiary StartCom with the launch of Chrome 61 for not maintaining the “high standards expected of CAs.”

The move came after Google wa… Continue reading Google Chrome Bans Chinese SSL Certificate Authorities WoSign and StartCom