Time to Remove Some Untrustworthy Certificate Authorities From Browser and OS
#certificates #certificateauthorities #TLS #infosec
https://soylentnews.org/article.pl?sid=22/11/20/0911213
#certificates #certificateauthorities #tls #infosec
A caveat to what I said - there *are* rogue Certificate Authorities out there:
That's not to say rogue CAs are a threat to every system or user equally. As the article points out, they will probably be used sparingly to get at high value targets.
Anyway, take care to audit which CAs you trust in your browsers and other applications.
If you have a very specialised server application it doesn't need to trust 100-odd CAs!
#certificateauthorities #trust #tls
Apple chops Safari’s TLS certificate validity down to one year - From 1 September 2020, Safari will no longer trust SSL/TLS certificates with more than a year on t... more: https://nakedsecurity.sophos.com/2020/02/24/apple-chops-safaris-tls-certificate-validity-down-to-one-year/ #certificateauthorities #securitythreats #ca/browserforum #tlscertificates #cryptography #applesafari #webbrowsers #privacy #ssl/tls #google #safari #apple #https #sha-1 #tls
#tls #sha #https #apple #safari #google #ssl #privacy #webbrowsers #applesafari #cryptography #tlscertificates #ca #securitythreats #certificateauthorities