Yet Another Mowgli · @mowgli
104 followers · 56 posts · Server infosec.exchange

Anyone know of any good linux based certificate chain tools for diagnosing issues? Things that show the chain of trust, history of the certificate, or issues with revocation lists?

#secops #certificates #certificateauthority

Last updated 2 years ago

Defender Bob :donor: 📻 · @0xF21D
80 followers · 504 posts · Server infosec.exchange

sat on this breach for close to two months. Had there not been any reporting requirement in their 10-K would they have reported it? Also GoDaddy is a

aboutus.godaddy.net/newsroom/c

#godaddy #certificateauthority

Last updated 3 years ago

Jürgen · @elbosso
100 followers · 3568 posts · Server mastodon.social

so. die nächste version meiner lösung zur verwaltung einer kommt langsam in die Puschen: tests mit schlüsseln basierend auf elliptischen kurven sehen vielversprechend aus. schon bald werden diese algorithmen bei der erstellung einer neuen auswählbar sein. informationen über die letzte freigegebene version finden sich hier: elbosso.github.io/expect_dialo

#publickeyinfrastructure #pki #ellipticcurves #certificateauthority

Last updated 3 years ago

ϺΛDИVTTΛH :fosstodon: · @madnuttah
215 followers · 1597 posts · Server fosstodon.org

There are only two without remaining, which I'll switch too. , my and is serving their pages using ssl already.

#webservices #ssl #pihole #nas #opnsense #smallstep #pki #ca #certificateauthority #selfhosting #docker

Last updated 3 years ago

Mattias Schlenker · @mattias
475 followers · 1310 posts · Server toot.bike

Just in case you want to create you own for a non connected domain like "test" or a subdomain that is only used internally I created a how to blog article for the blog. My colleague Timo was so nice to format it and put it online today: checkmk.com/blog/how-become-yo

#certificateauthority #Checkmk

Last updated 3 years ago

ITSEC News · @itsecbot
1066 followers · 32948 posts · Server schleuss.online
Varjohaltia · @Varjohaltia
2 followers · 17 posts · Server infosec.exchange

So a root CA has really shady owners also peddling malware. Not a good look. Question is how the next one is going to be spotted, when the malicious actors don't make such blatant mistakes?

washingtonpost.com/technology/

#certificateauthority #spyware

Last updated 3 years ago

varx/tech · @varx
384 followers · 3296 posts · Server infosec.exchange

e-Tugra discovered to be using default admin passwords on production system: ian.sh/etugra

Not just "still configured by accident", but actually *using* them for day-to-day business. And posting them on a public website, too.

#certificateauthority

Last updated 3 years ago

IT News · @itnewsbot
1945 followers · 239551 posts · Server schleuss.online

State-sponsored hackers in China compromise certificate authority - Enlarge (credit: Getty Images)

Nation-state hackers based in C... - arstechnica.com/?p=1898061 &it

#biz #billbug #certificateauthority

Last updated 3 years ago

Ars Technica RSS feed · @arstechnicarss
2 followers · 39 posts · Server 0twitter.com

State-sponsored hackers in China compromise certificate authority arstechnica.com/?p=1898061 &IT

#Biz #Billbug #certificateauthority

Last updated 3 years ago

Tech News Worldwide · @TechNews
11617 followers · 98302 posts · Server aspiechattr.me

State-sponsored hackers in China compromise certificate authority

arstechnica.com/?p=1898061

&IT

#certificateauthority #billbug #biz

Last updated 3 years ago

Marky Mark · @Amon_Rudh
28 followers · 52 posts · Server mastodon.nz

An interesting read on the TrustCor CA saga reported by the Washington Post, and a look at the importance of trust, from Cory Doctorow: pluralistic.net/2022/11/09/inf

#infosec #certificateauthority #security

Last updated 3 years ago

Explanations for lay folk: Certificate Authority

What is a (CA)? It is like a computer version of a notary. Your computer has lists of CAs it assumes are trustworthy for certain actions. When you connect to Amazon.com's web server, and you want to be sure it is who it says it is, that site sends back a certificate declaring "I am Amazon.com, and I have a document signed by this CA you know and trust, to prove it".

#certificateauthority

Last updated 3 years ago

(RTP):tor:Privacy & Tech Tips · @RTP
2615 followers · 3880 posts · Server fosstodon.org
ITSEC News · @itsecbot
856 followers · 32557 posts · Server schleuss.online
Denis GERMAIN · @zwindler
222 followers · 3139 posts · Server framapiaf.org

Il y a quelques jours, j'ai écris un article sur les CA dans pour ma boîte, en anglais.
Mais je ne pouvais pas ne pas penser à mes amis francophones alors je l'ai réecris en français sur mon blog perso ;-)

RT @zwindler_rflx@twitter.com

REX : mettre à jour la de votre cluster @kubernetesio@twitter.com blog.zwindler.fr/2021/02/15/me

🐦🔗: twitter.com/zwindler_rflx/stat

#certificateauthority #kubernetes

Last updated 5 years ago

Denis GERMAIN · @zwindler
222 followers · 3139 posts · Server framapiaf.org

As promised, a story about @kubernetesio@twitter.com, @hashicorp@twitter.com and
Hope you like it

RT @DeezerDevs@twitter.com

Imagine you need to renew your Kubernetes CA. But its expiration date is near, and your end users must not be affected. This could be the synopsis of a nerve-racking disaster movie! Luckily, @zwindler@twitter.com and our Infra team found a plan to avoid a catastrophe: deezer.io/updating-kubernetes-

🐦🔗: twitter.com/DeezerDevs/status/

#NoDowntimeAllowed #vault #certificateauthority

Last updated 5 years ago

ITSEC News · @itsecbot
687 followers · 32461 posts · Server schleuss.online

Let’s Encrypt Pushes Back Deadline to Revoke Some TLS Certificates - While 1.7 million of the certificates potentially affected by a CAA bug have already been replaced... more: threatpost.com/lets-encrypt-pu

#caabug #websites #internet #letsencrypt #websecurity #certificates #certificateauthority #transportlayersecurity

Last updated 6 years ago

The Hacker News · @thehackernews
402 followers · 2779 posts · Server social.tchncs.de