Microsoft to Disable TLS 1.0 and 1.1 Next Month

Microsoft to Disable TLS 1.0 and 1.1 Next Month

The target date was originally planned for 2020

New STARTTLS Flaws Spotted Affecting Popular Email Clients

New STARTTLS Flaws Spotted Affecting Popular Email Clients

Users of mail applications such as Gmail, Thunderbird, Apple Mail, and others are at risk due to more than 40 flaws

Microsoft Kills Off TLS 1.0 and 1.1 for Its Linux App Repository

Microsoft Kills Off TLS 1.0 and 1.1 for Its Linux App Repository

To download packages, TLS 1.2 will be mandatory

TLS 1.0 / 1.1 Deprecated in Chrome, Safari, Firefox, and Edge Starting 2020

TLS 1.0 / 1.1 Deprecated in Chrome, Safari, Firefox, and Edge Starting 2020

IETF is expected to formally deprecate TLS 1.0 / 1.1 in 2018

  • Security
  • By Catalin Cimpanu
  • October 21st, 2016
Firefox 52 to Ship with TLS 1.3 Support

Firefox 52 to Ship with TLS 1.3 Support

TLS 1.3 support to be enabled by default

Sharp Increase in Malware Utilizing SSL

Sharp Increase in Malware Utilizing SSL

SSL malware samples, C&C servers, grow manifolds

Google Updates Gmail to Show Warnings for Non-TLS Conversations

Google Updates Gmail to Show Warnings for Non-TLS Conversations

Gmail also shows warnings for unauthenticated conversations

OpenSSL Project Patches Two Security Bugs, One Labeled Critical

OpenSSL Project Patches Two Security Bugs, One Labeled Critical

OpenSSL team fixes SSLv2 downgrade issue

Google Fixes Cryptographic Key Security Issue in Go Programming Language

Google Fixes Cryptographic Key Security Issue in Go Programming Language

Google releases Go 1.5.3 to fix the RSA private key leak

New SLOTH Attack Can Reduce the Security of TLS and SSH Protocols

New SLOTH Attack Can Reduce the Security of TLS and SSH Protocols

SLOTH attack can break down secure traffic in one hour

New HTTPS Bicycle Attack Reveals Details About Passwords, GPS Coordinates

New HTTPS Bicycle Attack Reveals Details About Passwords, GPS Coordinates

Theoretical attack could spell doom for HTTPS traffic

  • Security
  • By Catalin Cimpanu
  • December 21st, 2015
Deadline for Better Encryption on Payment Systems Pushed Back Two Years

Deadline for Better Encryption on Payment Systems Pushed Back Two Years

Banking industry needs more time, has too much on its plate

  • Security
  • By Catalin Cimpanu
  • December 1st, 2015
Patent Troll Sues Big Companies over HTTPS

Patent Troll Sues Big Companies over HTTPS

Big brands are asked to pay royalties for usage of HTTPS

Free-of-Charge SSL/TLS Certificates to Be Available Next Month

Free-of-Charge SSL/TLS Certificates to Be Available Next Month

Let's Encrypt project gets closer to its launch date

Popular Apps in Google Play Fail Certificate Validation, Expose User Credentials

Popular Apps in Google Play Fail Certificate Validation, Expose User Credentials

Sensitive user data can be intercepted via trivial MitM

SSL/TLS Cipher Suite Downgrade Affects All Supported Windows Versions

SSL/TLS Cipher Suite Downgrade Affects All Supported Windows Versions

Microsoft could release an out-of-band patch

Strong SSL/TLS Ciphers Downgraded to Use Weak Crypto Key in FREAK Attack <em>UPDATED</em>

Strong SSL/TLS Ciphers Downgraded to Use Weak Crypto Key in FREAK Attack UPDATED

Flaw affects OpenSSL-based Android and Apple devices

 
Want more? Browse: