Popular Android Apps Vulnerable to Man-in-the-Middle Attacks

Popular Android Apps Vulnerable to Man-in-the-Middle Attacks

Issues related to trust managers, certificate verification and ignored SSL errors

Google Gives HTTPS Sites a Boost in Search Ranking, Tries to Push Encryption to the Whole Web

Google Gives HTTPS Sites a Boost in Search Ranking, Tries to Push Encryption to the Whole Web

Google is trying to make HTTPS a wide-spread accepted security feature

SSL Blacklist Reveals Certificates Used by Cybercriminals

SSL Blacklist Reveals Certificates Used by Cybercriminals

SHA1 fingerprints for bad certificates amassed in a single database

Microsoft Issues Emergency Security Update for Windows 8.1

Microsoft Issues Emergency Security Update for Windows 8.1

All modern OS versions developed by Microsoft are affected

National Informatics Centre in India Compromised

National Informatics Centre in India Compromised

Investigation does not reveal full extent of the breach

Fake Google Digital Certificates Issued by National Informatics Centre in India

Fake Google Digital Certificates Issued by National Informatics Centre in India

Authorities are investigating the cause that led to the incident

BoringSSL, an OpenSSL Fork for Google Products

BoringSSL, an OpenSSL Fork for Google Products

Change prompted by large set of patches for Chrome and Android

WordPress Makes SSL Default

WordPress Makes SSL Default

By the end of the year, all WordPress subdomains will run on SSL

  • Apple
  • By Filip Truta
  • May 26th, 2014
Outcry Bursts As Apple Breaks Software Update Mechanism with SSL Omission

Outcry Bursts As Apple Breaks Software Update Mechanism with SSL Omission

Bad server connection “could put your confidential information at risk,” says error dialog

Heartbleed: Plenty of Sites Reuse Compromised Security Keys

Heartbleed: Plenty of Sites Reuse Compromised Security Keys

There's no real protection on these sites if their certificates aren't safe

Experts Show Heartbleed Bug Can Be Exploited to Extract Private SSL Keys

Experts Show Heartbleed Bug Can Be Exploited to Extract Private SSL Keys

Also, the NSA denies having known about Heartbleed for two years

  • Apple
  • By Filip Truta
  • April 11th, 2014
Apple Says Heartbleed Doesn’t Affect iOS, OS X, and Its Web Services <em>Updated</em>

Apple Says Heartbleed Doesn’t Affect iOS, OS X, and Its Web Services Updated

“Apple takes security very seriously,” a spokesperson commented

OpenSSL 1.0.1g Released to Prevent Hackers from Eavesdropping on Communications

OpenSSL 1.0.1g Released to Prevent Hackers from Eavesdropping on Communications

Vendors must update their installations as soon as possible

Australian AG Wants to Make Refusing to Hand Over Encryption Keys a Criminal Offense

Australian AG Wants to Make Refusing to Hand Over Encryption Keys a Criminal Offense

If anyone refuses to hand over encryption keys, they could be criminally charged

10 Things to Consider Before Buying SSL Certificates

10 Things to Consider Before Buying SSL Certificates

Symantec expert provides advice and the tools you need to get started

OS X Mavericks 10.9.2 Should Be Released Today

OS X Mavericks 10.9.2 Should Be Released Today

All signs point to Apple rolling out its SSL patch in the coming hours

Experts Find WhatsApp Vulnerabilities That “the NSA Would Love”

Experts Find WhatsApp Vulnerabilities That “the NSA Would Love”

Fortunately, the company rushed to address most of the issues

 
Want more? Browse: