Security News

Symantec Tricked Into Revoking Certificates Using Fake Keys (Security Week)
2017-07-21 10:48

Researcher Hanno Böck has tricked Symantec into revoking TLS certificates by falsely claiming that their private keys had been compromised. Comodo was also targeted, but the company did not fall...

Let's Encrypt Wildcard Certificates a 'Boon' for Cybercriminals, Expert Says (Security Week)
2017-07-12 16:27

To speed up the adoption of HTTPS, free and open Certificate Authority (CA) Let’s Encrypt will start issuing wildcard certificates as of January 2018. read more

Google to Completely Ban WoSign, StartCom Certificates in Chrome 61 (Security Week)
2017-07-10 15:35

Google last week warned website owners that digital certificates from Chinese certificate authority WoSign and its subsidiary StartCom will no longer be trusted starting with Chrome 61. read more

Google Chrome Bans Chinese SSL Certificate Authorities WoSign and StartCom (The Hackers News)
2017-07-08 02:44

As a punishment announced last October, Google will no longer trust SSL/TLS certificate authorities WoSign and its subsidiary StartCom with the launch of Chrome 61 for not maintaining the "high...

Let’s Encrypt to Offer Wildcard Certificates in 2018 (Threatpost)
2017-07-06 20:04

Certificate authority Let's Encrypt said this week it will begin offering wildcard certificates in 2018.

HTTPS Certificate Revocation is broken, and it’s time for some new tools (ArsTechnica)
2017-07-03 12:00

Certificate Transparency and OCSP Must-Staple can't get here fast enough.

Apple Revokes Certificate Used By OSX/Dok Malware (Threatpost)
2017-05-01 21:57

Apple takes countermeasures to neutralize OSX/Dok HTTPS-snooping malware by revoking a hijacked certificate updating its XProtect built-in anti-malware software.