TalkingTech
The view from the top of IT with TechWorld Editor Rohan Pearce
A pair of security researchers have proposed an extension to the Transport Layer Security (TLS) protocol that would allow browsers to detect and block fraudulently-issued SSL certificates.
By Lucian Constantin | 24 May, 2012 20:35
Data at rest has long been protected by technology called public key infrastructure (PKI), in which data is encrypted when it's created by a public key and only decrypted, in theory, by an authorized person holding the private key. But extending this type of data protection to the cloud can be complicated.
By Brian Musthaler | 10 March, 2012 05:41
The Electronic Frontier Foundation (EFF) is proposing an extension to the current SSL chain of trust that aims to improve the security of HTTPS and other secure communication protocols.
By Lucian Constantin | 22 November, 2011 23:57
GlobalSign expects to bring its certificate-issuing systems back online on Monday, and resume business Tuesday, it said over the weekend. The U.S. certificate authority (CA) stopped issuing new SSL certificates last Tuesday in order to audit its security, after being named as a target by the hacker who claimed to have attacked Dutch CA DigiNotar.
By John Ribeiro | 12 September, 2011 17:38
Iranian internet users whose security may have been compromised by the forged Google.com digital certificate could number in the hundreds of thousands. An interim report (PDF) commissioned by DigiNotar, the certification authority (CA) at the centre of the hacking incident, also reveals lax security at the Dutch firm.
By Stilgherrian | 06 September, 2011 11:02
Recent comments
12 hours, 15 minutes ago
20 hours, 34 minutes ago
21 hours, 30 minutes ago
1 day, 2 hours ago
1 day, 10 hours ago
1 day, 20 hours ago
2 days ago
2 days, 3 hours ago
2 days, 7 hours ago
2 days, 7 hours ago