Hashed Out

@hashed_out

The SSL Store's industry-leading Cyber Security blog.

ಏಪ್ರಿಲ್ 2016 ಸಮಯದಲ್ಲಿ ಸೇರಿದ್ದಾರೆ

@hashed_out ತಡೆಹಿಡಿಯಲಾಗಿದೆ

ನೀವು ಖಚಿತವಾಗಿಯೂ ಈ ಟ್ವೀಟ್‌ಗಳನ್ನು ನೋಡಲು ಬಯಸುವಿರಾ? ಟ್ವೀಟ್‌ಗಳನ್ನು ನೋಡುವುದು @hashed_out ಅವರನ್ನು ತಡೆತೆರವುಗೊಳಿಸುವುದಿಲ್ಲ.

  1. ಫೆಬ್ರ 24

    This was related to the issue with Google Accounts today. Why not! What else can we squeeze into the last 30 minutes of this crazy day?

  2. ಫೆಬ್ರ 23

    ., who works for Google's Project Zero and discovered the bug, was not impressed by Cloudflare's Bug Bounty program

  3. ಫೆಬ್ರ 23

    . points out that due to Cloudflare's size (more than 1 billion page loads a day), 1 per 3,000,000 is still A LOT of leaked data

  4. ಫೆಬ್ರ 23

    The bug affected only 1 request per 3.3 million. Introduced on Feb 13th. To Cloudflare's credit, they were able to fix this very quickly.

  5. ಫೆಬ್ರ 23

    Leaked data included POST data and cookies. Search engines were crawling and caching. Cloudflare's incident report:

  6. ಫೆಬ್ರ 23

    Google researcher has found MAJOR bug in Cloudflare's software that led to leaking data. Not just metadata...message contents, etc.

  7. ಫೆಬ್ರ 23

    Remember that painful SHA-2 transition? Now there is a reason to be happy that SSL certificates ditched SHA-1

  8. ಫೆಬ್ರ 23

    A SHA-1 collision has been produced. This is the big news Google was hinting at last night.

  9. ಫೆಬ್ರ 23

    A couple security people at Google are hinting that a big vulnerability/disclosure will be announced tomorrow

  10. ಫೆಬ್ರ 22

    Some of our readers aren't happy with Google moving SSL certificate details in Chrome 56. Here's how you find them:

  11. ಫೆಬ್ರ 22

    We need policies that balance our security goals with our (sometimes unfortunate) real world practices.

  12. ಫೆಬ್ರ 22

    The reality is that too many companies and websites are not ready for yearly cert renewal now. But we do need to exert pressure to get there

  13. ಫೆಬ್ರ 22

    The majority of browsers and CAs have opposed the proposal to limit all certificates to a 1 year maximum.

  14. Retweeted
    ಫೆಬ್ರ 22

    Ballot 185 is dead. With 3/6 Browsers voting No/Abstain it is now impossible to get enough votes to pass the ballot. The current count:

  15. ಫೆಬ್ರ 21

    There is a debate about reducing certificate validity to a single year - it may happen even if CAs don't want it to

  16. ಫೆಬ್ರ 17

    Our favorite stories this week include a look at Chrome's Security UX by and debrief of major phishing op

  17. ಫೆಬ್ರ 16

    "High" severity OpenSSL flaw is Denial of Service (DoS) that can crash clients/servers. Does not affect 1.0.2.

  18. ಫೆಬ್ರ 15

    Dozens of middleboxes and anti-virus programs are weakening HTTPS. Up to 10% of connections found to be intercepted

  19. Hashed Out ಹಿಂಬಾಲಿಸಿದ್ದಾರೆ ಮತ್ತು
    • @fotisl

      Opinions expressed are my own and do not represent my employer.

    • @NilsDecker

      If your dreams don't scare you, they aren't big enough! Tweeting my personal opinions here and don't represent my current/past business partners or employers.

  20. Retweeted
    ಫೆಬ್ರ 8

    If you publish browser extensions, please enable 2FA and look out for phish-- you're a high-value target!

ಲೋಡಿಂಗ್ ಸಮಯ ಸ್ವಲ್ಪ ತೆಗೆದುಕೊಳ್ಳುತ್ತಿರುವಂತೆನಿಸುತ್ತದೆ.

Twitter ಸಾಮರ್ಥ್ಯ ಮೀರಿರಬಹುದು ಅಥವಾ ಕ್ಷಣಿಕವಾದ ತೊಂದರೆಯನ್ನು ಅನುಭವಿಸುತ್ತಿರಬಹುದು. ಮತ್ತೆ ಪ್ರಯತ್ನಿಸಿ ಅಥವಾ ಹೆಚ್ಚಿನ ಮಾಹಿತಿಗೆ Twitter ಸ್ಥಿತಿಗೆ ಭೇಟಿ ನೀಡಿ.

    ಇದನ್ನೂ ಸಹ ನೀವು ಇಷ್ಟಪಡಬಹುದು

    ·