pinning

(get it in RSS or Atom)

Firefox 32.0 fixes holes, shakes out some old SSL certs, introduces certificate pinning

Yesterday was Firefox's Fortytwosday (updates come out every 42 days, on Tuesdays, in a nod to Douglas Adams), bringing us to Firefox 32.0.

There are also two Extended Support Releases for the more conservative amongst us...

Certificate pinning - first for websites, now for software?

certchain-250

You may have heard of certificate pinning. Microsoft is looking at applying the technology to signed software.

Have a listen as Patrick Gray, host of the renowned Risky Business security podcast, discusses the issue with Naked Security's Paul Ducklin.

The TURKTRUST SSL certificate fiasco - what really happened, and what happens next?

The TURKTRUST SSL certificate fiasco - what happened, and what happens next?

Was the TURKTRUST SSL fiasco an abortive attempt at secret surveillance, or a blundering crisis of convenience?

Paul Ducklin takes stock of the situation...