#certificate-authority

[ follow ]
Information security
fromTechzine Global
1 day ago

Let's Encrypt drastically shortens certificate lifespans

Let's Encrypt is switching to Generation Y roots and shorter-lived server-only certificates while removing TLS client authentication and offering short-lived and IP support.
fromArs Technica
3 months ago

The number of mis-issued 1.1.1.1 certificates grows. Here's the latest.

Wednesday's discovery of three mis-issued TLS certificates for Cloudflare's 1.1.1.1 encrypted DNS lookup service generated intense interest and concern among Internet security practitioners. The revelation raised the possibility that an unknown entity had obtained the cryptographic equivalent of a skeleton key that could be used to surreptitiously decrypt millions of users' DNS queries that were encrypted through DNS over TLS or DNS over HTTPS. From there, the scammers could have read queries or even tampered with results to send 1.1.1.1 users to malicious sites.
Information security
[ Load more ]