In a follow-up to my last post, I’d like to address how infosec professionals can help non-security folks understand the need for security basics.
Security
Certificate Inspector: Agent Deployment Strategies
DigiCert Certificate Inspector Agent is a valuable tool that can help manage your certificate landscape.
Private Internet 101
Private Internet is one way users can protect their data and avoid the flood of marketing campaigns enabled by tracking cookies. This beginner’s guide helps you know where to start and who to trust.
Google Pushes HTTPS with Google Canary Feature
On the heels of an announcement last summer that websites using HTTPS will receive a SEO boost, Google is taking more steps to encourage a more encrypted web. Google created a version of Chrome with a feature designed to warn users when they visit unencrypted web pages. For now, this feature is only available on […]
FREAK Attack: What You Need to Know
The FREAK attack does not affect SSL Certificates, but admins should disable export-grade ciphers on all servers. Users should install patches for their browsers as they become available.
IoT Security: When Fiction Becomes Reality – Part I
It’s up to the infosec community to reach out to engineering and manufacturing and to help them understand security risks and best practices. We need to engage in conversation. We need to gain a seat at the table so that security is not an afterthought in the era of connectivity.
Superfish-like Behavior Found Again with Komodia and PrivDog
In the last two weeks, we have seen quite a few poor security practices in use with Superfish, Komodia/Lavasoft, and now PrivDog.
Lenovo’s Superfish Adware and the Perils of Self-Signed Certificates
Lenovo’s violation of security best practices demonstrates the dangers of using self-signed certificates and the importance of the public trust system.
How Data Security Is Affecting Consumerism
50% of consumers stated that data security is a major factor when they choose who to shop from online.