Get a Pentest and security assessment of your IT network.

News

The sorry state of certificate revocation

Public key infrastructure (PKI) is usually horribly implemented in the real world. It’s mostly broken because admins don’t deploy it right, software doesn’t enforce what needs to be enforced. Users bypass any PKI warning, resulting in untold downloads of who knows how much malware. A revoked certificate is supposed to be the same as no certificate, but most CA admins never revoke it. Or people keep using revoked certificates and no one notices, even when they should. Even more common, the software (or the user) doesn’t bother to check.”]

Source: https://www.csoonline.com/article/3000574/the-sorry-state-of-certificate-revocation.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Take note, next week update Adobe Reader and Acrobat to fix critical flaws

News

Linux bug leaves 1.4 billion Android users vulnerable to hijacking attacks