Home Blog Page 250

From NSA Exploit to Widespread Ransomware: WannaCry Is on the Loose

The new EternalBlue NSA exploit is powering a wave of virulent ransomware sweeping across Europe. - Read more

The Hunt for IoT: The Networks Building Death Star-Sized Botnets

With a growth rate of 1,473% in 2016, the hunt for vulnerable IoT devices rages on... - Read more

Achieving Multi-Dimensional Security through Information Modeling – Part 1

Information modeling blends lateral thinking and deductive logic. Applied to information security, it’s a powerful technique for designing a security architecture with multi-dimensional controls that minimizes risk and achieves continuous compliance. - Read more

OVH Renews Platinum Sponsorship of Let’s Encrypt

We’re pleased to announce that OVH has renewed their support for Let’s Encrypt as a Platinum sponsor for the next three years. OVH’s strong support for Let’s Encrypt will go a long way towards creating a more secure and privacy-respecting Web. OVH initially got in touch with Let’s Encrypt to become a Platinum sponsor shortly after our public launch in...

The Conflicting Obligations of a Security Leader

Faced with competing pressures, CISOs are ultimately the experts at assessing what’s truly at stake in their organizations. - Read more

Application Threat Intelligence: What Do CISOs Need?

I’ve mentioned before how important strong risk management is to a CISO. When it comes to risk, the applications our users depend on are a big concern. In F5's 2016 State of Application Security survey, a majority of respondents cited security around applications as an area of great concern. - Read more

Let’s Encrypt 2016 In Review

Our first full year as a live CA was an exciting one. I’m incredibly proud of what our team and community accomplished during 2016. I’d like to share some thoughts about how we’ve changed, what we’ve accomplished, and what we’ve learned. At the start of 2016, Let’s Encrypt certificates had been available to the public for less than a month...

Launching Our Crowdfunding Campaign

Today we kicked off our first crowdfunding campaign with the goal of raising enough funds to cover about one month of our operations - $200,000. That amount covers the operational and engineering staff, the hardware and the software, and general operating expenses needed to securely and reliably issue and manage many millions of certificates. We decided to run a crowdfunding...

Our First Grant: The Ford Foundation

We are proud to announce that The Ford Foundation has awarded us a grant to help our growing operations. The Ford Foundation is a major philanthropic entity both in the US and globally. One of its programmatic areas, Internet Freedom, is focused on creating a more open and inclusive Internet experience for all people. Our relationship with Ford was born...

Squarespace OCSP Stapling Implementation

We’re excited that Squarespace has decided to protect the millions of sites they host with HTTPS! While talking with their team we learned they were deploying OCSP Stapling from the get-go, and we were impressed. We asked them to share their experience with our readers in our first guest blog post (hopefully more to come). - Josh Aas, Executive Director, ISRG /...

Latest article

Threat tactic spotlight: Subdomain takeover

In this blog post you’ll learn how to detect and prevent subdomain takeover – a tactic where threat actors exploit dangling DNS records to...

The Half-Life of Threat Intelligence: When Does an IOC Stop Being Useful? 

The concept of the IOC — the Indicator of Compromise — sits at the operational heart of modern threat detection. Block the IP. Flag...

Best Prime Day Tech Deals: Apple, Bose, Garmin, and More

Shop early Amazon Prime Day tech deals on earbuds, mice, routers, doorbells, headphones, smartwatches, Android phones, and fitness watches. The post Best Prime Day Tech...

SprySOCKS Backdoor Expands From Linux to Windows

China-linked SprySOCKS backdoor gains stealthy Windows variants and 30-plus C2 commands - Read more