What is Certificate Transparency? Certificate Transparency is an approach that aims to make the PKI more secure by maintaining an open log of X.509 SSL/TLS certificates that are issued to Certificate Authorities. There are three primary objectives of CT: to identify and mitigate instances of mis-issuance of certificates, to aid…
When you type a website into your browser, you assume your connection is private. That no one’s peeking over your shoulder. That’s the entire promise of TLS certificates. But what happens when that promise is broken? That’s exactly what went down with Cloudflare’s 1.1.1.1 DNS service, one of the most…
There’s a moment in every growing company where a server goes offline, a dashboard won’t load, or a user sees a security warning, and no one knows why. It’s not a bug. It’s not even a DDoS. It’s something quieter, a certificate has expired. At first, managing certificates feels trivial.…
What is SSL/TLS? Secure Sockets Layer (SSL) and its successor, Transport Layer Security (TLS), are cryptographic protocols for secure communication on a computer network. SSL/TLS are used on the internet to encrypt the data exchanged between a user’s browser and the web server, enabling sensitive data to remain secure and…
Today, people’s lives are heavily surrounded by the internet and various technological applications, which makes protection more crucial than ever. When using a website or even browsing the internet, we should have the guarantee that the website is safe to use and our information is secure. This is why SSL…
“One day. One certificate. Every single day.” Sounds like a security stunt, right? Nope. It’s Instagram’s new normal, and it’s about to rewrite how big tech thinks about trust on the web. Wait… did Instagram just change the rules of web security? Yes. While the rest of the internet is…
What Is a TLS/SSL Port? A TLS/SSL port is a portion of the network used for the creation of secure connections on the Internet using the Transport Layer Security or Secure Socket Layer. Such protocols are used for encryption and authentication so that data being exchanged between a client, like…
The Common Name (CN) in an SSL/TLS certificate is a field that identifies the main domain name that this certificate belongs to. It is used mainly as the primary means for verifying the identity of the domain while conducting safe communication over the World Wide Web. Originally, the CN field…
Google Chrome announced that it would distrust new TLS/SSL certificates from two certificate authorities (CAs): Chunghwa Telecom and Netlock, effective August 1, 2025, with the release of Chrome version 139. Apart from releasing new TLS/SSL standards, the Chrome announcement represents another significant step in Google’s campaign to demand accountability for…
What is Wildcard SSL? A Wildcard SSL certificate is a special type of SSL certificate designed to secure a single domain and all of its subdomains. Unlike regular SSL certificates that only secure one domain, a Wildcard SSL certificate uses a wildcard character (an asterisk, *) in the domain name…
In response to evolving browser policies and heightened security requirements, Sectigo and DigiCert both announced they will remove the Client Authentication Extended Key Usage (EKU) from public SSL/TLS certificates. It is part of a broader initiative to support Google Chrome’s Root Program and CA/Browser Forum best practices. It directs public…
If you run a website, especially one secured with a Free SSL Certificate, chances you are using Let’s Encrypt. They’re the game changers who made SSL certificates free and easy for everyone. However, as of June 4, 2025, a small change is coming that might catch some people off guard…
What Is SSL Inspection? SSL inspection is the term commonly used to refer to SSL/TLS decryption or SSL visibility, whereby encrypted SSL/TLS traffic is intercepted by a security appliance or software to be decrypted for further scrutiny. It allows organizations to inspect, filter, and intercept the encrypted traffic passing through…
A critical vulnerability in the SSL.com domain validation process allowed unauthorized parties to get the certificates on behalf of you or your organisation. SSL.com is one of the famous Certificate Authorities (CA) trusted by all major browsers. This Vulnerability is reported by security researchers; in their demonstration, they showed how…
What is Wildcard SSL? A Wildcard SSL certificate is a unique SSL certificate that protects a single domain and all its subdomains. In contrast to standard SSL certificates that secure only one domain, a Wildcard SSL certificate employs a wildcard character—an asterisk, *—in the domain name, enabling encryption for countless…