(1 votes, average: 5.00 out of 5)

Complete Guide to ACME External Account Binding (EAB)

Hand-releasing SSL/TLS certificates no longer scales because it starts with a request. They did so by allowing servers to communicate directly with Certificate Authorities, but Let’s Encrypt’s registration is open, whereas enterprise CAs & commercial providers require verification of who they are issuing a certificate to. This is where External…
(4 votes, average: 5.00 out of 5)

Verified & Common Mark Certificate (VMC and CMC) Validation Process for BIMI Compliance

With the development of email security, Verified Mark Certificates (VMCs) and Common Mark Certificates (CMCs) have become critical for organisations that want to showcase their brand logos in email clients using the BIMI (Brand Indicators For Message Identification) standard. Before an organisation’s logo appears in a recipient’s inbox, however, it…
(4 votes, average: 5.00 out of 5)

Chrome Policy Update 2026: Mandatory CT Logging for DigiCert TLS Certificates

Key Changes June 2026 If your organisation uses DigiCert, GeoTrust, Thawte, RapidSSL, or Encryption Everywhere to issue public TLS certificates and currently opts out of Certificate Transparency (CT) logging, your certificates will be force-logged starting June 1, 2026. Every domain name on those certificates becomes publicly visible. If you do…
(9 votes, average: 5.00 out of 5)

Critical Vulnerabilities Fixed in Trend Micro’s Apex Central and PolicyServer

If you’re using Trend Micro Apex Central or Endpoint Encryption PolicyServer, here’s some urgent news. Hackers could take full control of your system, no login required. On June 10th, Trend Micro released urgent patches for ten security flaws, including six unauthenticated remote code execution (RCE) vulnerabilities rated critical with CVSS…
(11 votes, average: 5.00 out of 5)

What is Quishing(QR Phishing)?Common Attacks, Vulnerabilities and Prevention

What Is Quishing? Quishing is a cyber attack technique in which QR codes are used to deceive people into divulging information or downloading malware. This makes quishing not dependent on deceptive emails or websites, like so many other forms of phishing. The malicious codes are disseminated in any carrier, whether…
(9 votes, average: 5.00 out of 5)

Critical Vulnerability in W3 Total Cache Plugin Puts Over 1 Million WordPress Sites at Risk

The W3 Total Cache plugin offers functions that provide exceptional support for WordPress websites to enhance speed and SEO rankings. It has been discovered that around 1 million websites are in grave danger of exposed vulnerabilities. The critical flaw, CVE-2024-12365, has a CVSS score of 8.5 and poses a significant…
(10 votes, average: 5.00 out of 5)

Cloudflare’s Logging Failure: Lessons in Resilience and Recovery

The incident occurred on 14 November 2024 using a well-known company offering Cloudflare web infrastructure services. The event resulted in the loss of service to its logging-as-a-service product, and for this, most clients lost log data, thus causing concerns in the whole tech world about such kinds of services. Cloud-based…
(17 votes, average: 4.82 out of 5)

CrowdStrike Outage to Cost $5.4 Billion: The Most Significant I.T Outage Ever

Microsoft claims that the CrowdStrike IT outage impacted 8.5 million Windows devices. One of the regular updates from CrowdStrike resulted in a significant I.T. outage that affected systems worldwide. The I.T. outage, which caused numerous computers to display blue error messages, has halted flights. Worldwide travel turmoil has been brought…
(6 votes, average: 5.00 out of 5)

Atomic Wallet Security Glitch Leads to a $35M Cryptocurrency Theft

A security vulnerability at Atomic Wallet has stolen over $35 million in cryptocurrency assets since June 2. This desktop and mobile cryptocurrency wallet enable users to store several cryptocurrencies. Security personnel are looking into what sparked the attack. Reports indicate that the incident involved missing tokens, deleted transaction data, and…
(6 votes, average: 5.00 out of 5)

ABB discloses IT Security Breach: The Cyberattack Impacts Company Operations

ABB Ltd., a prominent Swedish-Swiss robotics and automation company, recently experienced a cybersecurity issue that affected business operations. ABB, the corporation headquartered in Zurich and formerly the largest industrial employer in Switzerland until 2020, asserts an IT security breach that has specifically affected certain sites and systems. Vigorous efforts are…