DISA recently started using STARTTLS by default for all mail servers. DISA which runs the US Department Of Defense IT systems. STARTTLS is an encryption standard for email protocol. Current email communications are in clear text. You can protect the…
Exploring HTTPS encryption
This is a post on HTTPS encryption long time coming. I have been patching SSL/TLS vulnerabilities in various systems, so I thought I should put all my notes in one place. HTTPS encryption uses SSL and later TLS to protect…
Heartbleed bug in OpenSSL
Heartbleed bug or exploit in SSL and you.
Strange questions that I have heard.
Generally when your colleagues that have clocked a few years in the organization as an application PMs, you don’t expect newbie questions. Especially when the organization does not hire freshies. So questions like “what is play-back-attack” and statements like “SSL…