search
TLS
Trends
- 1Cloudflare on building a certificate authority for the whole InternetโBuilding a certificate authority for the whole Internet
Cloudflare has published a blog post detailing its work building a certificate authority intended to operate at the scale of the entire Internet. The piece explains the engineering and trust requirements behind issuing TLS certificates that browsers rely on. It is drawing attention among developers and security engineers discussing how web encryption infrastructure is run at scale.
- 2Cloudflare builds a certificate authority for the whole InternetโผBuilding a certificate authority for the whole Internet
Cloudflare has announced work on a certificate authority designed to serve the entire Internet, detailing the technical and operational challenges of issuing TLS certificates at global scale. The post, also drawing attention on Hacker News, walks through how a CA must balance security, automation and trust to keep encryption working across the web.
- 3Cloudflare to issue quantum-safe TLS certificatesโผCloudflare plans to issue quantum-safe # TLS # certificates # Cloudflare said Tuesday it plans to issue quantum-proof TL
Cloudflare announced on Tuesday that it plans to issue quantum-proof TLS certificates, positioning itself among the first certificate authorities to use cryptography widely believed to withstand attacks from quantum computers. The move anticipates a future in which quantum machines could break today's encryption, and it puts the web infrastructure company ahead of much of the industry in securing internet traffic against that threat.
- 4ATLSECCON cybersecurity conference set for Halifax in April 2027โผ๐ New event added: @ atlseccon ๐ ATLSECCON ๐ Apr 8-9, 2027 ๐ Halifax (NS) ๐จ๐ฆ ๐ https://www. atlseccon.com # infosec # cy
A new entry has been added to cybersecurity conference listings: ATLSECCON, taking place April 8-9, 2027 in Halifax, Nova Scotia, Canada. The Atlantic Canada security gathering is now on the calendar for infosec professionals planning next year's event schedule, with details available on its official website.
- 5Critical 10/10 vulnerability flagged in vm2 sandbox libraryโ๐จ EUVD-2026-81591 ๐ Score: 10.0/10 (CVSS v3.1) ๐ฆ Product: vm2 ๐ข Vendor: patriksimek ๐ Updated: 2026-10-01 ๐ vm2 NodeVM c
A maximum-severity security flaw, tracked as EUVD-2026-81591, has been disclosed in vm2, the Node.js sandbox library maintained by Patrik Simek. The vulnerability, rated 10.0 out of 10 under CVSS v3.1, allows the NodeVM component to replace the host process TLS trust store, potentially undermining certificate validation. The advisory was updated on 1 October 2026 and appears in the EU vulnerability database.
- 6wolfSSL Adds Support for S32K3 ACE AcceleratorโwolfSSL supports the S32K3 ACE Accelerator https://www. wolfssl.com/wolfssl-supports-t he-s32k3-ace-accelerator/ # wolfS
wolfSSL announced that its TLS library now supports the ACE cryptographic accelerator on NXP's S32K3 microcontrollers. The integration enables hardware-accelerated encryption on the automotive-grade S32K3 family, improving performance and efficiency for embedded security applications. The announcement is circulating among embedded and cryptography communities interested in secure automotive and industrial systems.
- 7Cloudflare launches its own certificate authority at global scaleโ# Business # Announcements Building a certificate authority for everyone ยท Cloudflare becomes a CA at global scale https
Cloudflare has announced it is now operating as a certificate authority, issuing TLS certificates at global scale. The company says the move is aimed at making secure HTTPS connections more accessible to everyone, building on its existing infrastructure business. The announcement is drawing attention from developers and security professionals discussing what a new large-scale CA means for the web's certificate ecosystem.
- 8Cloudflare to issue quantum-safe TLS certificatesโCloudflare plans to issue quantum-safe TLS certificates The move will be part of a major overhaul of the ecosystem for w
Cloudflare has announced plans to issue quantum-safe TLS certificates as part of a major overhaul of the website authentication ecosystem. The move is aimed at protecting encrypted web traffic against future attacks by quantum computers, which could eventually break today's widely used cryptographic algorithms. Security watchers are highlighting it as a significant step toward post-quantum encryption across the web.
- 9NASA's Picture of the Day site down over certificate errorโผThe "Picture of the Day" site hosted by # NASA isn't working right now because its TLS certificate is for go-vip\.co ins
NASA's Astronomy Picture of the Day website is currently inaccessible to visitors because its TLS certificate is issued for go-vip.co rather than nasa.gov or apod.nasa.gov, triggering browser security warnings. go-vip.co redirects to WordPress VIP, suggesting the agency's hosting provider generated the site certificate incorrectly. Users are sharing the error online as they try to view the popular daily image page.
- 10Critical Citrix NetScaler flaw exploited in the wild since Septemberโ๐ค CVE-2026-88772 (CVSS 9.5): DTLS memory overflow in Citrix NetScaler ADC/Gateway lets unauthenticated attackers reach s
A critical vulnerability, CVE-2026-88772 with a CVSS score of 9.5, has been disclosed in Citrix NetScaler ADC and Gateway products. The DTLS memory overflow allows unauthenticated attackers to achieve shellcode execution. According to Mandiant and Google Threat Intelligence, it has been actively exploited since September to gain root access and deploy the WHIPSHOT and SLAPSHOT malware. Administrators are urged to patch immediately.
- 11NASA's APOD site serves a certificate dated in the futureโ`openssl s_client -4 -connect apod.nasa.gov:443` Nice cert you got there, NASA :-) ``` Certificate chain 0 s:CN=go-vip.c
A system administrator ran a TLS check against apod.nasa.gov and found the site's certificate chain shows a validity window starting in late 2026, issued via Let's Encrypt. The odd future-dated dates have drawn amused attention from tech observers, who note that such entries usually point to certificate misconfiguration or overlapping issuer logs rather than anything nefarious. NASA has not commented on the quirk.
- 12New Citrix NetScaler Preauth Memory Overflow Bug DisclosedโHere We Go Again (Citrix NetScaler DTLS Preauth Memory Overflow CVE-2026-88772) https:// packetstorm.news/news/view/442
A pre-authentication memory overflow vulnerability, tracked as CVE-2026-88772, has been disclosed affecting Citrix NetScaler devices via DTLS. The flaw is drawing comparisons to earlier NetScaler security crises, with security commentators reacting to yet another remotely exploitable issue in widely deployed enterprise appliance software. Administrators are expected to scrutinise patch guidance while details of exploitation and severity remain limited.
- 13New Citrix NetScaler preauth memory overflow vulnerability disclosedโNew. WatchTower: Here We Go Again (Citrix NetScaler DTLS Preauth Memory Overflow CVE-2026-88772) https:// labs.watchtowr
Security researchers at WatchTower Labs have published details of a new vulnerability in Citrix NetScaler, tracked as CVE-2026-88772. The flaw is a memory overflow in the handling of DTLS traffic that can be triggered before authentication, meaning attackers may be able to exploit it without valid credentials. The disclosure follows another Citrix NetScaler vulnerability reported just the day before, prompting frustration among security professionals that the product continues to produce serious remotely exploitable flaws.
Repos
- oblien/openship Self-hosted deployment platform
- kryvora-network/kryvora-node Reference client daemon and verification worker for Kryvora Network nodes.