MikeTrendsTrends right now

search

TLS

Trends

  1. 1
    Cloudflare on building a certificate authority for the whole Internetโ—Building a certificate authority for the whole InternetYhnCultureBooks7144 min ago

    Cloudflare has published a blog post detailing its work building a certificate authority intended to operate at the scale of the entire Internet. The piece explains the engineering and trust requirements behind issuing TLS certificates that browsers rely on. It is drawing attention among developers and security engineers discussing how web encryption infrastructure is run at scale.

  2. 2
    Cloudflare builds a certificate authority for the whole Internetโ–ผBuilding a certificate authority for the whole Internetโœ‰newsTechnologyInternet1 d ago

    Cloudflare has announced work on a certificate authority designed to serve the entire Internet, detailing the technical and operational challenges of issuing TLS certificates at global scale. The post, also drawing attention on Hacker News, walks through how a CA must balance security, automation and trust to keep encryption working across the web.

  3. 3
    Cloudflare to issue quantum-safe TLS certificatesโ–ผCloudflare plans to issue quantum-safe # TLS # certificates # Cloudflare said Tuesday it plans to issue quantum-proof TLMmastodonSciencePhysics21 h ago

    Cloudflare announced on Tuesday that it plans to issue quantum-proof TLS certificates, positioning itself among the first certificate authorities to use cryptography widely believed to withstand attacks from quantum computers. The move anticipates a future in which quantum machines could break today's encryption, and it puts the web infrastructure company ahead of much of the industry in securing internet traffic against that threat.

  4. 4
    ATLSECCON cybersecurity conference set for Halifax in April 2027โ–ผ๐Ÿ†• New event added: @ atlseccon ๐Ÿ“Œ ATLSECCON ๐Ÿ“… Apr 8-9, 2027 ๐Ÿ“ Halifax (NS) ๐Ÿ‡จ๐Ÿ‡ฆ ๐Ÿ”— https://www. atlseccon.com # infosec # cyMmastodonTechnologyCybersecurity11 d ago

    A new entry has been added to cybersecurity conference listings: ATLSECCON, taking place April 8-9, 2027 in Halifax, Nova Scotia, Canada. The Atlantic Canada security gathering is now on the calendar for infosec professionals planning next year's event schedule, with details available on its official website.

  5. 5
    Critical 10/10 vulnerability flagged in vm2 sandbox libraryโ—๐Ÿšจ EUVD-2026-81591 ๐Ÿ“Š Score: 10.0/10 (CVSS v3.1) ๐Ÿ“ฆ Product: vm2 ๐Ÿข Vendor: patriksimek ๐Ÿ“… Updated: 2026-10-01 ๐Ÿ“ vm2 NodeVM cMmastodonTechnologyCybersecurity05 h ago

    A maximum-severity security flaw, tracked as EUVD-2026-81591, has been disclosed in vm2, the Node.js sandbox library maintained by Patrik Simek. The vulnerability, rated 10.0 out of 10 under CVSS v3.1, allows the NodeVM component to replace the host process TLS trust store, potentially undermining certificate validation. The advisory was updated on 1 October 2026 and appears in the EU vulnerability database.

  6. 6
    wolfSSL Adds Support for S32K3 ACE Acceleratorโ—wolfSSL supports the S32K3 ACE Accelerator https://www. wolfssl.com/wolfssl-supports-t he-s32k3-ace-accelerator/ # wolfSMmastodonBusinessCrypto022 h ago

    wolfSSL announced that its TLS library now supports the ACE cryptographic accelerator on NXP's S32K3 microcontrollers. The integration enables hardware-accelerated encryption on the automotive-grade S32K3 family, improving performance and efficiency for embedded security applications. The announcement is circulating among embedded and cryptography communities interested in secure automotive and industrial systems.

  7. 7
    Cloudflare launches its own certificate authority at global scaleโ—# Business # Announcements Building a certificate authority for everyone ยท Cloudflare becomes a CA at global scale httpsMmastodonBusiness11 d ago

    Cloudflare has announced it is now operating as a certificate authority, issuing TLS certificates at global scale. The company says the move is aimed at making secure HTTPS connections more accessible to everyone, building on its existing infrastructure business. The announcement is drawing attention from developers and security professionals discussing what a new large-scale CA means for the web's certificate ecosystem.

  8. 8
    Cloudflare to issue quantum-safe TLS certificatesโ—Cloudflare plans to issue quantum-safe TLS certificates The move will be part of a major overhaul of the ecosystem for wMmastodonTechnologyCybersecurity11 d ago

    Cloudflare has announced plans to issue quantum-safe TLS certificates as part of a major overhaul of the website authentication ecosystem. The move is aimed at protecting encrypted web traffic against future attacks by quantum computers, which could eventually break today's widely used cryptographic algorithms. Security watchers are highlighting it as a significant step toward post-quantum encryption across the web.

  9. 9
    NASA's Picture of the Day site down over certificate errorโ–ผThe "Picture of the Day" site hosted by # NASA isn't working right now because its TLS certificate is for go-vip\.co insMmastodonScienceSpace31 d ago

    NASA's Astronomy Picture of the Day website is currently inaccessible to visitors because its TLS certificate is issued for go-vip.co rather than nasa.gov or apod.nasa.gov, triggering browser security warnings. go-vip.co redirects to WordPress VIP, suggesting the agency's hosting provider generated the site certificate incorrectly. Users are sharing the error online as they try to view the popular daily image page.

  10. 10
    Critical Citrix NetScaler flaw exploited in the wild since Septemberโ—๐Ÿค– CVE-2026-88772 (CVSS 9.5): DTLS memory overflow in Citrix NetScaler ADC/Gateway lets unauthenticated attackers reach sMmastodonTechnologyCybersecurity11 d ago

    A critical vulnerability, CVE-2026-88772 with a CVSS score of 9.5, has been disclosed in Citrix NetScaler ADC and Gateway products. The DTLS memory overflow allows unauthenticated attackers to achieve shellcode execution. According to Mandiant and Google Threat Intelligence, it has been actively exploited since September to gain root access and deploy the WHIPSHOT and SLAPSHOT malware. Administrators are urged to patch immediately.

  11. 11
    NASA's APOD site serves a certificate dated in the futureโ—`openssl s_client -4 -connect apod.nasa.gov:443` Nice cert you got there, NASA :-) ``` Certificate chain 0 s:CN=go-vip.cMmastodonScienceSpace21 d ago

    A system administrator ran a TLS check against apod.nasa.gov and found the site's certificate chain shows a validity window starting in late 2026, issued via Let's Encrypt. The odd future-dated dates have drawn amused attention from tech observers, who note that such entries usually point to certificate misconfiguration or overlapping issuer logs rather than anything nefarious. NASA has not commented on the quirk.

  12. 12
    New Citrix NetScaler Preauth Memory Overflow Bug Disclosedโ—Here We Go Again (Citrix NetScaler DTLS Preauth Memory Overflow CVE-2026-88772) https:// packetstorm.news/news/view/442MmastodonWorld11 d ago

    A pre-authentication memory overflow vulnerability, tracked as CVE-2026-88772, has been disclosed affecting Citrix NetScaler devices via DTLS. The flaw is drawing comparisons to earlier NetScaler security crises, with security commentators reacting to yet another remotely exploitable issue in widely deployed enterprise appliance software. Administrators are expected to scrutinise patch guidance while details of exploitation and severity remain limited.

  13. 13
    New Citrix NetScaler preauth memory overflow vulnerability disclosedโ—New. WatchTower: Here We Go Again (Citrix NetScaler DTLS Preauth Memory Overflow CVE-2026-88772) https:// labs.watchtowrMmastodonTechnologyCybersecurity22 d ago

    Security researchers at WatchTower Labs have published details of a new vulnerability in Citrix NetScaler, tracked as CVE-2026-88772. The flaw is a memory overflow in the handling of DTLS traffic that can be triggered before authentication, meaning attackers may be able to exploit it without valid credentials. The disclosure follows another Citrix NetScaler vulnerability reported just the day before, prompting frustration among security professionals that the product continues to produce serious remotely exploitable flaws.

Repos