SSL Archives - The Silicon Underground David L. Farquhar on technology old and new, computer security, and more Tue, 27 Nov 2018 18:56:25 +0000 en-US hourly 1 https://kerosin.digital/rss-chimp16321610 A weak VPN isn’t necessarily better than no VPN https://dfarq.homeip.net/poor-encryption-isnt-necessarily-better-than-no-encryption/?utm_source=rss&utm_medium=rss&utm_campaign=poor-encryption-isnt-necessarily-better-than-no-encryption Mon, 29 Feb 2016 12:00:21 +0000 https://dfarq.homeip.net/?p=8302 A Slashdot story last week discussed how 90% of all SSL VPNs use weak, obsolete encryption. And one comment said, “So? A weak VPN is better than no VPN.” Not necessarily. Intelligence agencies love weak encryption, because if people are

The post A weak VPN isn’t necessarily better than no VPN appeared first on The Silicon Underground.

]]>
8302
Why hiding your SSID makes your security worse https://dfarq.homeip.net/why-hiding-your-ssid-makes-your-security-worse/?utm_source=rss&utm_medium=rss&utm_campaign=why-hiding-your-ssid-makes-your-security-worse Wed, 06 Jan 2016 12:00:06 +0000 https://dfarq.homeip.net/?p=8216 I got a couple of questions about my recommended DD-WRT settings, but I’m going to start with the question about why not to hide the SSID. It actually turns out that hiding your SSID is bad for you, and makes your

The post Why hiding your SSID makes your security worse appeared first on The Silicon Underground.

]]>
8216
What the NSA can crack, and how to protect against it https://dfarq.homeip.net/what-the-nsa-can-crack-and-how-to-protect-against-it/?utm_source=rss&utm_medium=rss&utm_campaign=what-the-nsa-can-crack-and-how-to-protect-against-it Tue, 20 Oct 2015 11:00:51 +0000 https://dfarq.homeip.net/?p=7898 Ever since the Snowden leaks, there’s been considerable speculation about what cryptography the NSA could break, and why. Finally, there’s a study that goes into deep detail about what it is the NSA probably can break, and why, plus how

The post What the NSA can crack, and how to protect against it appeared first on The Silicon Underground.

]]>
7898
Worried about the wrong things? It’s always the wrong thing. https://dfarq.homeip.net/worried-about-the-wrong-things-its-always-the-wrong-thing/?utm_source=rss&utm_medium=rss&utm_campaign=worried-about-the-wrong-things-its-always-the-wrong-thing Wed, 06 May 2015 11:00:50 +0000 https://dfarq.homeip.net/?p=7688 Guy Wright’s piece titled Internet Security: We were worried about the wrong things is a bit old but it’s an important point. Security is a moving target. It’s always a moving target. I disagree, however, with the assertion that SSL (and its

The post Worried about the wrong things? It’s always the wrong thing. appeared first on The Silicon Underground.

]]>
7688
How to use the lock in your web browser’s location bar https://dfarq.homeip.net/how-to-use-the-lock-in-your-web-browsers-location-bar/?utm_source=rss&utm_medium=rss&utm_campaign=how-to-use-the-lock-in-your-web-browsers-location-bar Mon, 23 Feb 2015 11:00:06 +0000 https://dfarq.homeip.net/?p=7597 A commenter asked me last week if I really believe the lock in a web browser means something. I’ve configured and tested and reviewed hundreds of web servers over the years, so I certainly hope it does. I spend a

The post How to use the lock in your web browser’s location bar appeared first on The Silicon Underground.

]]>
7597
Port 2381: What it is and how to manage it https://dfarq.homeip.net/port-2381/?utm_source=rss&utm_medium=rss&utm_campaign=port-2381 Wed, 28 Jan 2015 11:00:38 +0000 https://dfarq.homeip.net/?p=7551 I was doing some scanning with a new vulnerability scanner at work. It found something listening on a lot of servers, described only as Apache and OpenSSL listening on TCP port 2381. The versions varied. Luckily I also had Qualys

The post Port 2381: What it is and how to manage it appeared first on The Silicon Underground.

]]>
7551
What is Winshock? https://dfarq.homeip.net/what-is-winshock/?utm_source=rss&utm_medium=rss&utm_campaign=what-is-winshock Wed, 03 Dec 2014 11:00:47 +0000 https://dfarq.homeip.net/?p=7461 So the other day I got blindsided with a question at work: What are we doing about Winshock. Winshock, I asked? I had to go look it up, and I found that’s what they dubbed what I’ve been calling MS14-066,

The post What is Winshock? appeared first on The Silicon Underground.

]]>
7461
More encryption = more safety https://dfarq.homeip.net/more-encryption-more-safety/?utm_source=rss&utm_medium=rss&utm_campaign=more-encryption-more-safety Mon, 24 Nov 2014 11:00:36 +0000 https://dfarq.homeip.net/?p=7448 Mozilla, Akamai, Cisco, the EFF, and Identrust are teaming up for Let’s Encrypt, an effort to make SSL encryption free and easy. This is important, because it means mundane stuff will get encrypted. When SSL/TLS traffic are no longer flagged

The post More encryption = more safety appeared first on The Silicon Underground.

]]>
7448
Takeaways from Patrick Gray’s AusCERT coverage https://dfarq.homeip.net/takeaways-from-patrick-grays-auscert-coverage/?utm_source=rss&utm_medium=rss&utm_campaign=takeaways-from-patrick-grays-auscert-coverage Fri, 23 May 2014 11:00:00 +0000 https://dfarq.homeip.net/?p=7193 I’ve been listening to Patrick Gray’s coverage of the AusCERT security conference, and I walked away with two major takeaways, one for security professionals and one for everyone. Everyone first: Use SSL (https) everywhere you possibly can. Generate superfluous https

The post Takeaways from Patrick Gray’s AusCERT coverage appeared first on The Silicon Underground.

]]>
7193
It’s 6:21 PM. Do you know what the current version of Firefox is? https://dfarq.homeip.net/its-621-pm-do-you-know-what-the-current-version-of-firefox-is/?utm_source=rss&utm_medium=rss&utm_campaign=its-621-pm-do-you-know-what-the-current-version-of-firefox-is https://dfarq.homeip.net/its-621-pm-do-you-know-what-the-current-version-of-firefox-is/#comments Tue, 17 Jul 2012 23:21:38 +0000 https://dfarq.homeip.net/?p=5731 Veteran blogger John Dominik reported yesterday that upgrading to Firefox 13 fixed some problems for him. So of course he’ll be thrilled to know that Firefox released a new version the very next day. The. Very. Next. Day. From a

The post It’s 6:21 PM. Do you know what the current version of Firefox is? appeared first on The Silicon Underground.

]]>
https://dfarq.homeip.net/its-621-pm-do-you-know-what-the-current-version-of-firefox-is/feed/ 2 5731