Mike Fratto posted an article in Information Week about how EV certificates don't increase trust. He claims that they only help line the pockets of certificate authorities like VeriSign.
The details of the new DNS attack discovered by Dan Kaminsky were recently leaked. Make sure you are safe by checking whether your ISP's DNS servers are vulnerable.
Nat Tuck Thu has posted about how Mozilla's policy of displaying harsh warning when a site uses an untrusted certificate is causing many sites to not use SSL when they should be.
GlobalSign leading provider of online security solutions, has announced "AutoCSR" and "One-Click SSL" two new SSL deployment technologies that will revolutionize the way hosting companies provision SSL Certificates to hosting customers.
The Slashdot crowd has opened a discussion about the possibility of a free, open Certificate Authority. A few pointed out the currently free alternative CAs and their problems while many brought it back to the purpose of SSL and a Public Key Infrastructure.
New research paper shows that as of June 2008, only 59.1% percent of Internet users worldwide use the latest major version of their preferred web browser. How does using the latest browser affect your online security?
Google has released a web application security tool to find potential vulnerabilities in your web applications.
In order to combat new Swedish wiretaps, Pirate is adding SSL to the site.
This question was posted on Slashdot and it solicited many different responses. A lot of people are confused about the purpose of SSL certificates.
Edd Dumbill posted a short article on how to do some SSL certificate maintenance when you are using your own certificate authority.