The most informative cyber security blog on the internet!
Notice: By subscribing to Hashed Out you consent to receiving our daily newsletter.
Certificate Lifecycle Management Best Practices
*Information collected on this page will be used to send your eBook, and for marketing purposes. Learn More…
Don’t make the same the mistakes Yahoo, Equifax, Home Depot, LinkedIn, and Ericsson did.
Yahoo, Equifax, Home Depot, LinkedIn, and Ericsson. Nearly every week, yet another well-known brand makes headlines for all the wrong reasons: hackers gain access to their customer data; a certificate error causes their website to go down; or investigators fine them for compliance violations. This checklist will help you implement certificate management best practices to avoid similar problems for your company.
Avoid the 4 Horsemen of the Certificate Apocalypse:
- Expensive Outages & Downtime
When certificates expire, websites break, applications go down, and business lurches to a halt. And not just your business — anyone relying on your organization will experience outages and downtime, too. For example, Ericsson had a certificate expiration in 2018 that cut cellular service for 32 million people for several hours.
- Angry Customers & Partners
In business, both on- or offline, trust is currency. Your customers and partners trust you to be open, easily identifiable, and to have services available. When that doesn’t happen, your brand and reputation can suffer long-lasting damage. More than a year after the Ericsson incident, their customers are still angry. In fact, one of the company’s partners reportedly received up to £100 million from Ericsson as compensation for the downtime.
- Regulatory Penalties & Non-Compliance Fines
Encryption and authentication are critical components of just about every compliance and regulatory framework. That means digital certificates are, too. A Ponemon Institute study found that certificate mismanagement costs the average enterprise just over $7.2 million per year due to failed audits and regulatory penalties.
- Critical Data Breaches
Certificate expiration is far more treacherous than just an HTTP browser warning. It can open the doors for far greater attacks. An expired digital certificate shielded the Equifax data breach from detection for 76 days because it knocked out the company’s traffic inspection capabilities. Two years later, the credit bureau is still reeling, with costs at $1.4 billion and still rising!
5 Ways to Determine if a Website is Fake, Fraudulent, or a Scam – 2018in Hashing Out Cyber Security
How to Fix ‘ERR_SSL_PROTOCOL_ERROR’ on Google Chromein Everything Encryption
Re-Hashed: How to Fix SSL Connection Errors on Android Phonesin Everything Encryption
Cloud Security: 5 Serious Emerging Cloud Computing Threats to Avoidin ssl certificates
This is what happens when your SSL certificate expiresin Everything Encryption
Re-Hashed: Troubleshoot Firefox’s “Performing TLS Handshake” Messagein Hashing Out Cyber Security
Report it Right: AMCA got hacked – Not Quest and LabCorpin Hashing Out Cyber Security
Re-Hashed: How to clear HSTS settings in Chrome and Firefoxin Everything Encryption
Re-Hashed: The Difference Between SHA-1, SHA-2 and SHA-256 Hash Algorithmsin Everything Encryption
The Difference Between Root Certificates and Intermediate Certificatesin Everything Encryption
The difference between Encryption, Hashing and Saltingin Everything Encryption
Re-Hashed: How To Disable Firefox Insecure Password Warningsin Hashing Out Cyber Security
Cipher Suites: Ciphers, Algorithms and Negotiating Security Settingsin Everything Encryption
The Ultimate Hacker Movies List for December 2020in Hashing Out Cyber Security Monthly Digest
Anatomy of a Scam: Work from home for Amazonin Hashing Out Cyber Security
The Top 9 Cyber Security Threats That Will Ruin Your Dayin Hashing Out Cyber Security
How strong is 256-bit Encryption?in Everything Encryption
Re-Hashed: How to Trust Manually Installed Root Certificates in iOS 10.3in Everything Encryption
How to View SSL Certificate Details in Chrome 56in Industry Lowdown
PayPal Phishing Certificates Far More Prevalent Than Previously Thoughtin Industry Lowdown