❌

Normal view

There are new articles available, click to refresh the page.
Before yesterdayBlack Hills Information Security

Testing TLS and CertificatesΒ 

By: BHIS
25 January 2024 at 11:00

Pentest reports sometimes include bad information under a heading like, β€œWeak TLS Configuration” or β€œInsecure SSL Certificates.” This article will explain how TLS is supposed to work, common ways it […]

The post Testing TLS and CertificatesΒ  appeared first on Black Hills Information Security, Inc..

How I Cracked a 128-bit Password

By: BHIS
4 October 2018 at 10:32

Sally Vandeven// TL;DR – Passwords stored using reversible encryption,Β even if they are VERY LONG, Β can be trivially reversed by an attacker. Password cracking is quite enjoyable. It is very satisfying […]

The post How I Cracked a 128-bit Password appeared first on Black Hills Information Security, Inc..

Finding: Server Supports Weak Transport Layer Security (SSL/TLS)

By: BHIS
14 June 2018 at 09:32

David Fletcher// The following blog post is meant to expand upon the findings commonly identified in BHIS reports. Β The β€œServer Supports Weak Transport Layer Security (SSL/TLS)” is almost universal across […]

The post Finding: Server Supports Weak Transport Layer Security (SSL/TLS) appeared first on Black Hills Information Security, Inc..

Two Button PWNage

By: BHIS
17 November 2016 at 12:15

Logan Lembke // Step One: Power. Step Two: Enter. Step Three: ???? Step Four: Profit. In the security industry, we love our encryption. However sometimes, the complexity introduced by encryption […]

The post Two Button PWNage appeared first on Black Hills Information Security, Inc..

How Does Let’s Encrypt Gain Your Browser’s Trust?

By: BHIS
6 September 2016 at 10:23

Ethan Robish // Let’s EncryptΒ is a free service that allows you to obtain a free (as in beer) SSL/TLS domain validation certificate to use as you wish. Β Here is what […]

The post How Does Let’s Encrypt Gain Your Browser’s Trust? appeared first on Black Hills Information Security, Inc..

Your Password Is… wait for it… NOT Always Encrypted

By: BHIS
15 January 2016 at 17:16

Sally Vandeven // As pentesters we LOVE passwords – they come in all shapes and sizes. A good password has 16+ characters and a mix of case, digits and special […]

The post Your Password Is… wait for it… NOT Always Encrypted appeared first on Black Hills Information Security, Inc..

❌
❌