cognitive cybersecurity intelligence

News and Analysis

Search

Google calls for halting use of WHOIS for TLS domain verifications

Browser makers and certificate authorities are looking to stop using WHOIS data for domain ownership verification after researchers exposed how fraudsters could manipulate the process to gain fake TLS certificates. Security firm watchTowr demonstrated how the issue arose from inconsistent rules for determining genuine sites claiming to offer official WHOIS records. A Google representative proposed to the CA/Browser Forum that reliance on WHOIS information should cease by November 2024.

Source: arstechnica.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts