testssl.sh 

400 Followers
45 Following
186 Posts

Fled from the birdsite to a separate account.

Toots mostly in EN about testssl.sh and related stuff.

main web sitehttps://testssl.sh
Githubhttps://testssl.sh/dev
Quantum frontiers may be closer than they appear

An overview of how Google is accelerating its timeline for post-quantum cryptography migration.

Google

Also, it was time to release a snapshot of the 3.3dev branch which stabilized well enough and has a good set of features to be released.

https://github.com/testssl/testssl.sh/releases/tag/v3.3dev-snapshot-2602

Enjoy && eat the meal while it's hot ;-)

Small version bump: 3.2.3 for the old branch of testssl.sh was just released

https://github.com/testssl/testssl.sh/releases/tag/v3.2.3

Get it while it's hot ;-)

@jomo
... because modern browsers are very strict as opposed to some STARTTLS clients. Browsers sent only strong and medium crypto these days and always have been checking the certificate properly.

RFC: What should the rating for #STARTTLS be like?

https://github.com/testssl/testssl.sh/issues/2987

AI Finds 12 OpenSSL Vulnerabilities Including a 27-Year-Old Bug

An AI system discovered 12 CVEs in OpenSSL, including a bug from 1998 that survived 27 years of audits. One HIGH severity with pre-auth RCE potential.

HackingPassion.com : [email protected][~]

RE: https://mastodon.social/@drwetter/115827783533894665

Testssl activities had to wait a bit as the main contributor was busy 😃

Forgot those pics... #39c3 #39c3abbauleak

testssl.sh 3.3dev update:
- shellcheck ensures better code quality when check in, thanks to MFTabriz
- flag --rating only does the bare minimum of checks for SSLlabs rating, thanks to magnuslarsen

Both branches had some CA stores update

testssl.sh 3.3dev now has (finally) early data support a.k.a 0-RTT .