bramus/mixed-content-scan

A really handy command-line tool that scans your site for mixed content — very useful if you’re making the switch from http to https.

bramus/mixed-content-scan

Tagged with

Related links

So We Got Tracked Anyway

Even using a strict cookie policy won’t help when Facebook and Google are using TLS to fingerprint users. Time to get more paranoid:

HTTPS session identifiers can be disabled in Mozilla products manually by setting ‘security.ssl.disablesessionidentifiers’ in about:config.

Tagged with

ISP’s are updating your site without your permission

One more reason to make the switch to HTTPS.

Tagged with

Setting up CloudFront and TLS (HTTPS) with Jekyll – olivermak.es

Remember when I mentioned that you can get free certificates from Amazon now? Well, Oliver has written an in-depth step-by-step description of how he got his static site all set up with HTTPS.

More of this please! Share your experiences with moving to TLS—the more, the better.

Tagged with

We need more phishing sites on HTTPS!

All the books, Montag.

If we want a 100% encrypted web then we need to encrypt all sites, despite whether or not you agree with what they do/say/sell/etc… 100% is 100% and it includes the ‘bad guys’ too.

Tagged with

Tagged with

Related posts

Someday

Changing defaults in browsers …someday.

Insecure …again

Breaking the web for security.

Insecure

Security or access: choose one.

Switching to HTTPS on Apache 2.4.7 on Ubuntu 14.04 on Digital Ocean

The super-sexy title is because this stuff tends to be super-specific to the server setup.

This is for everyone with a certificate

The browser beatings will continue until morale improves.