TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

Black Hills InfoSec

How Does Let’s Encrypt Gain Your Browser’s Trust?

BHIS · 2016-09-06 · Read original ↗

ATT&CK techniques detected

3 predictions
T1588.004Digital Certificates
56%
“how does let ’ s encrypt gain your browser ’ s trust? how does let ’ s encrypt gain your browser ’ s trust? ethan robish / / advisory : the techniques and tools referenced within this blog post may be outdated and do not apply to current situations. however, there is still potent…”
T1588.003Code Signing Certificates
54%
“it essentially echoes what we ’ ve just uncovered. the post also had a nice diagram showing the signing relationships. there are a couple more moving parts in the diagram because let ’ s encrypt actually first generated a key pair for its parent organization, the internet securit…”
T1588.003Code Signing Certificates
48%
“##ypt authority x3 ” which is in turn signed by “ dst root ca x3 ”. next, i opened up the list of my system ’ s certificates. i run mac os x, but you can find a similar list on your operating system as well. i searched for the certificate authority ( ca ) i found earlier, “ dst r…”

Summary

Ethan Robish // Let’s Encrypt is a free service that allows you to obtain a free (as in beer) SSL/TLS domain validation certificate to use as you wish.  Here is what […]

The post How Does Let’s Encrypt Gain Your Browser’s Trust? appeared first on Black Hills Information Security, Inc..