RFC: What should the rating for #STARTTLS be like?
https://github.com/testssl/testssl.sh/issues/2987
🚨I've created a new #SwissDomainSecurityReport by analyzing all ~2.7 Mio .ch Domains. Read the full details at bit.ly/42F0Et1
#DNSSEC #CAA #STARTTLS #SPF #DMARC #DANE #MTASTS #TLSRPT #BIMI #DID #MCP
Don't know whether anybody of you guys uses #Apple Mail but I'd rather be careful:
www.linkedin.com/feed/update/urn:li:activ...
TL;DR: UI prefers #STARTTLS over #TLS for #IMAP (but actually for some reason uses both ports). Apple Product Security doesn't see a […]
"lsof -i Pn" on my #Macbook showed #Mail + #Motes used both port 143 (insecure #STARTTLS) + 993 (#TLS)
The checkbox in Accounts => Advanced => ~"configure connection preferences automatically" was the culprit. Needed to uncheck that, choose port 993 instead of 143 + restart the apps
@ Apple: #wtf?
Vortrag SLAC 2024: Sicherheit von STARTTLS in E-Mail-Clients
Wie sicher ist #STARTTLS in IMAP, SMTP & POP3? Die Frage beantwortet Dr. Fabian Ising (Nationales Forschungszentrum für angewandte Cybersicherheit ATHENE / Fraunhofer SIT) in seinem Vortrag auf der SLAC 2024. Er zeigt u.a. konkrete Beispiele für Sicherheitslücken. 👉 Jetzt anmelden: www.slac-2024.de