Managing Risk from TLS Inspection

Recently, the National Security Agency (NSA) published a guide to Managing Risk from Transport Layer Security Inspection. The guide is designed to highlight the unique risks introduced into environments by the use of TLS inspection appliances. It also covers a few recommendations on how to secure these devices. There are some additional areas we recommend over and above […]
SHAKEN/STIR is Getting Real

The Federal Communications Commission (FCC) estimates robocalls will constitute more than half of all phone calls placed in the U.S. this year. In an effort to end to this, the FCC and major telecommunications companies including Comcast, AT&T, and T-Mobile have lined up behind a new standard called SHAKEN/STIR (Signature-based Handling of Asserted Information using […]
The PKI Guy discusses security threats with Alex Momot of Remme

Q&A with Alex Momot, CEO of Remme TPG: What do you see as the biggest security threats organizations are facing today? AM: There are a lot of them. But the ones that I see as most critical right now are phishing and shadow IT. Both of them are also partly personnel issues. With phishing, organizations can […]
The PKI Guy talks quantum computing with Roger A. Grimes

Q&A with Roger A. Grimes, IDG/CSOOnline security columnist and Data-Driven Defense Evangelist for KnowBe4, Inc. TPG: What’s the worst malware you’ve seen lately? RG: Ransomware in general. You’ve got tons of companies going down for days to weeks. Ten percent of small businesses never recover and go out of business. Most companies are paying the ransom because they […]
The PKI Guy talks security with Dr. Thorsten Groetker of Utimaco

Q&A with Dr. Thorsten Groetker, chief technology officer, Utimaco TPG: What are enterprises’ top security concerns? TG: Large enterprises have security concerns on many different layers; from secure single sign-on solutions for individual users to security in the cloud. Often, all those challenges must be addressed with an eye on regulatory requirements. How to maintain security in […]
The case of accidentally deleted user certificates
As part of joining PKI Solutions, several blog posts from my old site are re-posted here for visibility and thoroughness. Sometimes users accidentally delete their certificates from personal store. After that users are not able to perform certificate-based tasks, i.e. decrypt files or mail, sign data and authenticate. Some organizations implement Key Archival for certificate […]
Our Advanced PKI Training Course Is Now Online
Now is the time to keep your PKI healthy – now more than ever. The key to operating and maintaining your PKI is understanding how it all works. We all know that PKIs are the foundational backbone of enterprise IT security, IoT, and industry specific security standards. Ensuring the security and integrity of your PKI […]
Deleting certificates from Windows Certificate Store programmatically (PowerShell and C#)
Yesterday I went through one thread on Reddit: New to PS and want to create a script to clear all personal certificates from a local machine and something was suspicious to me. Then I went further and asked google for similar question and examined first page: Delete certificate from Computer Store Removing a certificate from […]