Jason Soroko
Jason Soroko
The Agentic Trap: Why the Web is Hostile Territory for AIÂ
A profound shift is underway in AI deployment — from passive chatbots answering questions in sanitized boxes to browser agents. Beyond generating text, these agents orchestrate critical workflows. They navigate the open web, interact with SaaS platforms, click buttons and execute transactions.  This evolution promises massive productivity gains, but the recent BrowseSafe paper reveals a harsh reality ... Read More
Security Boulevard
Keeping an eye on the TLS clock: Key certificate lifecycle dates you need to know
The shift to 6-month (199-day) SSL/TLS certificate validity starting March 15, 2026 marks the beginning of a rapid acceleration toward shorter lifecycles, ultimately reaching 46 days by 2029. As renewal volumes multiply, manual processes will fail under pressure, exposing gaps in visibility, ownership, and automation. Organizations must adopt certificate lifecycle ... Read More
Understanding the Risk Scale: 200-Day SSL/TLS Validity Starts March 15, 2026
The reduction of public SSL/TLS certificate validity to 200 days starting March 15, 2026 marks the first major step toward much shorter lifespans. This shift will dramatically increase renewal frequency and expose the limits of manual certificate management. Organizations that lack automation risk outages, compliance failures, and rising operational costs ... Read More
Why we should start code signing LLM models
AI models are thinking. It’s time we start signing them to ensure trust, integrity, and security at the edge ... Read More
Authenticating with certificates? Stop. What you must change by 2026
By May 2026, public certificate authorities (CAs) will stop supporting TLS client authentication due to Chrome’s new root program rules. Organizations relying on public SSL/TLS certificates for user, device, or application authentication will need to switch to private CAs. This shift impacts VPNs, mTLS, Wi-Fi onboarding, and more. Modern private ... Read More
How to check if an SSL certificate is still valid
SSL/TLS certificates are critical for secure web communication, but if they expire, they can cause serious disruptions and security issues. With certificate lifespans shrinking to under 60 days, it's more important than ever to proactively monitor SSL validity and expiration status. This article walks through how to check SSL certificates ... Read More
Future-proofing your enterprise: the role of crypto-agile PKI in long-term security
Traditional PKI creates bottlenecks that slow digital transformation due to manual processes and limited integration. As organizations adopt cloud, DevOps, and Zero Trust, scalable and automated certificate management becomes essential. Modern PKI should offer automation, policy enforcement, and integration with existing tools to reduce risk and boost agility. Upgrading PKI ... Read More
From bottleneck to business enabler: making PKI work for digital transformation
Traditional PKI often creates security and agility bottlenecks due to manual processes and poor integration. As enterprises adopt cloud, DevOps, and Zero Trust, automated and scalable certificate management becomes essential. Modern PKI solutions must offer automation, policy enforcement, seamless integration, and broad coverage. Automated Internal PKI provides centralized control and ... Read More
From bottleneck to business enabler: making PKI work for digital transformation
Traditional PKI often creates security and agility bottlenecks due to manual processes and poor integration. As enterprises adopt cloud, DevOps, and Zero Trust, automated and scalable certificate management becomes essential. Modern PKI solutions must offer automation, policy enforcement, seamless integration, and broad coverage. Automated Internal PKI provides centralized control and ... Read More
Why certificate chaos is undermining your compliance strategy
Fragmented certificate management across teams and tools makes it difficult to enforce policies, leading to audit failures and regulatory fines. The updated NIST Cybersecurity Framework (CSF) 2.0 highlights governance as central to cybersecurity, increasing pressure on compliance leaders to demonstrate control. Centralized Internal PKI systems offer visibility, automation, and policy ... Read More

