Syndicated Blog

[su_panel border="1px solid #ddd" radius="3" text_align="center"]
The Security Practice
Issues and reflections of an Information Risk Management group
[/su_panel]
The Journey to Universal HTTPS

The Journey to Universal HTTPS

|
Recently I was reading the book “The Box: How the Shipping Container Made the World Smaller and the World Economy Bigger”. I was struck by how many pieces and components had to ...

Enterprise Networks Need to Prepare for the Security Impact of New TLDs

|
Last week, after speaking with a member of ICANN’s Security and Stability Advisory Committee, Bill Smith and I authored a letter to ICANN expressing our concern with the proposed and potential delegation ...

In Defense of HTML5

|
Many of the broad family of specifications commonly grouped under the “HTML5” umbrella are scheduled to be completed in 2013, and with the release of Internet Explorer 10, the users of every ...

Certificate Authorities asked to step up for Internet security; CABF takes a step back instead.

|
Hello, Michael Barrett here; Back in February, my team and I came to the CA/Browser Forum to initiate a reform process to help grow that organization into a more mature and capable ...

CA/Browser Forum Governance Reform Proposals Published

|
A number of months ago, PayPal approached the CA/Browser Forum with a proposal that that it restructure its governance model to become a more mature and capable organization, able to take on ...

Help Keep PayPal Safe – The Bug Bounty Way!

| | Disclosure
In an effort to keep PayPal the safe and secure online payment company, we are pleased to announce the launch of a bug bounty program! Our official announcement is here and the ...

New Research and Progress Against Clickjacking at the W3C

|
The Web Application Security Working Group at the W3C is nearing one year since its charter was approved. In that time, it’s made some quite important progress. Content Security Policy (CSP) 1.0 ...

Raising the Bar with the Domain Policy Framework

|
PayPal is pleased to be invited by Artemis Internet Inc. to participate in the Domain Policy Working Group. PayPal has long been a leader in multi-stakeholder efforts to tackle the problems of ...