The ROBOT Attack Explained
2017 — a 19-year-old RSA padding vulnerability, rediscovered and still exploitable on some servers.
50 guides on the protocol's timeline, its biggest security failures, and how certificates went from expensive to free.
2017 — a 19-year-old RSA padding vulnerability, rediscovered and still exploitable on some servers.
2015 — when pre-installed adware quietly undermined HTTPS for every affected laptop's owner.
An early, high-profile example of what happens when a CA itself gets compromised.
A gradual, multi-year rollout that quietly reshaped how the entire web treats plain HTTP.
From a rare, notable trust signal to a design element browsers are now actively simplifying away.
A trust signal that research suggested wasn't actually changing user behavior.
A small, deliberately lightweight signal that still moved the needle on adoption.
A market that went from a real annual cost to functionally zero within about two decades.
The feature that made free, automatic HTTPS the default rather than an upsell.
A tool built for one CA became the open standard several others now use too.