Verifiedapp Blog
Home All posts

Tag

#tls-ssl

TLS/SSL

Forward secrecy (PFS): the cipher property that protects past traffic

If your private key is ever stolen, forward secrecy decides whether attackers can read only future traffic or every conversation you have ever had. Here is how it works.

Aug 17, 2026 · 3 min read
TLS/SSL

Weak ciphers explained: RC4, 3DES, and why 'it still works' is not safe

Your site has a padlock and HTTPS works fine — so why does the scan flag a weak cipher? Because 'the connection succeeded' and 'the connection was strong' are not the same thing.

Jul 16, 2026 · 3 min read
TLS/SSL

TLS 1.0 and 1.1 are dead: why your old protocols are a liability

TLS 1.0 and 1.1 were retired years ago, but plenty of hosts still accept them. Leaving them on is a quiet liability — here is what to support instead.

Jun 18, 2026 · 3 min read
TLS/SSL

Is my SSL/TLS actually secure? A plain-English checklist

The padlock only means encrypted, not strong. Real TLS security depends on three things: which protocols you accept, which ciphers you offer, and your certificate's health.

May 14, 2026 · 2 min read
Security Headers

HSTS explained: why HTTPS alone is not enough

You have HTTPS — but the first plain-HTTP request is still a weak point. HSTS closes it by telling the browser to never speak HTTP to your site again.

May 7, 2026 · 2 min read
© VerifiedApp — automated security scanning & trust badges. RSS