Most Popular

1500 questions
41
votes
4 answers

What alternatives are there to the existing Certificate Authority system for SSL?

Whilst the current CA system works very well for a lot of people, it does put a lot of power into individual CAs' hands, and makes a CA hack potentially devastating for customers and business. What alternatives are there to certificate authorities,…
Polynomial
  • 133,763
  • 43
  • 302
  • 380
41
votes
4 answers

Are password managers more secure than a slightly different password for each website?

Let's say I use a 5 word password composed of 4 words plus the name of the website I'm accessing. For example for GitHub, it would be something like "correct battery horse staple github". How is that different to using a password manager with…
None
  • 529
  • 4
  • 4
41
votes
9 answers

What are the potential risks of leaving a device in public, but locked?

Let's say you're in a public café, or conference, where you trust your device won't be stolen if you go to the bathroom for 5 minutes, but you don't trust it might not be tampered with. What are the potential security risks I might run into here,…
Zee
  • 529
  • 1
  • 4
  • 7
41
votes
7 answers

Security risks of user generated HTML?

I am creating a website that allows people to upload HTML content. Currently these are the tags that are banned: