Security Jester

HSTS: Is Your Security Policy Leaving Users Vulnerable?

Introduction The answer to the question above is a resounding “YES!” if you don’t have Strict-Transport-Security (HSTS) enabled. Lately, I’ve seen a lot of sites operating without HSTS enabled and I’m not sure have good reason as to why.This is particularly troublesome because setting HSTS up on your site is such a low-effort, high-impact task. […]

HSTS: Is Your Security Policy Leaving Users Vulnerable? Read More »