Business Wire
Welcome
  • Log In
  • Sign Up
Search News:
Help
 Qualys, Inc.
July 29, 2010 08:00 AM Eastern Time 

Qualys Announces Free Online SSL Test for Businesses to Audit the SSL Implementation of Their Web Sites

New Research Introduced at Black Hat USA 2010 Unveils State of SSL on the Internet

Black Hat USA 2010

LAS VEGAS--(BUSINESS WIRE)--Qualys®, Inc., the leading provider of on demand IT security risk and compliance management solutions, today announced a free online SSL test for web sites at Qualys SSL Labs, a site dedicated to providing resources for successfully using SSL to secure web sites and online transactions. The free online SSL test examines a web site’s SSL certificate chain to ensure it is trusted and serves as a good security foundation for communication over the Internet. In conjunction with this release, the findings of research conducted over the past year studying about 120 million registered domain names using more than 800,000 SSL certificates will be presented in a live session today at Black Hat USA 2010.

“SSL is a successful protocol that serves as the security backbone of the Internet, but most sites just don’t have it well configured”

SSL is a security protocol that protects Web sites by enabling encryption of sensitive information during online transactions. While it is a valuable protocol, implementations can have issues, including problems with configurations and certificate validations, which render SSL useless, jeopardizing security on the Internet. Qualys SSL Labs and the new online SSL test help any user, whether technical or not, evaluate their SSL implementations to better utilize SSL and protect their sites from possible attacks.

“SSL is a successful protocol that serves as the security backbone of the Internet, but most sites just don’t have it well configured,” said Ivan Ristic, director of engineering for Qualys and creator of SSL Labs. “Qualys SSL Labs is non-commercial research effort focused on understanding how SSL is used as an attempt to make it better and help users everywhere configure it and use it properly.”

The new free online test lets a user test a web site’s SSL certificate chain to ensure it is trusted and serves as a good security foundation for communication over the Internet. It also performs comprehensive configuration analysis to detect configuration weaknesses and performance issues. Users simply enter the web site domain name, and the test will assess any server behind the domain. The test results include a numerical score, grading the SSL server across several categories, as well as a letter grade that rates the SSL configuration. To improve a score, guidelines and resources for improved SSL use are available at Qualys SSL Labs.

A final numerical score from zero to 100 and a letter grade is provided at the end of the test indicating the strength of the SSL implementation on the web site being tested.

“Our aim at SSL Labs is to discuss the rarely mentioned aspects of SSL, promote its correct usage, and generally inspire everyone to do their part to promote security,” Ristic said.

Highlights of the research that will be discussed in details at the Black Hat USA talk include:

  • Only a tiny portion of all sites use SSL
  • Only 70 percent of certificates are valid
  • Half of all sites support the insecure SSLv2 protocol
  • About 38 percent of SSL sites are well configured; 62 percent are not
  • About 32 percent of sites still suffer from the renegotiation vulnerability

Availability

Ivan Ristic will introduce the new online SSL tool and discuss his research of SSL certificates across the globe in a session at Black Hat USA 2010 on July 29 at 10 a.m. PDT.

To learn more about SSL and to use the new free SSL testing tool, visit: https://www.ssllabs.com/. To discuss or provide feedback on the SSL test with other users, visit the Qualys Community at: http://community.qualys.com/community/ssllabs.

About Qualys

Qualys, Inc. is the leading provider of on demand IT security risk and compliance management solutions – delivered as a service. Qualys’ Software-as-a-Service solutions are deployed in a matter of hours anywhere in the world, providing customers an immediate and continuous view of their security and compliance postures.

The QualysGuard® service is used today by more than 4,000 organizations in 85 countries, including 42 of the Fortune Global 100 and performs more than 500 million IP audits per year. Qualys has the largest vulnerability management deployment in the world at a Fortune Global 50 company.

Qualys has established strategic agreements with leading managed service providers and consulting organizations including BT, Etisalat, Fujitsu, IBM, I(TS)2, LAC, NTT, SecureWorks, Symantec, Tata Communications and TELUS.

For more information, please visit www.qualys.com.

Qualys, the Qualys logo and QualysGuard are proprietary trademarks of Qualys, Inc. All other products or names may be trademarks of their respective companies.

Contacts

Qualys, Inc.
Melinda Marks, 650-801-6242
mmarks@qualys.com
or
Schwartz Communications for Qualys
Matthew Grant, 415-817-2562
mgrant@schwartz-pr.com

Recent Stories from Qualys, Inc.

  • View Press Release
    Qualys Announces BrowserCheck Business Edition - New Free Service to Help Companies Keep Web Browsers Up-to-Date and Secure
    June 20, 2011
    REDWOOD SHORES, Calif.--(BUSINESS WIRE)--Qualys®, Inc., the leading provider of Software-as-a-Service (SaaS) IT security risk and compliance management solutions, today announced Qualys BrowserChec... more »
  • View Press Release
    Dimension Data Partners With Qualys to Provide IT Security and Compliance Solutions as a Service on a Global Scale
    April 19, 2011
    LONDON--(BUSINESS WIRE)--InfoSecurity Europe – Qualys®, Inc., the leading provider of Software-as-a-Service (SaaS) IT security risk and compliance management solutions, announced today that Dimensi... more »
  • View Press Release
    Qualys Partners with StopBadware to Help Combat Malware on the Internet
    March 29, 2011
    Graphic
    CAMBRIDGE, Mass. & REDWOOD SHORES, Calif.--(BUSINESS WIRE)--Qualys, Inc., the leading provider of software-as-a-service (SaaS) IT security risk and compliance management solutions, announced today ... more »
More Stories
RSS feed for Qualys, Inc.
 Qualys, Inc.

Release Versions

  • EON: Enhanced Online News

Company Information Center

Qualys, Inc. RSS feed for Qualys, Inc.

Share

  • Facebook
  • Twitter
  • LinkedIn
  • Delicious
  • Reddit
  • StumbleUpon
  • Digg
  • MySpace
  • Newsvine
  • Google Bookmark
  • Yahoo! Bookmark
  • EmailEmail
Tweet
  • EmailEmail
All News
Business Wire
  • Home
    • Home
    • Membership Benefits
    • Submit a Press Release
  • News
    • All News
    • News with Multimedia
    • News by Industry
    • News by Subject
    • News by Language
    • RSS Feeds
    • Business Wire Mobile
    • Features
    • Company NewsCenters
    • Smart Marketing Pages
    • Company Profiles
    • Annual Reports
  • Events
    • Trade Shows & Events
    • Earnings & Conference Calls
    • Business Wire Events
  • PR Services
    • Press Release Distribution
    • Distribution Lists
    • Industry Targeting
    • LatinoWire & Ethnic Media
    • Public Policy Wire
    • Trade Show Services
    • Photos & Multimedia Marketing
    • GloMoSoMe
    • Press Release Measurement
    • Mobile Alerts
    • Clips & Research
    • Fax & Email Services
    • Online Newsrooms
    • News Feeds
  • IR Services
    • Material News Disclosure
    • XBRL
    • EDGAR (US)
    • IPO Services
    • SEDAR (Canada)
    • European Disclosure
    • Corporate Social Responsibility (CSR)
    • Investor Targeting
    • Fax & Email Services
    • Online Investor Centers
    • IR Resource Center
  • SEO Services
    • Press Release Optimization
    • EON: Enhanced Online News
    • Webinars & Resources
  • Journalist Tools
    • PressPass: Your News
    • Conduct Surveys
    • Business Wire News Feeds
    • Business Wire News On Your Website
    • Journalism Associations
  • Support & Education
    • FAQ
    • How to Write a Press Release
    • How To Optimize a Press Release for Search
    • How to Distribute a Press Release
    • Find Your News Online
    • Sample Press Release
    • Features News Tips
    • International Media Tips
    • SEC Regulations
    • Exchange Guidelines
    • White Papers
    • Webinars & Podcasts
    • Get WiredIn!
  • About Us
    • Business Wire Newsroom
    • Contact Us
    • History
    • Jobs
  • About Us
  • Contact Us
  • Site Map
  • Privacy Statement
  • Terms of Use
  • ©2012 Business Wire

More Business Wire sites

  • Canada
  • UK/Ireland
  • Deutschland
  • France
  • Italy
  • Japan
  • EON: Enhanced Online News
  • Tradeshownews.com
  • PYMNTS.com

About Us

  • Business Wire Newsroom
  • Contact Us
  • Business Wired blog

News on BusinessWire.com

  • All News
  • RSS Feeds
  • Business Wire Mobile Apps

Follow Us on Twitter

  • @BusinessWire
  • @BWSportsWire
  • @BWPolitics
  • @BWCSRNews
  • @EONpr
  • @TradeshowNews
  • @BW_Canada
  • @BWIntlMedia
  • @BWInfoDiva
  • @BusinessWireFR

Like Us on Facebook

  • Business Wire
  • Tradeshow News