This is a great read about the pitfalls and challenges associated with using encryption and using encryption effectively.
Encryption
Security Pros Failing to Inspect Encrypted Traffic
Welcome to the double-edged sword that is encryption.
https://www.infosecurity-magazine.com/news/security-pros-failing-to-inspect/
What the CIA WikiLeaks dump tells us: Encryption works
This article provides an interesting discussion concerning the value of encryption as one layer of defense for sensitive data, but please do not lose sight of the absolute fact that encryption is not a panacea. No defensive mechanism is perfect.
Defenses should be deployed in layers and plans should always be in place to mitigate the effects of eventual data compromise and loss. You can limit the effect of the problem, but you cannot eliminate the risk.
ESET – What is encryption and how does it work?
This is a fun little video providing a beginners introduction to encryption and how it works. Enjoy!
http://www.welivesecurity.com/videos/what-is-encryption-and-how-does-it-work/
IoT Crypto Key Reuse Soars 40%
Many application and device vendors have recognized the value of touting encryption and security as a component of their products. Yet, as the IoT has grown, the reuse of encryption keys has grown with it out of convenience and lack of oversight. This is and will continue to be a growing security problem.
http://www.infosecurity-magazine.com/news/iot-crypto-key-reuse-soars-40/
Sweet validation: Apple versus FBI
This situation did certainly shed a great deal of light on the value of purpose of encryption and for that we can all be thankful. I hope this conversation continues to move forward in a more constructive and less antagonistic manner.
http://www.scmagazine.com/sweet-validation-apple-versus-fbi/article/501566/
Encryption bill draft muddled, imposing
Please pay attention to this bill. Contact your member of Congress and/or Senator. This is a complicated issue and the draft bill to this point reflects authors who do not understand and/or do not know whats best or even practical.
http://www.scmagazine.com/encryption-bill-draft-muddled-imposing/article/488780/
HTTPS Everywhere: Encryption for All WordPress.com Sites
This is exciting on several levels. As a user of WordPress I am pleased. As a proponent of the Let’s Encrypt Project and as an IT security professional, I am ecstatic. This is yet another important step toward a more secure browsing experience for all.
https://en.blog.wordpress.com/2016/04/08/https-everywhere-encryption-for-all-wordpress-com-sites/
Will White House, currently mulling bill, remain mum on encryption?
I am not delusional. I realize that this topic will not dominate the presidential election debate. But, frankly, it should. In the 21st Century, a citizen and his/her data are effectively one. Data has become our livelihood. It has become our identity. It must be protected. It’s security is at the heart of Liberty. US legislators are making decisions now that will affect the security of PII for generations to come. Please take your civic responsibility seriously this November and beyond.
The Apple v. FBI Showdown – additional info
Here are a couple of additional articles concerning the Apple v. FBI case. Brian Krebs provides a fairly good, unbiased overview of the situation and Sophos is providing clarification concerning the password reset component currently in the news. This situation is far from over, so I will try to provide relevant content as it becomes available.
http://krebsonsecurity.com/2016/02/the-lowdown-on-the-apple-fbi-showdown/