SSL/TLS certificates Security Check List: ________________________________________________ BEAST (Browser Exploit Against SSL/TLS) BREACH (Browser Reconnaissance & Exfiltration via Adaptive Compression of Hypertext) CRIME (Compression Ratio Info-leak Made Easy) FREAK (Factoring Attack on RSA-EXPORT Keys) Heartbleed Bug POODLE Shell Schok Sweet 32 HSTS Change Cipher Spec (CCS) Insecure TLS Renegotiation Logjam Attack RC4 Cipher Enabled SSL 2.0 Protocol Enabled SSL 3.0 Protocol Enabled Weak Cipher Suites Certificate Name Mismatch Internal Names Missing or Misconfigured Fields and Values in Certificates SHA-1 Hashing Algorithm Weak Hashing Algorithm Weak Keys http://blog.opensecurityresearch.com/2013/05/fixing-sslv2-support-in-kali-linux.html http://www.exploresecurity.com/wp-content/uploads/custom/SSL_manual_cheatsheet.html