December 08, 2020 12:00PM
OPAQUE: The Best Passwords Never Leave your Device
Privacy Week
Research
Passwords
Protocols
PAKE
Security
Imagine passwords for online services that never leave your device, encrypted or otherwise. OPAQUE is a new cryptographic protocol that makes this idea possible, giving you and only you full control of your password....
December 08, 2020 12:00PM
Helping build the next generation of privacy-preserving protocols
Privacy Week
Encryption
Cryptography
DNS
DoH
Authentication
Passwords
TLS
Encrypted SNI
Research
Today, we’re making several announcements around improving Internet protocols with respect to something important to our customers and Internet users worldwide: privacy....
October 01, 2020 3:53PM
NTS is now an RFC
Time
IETF
Crypto
DNS Security
Research
After much hard work, NTS finally becomes an official RFC.This means that Network Time Security (NTS) is officially part of the collection of protocols that makes the Internet work....
November 01, 2019 1:00PM
Delegated Credentials for TLS
Crypto Week
Crypto
Security
Keyless SSL
Product News
Research
Today we’re happy to announce support for a new cryptographic protocol that helps make it possible to deploy encrypted services in a global network while still maintaining fast performance and tight control of private keys: Delegated Credentials for TLS....
October 31, 2019 1:00PM
Announcing cfnts: Cloudflare's implementation of NTS in Rust
Crypto Week
Crypto
Security
NTS
Product News
Research
Several months ago we announced that we were providing a new public time service. Part of what we were providing was the first major deployment of the new Network Time Security protocol, with a newly written implementation of NTS in Rust....
October 30, 2019 1:00PM
The TLS Post-Quantum Experiment
In June, we announced a wide-scale post-quantum experiment with Google. We implemented two post-quantum (i.e., not yet known to be broken by quantum computers) key exchanges, integrated them into our TLS stack and deployed the implementation on our edge servers and in Chrome Canary clients....