Story image

DigiCert Labs to research postquantum cryptography & ML

04 Feb 2019

Digital certificate provider DigiCert will collaborate with university researchers and industry leaders on ways to develop innovative approaches to security challenges.

DigiCert, which provides TLS/SSL and PKI solutions for identity and encryption, launched DigiCert Labs last week – an initiative that aims to solve security challenges in areas including authentication, data integrity, encryption, and identity.

The first two research projects draw on postquantum cryptography, with the help of Microsoft Research, Utimaco, ISARA and Gemalto. The projects also look at machine learning—in collaboration with the University of Illinois at Urbana-Champaign. 

DigiCert says it welcomes additional collaborators and will assess the relevance of each opportunity.

DigiCert Labs will use two approaches to conduct its research innovation. The first will provide grants to universities to support research into specific challenges related to emerging threats and also through collaboration with other enterprise labs. Guidance will come from DigiCert's review of academic and industry research as well as feedback from customers. 

The second approach involves providing large, anonymised datasets to help researchers address real-world use cases.

While DigiCert isn’t giving much away about what those datasets will comprise, DigiCert CTO Dan Timpson says DigiCert Labs is working with the ‘brightest minds’ to bring innovative approaches to customers, partners, and prospects.

"In collaboration with leading researchers and industry leaders, we plan to gain data-based insights into solving some of the most pressing security challenges related to our core competencies of encryption, authentication, identity and data integrity,” Timpson adds.

According to DigiCert Labs head Avesta Hojjati, DigiCert Labs will tackle customers’ biggest challenges, and challenges to the industry at large. It hopes to drive innovation that, “Will benefit companies today, and well into the future.”

"As part of this work, we will contribute industry-specific expertise and resources to ensure advancements in cyber security technologies and practical solutions to common problems,” Hojjati continues.

"The researchers at the University of Illinois at Urbana-Champaign work on challenging problems related to machine learning, security and privacy, and blockchain," says Hojjati. "DigiCert is supporting the researchers to advance tomorrow's security solutions."

DigiCert has also launched a new digital certificate management solution for cloud and hosted environments.

CertCentral Enterprise allows customers to customise and automate all stages of lifecycle management for TLS/SSL and other digital certificate types—all from an intuitive user interface. With single sign on (SSO) options, robust RESTful APIs to automate any feature, and detailed role management, users can manage all their certificates from a single, scalable platform.

According to Timpson, the new solution is the culmination of the best features and scalability that enterprises expect from their certificate provider. DigiCert chief of product Jeremy Rowley says this is one of many ‘exciting’ announcements to come.

“Enterprises can manage everything connected to their TLS certificates in one place. CertCentral Enterprise is a comprehensive all-in-one digital certificate management platform for the cloud and hosting environments,” Rowley concludes.

Veeam releases v3 of its MS Office backup solution
One of Veeam’s most popular solutions, Backup for Office 365, has been upgraded again with greater speed, security and analytics.
Too many 'critical' vulnerabilities to patch? Tenable opts for a different approach
Tenable is hedging all of its security bets on the power of predictive, as the company announced general available of its Predictive Prioritisation solution within Tenable.io.
Industrial control component vulnerabilities up 30%
Positive Technologies says exploitation of these vulnerabilities could disturb operations by disrupting command transfer between components.
McAfee announces Google Cloud Platform support
McAfee MVISION Cloud now integrates with GCP Cloud SCC to help security professionals gain visibility and control over their cloud resources.
Scammers targeting more countries in sextortion scam - ESET
The attacker in the email claims they have hacked the intended victim's device, and have recorded the person while watching pornographic content.
Cryptojacking and failure to patch still major threats - Ixia
Compromised enterprise networks from unpatched vulnerabilities and bad security hygiene continued to be fertile ground for hackers in 2018.
Princeton study wants to know if you have a smart home - or a spy home
The IoT research team at Princeton University wants to know how your IoT devices send and receive data not only to each other, but also to any other third parties that may be involved.
Organisations not testing incident response plans – IBM Security
Failure to test can leave organisations less prepared to effectively manage the complex processes and coordination that must take place in the wake of an attack.