The London Protocol
- Date:August 22, 2018
- Author(s):
- Sean Sposito
- Test
- Report Details: 4 pages, 0 graphics
- Research Topic(s):
- Cybersecurity
- Fraud & Security
- PAID CONTENT
Overview
Amidst an increasing number of phishing reports involving digital certificates, several Certificate Authorities (CAs) have banded together. For the first time, these arbiters of digital trust are cooperating in an effort to proactively ensure the certificates they’re providing (OV and EV Certificates, see below) to financial institutions and others are worthy of the trust that consumers place in them.
In late June — less than a month before Google released the 64th version of its Chrome browser, which began labeling unencrypted websites as unsafe — Comodo CA, Entrust Datacard, GlobalSign, GoDaddy, and Trustwave came to a broad agreement. Dubbed the London Protocol, the pact was announced by the CA Security Council during a CA/Browser Forum event in its namesake. It boils down to an initial promise to share URLs amongst themselves that have been flagged as potentially malicious through an agreed upon protocol.
Book a Meeting with the Author
Related content
States of Uncertainty: How Cyber-Threat Intel Reduces Digital Transactional Risk
Digital identity standards, privacy laws, and verification tools vary across states, so financial institutions have gaps that cybercriminals are quick to exploit. Leading organizat...
2026 Direct-to-Consumer Identity Protection Services Vendor Scorecard
Gen Digital, provider of Norton 360 with LifeLock Ultimate Plus, took Best in Class in overall identity theft protection sold directly to consumers, followed by Equifax, provider o...
2026 Direct-to-Consumer Identity Protection Services Overview: Gains, Gaps, and Opportunities for Industry Growth
Javelin Strategy & Research’s biennial assessment of direct-to-consumer identity theft protection services (IDPS) vendors finds that they are expanding their services. They are off...
Make informed decisions in a digital financial world