🛡️ Security Guides & Tools

SSL/TLS, security headers, DNSSEC, and practical security checks for websites, domains, and networks.

🔎 Search Security guides & tools… Ctrl K
⭐ FEATURED
Featured Guide
Security
DNSSEC Basics

A complete beginner's guide to DNS Security Extensions — what DNSSEC protects against, how the chain of trust works, and how to check it.

Read the guide →
Foundations
SSL/TLS Certificates
📚
Security
TLS/SSL Protocol & Certificate Types Guide
What actually changed in TLS 1.3, and the real differences between wildcard and SAN (multi-domain) SSL certificates.
📚
Security
SSL Certificate Validation Levels: EV vs OV vs DV
What DV, OV, and EV SSL certificates actually verify, and how the certificate chain of trust is validated by browsers.
📚
Security
Certificate Security & Trust Verification
How OCSP stapling checks certificate revocation in real time, and how Certificate Transparency logs catch fraudulent certificates.
📚
Security
Decoding a CSR: Reading SAN & Subject Fields
How a PKCS#10 CSR is structured at the ASN.1 level, how to read openssl req -text output, and why SAN — not Common Name — actually matters.
📚
Security
Verifying & Troubleshooting CSR Errors
How to verify a CSR's signature, confirm it matches a private key, decode common error messages, and a systematic troubleshooting checklist.
📚
Security
X.509 Certificate Structure: Fields & SAN Extension
How an issued certificate is structured at the ASN.1 level — extensions, the criticality flag, and the SAN GeneralName types browsers check.
📚
Security
Certificate Chains & PEM vs DER Encoding
How a certificate chain is verified link by link, why incomplete chains are the most common deployment error, and PEM vs DER explained.
📚
Security
Root CA & Intermediate Certificates Explained
How root certificates earn trust, why intermediates exist as a working layer beneath them, and what happens when one is distrusted.
📚
Security
Broken Certificate Chain: Errors & Fixes
How to read chain error messages from Chrome, Firefox, curl, and Java, and fix them on nginx, Apache, or IIS.
📚
Security
SQL Injection Basics, Testing & Blind SQLi Explained
The three broad categories of SQL injection, and how blind SQLi extracts data one bit at a time without visible output.
📚
Security
SQL Injection Prevention & Parameterized Queries
How parameterized queries eliminate SQL injection structurally, and why filtering alone always eventually fails.
🛠️ RELATED TOOLS
Security Tools
📚 24 GUIDES
Security Guides, Organized by Path
Password Security
Advanced: DNSSEC Deep Dive
Certificate Authorization (CAA)
DNS Leak Prevention
Advanced Topics
🔗 Other topics: DNS · IP & Networking · Email