In Log We Trust: Revealing Poor Security Practices with Certificate Transparency Logs and Internet Measurements
Our paper "In Log We Trust: Revealing Poor Security Practices with Certificate Transparency Logs and Internet Measurements" appears at PAM'18.
We publish data and analysis scripts at TUM University Library's immutable and long-term availability storage: https://mediatum.ub.tum.de/1422427
This GitHub repository exists to potentially update some of the code or add further explanations.
We conducted the measurements for the publication using the following open source software:
- ZMapv6: ZMap port scanner extended with IPv6 capabilities
- goscanner: Large-scale HTTPS scanner
- certificate-transparency: Extended version of Google's CT Log downloader
- cablint: Extended version of certificate linter