testssl.sh :verified:
testssl.infosec.exchange.ap.brid.gy
testssl.sh :verified:
@testssl.infosec.exchange.ap.brid.gy
Fled from the birdsite to a separate account.

Toots mostly in EN about testssl.sh and related stuff.

[bridged from https://infosec.exchange/@testssl on the fediverse by https://fed.brid.gy/ ]
testssl.sh 3.3dev update:
- shellcheck ensures better code quality when check in, thanks to MFTabriz
- flag --rating only does the bare minimum of checks for SSLlabs rating, thanks to magnuslarsen

Both branches had some CA stores update
November 13, 2025 at 7:08 AM
testssl.sh 3.3dev now has (finally) early data support a.k.a 0-RTT .
October 9, 2025 at 6:38 PM
Btw: the new server for testssl.sh also supports #quic and other nice smaller bells and whistles
October 8, 2025 at 10:25 PM
Reposted by testssl.sh :verified:
Willing to help? See https://github.com/testssl/testssl.sh/issues/2908

I am curious whether Apple finally made a step toward #pqc to catch up with all other major browser vendors with the release of version 26 of their operating systems. They lag behind since months:

#tls
October 1, 2025 at 1:34 PM
Willing to help? See https://github.com/testssl/testssl.sh/issues/2908

I am curious whether Apple finally made a step toward #pqc to catch up with all other major browser vendors with the release of version 26 of their operating systems. They lag behind since months:

#tls
October 1, 2025 at 1:34 PM
New release for the stable version.
September 18, 2025 at 7:04 PM
Don't know whether anybody of you guys uses #apple Mail but I'd rather be careful:

https://www.linkedin.com/feed/update/urn:li:activity:7349803754226868224/

TL;DR: UI prefers #starttls over #tls for #imap (but actually for some reason uses both ports). Apple Product Security doesn't see a […]
Original post on infosec.exchange
infosec.exchange
August 1, 2025 at 2:24 PM
testssl.sh 3.3dev got a bit snappier, most notably for Macs:

#tls #ssl #pentesting
July 31, 2025 at 7:20 AM
If you didn't know: #ipv6 works for testssl.sh since an eternity. For historical reasons it needs to be enabled via "-6" on the command line or "HAS_IPv6=true" in your environment.

The leftover / historical reason is an large error message when users don't have a fully working connectivity […]
Original post on infosec.exchange
infosec.exchange
July 16, 2025 at 8:17 AM
testssl.sh makes it easier now for also for MacOS users to run a #quic protocol test -- if you have #openssl from e.g. #homebrew installed.

It automagically uses that one for testing QUIC then, in 3.3dev.
July 16, 2025 at 7:58 AM
PR for #opossum vulnerability pending in testssl.sh 3.3dev:

https://github.com/testssl/testssl.sh/pull/2838

@hanno
July 11, 2025 at 11:34 AM
For all folks who are into rating to see how good the TLS setup is:

testssl.sh re-adjusted/bumped in stable (3.2) and 3.3dev the #ssllabs rating guide to 2009r --thanks to magnuslarsen 👍
July 10, 2025 at 9:25 AM
First draft for #quic test is there as a PR for 3.3dev
July 3, 2025 at 1:10 PM
Further development now takes place in the 3.3dev branch which was just created

https://github.com/testssl/testssl.sh/tree/3.3dev
GitHub - testssl/testssl.sh: Testing TLS/SSL encryption anywhere on any port
Testing TLS/SSL encryption anywhere on any port . Contribute to testssl/testssl.sh development by creating an account on GitHub.
github.com
June 15, 2025 at 8:25 AM
Does anybody has a solution for the problem that a #github #action #badge shows also failed actions in a PR?

Help would be much appreciated.

Details here: https://github.com/testssl/testssl.sh/issues/2794

Boosts appreciated
[Help requested] Only current branch for CI badge · Issue #2794 · testssl/testssl.sh
The file Readme.md displays a couple of badges. There are two badges for Github actions. Unfortunately both reflect the status of everything, i.e. also failed actions in PRs. So that a visitor gets...
github.com
June 11, 2025 at 5:25 PM
Reposted by testssl.sh :verified:
the single best resource for Open Source CRA info is this repo: https://github.com/orcwg/cra-hub
GitHub - orcwg/cra-hub: Everything you ever wanted to know about the CRA and its implementation
Everything you ever wanted to know about the CRA and its implementation - orcwg/cra-hub
github.com
May 27, 2025 at 3:26 PM
I have some questions...
May 26, 2025 at 8:41 PM
Branch 3.2 has now also a github action running under MacOS which permits dealing with compatibility issue in the very beginning, i.e. when write a PR

And it has more badges now ;-) -- including the status of the Ubuntu and MacOS CI runner.
May 20, 2025 at 4:10 PM
Can someone assist writing a unit test for #github using a MacOS runner?

https://github.com/testssl/testssl.sh/issues/2308#issuecomment-2862482574

RTs welcome
May 8, 2025 at 11:30 AM
Some browsers and also #openssl 3.5.0 support already #pq #kems for key exchange to to provide secure key establishment resistance.

The (real soon now) to be released testssl.sh 3.2 final will include handshake simulation, see last column:
April 10, 2025 at 8:14 AM