Scott Helme's profile photo

Scott Helme

United Kingdom

Writer, Security Researcher at Freelance

Hacker, researcher, builder of things. Founded @securityheaders/@reporturi, Pluralsight author, Microsoft MVP, award winning entrepreneur. Likes cars.

Articles

  • 3 weeks ago | scotthelme.co.uk | Scott Helme

    Well, I was certainly hoping for this result, but wasn't necessarily expecting it! I'm pleased to report that Ballot SC-081v3 passed, and that shorter certificate lifetimes are now coming! The Schedule I will go into more detail later in the post, but right now, let's cover the important details! Here is the schedule that was proposed and voted on, and will now come into effect: Certificate issued on or after Certificate issued before Maximum Validity Period March 15, 2026 398 days March 15,...

  • 3 weeks ago | scotthelme.co.uk | Scott Helme

    I've had solar and batteries at home for quite some time now, and despite my experience with them being really awesome, there were a few little things that were bugging me.

  • 2 months ago | scotthelme.co.uk | Scott Helme

    Continuing their trend of radical change for the better, Let's Encrypt have announced that, this year, you will be able to request certificates with a validity period of only 6 days!Let's EncryptI remember sitting in the room for this DEF CON 23 panel discussion in Las Vegas, almost 10 years ago in 2015(!), discussing the launch of Let's Encrypt.

  • Feb 3, 2025 | scotthelme.ghost.io | Scott Helme

    Operating an online service like Report URI, it comes with the territory. The ever present threat of attack is something we are fully aware of, and prepare for as best we can. Being the regular subject of attacks, mostly handled by our robust systems and automated defences, these attacks mostly go unnoticed, but not the most recent one!Transparency is at our coreI've been open about how things work at Report URI since the beginning, almost a decade ago.

  • Dec 10, 2024 | scotthelme.ghost.io | Scott Helme

    As we draw near the end of 2024, MITRE have taken a look back at the security vulnerabilities discovered throughout the year and published their list of the Top 25 Most Dangerous Software Weaknesses, and Report URI is here to help you with the #1 Top Threat: XSS. Common Weakness EnumerationThe CWE Program is a standardised way of referring to types of security vulnerabilities with a unique ID, allowing a common classification to be used for a particular type of vulnerability across industry.

Try JournoFinder For Free

Search and contact over 1M+ journalist profiles, browse 100M+ articles, and unlock powerful PR tools.

Start Your 7-Day Free Trial β†’

X (formerly Twitter)

Followers
38K
Tweets
44K
DMs Open
Yes
Scott Helme
Scott Helme @Scott_Helme
21 Apr 25

I've had a little fun with my @Tesla Powerwalls, @home_assistant and @teslemetry over the holiday weekend! https://t.co/3IX2b11fQG

Scott Helme
Scott Helme @Scott_Helme
16 Apr 25

RT @shehackspurple: The latest edition of the SheHacksPurple Training newsletter out! πŸ’– - The AppSec Survey I made for @semgrep πŸ’ͺ - A li…

Scott Helme
Scott Helme @Scott_Helme
15 Apr 25

RT @semgrep: Join Scott Helme and @shehackspurple on April 22 at 9AM PT for a live conversation about one of their favorite topics: securit…