Checking that functions are constant time with Valgrind (2010)

Why not DANE in browsers

The POODLE bites again

PKCS#1 signature validation

A couple more formal systems

A shallow survey of formal methods for C code

HSTS for new TLDs

Boring SSL - Google to apply custom OpenSSL patches in Chrome and Android.

Early ChangeCipherSpec Attack

Matching cryptographic primitive strengths

SHA-256 Certificates Are Coming