DETECTION OVERVIEW
Risk Factors
Although most web browsers display an expired certificate warning to the user, the warning can erode user trust, resulting in loss of reputation or brand credibility. Users can ignore warnings and connect to a server with an expired certificate, but insecure SSL/TLS connections increase the risk of exposure to remote malicious servers or machine-in-the-middle (MITM) attacks such as phishing scams.
Kill Chain
Risk Score
56
Monitor for expiring TLS certificates and promptly renew expired TLS certificates
Establish a security policy that directs employees to refrain from connecting to insecure websites