Computer security and the lack of computer security is a fundamental issue that underpins much of how the Internet does (and doesn't) function. Many of the policy issues that EFF works on are linked to security in deep ways including privacy and anonymity, DRM, censorship, and network neutrality.

EFF works directly on a wide range of security issues including increased deployment of cryptographic protocols through projects like Certbot; improving the security of those protocols; offering legal assistance to researchers through our Coders' Rights Project; offering practical security advice to activists through the surveillance self-defense project; and working on the development of new security standards.

Security Highlights

Encrypting the Web

The web has largely switched from non-secure HTTP to the more secure HTTPS protocol. All web servers use one of these two protocols to get web pages from the server to your browser. HTTP has serious problems that make it vulnerable to eavesdropping and content hijacking. HTTPS fixes most of...

Coders' Rights Project

EFF's Coders' Rights Project protects programmers and developers engaged in cutting-edge exploration of technology. Security and encryption researchers help build a safer future for all of us using digital technologies, but too many legitimate researchers face serious legal challenges that prevent or inhibit their work. These challenges come from laws...

Security Updates

Oregon v. Nascimento

Nascimento worked as a cashier at the deli counter of a convenience store which had a lottery terminal. The store allowed employees to sell and validate lottery tickets for paying customers but prohibited them from purchasing lottery tickets for themselves or validating their own tickets. Nascimento was caught printing lottery...

SOPA Lives On For the International Anti-Counterfeiting Coalition

Last week the International Anti-Counterfeiting Coalition (IACC) held their spring conference in San Diego, to share intelligence about the latest strategies for combatting “counterfeiting” (by which they mean trademark infringement) and “piracy” (by which they mean copyright infringement). EFF's Jeremy Malcolm attended as an invited panelist, giving us the opportunity...

EFF's Updated SSL Configuration

EFF recently updated our SSL certificate and configuration. This gave us an A+ rating on SSL Labs, a great jumping off point for reviewing a site's secure connection. What follows is a quick, technical guide to how we achieved this.
Generating a Certificate
First we generate an...


