---
title: 'Stop Using SSL! Here’s Why …'
url: 'https://www.iwl.com/articles/blog/stop-using-ssl-heres-why'
markdown: 'https://www.iwl.com/articles/blog/stop-using-ssl-heres-why.md'
date: '2014-10-27'
description: 'The revelation of the POODLE vulnerability demonstrated that SSL 3.0 should be disabled and removed from any products that still contain it. Companies taking this step include Twitter, Apple, EBay, Mozilla Firefox, Google, and PayPal.'
---

# Stop Using SSL! Here’s Why …

The revelation of the [POODLE](http://thehackernews.com/2014/10/poodle-ssl-30-attack-exploits-widely_14.html) vulnerability demonstrated that SSL 3.0 should be disabled and removed from any products that still contain it. Companies taking this step include Twitter, Apple, EBay, Mozilla Firefox, Google, and PayPal.

When will others make the change to TLS 1.2?

Should they be allowed to continue to offer a flawed technology?

We think the answer is **“NO”** and they should immediately migrate to TLS 1.2.

Forcing use of TLS 1.2 is not enough, TLS must be properly implemented in the web browser and the server. IWL offers a [TLS 1.2 Test Suite](https://iwl.com/protocol-testing/tls) to identify bugs, problems, and flaws in TLS implementations.

---

## Want to know more about SSL/TLS?

---

## Navigation

- Parent: [Blog](https://www.iwl.com/articles/blog.md)
- Previous: [PCI Compliance = Poor Security](https://www.iwl.com/articles/blog/pci-compliance-poor-security.md)
- Next: [Do We Need A U.S. Department Of Code?](https://www.iwl.com/articles/blog/do-we-need-a-us-department-of-code.md)
