Spotify hit with outage after forgetting to renew a certificate
bleepingcomputer.com
bleepingcomputer.com
I've been wondering for a while if any security researchers use those overpriced certs as an indicator. Someone paying $600+ per year for an SSL certificate and forgetting to renew it is an indication they might be misunderstanding and neglecting other stuff, right?
So like all companies?
In any case, certificates can only be purchased for a one year term now, so your hypothetical "one year ahead" doesn't fit the problem. Even if buying any updated cert that far ahead creates the same validity period it's not the buying the cert that's the catch — it's the deployment of said cert.