Cryptography in the Age of Heartbleed

Cryptography in the Age of Heartbleed

OWASP Foundation via YouTube Direct link

Intro

1 of 21

1 of 21

Intro

Class Central Classrooms beta

YouTube playlists curated by Class Central.

Classroom Contents

Cryptography in the Age of Heartbleed

Automatically move to the next video in the Classroom when playback concludes

  1. 1 Intro
  2. 2 My background
  3. 3 Why this talk?
  4. 4 SSL/TLS
  5. 5 How secure is TLS? - Many active attacks and implementation vulnerabilities
  6. 6 Why these problems?
  7. 7 Quite a bit
  8. 8 Ciphersuite Negotiation
  9. 9 MITM Negotiation
  10. 10 Example 2: Negotiation
  11. 11 Crypto library APIs
  12. 12 Present Day
  13. 13 Too much complexity 2/3
  14. 14 Algorithm Choices 1/2
  15. 15 Ambiguous specification 1/2
  16. 16 Non-intuitive interfaces 3/7
  17. 17 Language problems
  18. 18 Solution: Simplify!
  19. 19 Software
  20. 20 CVE-2015-7756
  21. 21 Crypto is hard

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.