Главная
Study mode:
on
1
Intro
2
About Rob
3
About me
4
Agenda
5
What are Certificates
6
Certificate Authorities
7
Revocation Lists
8
Trust Chain
9
Implicit Trust
10
Certificate Authority
11
Demo
12
Web Browser
13
Example Perspective
14
Who is the Certificate Authority
15
The Man in the Middle
16
Lets Demo This
17
Strict Certificate Checking
18
How Much Information Leaks
19
Break Trust
20
Corporate Outages
21
Internal CA Pros and Cons
22
Identify Risk Areas
23
Tools
24
Code Reviews
25
Summary
Description:
Explore the impact of certificates on service-based infrastructure in this 43-minute conference talk from BSides San Francisco 2015. Delve into the world of certificates, certificate authorities, and trust chains, understanding their crucial role in web security. Learn about implicit trust, the concept of "The Man in the Middle," and the potential risks associated with strict certificate checking. Examine real-world scenarios, including corporate outages and the pros and cons of internal certificate authorities. Gain insights into identifying risk areas, utilizing essential tools, and conducting effective code reviews to enhance your organization's security posture.

When Doing the Right Thing Goes Wrong - Impact of Certificates on Service Based Infrastructure

Add to list
0:00 / 0:00