Velocity Conference Santa Clara 2014 Ignite

Security - go do this.

Bea Hughes

June 24, 2014


  1. Security: I Have 5 minutes, You Have a Lifetime Ben

  2. These are real graphs of *something*

  3. Mean Time to PasteBin™

  5. SSL* *(TLS really)



  10. Password hashing: Just use bcrypt.

  11. BUT WHAT ABOUT scrypt/ PBKDF2/SpecialThing?

  12. Cross Site Request Forgery

  13. And you were worried HTTPS would slow things down…

  14. Multi factor authentication Awesome taken apart SecureID token by

  16. Responsible disclosure is pretty cool!

  17. The winner takes it all!

  18. Bounty Hunters You may want to consider their kind of

  20. @benjammingh