Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
Firesheep: Helping Users Win.
Search
mportiz08
November 18, 2011
Technology
87
1
Share
Firesheep: Helping Users Win.
Presentation for my cpe-300 class.
mportiz08
November 18, 2011
Other Decks in Technology
See All in Technology
PicoRuby as a Multi-VM Operating System
kishima
1
200
Practical TypeProf: Lessons from Analyzing Optcarrot
mame
0
930
Choose your own adventure in agentic design patterns
glaforge
0
150
AgentCore×VPCでの設計パターンn選と勘所
har1101
3
300
AzureのIaC管理からログ調査まで、随所に役立つSkillsとCustom-Instructions / Boosting IaC and Log Analysis with Skills
aeonpeople
0
250
データを"持てない"環境でのアノテーション基盤設計
sansantech
PRO
1
140
コミュニティ・勉強会を作るのは目的じゃない
ohmori_yusuke
0
250
AI駆動1on1〜AIに自分を育ててもらう〜
yoshiakiyasuda
0
140
国内外の生成AIセキュリティの最新動向 & AIガードレール製品「chakoshi」のご紹介 / Latest Trends in Generative AI Security (Domestic & International) & Introduction to AI Guardrail Product "chakoshi"
nttcom
4
1.4k
[最強DB講義]推薦システム | 評価編
recsyslab
PRO
0
100
巨大プラットフォームを進化させる「第3のROI」
recruitengineers
PRO
2
1.1k
AIコーディング時代における、ソフトウェアサプライチェーン攻撃に対する防衛術(簡易版)
soysoysoyb
0
120
Featured
See All Featured
Navigating Algorithm Shifts & AI Overviews - #SMXNext
aleyda
1
1.2k
Dominate Local Search Results - an insider guide to GBP, reviews, and Local SEO
greggifford
PRO
0
150
10 Git Anti Patterns You Should be Aware of
lemiorhan
PRO
659
61k
個人開発の失敗を避けるイケてる考え方 / tips for indie hackers
panda_program
122
21k
A Guide to Academic Writing Using Generative AI - A Workshop
ks91
PRO
1
280
The Art of Programming - Codeland 2020
erikaheidi
57
14k
Git: the NoSQL Database
bkeepers
PRO
432
67k
Chasing Engaging Ingredients in Design
codingconduct
0
170
Digital Ethics as a Driver of Design Innovation
axbom
PRO
1
270
Into the Great Unknown - MozCon
thekraken
41
2.4k
Neural Spatial Audio Processing for Sound Field Analysis and Control
skoyamalab
0
270
Design and Strategy: How to Deal with People Who Don’t "Get" Design
morganepeng
133
19k
Transcript
Firesheep marcus ortiz helping users win.
released by Eric Butler on Oct 2010 at Toorcon 12
allows users to hijack sessions
None
full SSL encryption is the only countermeasure
Was the decision to release Firesheep to the public ethical?
why is this important?
Arguments Against privacy exploitation legal issues
Arguments For helping users win
SE Code 4.01 [software engineers shall] temper all technical judgments
by the need to support and maintain human values
SE Code 4.01 Eric Butler shall temper his decision to
release Firesheep by the need to support and maintain web users’ privacy
“Privacy rights are enshrined in our Constitution for a reason,
a thriving democracy requires respect for individuals' autonomy as well as anonymous speech and association.” -EFF (Electronic Frontier Foundation)
yes Butler’s decision to release Firesheep to the public was
ethical
references 1. http://codebutler.com/firesheep 2. http://www.acm.org/about/se-code 3. https://github.com/codebutler/firesheep 4. http://arxiv.org/pdf/1108.5864v1 5.
http://www.law.cornell.edu/uscode/18/1030.html 6. http://www.law.cornell.edu/uscode/18/ usc sec 18 00002511----000-.html 7. https://www.eff.org/work