Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
HTTPS by default - no more clear
Search
oxdef
May 23, 2017
Programming
0
29
HTTPS by default - no more clear
Phdays 2017
oxdef
May 23, 2017
Tweet
Share
More Decks by oxdef
See All by oxdef
How to improve software security with OWASP open source initiatives
oxdef
0
140
Keynote at ZeroNights X (2021)
oxdef
0
100
Security Culture: Here be Hackers
oxdef
0
440
OWASP Top 10 - 2017 What’s inside?
oxdef
0
430
И разработчик станет хакером!
oxdef
0
35
Implementing Content Security Policy at a Large Scale
oxdef
0
470
Security in developer’s life: knowledge is power
oxdef
0
290
Web Application Security: future standards and technologies
oxdef
0
300
Content Security Policy - the panacea for XSS or placebo?
oxdef
0
330
Other Decks in Programming
See All in Programming
CSC307 Lecture 11
javiergs
PRO
0
240
【Go言語】golangci-lintの使い方
tomo1227
0
280
DDDを志して3年経ったら「DDDの皮を被ったクリーンアーキテクチャ」になった話【デブサミ2024夏】
texmeijin
1
620
Async Await: Mastering Python's Time-Bending Tricks - EuroPython2024
yanbo
1
290
Namespace on read
tagomoris
2
370
ピグパーティにおけるMongoDB CommunityバージョンからAtlasへの移行事例
10969hotaka
0
130
Architectures with Lightweight Stores: New Rules and Options
manfredsteyer
PRO
0
100
iOSアプリでクリップボードにコピーしたことをユーザーに伝えるちょうど良いフィードバックを探す
ski
0
100
さきがけから振り返るアーキテクチャ刷新 / Reflecting on the Architectural Renewal from the Vanguard
nrslib
2
780
Modern Angular: Renovation for Your Applications
manfredsteyer
PRO
0
140
Rubyのパフォーマンスプロファイリングの改善 / Enhancing performance profiling for Ruby
osyoyu
1
410
スクラムマスターって孤独じゃないですか?
yoshitaroyoyo
1
140
Featured
See All Featured
Designing the Hi-DPI Web
ddemaree
276
34k
Docker and Python
trallard
37
2.9k
Scaling GitHub
holman
458
140k
Practical Orchestrator
shlominoach
185
10k
Building Better People: How to give real-time feedback that sticks.
wjessup
357
18k
Git: the NoSQL Database
bkeepers
PRO
423
64k
Java REST API Framework Comparison - PWX 2021
mraible
PRO
20
7.2k
Building a Modern Day E-commerce SEO Strategy
aleyda
25
6.7k
Design by the Numbers
sachag
277
18k
"I'm Feeling Lucky" - Building Great Search Experiences for Today's Users (#IAC19)
danielanewman
224
21k
Robots, Beer and Maslow
schacon
PRO
157
8.1k
YesSQL, Process and Tooling at Scale
rocio
166
14k
Transcript
Яндекс
Я HTTPS by default - no more clear text in
the web! Taras Ivashchenko, Product security team, Y andex ндекс
None
Global HTTPS usage
Why so slow?!
None
Forward Secrecy
HTTPS only for the auth page is not enough!
Really big project Not only web protocols Internal knowledge base
and tools Trainings Deep tech things: TLS sessions, double certificate scheme All services moved to “HTTPS by default” mode Improved world around us ;-) At Y andex
None
Q&A
Taras Ivashchenko Product security team Contacts
[email protected]