Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
HTTPS by default - no more clear
Search
oxdef
May 23, 2017
Programming
0
34
HTTPS by default - no more clear
Phdays 2017
oxdef
May 23, 2017
Tweet
Share
More Decks by oxdef
See All by oxdef
How to improve software security with OWASP open source initiatives
oxdef
0
230
Keynote at ZeroNights X (2021)
oxdef
0
180
Security Culture: Here be Hackers
oxdef
0
530
OWASP Top 10 - 2017 What’s inside?
oxdef
0
610
И разработчик станет хакером!
oxdef
0
51
Implementing Content Security Policy at a Large Scale
oxdef
0
630
Security in developer’s life: knowledge is power
oxdef
0
380
Web Application Security: future standards and technologies
oxdef
0
390
Content Security Policy - the panacea for XSS or placebo?
oxdef
0
420
Other Decks in Programming
See All in Programming
Flutterチームから作る組織の越境文化
findy_eventslides
0
560
レイトレZ世代に捧ぐ、今からレイトレを始めるための小径
ichi_raven
0
460
しっかり学ぶ java.lang.*
nagise
1
410
Microservices Platforms: When Team Topologies Meets Microservices Patterns
cer
PRO
0
230
「文字列→日付」の落とし穴 〜Ruby Date.parseの意外な挙動〜
sg4k0
0
180
TVerのWeb内製化 - 開発スピードと品質を両立させるまでの道のり
techtver
PRO
3
1.2k
無秩序からの脱却 / Emergence from chaos
nrslib
1
7.8k
GraalVM Native Image トラブルシューティング機能の最新状況(2025年版)
ntt_dsol_java
0
160
Flutterアプリ運用の現場で役立った監視Tips 5選
ostk0069
1
500
30分でDoctrineの仕組みと使い方を完全にマスターする / phpconkagawa 2025 Doctrine
ttskch
2
290
関数の挙動書き換える
takatofukui
4
750
TypeScriptで設計する 堅牢さとUXを両立した非同期ワークフローの実現
moeka__c
2
1.6k
Featured
See All Featured
The Cult of Friendly URLs
andyhume
79
6.7k
Mobile First: as difficult as doing things right
swwweet
225
10k
GraphQLの誤解/rethinking-graphql
sonatard
73
11k
KATA
mclloyd
PRO
32
15k
The Hidden Cost of Media on the Web [PixelPalooza 2025]
tammyeverts
1
45
Music & Morning Musume
bryan
46
7k
Easily Structure & Communicate Ideas using Wireframe
afnizarnur
194
17k
Docker and Python
trallard
46
3.7k
Building Better People: How to give real-time feedback that sticks.
wjessup
370
20k
Principles of Awesome APIs and How to Build Them.
keavy
127
17k
The Art of Programming - Codeland 2020
erikaheidi
56
14k
The Myth of the Modular Monolith - Day 2 Keynote - Rails World 2024
eileencodes
26
3.2k
Transcript
Яндекс
Я HTTPS by default - no more clear text in
the web! Taras Ivashchenko, Product security team, Y andex ндекс
None
Global HTTPS usage
Why so slow?!
None
Forward Secrecy
HTTPS only for the auth page is not enough!
Really big project Not only web protocols Internal knowledge base
and tools Trainings Deep tech things: TLS sessions, double certificate scheme All services moved to “HTTPS by default” mode Improved world around us ;-) At Y andex
None
Q&A
Taras Ivashchenko Product security team Contacts
[email protected]