Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
HTTPS by default - no more clear
Search
Sponsored
·
SiteGround - Reliable hosting with speed, security, and support you can count on.
→
oxdef
May 23, 2017
Programming
0
34
HTTPS by default - no more clear
Phdays 2017
oxdef
May 23, 2017
Tweet
Share
More Decks by oxdef
See All by oxdef
How to improve software security with OWASP open source initiatives
oxdef
0
250
Keynote at ZeroNights X (2021)
oxdef
0
200
Security Culture: Here be Hackers
oxdef
0
550
OWASP Top 10 - 2017 What’s inside?
oxdef
0
640
И разработчик станет хакером!
oxdef
0
58
Implementing Content Security Policy at a Large Scale
oxdef
0
650
Security in developer’s life: knowledge is power
oxdef
0
390
Web Application Security: future standards and technologies
oxdef
0
400
Content Security Policy - the panacea for XSS or placebo?
oxdef
0
420
Other Decks in Programming
See All in Programming
SourceGeneratorのススメ
htkym
0
190
Grafana:建立系統全知視角的捷徑
blueswen
0
330
HTTPプロトコル正しく理解していますか? 〜かわいい猫と共に学ぼう。ฅ^•ω•^ฅ ニャ〜
hekuchan
2
680
開発者から情シスまで - 多様なユーザー層に届けるAPI提供戦略 / Postman API Night Okinawa 2026 Winter
tasshi
0
200
プロダクトオーナーから見たSOC2 _SOC2ゆるミートアップ#2
kekekenta
0
200
AIエージェントのキホンから学ぶ「エージェンティックコーディング」実践入門
masahiro_nishimi
4
310
AIエージェント、”どう作るか”で差は出るか? / AI Agents: Does the "How" Make a Difference?
rkaga
4
2k
AtCoder Conference 2025
shindannin
0
1k
AIフル活用時代だからこそ学んでおきたい働き方の心得
shinoyu
0
130
疑似コードによるプロンプト記述、どのくらい正確に実行される?
kokuyouwind
0
380
今こそ知るべき耐量子計算機暗号(PQC)入門 / PQC: What You Need to Know Now
mackey0225
3
370
AI時代のキャリアプラン「技術の引力」からの脱出と「問い」へのいざない / tech-gravity
minodriven
20
6.8k
Featured
See All Featured
Six Lessons from altMBA
skipperchong
29
4.1k
A Soul's Torment
seathinner
5
2.2k
Put a Button on it: Removing Barriers to Going Fast.
kastner
60
4.2k
技術選定の審美眼(2025年版) / Understanding the Spiral of Technologies 2025 edition
twada
PRO
117
110k
WCS-LA-2024
lcolladotor
0
440
Accessibility Awareness
sabderemane
0
49
Building Applications with DynamoDB
mza
96
6.9k
Design and Strategy: How to Deal with People Who Don’t "Get" Design
morganepeng
133
19k
Neural Spatial Audio Processing for Sound Field Analysis and Control
skoyamalab
0
160
Easily Structure & Communicate Ideas using Wireframe
afnizarnur
194
17k
Music & Morning Musume
bryan
47
7.1k
Designing for Performance
lara
610
70k
Transcript
Яндекс
Я HTTPS by default - no more clear text in
the web! Taras Ivashchenko, Product security team, Y andex ндекс
None
Global HTTPS usage
Why so slow?!
None
Forward Secrecy
HTTPS only for the auth page is not enough!
Really big project Not only web protocols Internal knowledge base
and tools Trainings Deep tech things: TLS sessions, double certificate scheme All services moved to “HTTPS by default” mode Improved world around us ;-) At Y andex
None
Q&A
Taras Ivashchenko Product security team Contacts
[email protected]