September 8, 2016

Web Exploitation 103

We cover the fragile ecosystems of the public key infrastructure system that support Secure Socket Layer (SSL) and Transport Layer Security (TLS): the internet certificate authorities. We cover the disturbing history of modern Certificate Authority (CA) failures and frequent compromises, and how rarely there is ever any consequence or improvement. Various attacks against SSL/TLS systems and certificate authorities are covered.

[ Slides ] [ Discussion ]

