RedDotRuby 2014 - 80,000 Plaintext Passwords: An Open Source Love Story in 3 Acts by T.j. Schuck

Channel:
Subscribers:
42,400
Published on ● Video Link: https://www.youtube.com/watch?v=GDuSAnMYXFU



Duration: 29:01
666 views
12


fluffmuffin, peppercorn, gilligan — those are just a few of our users' plain text passwords.

I have 80,000 more, and it only took me 87 seconds to gather them from our customer database in a white-hat attack.

In Act I, we'll cover the history of secure password storage, examine the hack, and mitigate the threat. Act II will address the difficulties of working on libraries with complicated external dependencies (like bcrypt-ruby, of which I'm now a maintainer). In Act III, we'll celebrate the power of global collaboration via OSS.

[Scene.]

Help us caption & translate this video!

http://amara.org/v/FGY7/




Other Videos By Confreaks


2014-08-07Elixir Conf 2014 - Hex - How it was built by Eric Meadows–Jönsson
2014-08-07Elixir Conf 2014 - The First Few Sips by Richard Bishop
2014-08-07Elixir Conf 2014 - Erlang Rationale by Robert Virding
2014-08-07Elixir Conf 2014 - Keynote: Elixir by Jose Valim
2014-07-28Rails Conf 2014 - Keynote: What Happens to Everyone, When Everyone Learns to Code?
2014-07-24RedDotRuby 2014 SpeedupRails, Speedup Your Code by Aaron Patterson
2014-07-23RedDotRuby 2014 - ActiveSupport::Notifications and Live Status Pages by Matthew Delves
2014-07-23RedDotRuby 2014 - RSpec 3 and why I `expect(you).to care` by Jon Rowe
2014-07-23RedDotRuby 2014 - Safety Nets: Learn to Code With Confidence by Christophe Philemotte
2014-07-23RedDotRuby 2014 - To a Single Page Web App and Back Again by Nicholas Simmons
2014-07-23RedDotRuby 2014 - 80,000 Plaintext Passwords: An Open Source Love Story in 3 Acts by T.j. Schuck
2014-07-23RedDotRuby 2014 - Lightning Talk - Algorithmic Trading for Fun and Profit by Sheng Loong Su
2014-07-23RedDotRuby 2014 - Lightning Talk - Advantages of Development Environment Setup with Vagrant
2014-07-23RedDotRuby 2014 - Lightning Talk - Nomadic Programmer by Grzegorz Witek
2014-07-23RedDotRuby 2014 - Adventures with Micro Services in Rails by Anand Agrawal
2014-07-23RedDotRuby 2014 - SOLID Design Principles in Ruby by Anil Wadghule
2014-07-23RedDotRuby 2014 - Convenience vs Simplicity by Piotr Solnica
2014-07-23RedDotRuby 2014 - Ruby-Core for Tenderfeet by Zachary Scott
2014-07-23RedDotRuby 2014 - Shipping Ruby Apps with Docker by Bryan Helmkamp
2014-07-23RedDotRuby 2014 - Domain Driven Design & NoSQL by Lucas Dohmen
2014-07-22RedDotRuby 2014 - Ruby.inspect by Koichi Sasada



Tags:
Development
Ruby Central
Engineering
Computers
Programming
Rails
Ruby Programming Language
Computer Programming
Mobile
Computer Science
Ruby
Software Engineering
Software
Technology
Community
Confreaks
Software Development