Rocky Mountain Ruby 2014 - 80,00 Plaintext Passwords

Channel:
Subscribers:
42,400
Published on ● Video Link: https://www.youtube.com/watch?v=9u54O6vARK8



Duration: 33:37
672 views
7


fluffmuffin, peppercorn, gilligan — those are just a few of our users' plaintext passwords.

I have 80,000 more, and it only took me 87 seconds to gather them from our customer database in a white-hat attack.

In Act I, we'll cover the history of secure password storage, examine the hack, and mitigate the threat. Act II will address the difficulties of working on libraries with complicated external dependencies (like bcrypt-ruby, of which I'm now a maintainer). In Act III, we'll celebrate the power of global collaboration via OSS.

[Scene.]

Help us caption & translate this video!

http://amara.org/v/F0oq/




Other Videos By Confreaks


2014-10-24Nickel City Ruby 2014- Opening Keynote
2014-10-22Rocky Mountain Ruby 2014 - Let's Pretend by Sarah Allen
2014-10-22Rocky Mountain Ruby 2014 - The Technical Debt Trap by Doc Norton
2014-10-22Rocky Mountain Ruby 2014 - Under the Hood of Ruby's Generational Garbage Collector by Hemant Kumar
2014-10-22Rocky Mountain Ruby 2014 - Lightning Talks (Day 2)
2014-10-21Rocky Mountain Ruby 2014 - Feats of Daring with the Ruby Standard Library
2014-10-21Rocky Mountain Ruby 2014 - Micro Testing Pains by Marcos Castilho
2014-10-21Rocky Mountain Ruby 2014 - Lightning Talks (Day 1)
2014-10-20Rocky Mountain Ruby 2014 - What it Means to Have Good Test Covearage...
2014-10-20Rocky Mountain Ruby 2014 - Unpacking Technical Decisions by Sarah Mei
2014-10-20Rocky Mountain Ruby 2014 - 80,00 Plaintext Passwords
2014-10-20Rocky Mountain Ruby 2014 - Machine Learning for Fun and Profit by John Paul Ashenfelter
2014-10-20Rocky Mountain Ruby 2014 - Day 1 Lightning Talks
2014-10-20Rocky Mountain Ruby 2014 - Future-proofing Your 3rd Party Services by Jeffery Matthias
2014-10-08GoGaRuCo 2014- The Golden Age of the Internet
2014-10-08GoGaRuCo 2014- Lightning Talks hosted by Sarah Mei
2014-10-07GoGaRuCo 2014 Gilding the Rose: Refactoring Legacy Code
2014-10-07GoGaRuCo 2014- Let's Build a Computer!
2014-10-07GoGaRuCo 2014- The Scientific Method of Troubleshooting
2014-10-03GoGaRuCo 2014- Technical Onboarding, Training, and Mentoring
2014-10-03GoGaRuCo 2014- Taking over Someone Else's Open-Source Projects