Presentation is loading. Please wait.

Presentation is loading. Please wait.

Cybercrime and TLS.

Similar presentations


Presentation on theme: "Cybercrime and TLS."— Presentation transcript:

1 Cybercrime and TLS

2 Cybercrime and TLS Phishing, Browsers and Let’s Encrypt
Dmitry Belyavskiy, Technical Centre of Internet Kyiv, Ukraine UADOM-2017 December 1, 2017

3 Cybercrime, botnets, etc: > 30%
TLS trends TLS traffic > 55% New standards Free certificates Browser warnings Cybercrime, botnets, etc: > 30%

4 Certificates for free!

5 Free certificates: bad news
Phishing domains Normal domains

6 PayPal phishing certificates

7 Free certificates: balance
Free wildcard certificates CA/Browser forum recommendations

8 Technical solutions CAs: CA/Browser’s Forum recommendations + Check “dangerous” names - Automatic issuance Browsers: + Warn users about suspicious names - False positives

9 Explain to users! Green lock means nothing Certificate DOES NOT mean secure site Certificate is significant for reputation DV certificates confirm only control over domain EV certificates confirm the domains owner Phishers use new technologies too

10 What can registries do? Sell more EV certificates! Educate users

11 Cybercrime and TLS Questions?


Download ppt "Cybercrime and TLS."

Similar presentations


Ads by Google