(Avoid) Implementing STARTTLS

Day 1 | 17:00 | 00:30 | K.4.601 | Damian Poddebniak


Note: I'm reworking this at the moment, some things won't work.

The stream isn't available yet! Check back at 17:00.
Get involved in the conversation!Join the chat

I want to keep up my mission to make STARTTLS a technology of the past by recapping on the issues STARTTLS creates and providing advice how to (avoid) implementing (most of) it. The talk will be 5 to 10 minutes and is motivated by my research about real-world STARTTLS issues (https://nostarttls.secvuln.info/) and the implementations I (reluctantly) wrote (https://github.com/duesee/imap-next).