Why do you trust that website? #shorts #encryption #hashing #password

preview_player
Показать описание
shorts #youtubeshorts #password
Рекомендации по теме
Комментарии
Автор

Did you know about CAs? And did you know that you trust YouTube and other websites because of them?

davidbombal
Автор

Even more, CA's are certified by higher CA's and all certificates can be traced back to a Root Certificate Authority.
Who signs the RCA's certificates? They do it themselves. Basically they say: "Yep, that's me. Proof? Because I said so"

ExplosifBe
Автор

Would love a deep dive into PKI, not a lot of deep info out there

Alex-viiz
Автор

I have trust issue (even for CA's - look what Avast has done in the past), that's why I wish they were not stored in OS.

rogalsiu
Автор

I wish their was a more decentralised way of having a CA.

iCoreGaming
Автор

always learning something new from this channel.
Thanks david!

fokerfakerfuker
Автор

Do you have a video upcoming explaining CA's? I can never understand it from reading and you seem.to explain things for dummies perfectly :)

jayraza
Автор

We need these kind of videos to understand. Thanks

sridharaps
Автор

I learned about Certificate Authority in a Short course on Windows 2012 server

SidTheGeek
Автор

You have actually mentioned and shown the INTERMEDIATE certificate. The one at the top of the chain is the CA. Almost every single certificate you use is issued by an ICA and not by a CA because the CA must be protected and not exposed, that's what the ICAs are for (as well as scalability etc)

GATOtyger
Автор

great explanation David, I do like the fact that you always pay attention to the comment section. so I wanna tell you that this is a great topic which deserves a long video. honestly I never get how certs work. because anyone can issue a cert. so where is the trust here? thanks!

SimowLabrim
Автор

I use the passport example all the time with our clients when they use self signed certificates. "It's like a passport you painted yourself. No one at the airport will accept it"

quineloe
Автор

Apple became a CA due to not wanting to play ball with the existing CAs. So if you have enough power, the operating system manufacturers would conform to giving you that authority.

Dazdigo
Автор

Really valuable knowledge you’re sharing David. Question I have is what happens if the issuing CA party has been hacked and the CA issued is somehow compromised? Is this where a public ledger that cannot be ‘tampered’ with would carry a higher quality of security and authenticity?

damianchang
Автор

That's really problem sometimes. Not always its possible to get trusted certificate. Russian websites had a d still has problems with that.
Without certificate web browser will show notification that connection us not secure, and in fact it it's not.

izoiva
Автор

I wish the yt algorithm shows me more shorts like this

Almaguer.
Автор

Can you show an example of a fake Twitter website and compare it to us to know and show how to tell which is which using those certs ? and how to use that public key to double check ?

xila
Автор

Still no "Honest Achmed's Used Cars and Certificates" in the trusted roots?

konradzuse
Автор

I normally look at the issue date as well. My spider sense goes off when it was issued in the past few days. While it's not a for sure thing something is wrong because they have to be renewed, when that red flag is stacked with a few other its just something easy to check.

dustindevorkin
Автор

Had opportunity to audit 2 Certifying Authorities. 😃

imamulhuda