Your SlideShare is downloading. ×
0
The Heartbleed bug: what is it and how to protect
your site?
Elenitsa Staykova
Marketing, CloudFlare
Nick Sullivan
Systems...
Our Program Today
Elenitsa Staykova – Introduction and Overview
Nick Sullivan – What is Heartbleed? How to protect your si...
CloudFlare At a Glance
Security
ü  DDoS mitigation
ü  WAF
ü  SSL
ü  Basic security
Performance
ü  Static content cach...
Our Global Network
4
The Heartbleed bug
²  What is the Heartbleed bug?
²  Open source software OpenSSL
²  Cryptographic portion of library O...
The Heartbleed bug
²  Sensitive information at risk
²  Usernames
²  Passwords
²  Private SSL keys
²  Private keys are...
The CloudFlare Heartbleed Challenge
²  Can you get private SSL keys using Heartbleed?
²  Crowd sourced investigation to ...
Protecting your site – what do we recommend
²  http://istheinternetfixedyet.com/
Tracks sites still vulnerable to Heartbl...
Q&A with Ben Murphy
²  Ben Murphy – one of top 4 winners who
successfully solved the Heartbleed challenge
²  Solving the...
The End
April 2014
10
Upcoming SlideShare
Loading in...5
×

CloudFlare - The Heartbleed Bug - Webinar

496

Published on

An encryption flaw, called the Heartbleed bug, is already referred to as one of the biggest security threats on the Internet. The flaw, announced on April 7th, allows an attacker to pull bits of data from a server and potentially access sensitive information.

How did the Heartbleed bug happen? How does it affect your website? What can you do protect yourself?

CloudFlare security engineer Nick Sullivan answers these and more questions on this CloudFlare webinar. At the last portion of the webinar we have Ben Murphy (one of the winners of the CloudFlare Heartbleed challenge) on a Q&A session.

For more information on Heartbleed and the CloudFlare challenge, go to: http://bit.ly/1lVKy4O

For more information on CloudFlare, visit www.cloudflare.com or dial 888-99-FLARE.

Published in: Technology, Education
0 Comments
0 Likes
Statistics
Notes
  • Be the first to comment

  • Be the first to like this

No Downloads
Views
Total Views
496
On Slideshare
0
From Embeds
0
Number of Embeds
0
Actions
Shares
0
Downloads
5
Comments
0
Likes
0
Embeds 0
No embeds

No notes for slide

Transcript of "CloudFlare - The Heartbleed Bug - Webinar"

  1. 1. The Heartbleed bug: what is it and how to protect your site? Elenitsa Staykova Marketing, CloudFlare Nick Sullivan Systems Engineer, CloudFlare Ben Murphy Software Developer, Fonix 1
  2. 2. Our Program Today Elenitsa Staykova – Introduction and Overview Nick Sullivan – What is Heartbleed? How to protect your site? Ben Murphy – Q&A on the CloudFlare Heartbleed challenge 2
  3. 3. CloudFlare At a Glance Security ü  DDoS mitigation ü  WAF ü  SSL ü  Basic security Performance ü  Static content caching ü  Dynamic content acceleration ü  Front end optimization ü  Rocket Loader, Mirage, Polish More ü  DNS ü  Availability ü  Load balancing ü  Client intelligence ü  Reporting and insights 3
  4. 4. Our Global Network 4
  5. 5. The Heartbleed bug ²  What is the Heartbleed bug? ²  Open source software OpenSSL ²  Cryptographic portion of library OK ²  Information disclosure vulnerability 5
  6. 6. The Heartbleed bug ²  Sensitive information at risk ²  Usernames ²  Passwords ²  Private SSL keys ²  Private keys are keys to the kingdom ²  Sites may be vulnerable to impersonation ²  Heartbleed bug – a really big deal 6
  7. 7. The CloudFlare Heartbleed Challenge ²  Can you get private SSL keys using Heartbleed? ²  Crowd sourced investigation to find out ²  CloudFlareChallenge.com/Heartbleed ²  The world rose up to the challenge ²  Extracting private SSL keys using Heartbleed is possible 7
  8. 8. Protecting your site – what do we recommend ²  http://istheinternetfixedyet.com/ Tracks sites still vulnerable to Heartbleed: ²  If site vulnerable, don’t access until updated PWs and certificates ²  If site not vulnerable, change PW ²  Website End users ²  Website Owners ²  Website Owners using CloudFlare 8
  9. 9. Q&A with Ben Murphy ²  Ben Murphy – one of top 4 winners who successfully solved the Heartbleed challenge ²  Solving the challenge ²  Used techniques ²  State of the Internet ²  Questions from the Audience 9
  10. 10. The End April 2014 10
  1. A particular slide catching your eye?

    Clipping is a handy way to collect important slides you want to go back to later.

×