QA Fest 2015 - Diana Dolina

  • Published on
    09-Feb-2017

  • View
    526

  • Download
    1

Embed Size (px)

Transcript

Lessons (to be) learned

Ashley MadisonLessons (to be) learned:When the worlds largest dating site got hacked

Speaker:Diana DolinaEmployeeDataArt - Enjoy IT! 6 Voenniy Lane 3 FloorKherson, 73000, Ukraine

Per ThorsheimSecurity Consultant, founder & organizer of PasswordsCon.org. Received worldwide attention in June 2012 when he revealed that LinkedIn had been hacked.

12

, , . . 217 A (III) 10 1948

Ashley Madison

Ashley Madison

15 July 2015

Diana Dolina (DD) -

Tip # 1 for todayNever do the interview with anyone and say that your service is absolutely secure

: www.ashleymadison.com https://establishedmen.com/

21 August

9000

Password analysis

Never say never (especially about your security)

Be ready for the worst (properly incident handling)

No HTTPs = No security

Login and Password fields validation

Dont forget that USERS ARE REAL PEOPLE and YOU responsible for the part of their life