February 2025 Meeting
Details
Revoked! How WebPKI is Failing Users (75 minutes) - Handout Link
- For decades, WebPKI has relied on certificate revocation as a safety net to shield users from untrusted websites.
- The issue is that our current approaches: CRLSet and OCSP, don't fully address the issue and have glaring weaknesses.
- CRLite was born from Mozilla to challenge the status quo and make certificate revocation a reality.
- But what lies behind CRLite's success? A fascinating journey through the realms of cryptography and hashing reveals that the solution is rooted in an unlikely place: a 50-year-old mathematical concept.
- The answer may surprise you, but it's one that could change everything.
