Get 20% off all career paths from fullstack to AI
Learn AI, Data Science & Business — Earn Certificates That Get You Hired
Overview
Google, IBM & Meta Certificates – 40% Off
One Coursera Plus subscription covers most Professional Certificates on Coursera.
Unlock All Certificates
This talk examines the security design of TLS 1.3 and how it addresses attacks against earlier TLS versions. It covers ciphersuites, nonces, key exchange, handshakes, 0-RTT resumption, and deployment pitfalls.
Syllabus
Intro
nccgroup
Security Properties We Want
Ciphersuite Choices
GCM Mode
TLS 1.3 Nonces
TLS 1.3 Ciphersuites
Key Exchange Modes?
TLS 1.2 DHE
TLS 1.3 Handshake
TLS 1.3 Resumption
Key Schedule: Resumption
Resumption Takeaways
Key Schedule: ORTT
Forward Secrecy
ORTT Takeaways
Summing It Up
Questions?
Taught by
OWASP Foundation