© 2013 imperva, inc. all rights reserved. ddos attacks and web threats: how to protect your site...

61
© 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087 [email protected]

Upload: claude-houston

Post on 15-Jan-2016

224 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved.

DDos Attacks and Web Threats: How to Protect Your Site & Information

Tina ShawAccount [email protected]

Page 2: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved. - CONFIDENTIAL -2

Page 3: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved. - CONFIDENTIAL -3

Page 4: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved. - CONFIDENTIAL -4

Page 5: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved. - CONFIDENTIAL -5

Page 6: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved. - CONFIDENTIAL -6

Page 7: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved. - CONFIDENTIAL -7

Page 8: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved. - CONFIDENTIAL -8

Page 9: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved. - CONFIDENTIAL -9

Page 10: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved. - CONFIDENTIAL -10

Page 11: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved. - CONFIDENTIAL -11

Page 12: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved. - CONFIDENTIAL -12

Page 13: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved. - CONFIDENTIAL -13

Page 14: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved. - CONFIDENTIAL -14

Page 15: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved. - CONFIDENTIAL -15

Page 16: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved. - CONFIDENTIAL -16

Page 17: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved. - CONFIDENTIAL -17

Page 18: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved.

Low-Orbit Ion Canon (LOIC) Purpose - DDoS Windows desktop application, coded in C# UDP/TCP/HTTP flooding

Hacking Tools

Page 19: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved.

Hacker Forum Discussion Topics

DoS is Another Tool in the Hacker Toolbox

16%

22%

19%10%

12%

12% 9%

spamdos/ddosSQL Injectionzero-dayshell codebrute-forceHTML Injection

Source: Imperva. Covers July 2010 -July 2011 across 600,000 discussions

Page 20: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved.

A 100GB attack (Sept 24th)

• Featured in eWeek on October 1, 2013• The attack's load was distributed across our +350Gbps network.

(each color represents a different data center)

Page 21: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved. Confidential

Imperva Incapsula Overview

21

Incapsula helps Website owners…

Page 22: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved.

Imperva Incapsula

Simplicity

Flexibility

Versatility

Imperva Incapsula Overview

Page 23: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved.

Versatility “The idea of recognizing your strengths and using them in as versatile a way as you can is cool to me.” - Frank Ocean

Imperva’s

Tina^

Page 24: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved. Confidential24

Imperva Incapsula Versatility

By routing Website traffic through Incapsula, bad traffic is removed and good traffic is accelerated

Web Application Firewall (WAF)Distributed Denial of Service (DDOS)Distributed Denial of Service (DDOS)Load BalancingLoad BalancingContent Delivery Network (CDN)

Page 25: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved.

Imperva Incapsula is Deployed as a Reverse Proxy Network

360° Global Threat Detection & Analysis:

Enables early detection of threats and attack vectors and instant application of protection rules across the entire proxy network

Page 26: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved. Confidential26

Incapsula’s Global Content Delivery Network

Datacenters• Currently 15 Datacenters

USA (Ashville NC, Ashburn VA, Los Angles CA, San Jose CA, Chicago IL, Miami FL, Dallas TX, New York NY), London, Singapore, Israel, Amsterdam, Tokyo, Frankfurt, Sydney

• Plans for another 4 Datacenters Toronto, Hong Kong, Sao Paulo, and Milan

Data Across Borders• Customer data can be locked into (or out of) specific countries

Page 27: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved.

Simplicity

“Life is really simple, but we insist on making it complicated.” - ConfusiusSecurity Tina Shaw!

Page 28: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved.

The Activation Email

20 sec

Elapsed time

Page 29: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved.

Creating a User Account

40 sec

Elapsed time

Page 30: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

Confidential30 © 2013 Imperva, Inc. All rights reserved.

Logging into Incapsula and adding a website

60 sec

Elapsed time

Page 31: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

Confidential31 © 2013 Imperva, Inc. All rights reserved.

Incapsula Automatically Gathers Site Data

1 min 5 sec

Elapsed time

Page 32: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved.

Changing DNS Settings

1 min 15 sec

Elapsed time

Page 33: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved.

Getting Lost in Go Daddy’s Horrible UI

6 min 15 sec

Elapsed time

Page 34: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved.

Updating DNS Records

8 min 15 sec

Elapsed time

Page 35: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved.

Completing Incapsula’s Setup

8 min 45 sec

Elapsed time

Page 36: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

Confidential36 © 2013 Imperva, Inc. All rights reserved.

The Website is Protected

9 Minutes- 5 Minutes4~5 Minutes

Elapsed time

Page 37: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

37 © 2013 Imperva, Inc. All rights reserved.

Dashboard - Traffic

Confidential

Page 38: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

Confidential38 © 2013 Imperva, Inc. All rights reserved.

Dashboard - Traffic

Page 39: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

Confidential39 © 2013 Imperva, Inc. All rights reserved.

Dashboard - Security

Page 40: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

Confidential40 © 2013 Imperva, Inc. All rights reserved.

Dashboard - Performance

Page 41: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

Confidential41 © 2013 Imperva, Inc. All rights reserved.

Dashboard – Datacenter Response Time

Page 42: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

Confidential42 © 2013 Imperva, Inc. All rights reserved.

Dashboard – Recent Updates

Page 43: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

- CONFIDENTIAL -43 © 2013 Imperva, Inc. All rights reserved.

Visits

Page 44: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

Confidential44 © 2013 Imperva, Inc. All rights reserved.

Visits - More

Page 45: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

Confidential45 © 2013 Imperva, Inc. All rights reserved.

Visits – Add to Whitelist

Page 46: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

Confidential46 © 2013 Imperva, Inc. All rights reserved.

Settings - General

Page 47: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

Confidential47 © 2013 Imperva, Inc. All rights reserved.

Settings – Login Protect

Page 48: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

Confidential48 © 2013 Imperva, Inc. All rights reserved.

Settings - Performance

Page 49: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

Confidential49 © 2013 Imperva, Inc. All rights reserved.

Settings - Performance

Page 50: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

Confidential50 © 2013 Imperva, Inc. All rights reserved.

Settings - Notifications

Page 51: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

Confidential51 © 2013 Imperva, Inc. All rights reserved.

Settings - Security

Page 52: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

Confidential52 © 2013 Imperva, Inc. All rights reserved.

Settings - Security

Page 53: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

Confidential53 © 2013 Imperva, Inc. All rights reserved.

Settings - WAF

Page 54: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

Confidential54 © 2013 Imperva, Inc. All rights reserved.

Settings - WAF

Page 55: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

Confidential55 © 2013 Imperva, Inc. All rights reserved.

Settings – WAF Whitelist

Page 56: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

Confidential56 © 2013 Imperva, Inc. All rights reserved.

Settings – WAF Whitelist

Page 57: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

Confidential57 © 2013 Imperva, Inc. All rights reserved.

Settings - Permissions

Page 58: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved.

Flexible

“I like forms that are flexible, that can let you feel creative.” -John Scofield

Security Products

Tina Shaw!

^

Page 60: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved.

Incapsula Makes Security Simple

Imperva Incapsula

Simplicity

Flexibility

Versatility

Page 61: © 2013 Imperva, Inc. All rights reserved. DDos Attacks and Web Threats: How to Protect Your Site & Information Tina Shaw Account Executive 650-832-6087

© 2013 Imperva, Inc. All rights reserved.

Questions?