cloud security summit (boston) - live hack demo

Post on 16-Apr-2017

99 Views

Category:

Technology

0 Downloads

Preview:

Click to see full reader

TRANSCRIPT

Live Hack Demo

Stephen Coty – Chief Security EvangelistPaul Fletcher – Cyber Security Evangelist

Global Analysis

Malicious Actors (TeamXRat) are using the Yahoo breach data

to convince IPhone users to click on a txt or email that will load ransomware on your Internet connected

devices

Social Recon

Social Recon

GitrobSearch GitHub repositories for data

Social Recon

The HarvesterOpen Source Intelligence Collection

NMAP/NESSUSFinding Open Ports and vulnerabilities

SQLMAPAttempting SQL Injection

Incident Notification

Threats by Customer Environment

Source: Alert Logic CSR 2016

Threats by Customer Industry Vertical

Source: Alert Logic CSR 2016

WPSCANFinding vulnerabilities and brute forcing

HydraPassword brute on any protocol

WEEVELYfile upload and command execution

CiphixForensics tool

Virus TotalMalware Sandbox

AutomaterSee if your IP is being used maliciously

Thank you.

top related