cybercrime - lse summer school 2010 mg270

19
LSE Summer School 2010 MG270: Business Development and ICT Innovation 9 th July 2010 “Cybercrime 2.0: When the Cloud Turns Dark” Carlos Esteban Librero Dario Gatti Roberto Held

Upload: dario

Post on 18-Nov-2014

1.448 views

Category:

Business


0 download

DESCRIPTION

 

TRANSCRIPT

Page 1: CyberCrime - Lse summer school 2010 mg270

LSE Summer School 2010MG270: Business Development and ICT Innovation

9th July 2010

“Cybercrime 2.0: When the Cloud Turns Dark”

Carlos Esteban LibreroDario GattiRoberto Held

Page 2: CyberCrime - Lse summer school 2010 mg270

Cybercrime refers to any crime that involves a computer and a network.

Page 3: CyberCrime - Lse summer school 2010 mg270

What crimes?

Crimes that primarily target computer networks or devices include:• Malware (malicious code)• Denial-of-service attacks• Computer viruses

Crimes that merely use computer networks or devices include:• Cyber stalking• Fraud and identity theft• Phishing scams• Information warfare

Page 4: CyberCrime - Lse summer school 2010 mg270

While the first hackers wanted to exhibit their technical superiority...

Page 5: CyberCrime - Lse summer school 2010 mg270

…today they are primarily motivated by economic interests.

Page 6: CyberCrime - Lse summer school 2010 mg270

Cyber-wars

Page 7: CyberCrime - Lse summer school 2010 mg270

Who will win?

Page 8: CyberCrime - Lse summer school 2010 mg270
Page 9: CyberCrime - Lse summer school 2010 mg270

Types of Cybercrime

• Spam - sending out of junk e-mails for commercial purposes;

• Malware programs – Virus, worms, trojan horse;

• Drug Trafficking

Page 10: CyberCrime - Lse summer school 2010 mg270

Types of Cybercrime

• Cyber Terrorism – hacking official websites;

• Obscene or Offensive Content – Adults only!!

Page 11: CyberCrime - Lse summer school 2010 mg270

Security Tips

• Keep programs Updated:– Anti-virus;– Firewall;– Internet;

Programs out-of-date => very insecure

Page 13: CyberCrime - Lse summer school 2010 mg270

Social Engineering Attacks

• Process of manipulating users;

• Free examples – antivirus test;

Page 14: CyberCrime - Lse summer school 2010 mg270

WEB ATTACKS• Growing complexity -> new vulnerabilities

• Launching malware throw web browsers / web servers

• Exploiting = download payloads

Page 15: CyberCrime - Lse summer school 2010 mg270

Procedure• Infecting Web Server->redirecting to infected

servers (SQL and Redirecting via .htaccess)

• Exploit web user (download payloads)

-> drive-by downloads-> social engineering

attacks (continuous growth)

Page 16: CyberCrime - Lse summer school 2010 mg270

Security

• System identifying malicious content throw GOOGLE search.

• Browsers (Safari, Firefox…) use information to prevent users’ visits.

Page 17: CyberCrime - Lse summer school 2010 mg270

Pirate Bay Attack• 4 million accounts

exposed

• Break into vulnerable database

• History and personal information (passwords, e-mails…)

Page 18: CyberCrime - Lse summer school 2010 mg270

Cybercrime is a critical issue not only for pages and applications on the Web.

Its implications can be greater and can affect also the real world.

Blackout that may have been caused by hackers in 2009, Brazil.

Page 19: CyberCrime - Lse summer school 2010 mg270

And, if you have enjoyed our presentation, you can find it at:

http://www.slideshare.net/class2010mg270