wysi wyg

13
WYSI WYG Peter Stancik Security Evangelist n

Upload: liv

Post on 10-Jan-2016

48 views

Category:

Documents


0 download

DESCRIPTION

n. WYSI WYG. Peter Stan cik Security Evangelist. What you see is not what you get. What you see is not what you get. Infection vectors. Drive-by download. Social engineering. Blackhat SEO. SPAM. Social networks. Blackhat SEO. Social networks. What do I get ( instead )?. - PowerPoint PPT Presentation

TRANSCRIPT

Page 1: WYSI   WYG

WYSI WYG

Peter Stancik Security Evangelist

n

Page 2: WYSI   WYG

What you see is not what you get

Page 3: WYSI   WYG

What you see is not what you get

Page 4: WYSI   WYG

Infection vectors

Blackhat SEO

Social engineering

Drive-by download

SPAM

Social networks

Page 5: WYSI   WYG

Blackhat SEO

Page 6: WYSI   WYG

Social networks

Page 7: WYSI   WYG

What do I get (instead)?

Banking Trojans

Something “special” from the grey zone…

Scareware …Rogue AVs, Registry Cleaners

…with mobile components

…etc…

Page 8: WYSI   WYG

Banking Trojans

Page 9: WYSI   WYG

• Man-in-the-Browser• Man-in-the-Mobile

Scenario:1. Steal credentials using MitB2. Infect victim’s mobile phone – MitMo3. Log in using stolen credentials; perform transaction4. Mobile malware forwards authentication SMS to attacker5. Fill in authentication code and complete transaction

Zeus and now SpyEye: detected as SymbOS/Spitmo

*pictures from http://securityblog.s21sec.com/2010/09/zeus-mitmo-man-in-mobile-ii.html

Banking Trojans

Page 10: WYSI   WYG

Rogue AV

Page 11: WYSI   WYG

DNS Changer

Page 12: WYSI   WYG

CA Breaches

Page 13: WYSI   WYG

Thank you!

[email protected] blog.eset.com