13
WYSI WYG Peter Stancik Security Evangelist n

WYSI WYG

  • Upload
    liv

  • View
    41

  • Download
    0

Embed Size (px)

DESCRIPTION

n. WYSI WYG. Peter Stan cik Security Evangelist. What you see is not what you get. What you see is not what you get. Infection vectors. Drive-by download. Social engineering. Blackhat SEO. SPAM. Social networks. Blackhat SEO. Social networks. What do I get ( instead )?. - PowerPoint PPT Presentation

Citation preview

Page 1: WYSI   WYG

WYSI WYG

Peter Stancik Security Evangelist

n

Page 2: WYSI   WYG

What you see is not what you get

Page 3: WYSI   WYG

What you see is not what you get

Page 4: WYSI   WYG

Infection vectors

Blackhat SEO

Social engineering

Drive-by download

SPAM

Social networks

Page 5: WYSI   WYG

Blackhat SEO

Page 6: WYSI   WYG

Social networks

Page 7: WYSI   WYG

What do I get (instead)?

Banking Trojans

Something “special” from the grey zone…

Scareware …Rogue AVs, Registry Cleaners

…with mobile components

…etc…

Page 8: WYSI   WYG

Banking Trojans

Page 9: WYSI   WYG

• Man-in-the-Browser• Man-in-the-Mobile

Scenario:1. Steal credentials using MitB2. Infect victim’s mobile phone – MitMo3. Log in using stolen credentials; perform transaction4. Mobile malware forwards authentication SMS to attacker5. Fill in authentication code and complete transaction

Zeus and now SpyEye: detected as SymbOS/Spitmo

*pictures from http://securityblog.s21sec.com/2010/09/zeus-mitmo-man-in-mobile-ii.html

Banking Trojans

Page 10: WYSI   WYG

Rogue AV

Page 11: WYSI   WYG

DNS Changer

Page 12: WYSI   WYG

CA Breaches

Page 13: WYSI   WYG

Thank you!

[email protected] blog.eset.com