Security Fails

18
Security Fails Marcelle Lee November 4, 2015

Transcript of Security Fails

Page 1: Security Fails

Security Fails

Marcelle LeeNovember 4, 2015

Page 2: Security Fails

Internet of Things

Page 3: Security Fails

How do the “Things” Fail?

Page 4: Security Fails

Secure Browsing?Is the website you are entering information into secure? You can check!

Page 5: Security Fails

What You SeeChecking out some art on a website, might want to buy some:

Page 6: Security Fails

What the Hacker SeesEntering info on an insecure site? This is what the hacker could see:

Page 7: Security Fails

Cracking Passwords is EasyThis crack took seconds.

Page 8: Security Fails

Password TipsGood password: theR@INinSp@in1964(translates to The Rain in Spain 1964 - the year the musical My Fair Lady came out)Bad passwords: p@ssword, cookie15, love2015Check your password at this site: https://howsecureismypassword.net/

Page 9: Security Fails

Clicking on LinksHow can you tell if a link is legitimate?Did it come from a known source?Hover over the link to see the URL.Cut and paste the link into Notepad or similar to see

the URL.

Page 10: Security Fails

Malicious Links

Page 11: Security Fails

Clicking on LinksSpoofed

email from PayPal.

Clearly the link doesn’t take you to PayPal’s

site!

Page 12: Security Fails

Social Media TipsCheck your privacy settings on social media

What can non-connections see?What location data are you sharing?What private information are you sharing?Do you know who all your connections really are?

Page 13: Security Fails

Social Media Geo-tagging

Page 14: Security Fails

Code Exploits - HeartbleedCVE-2014-0160OpenSSL TLS Heartbeat Extension - Memory Disclosure

Page 15: Security Fails

Web App AttacksFile Upload XSS

Page 16: Security Fails

Network Scanning & Vulnerable Ports

Page 17: Security Fails

Network Exploits

Page 18: Security Fails

For more information, contact:www.linkedin.com/in/marcellelee

www.twitter.com/marcelle_fsg