The Threat Landscape in the Era of Directed Attacks - Webinar

21
THREAT LANDSCAPE IN THE ERA OF DIRECTED ATTACKS #ThreatTalk

Transcript of The Threat Landscape in the Era of Directed Attacks - Webinar

Page 1: The Threat Landscape in the Era of Directed Attacks - Webinar

THREAT LANDSCAPE IN THE ERA OF DIRECTED ATTACKS#ThreatTalk

Page 2: The Threat Landscape in the Era of Directed Attacks - Webinar

THESE SLIDES ARE AN EXCERPTFROM A LIVE KASPERSKY WEBINAR

BROADCAST ON 6TH MAY 2014TO ACCESS THE WEBINAR PLEASE VISIT

HTTP://OW.LY/WHFAR

Page 3: The Threat Landscape in the Era of Directed Attacks - Webinar

ROEL SCHOUWENBERGPRINCIPAL SECURITY RESEARCHER GLOBAL RESEARCH & ANALYSIS TEAMKASPERSKY LAB

Page 4: The Threat Landscape in the Era of Directed Attacks - Webinar

HEARTBLEED – CVE-2014-0160

4

Back to the fundamentals

Triaging is painful

Keys to the kingdom?

Page 5: The Threat Landscape in the Era of Directed Attacks - Webinar

5

Significant portion of the market still running XP

First ‘eternal zero-day’ discovered

IE Zero-day different to recent flash Zero-day

END OF XP

Page 6: The Threat Landscape in the Era of Directed Attacks - Webinar

ACTORS AND MOTIVES HAVE CHANGED

Page 7: The Threat Landscape in the Era of Directed Attacks - Webinar

NEW PLATFORMS AND TECHNOLOGIES

Attack surface keeps increasing

Diversification / BYOD

Mobile payments

Page 8: The Threat Landscape in the Era of Directed Attacks - Webinar

METHOD OF ENTRY

8

Phishing

Web browsing – watering holes

Page 9: The Threat Landscape in the Era of Directed Attacks - Webinar

NON-TARGETED MALWARE

9

Financial/ID theft malware

Ransomware

May not run in virtual environment

Page 10: The Threat Landscape in the Era of Directed Attacks - Webinar

ESPIONAGE

Zero day needed?

Widening platform support

Targeting supply chain

More and more verticals affected

More actors involved

Page 11: The Threat Landscape in the Era of Directed Attacks - Webinar

SABOTAGE

11

DDoS attacks have become a major problem

BCP 38/84

Wiper attacks as seen in cyberweapons

Page 12: The Threat Landscape in the Era of Directed Attacks - Webinar

THE FUTURE

12

Will CNE and CNA converge?

Page 13: The Threat Landscape in the Era of Directed Attacks - Webinar

INCREASED FOCUS ON VIRTUAL ENVIRONMENTS

Back to the fundamental

Page 14: The Threat Landscape in the Era of Directed Attacks - Webinar

VM SPECIFIC THREAT SCENARIOS

EoP / Escape to Host

Network traffic sniffing

Modifying master virtual disks

Lost audit trails

Hyper-visor level attacks

Page 15: The Threat Landscape in the Era of Directed Attacks - Webinar

ERIK DEVINECHIEF SECURITY OFFICERINFORMATION SERVICESRIVERSIDE MEDICAL CENTER

Page 16: The Threat Landscape in the Era of Directed Attacks - Webinar

CorporationEmployees

Cloud Services

Data Loss

Malware and Vulnerabilities

Business Associates

Mobile Devices/

Employees

Hackers

MITIGATING THE TOP 7 THREATS

Page 17: The Threat Landscape in the Era of Directed Attacks - Webinar

WHY IT’S MOVING AND CHANGINGGovernment regulations changing

Privacy

Security

Technical and operational control

Environment changing

Electronic transmission of data

BYOD

Technology changes (virtualization, OS, patient portals, physician portals, vendor portals)

Threats are changing

Malware

Hackers internal/external

Page 18: The Threat Landscape in the Era of Directed Attacks - Webinar

NOW HOW DO WE MITIGATE…

Policy and Procedures Education Technical Controls

Monitoring and Logging

Audit and Risk Assessment

Page 19: The Threat Landscape in the Era of Directed Attacks - Webinar

What are your Security Initiatives?Know your data, network, endpoints and users, then apply the rules!

Page 20: The Threat Landscape in the Era of Directed Attacks - Webinar

CONCLUSIONS AND TAKEAWAYS

New technologies present new opportunities and challenges

All platforms need protecting in an era of targeted attacks

Prioritise which assets to protect most and then segregate them

Data integrity attacks on the horizon

Page 21: The Threat Landscape in the Era of Directed Attacks - Webinar

FOR MORE INFORMATION WATCH THE ON DEMAND WEBINAR REGISTER HERE: HTTP://OW.LY/WHFAR

FEEL FREE TO ASK QUESTIONS:@KASPERSKYLABB2B#THREATTALK

MORE INFO ON SECURITY FOR BUSINESS WWW.KASPERSKY.COM//BUSINESS

B2B BLOGHTTP://BUSINESS.KASPERSKY.COM

THANK YOU!