Presentation is loading. Please wait.

Presentation is loading. Please wait.

WYSI WYG Peter Stancik Security Evangelist. Infection vectors Blackhat SEO Social engineering Drive-by download SPAM Social networks.

Similar presentations


Presentation on theme: "WYSI WYG Peter Stancik Security Evangelist. Infection vectors Blackhat SEO Social engineering Drive-by download SPAM Social networks."— Presentation transcript:

1 WYSI WYG Peter Stancik Security Evangelist

2

3

4 Infection vectors Blackhat SEO Social engineering Drive-by download SPAM Social networks

5 Blackhat SEO

6 Social networks

7 What do I get (instead)? Banking Trojans Something special from the grey zone… Scareware …Rogue AVs, Registry Cleaners …with mobile components …etc…

8 Banking Trojans

9 Man-in-the-Browser Man-in-the-Mobile Scenario: 1.Steal credentials using MitB 2.Infect victims mobile phone – MitMo 3.Log in using stolen credentials; perform transaction 4.Mobile malware forwards authentication SMS to attacker 5.Fill in authentication code and complete transaction Zeus and now SpyEye: detected as SymbOS/Spitmo *pictures from Banking Trojans

10 Rogue AV

11 DNS Changer

12 CA Breaches

13 Thank you!


Download ppt "WYSI WYG Peter Stancik Security Evangelist. Infection vectors Blackhat SEO Social engineering Drive-by download SPAM Social networks."

Similar presentations


Ads by Google