Presentation is loading. Please wait.

Presentation is loading. Please wait.

Social media is sharing information with others What if this information ends up in the wrong hands?

Similar presentations


Presentation on theme: "Social media is sharing information with others What if this information ends up in the wrong hands?"— Presentation transcript:

1

2 Social media is sharing information with others

3 What if this information ends up in the wrong hands?

4 Social engineering Manipulating people into giving confidential information or access to a system  Passwords, security questions, bank/credit card info... Developing false trust or distrust Creating stories and scenarios to support the process

5 ”I am a new employee here, and I need access to XXXX for YYYY...” ”Your IP address has just won 1 billion Euros!” ”A fun questionnaire to share with your friends! Get to know them better! 1. Where did you go to primary school? 2. Did you have a pet when you were a kid? If so, what was its name? 3. What was your childhood nickname?”

6 Phishing – posing as a credible website or an authority to steal personal information

7

8 Where to strike? Vulnerabilities in operating system components Core web software (MySQL, Apache...) Browser plugin vulnerabilities (Flash, Java...)  Out of date versions

9 A few example techniques...

10 XSS (Cross-Site Scripting) Injecting malicious code into a legitimate website to steal information or modify the appearance/behavior of the site

11 Donate all your money to the Russian Mafia! Win a free puppy and a trip to the Bahamas! Clickjacking / UI Redressing – Tricking the user into clicking malicious links masked as something else

12 Malvertising Embedding malicious code in legitimate advertisements on websites to push malware on users' computers  ”Free online virus scans”  Ransomware  Keyloggers  Etc.

13 1.1 A malicious ad can lead to malware such as ”Poliisivirus” being installed on your computer

14 Protect yourself NoScript (Mozilla browsers) https://addons.mozilla.org/fi/firefox/addon/nos cript/ ScriptSafe (Chrome/Chromium) https://chrome.google.com/webstore/detail/sc riptsafe/oiigbmnaadbkfbmpbfijlflahbdbdgdf/ details

15 1. Think twice. Trust shouldn't be the default, but something to be earned. 2. Do your research. 3. Do not share passwords with anyone, even if they claim to be an authority. 4. Be careful with links and downloads. 5. Keep your virus and malware protection up-to-date. 6. Install recommended operating system updates. 7. Update your browser plugins regularly.

16 Thank you, and please stay safe!

17 Sources Image 1.1: Found at http://www.2-viruses.com/wp-content/uploads/2013/02/suomen-poliisi- virus.pnghttp://www.2-viruses.com/wp-content/uploads/2013/02/suomen-poliisi- virus.png Criddle, L. What is Social Engineering? Found at http://www.webroot.com/hk/en/home/resources/tips/online-shopping-banking/secure-what-is- social-engineeringDownloaded on 9.11.2014. http://www.webroot.com/hk/en/home/resources/tips/online-shopping-banking/secure-what-is- social-engineering Dinerman, B. Social networking and security risks. GFI White Paper. Found at http://www.gfi.com/whitepapers/Social_Networking_and_Security_Risks.pdf Downloaded on 9.11.2014. http://www.gfi.com/whitepapers/Social_Networking_and_Security_Risks.pdf Hunt, T. Clickjack attack – the hidden threat right in front of you. 2013. Found at http://www.troyhunt.com/2013/05/clickjack-attack-hidden-threat-right-in.html Downloaded on 9.11.2014. http://www.troyhunt.com/2013/05/clickjack-attack-hidden-threat-right-in.html Lemos, R. 10 Web Threats That Could Harm Your Business. 2013. Found at http://www.darkreading.com/vulnerabilities---threats/10-web-threats-that-could-harm-your- business/d/d-id/1139318?page_number=1Downloaded on 9.11.2014. http://www.darkreading.com/vulnerabilities---threats/10-web-threats-that-could-harm-your- business/d/d-id/1139318?page_number=1 Scharr, J. Malvertising Is Here: How To Protect Yourself. 2014. Found at http://www.tomsguide.com/us/malvertising-what-it-is,news-19877.html. Downloaded on 9.11.2014. http://www.tomsguide.com/us/malvertising-what-it-is,news-19877.html


Download ppt "Social media is sharing information with others What if this information ends up in the wrong hands?"

Similar presentations


Ads by Google