the hacker playbook: how to think like a cybercriminal to reduce risk

30
The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk Paula Januszkiewicz CQURE: CEO, Penetration Tester / Security Expert CQURE Academy: Trainer MVP: Enterprise Security, MCT Contact: [email protected] | http://cqure.us New York, Dubai, Warsaw @paulacqure @CQUREAcademy

Upload: beyondtrust

Post on 08-Jan-2017

39 views

Category:

Social Media


0 download

TRANSCRIPT

Page 1: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk

The Hacker Playbook: How to Think Like a Cybercriminal

to Reduce Risk

Paula Januszkiewicz CQURE: CEO, Penetration Tester / Security Expert

CQURE Academy: Trainer

MVP: Enterprise Security, MCT

Contact: [email protected] | http://cqure.us

New York, Dubai, Warsaw

@paulacqure

@CQUREAcademy

Page 2: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk
Page 3: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk
Page 4: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk
Page 5: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk

Awareness

• I know

Behaviour (Competence)

• I do

Culture

• We know and do

The workflow below shows the logic behind the security awareness:

Have a look at the following analogy:

Page 6: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk

I know the traffic rules….

Awareness

I know the traffic rules….

Page 7: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk

Does it guarantee that I am a good driver?

Behavior

Page 8: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk

CultureDid you know that one of the main reasons for information loss are…

“IT-users don't mean to be the primary entry point for hackers; But they are; Hence the need to be

educated on Cyber-Security-Risks and raise our vigilance against threats that no technology can

prevent.”

- Group Chief Information Officer (CQURE Customer)

Page 9: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk
Page 10: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk
Page 11: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk
Page 12: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk
Page 13: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk
Page 14: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk

You received a voice mail : VOICE548-457-6638.wav (27 KB)

Caller-Id: 548-457-6638

Message-Id: S5VAAC

Email-Id: [email protected]

Download and extract the attachment to listen the message.

We have uploaded fax report on dropbox, please use the following link to download your file:

https://www.dropbox.com/meta_dl/eyJzdWJfcGF0aCI6ICIiLCAidGVzdF9saW5rIjogZmFsc2UsICJzZXJ2ZXIiOiAiZGwuZHJvcGJveHVzZXJjb250ZW50LmNvbSIsICJpdGVtX2lkIjogbnVsbCwgImlzX2RpciI6IGZhbHNlLCAidGtleSI6ICJueGxzcWh0MDF5ZnloOHMifQ/AAPQJWOgwKVSIAJCmizztc3dqjAIfdlgyD87Cw0mgJOIxw?dl=1

Sent by Microsoft Exchange Server

Answer on the next page…

Page 15: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk

Answer on the next page…

Page 16: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk

YES

Page 17: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk
Page 18: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk
Page 19: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk
Page 20: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk
Page 21: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk
Page 22: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk

Reason 1:

For security practitioners security is

a “reality” based on the mathematical

probability of risks

For the end user security is a “feeling”

Success lies in influencing the “feeling” of

security

Page 23: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk

Reason 2:

Control efficiency

Risk

severity/

Attacker

Smartness/

Attack

Efficiency

Technology & Processes

Awareness & Competence

Automatic security controls – AV, Updates

Technology + Human – Firewall configuration,

Choosing a secure Wifi

Human – Recognizing a zero day attack,

Phishing mails, Not posting business

information in social media

The very smart attacker

1

2

3

4

People exaggerate risks that are spectacular or uncommon

Page 24: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk

Reason 3:

Aircrafts have become more advanced, but

does it mean that pilot training requirements

have reduced?

Medical technology has become more

advanced, but will you choose a hospital for it’s

machines or the doctors?

Page 25: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk

Because people tend to take shortcuts

Because we prefer habits over good practices

Because hard problems are easy to ignore

Because acting is easier than planning

Page 26: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk

Retina Enterprise

Vulnerability Management

Alex DaCosta

Product Manager

Page 27: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk

RETINA VULNERABILITY MANAGEMENT

POWERBROKER PRIVILEGED ACCOUNT MANAGEMENT

27

PRIVILEGE MANAGEMENT

ACTIVE DIRECTORY BRIDGING

PRIVLEGED PASSWORD

MANAGEMENT

AUDITING & PROTECTION

ENTERPRISE VULNERABILITY MANAGEMENT

BEYONDSAAS CLOUD-BASED

SCANNING

NETWORK SECURITY SCANNER

WEB SECURITY SCANNER

BEYONDINSIGHT CLARITY THREAT ANALYTICS

BEYONDINSIGHT IT RISK MANAGEMENT PLATFORM

EXTENSIVE

REPORTING

CENTRAL DATA

WAREHOUSE

ASSET

DISCOVERY

ASSET

PROFILING

ASSET SMART

GROUPS

USER

MANAGEMENT

WORKFLOW &

NOTIFICATION

THIRD-PARTY

INTEGRATION

Page 28: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk

Demo

Page 29: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk

Quick Poll

Page 30: The Hacker Playbook: How to Think Like a Cybercriminal to Reduce Risk

Thank you for attending

today’s webinar.