Author Topic: SANS: Top Cyber Security Risks  (Read 440 times)

0 Members and 1 Guest are viewing this topic.

Offline faith_michele

  • Anti - Phishing Staff
  • Gold Member
  • Posts: 1947
    • A Beacon of Light
SANS: Top Cyber Security Risks
« on: September 24, 2009, 02:38:42 AM »
Quote
SANS:  Top Cyber Security Risks, September 2009

Two risks dwarf all others, but organizations fail to mitigate them

Featuring attack data from TippingPoint intrusion prevention systems protecting 6,000 organizations, vulnerability data from 9,000,000 systems compiled by Qualys, and additional analysis and tutorial by the Internet Storm Center and key SANS faculty members.

Contents

Executive summary
Overview
Vulnerability exploitation trends
    Application vulnerabilities exceed OS vulnerabilities
    Web application attacks
    Windows: Conficker/Downadup
    Apple: QuickTime and six more
Origin and destination analysis for four key attacks
Application patching is much slower than operating system patching
Tutorial: Real-life HTTP client-side exploitation example
    Step 0: Attacker places content on trusted site
    Step 1: Client-side exploitation
    Step 2: Establish reverse shell backdoor using HTTPS
    Steps 3 and 4: Dump hashes and use pass-the-hash attack to pivot
    Step 5: Pass the hash to compromise domain controller
    Steps 6 and 7: Exfiltration
Zero-day vulnerability trends
Best practices in mitigation and control of the top risks
    Critical Controls - As Applied to HTTP Server Threats

More....

http://www.sans.org/top-cyber-security-risks/


Microsoft Consumer Security MVP, July 2007-June 2010

"Fight your fights, find the grace in all the things that you can't change and help somebody, if you can." Van Zant

A Beacon of Light