SlideShare une entreprise Scribd logo
1  sur  36
Télécharger pour lire hors ligne
Cybercrime & Business
How do we fight this war?




Pirkka Palomäki
Chief Technology Officer
F-Secure Corporation
Operating system
Floppy                             Browsers
Lan                                Java
Email                              Adobe Flash
Web                                Adobe PDF reader
                                   Quicktime




     facebook, myspace, twitter, linkedin?
Acrobat
Flash
Case Darkmarket
Featuring
                                Mr. Adewale Taiwo



Featuring Mr. Cagatay Evyapan
          aka "Cha0"
Case Mebroot
Case Mebroot – short introduction
   The first complex MBR rootkit with malicious payload
      Kernel-mode downloader and backdoor
      Downloads PWS and banking Trojan components


   Strengths of Mebroot:
      No executable files on file system
      No registry keys or standard launch points
      No driver module in module list
      Minimal memory footprint
      Early execution during system startup
      Stealth read/write disk operations
      Stealth Anti-Removal protection
      Totally generic, open malware platform (MAOS)
How do we work?
F-Secure Dashboard
Myth To Forget
Obsolete for
Hundreds of Thousands
 of samples every day
Security Research Flow; The Critical Chain




    Malware                   Detection Malware
                 Automatic                          Real-time
   Samples /                   Engine Researchers &
                  Analysis                           delivery
   Acquisition               Technology Analysts
SMA Decisions – daily
thank you

Contenu connexe

En vedette

Economic survey
Economic surveyEconomic survey
Economic survey
budgetana
 
Letters Requesting Payment
Letters Requesting PaymentLetters Requesting Payment
Letters Requesting Payment
Leite Bayukaka
 

En vedette (16)

Managerial economics summary
Managerial economics summaryManagerial economics summary
Managerial economics summary
 
Economic survey
Economic surveyEconomic survey
Economic survey
 
Deka company
Deka companyDeka company
Deka company
 
detyrë kursi Inspektimi byirenakotobelli
detyrë kursi Inspektimi byirenakotobellidetyrë kursi Inspektimi byirenakotobelli
detyrë kursi Inspektimi byirenakotobelli
 
Analysing Business Markets
Analysing Business MarketsAnalysing Business Markets
Analysing Business Markets
 
Raiff Bancassurance
Raiff BancassuranceRaiff Bancassurance
Raiff Bancassurance
 
Economics
EconomicsEconomics
Economics
 
Problemet e menaxhimit dhe te rritjes se bizneseve - Nehar islami dhe Dafina ...
Problemet e menaxhimit dhe te rritjes se bizneseve - Nehar islami dhe Dafina ...Problemet e menaxhimit dhe te rritjes se bizneseve - Nehar islami dhe Dafina ...
Problemet e menaxhimit dhe te rritjes se bizneseve - Nehar islami dhe Dafina ...
 
Rast studimore "ProCreditBank"
Rast studimore "ProCreditBank"Rast studimore "ProCreditBank"
Rast studimore "ProCreditBank"
 
Kompania DEKA
Kompania DEKAKompania DEKA
Kompania DEKA
 
Ekonomi "Probleme te konkurrences ne tregun tone."
Ekonomi "Probleme te konkurrences ne tregun tone."Ekonomi "Probleme te konkurrences ne tregun tone."
Ekonomi "Probleme te konkurrences ne tregun tone."
 
Letters Requesting Payment
Letters Requesting PaymentLetters Requesting Payment
Letters Requesting Payment
 
Plani i biznesit.docxfilename= utf-8''plani i biznesit
Plani i biznesit.docxfilename= utf-8''plani i biznesitPlani i biznesit.docxfilename= utf-8''plani i biznesit
Plani i biznesit.docxfilename= utf-8''plani i biznesit
 
Presentation1
Presentation1Presentation1
Presentation1
 
Nehar islami dhe Arben Dedaj-Krahasimi i bankes Teb dhe i bankes Raiffeisen
Nehar islami dhe Arben Dedaj-Krahasimi i bankes Teb dhe i bankes RaiffeisenNehar islami dhe Arben Dedaj-Krahasimi i bankes Teb dhe i bankes Raiffeisen
Nehar islami dhe Arben Dedaj-Krahasimi i bankes Teb dhe i bankes Raiffeisen
 
SAP FI-BANK
SAP  FI-BANKSAP  FI-BANK
SAP FI-BANK
 

Similaire à Cybercrime & Business. Jak wygrać tę wojnę?

Keynote fx try harder 2 be yourself
Keynote fx   try harder 2 be yourselfKeynote fx   try harder 2 be yourself
Keynote fx try harder 2 be yourself
DefconRussia
 
Cansec West 2009
Cansec West 2009Cansec West 2009
Cansec West 2009
abhicc285
 
GDP Product Presentation
GDP Product PresentationGDP Product Presentation
GDP Product Presentation
tswong
 

Similaire à Cybercrime & Business. Jak wygrać tę wojnę? (20)

Keynote fx try harder 2 be yourself
Keynote fx   try harder 2 be yourselfKeynote fx   try harder 2 be yourself
Keynote fx try harder 2 be yourself
 
Modern malware and threats
Modern malware and threatsModern malware and threats
Modern malware and threats
 
Agile Chennai 2022 - Shyam Sundar | Everything there is to know about Cyber s...
Agile Chennai 2022 - Shyam Sundar | Everything there is to know about Cyber s...Agile Chennai 2022 - Shyam Sundar | Everything there is to know about Cyber s...
Agile Chennai 2022 - Shyam Sundar | Everything there is to know about Cyber s...
 
The A and the P of the T
The A and the P of the TThe A and the P of the T
The A and the P of the T
 
The A and the P of the T
The A and the P of the TThe A and the P of the T
The A and the P of the T
 
Thinking Differently About Security Protection and Prevention
Thinking Differently About Security Protection and PreventionThinking Differently About Security Protection and Prevention
Thinking Differently About Security Protection and Prevention
 
Hacking ATM machines for fun and profit!
Hacking ATM machines for fun and profit!Hacking ATM machines for fun and profit!
Hacking ATM machines for fun and profit!
 
(Training) Malware - To the Realm of Malicious Code
(Training) Malware - To the Realm of Malicious Code(Training) Malware - To the Realm of Malicious Code
(Training) Malware - To the Realm of Malicious Code
 
DEF CON 27 - DANIEL ROMERO and MARIO RIVAS - why you should fear your mundane...
DEF CON 27 - DANIEL ROMERO and MARIO RIVAS - why you should fear your mundane...DEF CON 27 - DANIEL ROMERO and MARIO RIVAS - why you should fear your mundane...
DEF CON 27 - DANIEL ROMERO and MARIO RIVAS - why you should fear your mundane...
 
How websites are attacked
How websites are attackedHow websites are attacked
How websites are attacked
 
Malware's most wanted-zberp-the_financial_trojan
Malware's most wanted-zberp-the_financial_trojanMalware's most wanted-zberp-the_financial_trojan
Malware's most wanted-zberp-the_financial_trojan
 
Symantec Webinar | Redefining Endpoint Security- How to Better Secure the End...
Symantec Webinar | Redefining Endpoint Security- How to Better Secure the End...Symantec Webinar | Redefining Endpoint Security- How to Better Secure the End...
Symantec Webinar | Redefining Endpoint Security- How to Better Secure the End...
 
Cansec West 2009
Cansec West 2009Cansec West 2009
Cansec West 2009
 
Lecture about network and host security to NII students
Lecture about network and host security to NII studentsLecture about network and host security to NII students
Lecture about network and host security to NII students
 
Cyber Defense Automation
Cyber Defense AutomationCyber Defense Automation
Cyber Defense Automation
 
Presentatie McAfee: Optimale Endpoint Protection 26062015
Presentatie McAfee: Optimale Endpoint Protection 26062015Presentatie McAfee: Optimale Endpoint Protection 26062015
Presentatie McAfee: Optimale Endpoint Protection 26062015
 
Securing Underprotected APIs - Deja vu Security
Securing Underprotected APIs - Deja vu SecuritySecuring Underprotected APIs - Deja vu Security
Securing Underprotected APIs - Deja vu Security
 
Malware Analysis
Malware AnalysisMalware Analysis
Malware Analysis
 
GDP Product Presentation
GDP Product PresentationGDP Product Presentation
GDP Product Presentation
 
Automated Penetration Testing With Core Impact
Automated Penetration Testing With Core ImpactAutomated Penetration Testing With Core Impact
Automated Penetration Testing With Core Impact
 

Plus de Biznes to Rozmowy

Plus de Biznes to Rozmowy (20)

Bezpłatne WIFI rozkręca biznes - Łukasz Antoniewicz
Bezpłatne WIFI rozkręca biznes - Łukasz AntoniewiczBezpłatne WIFI rozkręca biznes - Łukasz Antoniewicz
Bezpłatne WIFI rozkręca biznes - Łukasz Antoniewicz
 
Jak wypromować swoją firmę w internecie. Przykłady kampanii, m.in Google Adwo...
Jak wypromować swoją firmę w internecie. Przykłady kampanii, m.in Google Adwo...Jak wypromować swoją firmę w internecie. Przykłady kampanii, m.in Google Adwo...
Jak wypromować swoją firmę w internecie. Przykłady kampanii, m.in Google Adwo...
 
Warto być widocznym w Social Mediach. Facebook, Linkedin. - Bartek Brzoskowski
Warto być widocznym w Social Mediach. Facebook, Linkedin. - Bartek BrzoskowskiWarto być widocznym w Social Mediach. Facebook, Linkedin. - Bartek Brzoskowski
Warto być widocznym w Social Mediach. Facebook, Linkedin. - Bartek Brzoskowski
 
Kurs malowania Mona Lisy... Czyli jak stworzyć markę, którą Klienci będą koch...
Kurs malowania Mona Lisy... Czyli jak stworzyć markę, którą Klienci będą koch...Kurs malowania Mona Lisy... Czyli jak stworzyć markę, którą Klienci będą koch...
Kurs malowania Mona Lisy... Czyli jak stworzyć markę, którą Klienci będą koch...
 
Driving at 200 km/ into a wall of security issues in personal cloud?
Driving at 200 km/ into a wall of security issues in personal cloud?Driving at 200 km/ into a wall of security issues in personal cloud?
Driving at 200 km/ into a wall of security issues in personal cloud?
 
Nas nie zaatakują!
Nas nie zaatakują!Nas nie zaatakują!
Nas nie zaatakują!
 
The future of human: brand interface
The future of human: brand interfaceThe future of human: brand interface
The future of human: brand interface
 
Brand video
Brand videoBrand video
Brand video
 
Od internetu rzeczy do biohackingu: o trendach i mikrotrendach, które były, s...
Od internetu rzeczy do biohackingu: o trendach i mikrotrendach, które były, s...Od internetu rzeczy do biohackingu: o trendach i mikrotrendach, które były, s...
Od internetu rzeczy do biohackingu: o trendach i mikrotrendach, które były, s...
 
Przedsiębiorstwo 2.0 Jak korzystać z elastycznych, bezpiecznych rozwiązań a n...
Przedsiębiorstwo 2.0 Jak korzystać z elastycznych, bezpiecznych rozwiązań a n...Przedsiębiorstwo 2.0 Jak korzystać z elastycznych, bezpiecznych rozwiązań a n...
Przedsiębiorstwo 2.0 Jak korzystać z elastycznych, bezpiecznych rozwiązań a n...
 
Komunikacja po prostu.
Komunikacja po prostu.Komunikacja po prostu.
Komunikacja po prostu.
 
Kreator czy technokrata? Kogo bardziej potrzebuje innowacyjność
Kreator czy technokrata? Kogo bardziej potrzebuje innowacyjnośćKreator czy technokrata? Kogo bardziej potrzebuje innowacyjność
Kreator czy technokrata? Kogo bardziej potrzebuje innowacyjność
 
Kim są Early Adopters i dlaczego była nią Twoja Babcia?
Kim są Early Adopters i dlaczego była nią Twoja Babcia?Kim są Early Adopters i dlaczego była nią Twoja Babcia?
Kim są Early Adopters i dlaczego była nią Twoja Babcia?
 
1 + 1 > 2. Jak zamieniać rozmowy w biznes.
1 + 1 > 2. Jak zamieniać rozmowy w biznes.1 + 1 > 2. Jak zamieniać rozmowy w biznes.
1 + 1 > 2. Jak zamieniać rozmowy w biznes.
 
Highly-Effective Relationships in a Technology-Driven World: An Impossible Po...
Highly-Effective Relationships in a Technology-Driven World: An Impossible Po...Highly-Effective Relationships in a Technology-Driven World: An Impossible Po...
Highly-Effective Relationships in a Technology-Driven World: An Impossible Po...
 
Video will touch us all.
Video will touch us all.Video will touch us all.
Video will touch us all.
 
WiFi - jakiego nie znacie.
WiFi - jakiego nie znacie.WiFi - jakiego nie znacie.
WiFi - jakiego nie znacie.
 
Golden Eye. I wiesz więcej.
Golden Eye. I wiesz więcej.Golden Eye. I wiesz więcej.
Golden Eye. I wiesz więcej.
 
What's Next
What's NextWhat's Next
What's Next
 
Jak żeglować na oceanie informacji. Nowoczesny pracownik w erze komunikacji g...
Jak żeglować na oceanie informacji. Nowoczesny pracownik w erze komunikacji g...Jak żeglować na oceanie informacji. Nowoczesny pracownik w erze komunikacji g...
Jak żeglować na oceanie informacji. Nowoczesny pracownik w erze komunikacji g...
 

Dernier

The Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai Kuwait
The Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai KuwaitThe Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai Kuwait
The Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai Kuwait
daisycvs
 
Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...
Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...
Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...
daisycvs
 
Challenges and Opportunities: A Qualitative Study on Tax Compliance in Pakistan
Challenges and Opportunities: A Qualitative Study on Tax Compliance in PakistanChallenges and Opportunities: A Qualitative Study on Tax Compliance in Pakistan
Challenges and Opportunities: A Qualitative Study on Tax Compliance in Pakistan
vineshkumarsajnani12
 

Dernier (20)

Call 7737669865 Vadodara Call Girls Service at your Door Step Available All Time
Call 7737669865 Vadodara Call Girls Service at your Door Step Available All TimeCall 7737669865 Vadodara Call Girls Service at your Door Step Available All Time
Call 7737669865 Vadodara Call Girls Service at your Door Step Available All Time
 
Falcon Invoice Discounting: The best investment platform in india for investors
Falcon Invoice Discounting: The best investment platform in india for investorsFalcon Invoice Discounting: The best investment platform in india for investors
Falcon Invoice Discounting: The best investment platform in india for investors
 
Kalyan Call Girl 98350*37198 Call Girls in Escort service book now
Kalyan Call Girl 98350*37198 Call Girls in Escort service book nowKalyan Call Girl 98350*37198 Call Girls in Escort service book now
Kalyan Call Girl 98350*37198 Call Girls in Escort service book now
 
Berhampur 70918*19311 CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
Berhampur 70918*19311 CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDINGBerhampur 70918*19311 CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
Berhampur 70918*19311 CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
 
Falcon Invoice Discounting: Empowering Your Business Growth
Falcon Invoice Discounting: Empowering Your Business GrowthFalcon Invoice Discounting: Empowering Your Business Growth
Falcon Invoice Discounting: Empowering Your Business Growth
 
Falcon Invoice Discounting: Unlock Your Business Potential
Falcon Invoice Discounting: Unlock Your Business PotentialFalcon Invoice Discounting: Unlock Your Business Potential
Falcon Invoice Discounting: Unlock Your Business Potential
 
QSM Chap 10 Service Culture in Tourism and Hospitality Industry.pptx
QSM Chap 10 Service Culture in Tourism and Hospitality Industry.pptxQSM Chap 10 Service Culture in Tourism and Hospitality Industry.pptx
QSM Chap 10 Service Culture in Tourism and Hospitality Industry.pptx
 
Katrina Personal Brand Project and portfolio 1
Katrina Personal Brand Project and portfolio 1Katrina Personal Brand Project and portfolio 1
Katrina Personal Brand Project and portfolio 1
 
Berhampur CALL GIRL❤7091819311❤CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
Berhampur CALL GIRL❤7091819311❤CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDINGBerhampur CALL GIRL❤7091819311❤CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
Berhampur CALL GIRL❤7091819311❤CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
 
PARK STREET 💋 Call Girl 9827461493 Call Girls in Escort service book now
PARK STREET 💋 Call Girl 9827461493 Call Girls in  Escort service book nowPARK STREET 💋 Call Girl 9827461493 Call Girls in  Escort service book now
PARK STREET 💋 Call Girl 9827461493 Call Girls in Escort service book now
 
Pre Engineered Building Manufacturers Hyderabad.pptx
Pre Engineered  Building Manufacturers Hyderabad.pptxPre Engineered  Building Manufacturers Hyderabad.pptx
Pre Engineered Building Manufacturers Hyderabad.pptx
 
The Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai Kuwait
The Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai KuwaitThe Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai Kuwait
The Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai Kuwait
 
Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...
Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...
Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...
 
CROSS CULTURAL NEGOTIATION BY PANMISEM NS
CROSS CULTURAL NEGOTIATION BY PANMISEM NSCROSS CULTURAL NEGOTIATION BY PANMISEM NS
CROSS CULTURAL NEGOTIATION BY PANMISEM NS
 
Unveiling Falcon Invoice Discounting: Leading the Way as India's Premier Bill...
Unveiling Falcon Invoice Discounting: Leading the Way as India's Premier Bill...Unveiling Falcon Invoice Discounting: Leading the Way as India's Premier Bill...
Unveiling Falcon Invoice Discounting: Leading the Way as India's Premier Bill...
 
Phases of Negotiation .pptx
 Phases of Negotiation .pptx Phases of Negotiation .pptx
Phases of Negotiation .pptx
 
SEO Case Study: How I Increased SEO Traffic & Ranking by 50-60% in 6 Months
SEO Case Study: How I Increased SEO Traffic & Ranking by 50-60%  in 6 MonthsSEO Case Study: How I Increased SEO Traffic & Ranking by 50-60%  in 6 Months
SEO Case Study: How I Increased SEO Traffic & Ranking by 50-60% in 6 Months
 
Challenges and Opportunities: A Qualitative Study on Tax Compliance in Pakistan
Challenges and Opportunities: A Qualitative Study on Tax Compliance in PakistanChallenges and Opportunities: A Qualitative Study on Tax Compliance in Pakistan
Challenges and Opportunities: A Qualitative Study on Tax Compliance in Pakistan
 
Uneak White's Personal Brand Exploration Presentation
Uneak White's Personal Brand Exploration PresentationUneak White's Personal Brand Exploration Presentation
Uneak White's Personal Brand Exploration Presentation
 
WheelTug Short Pitch Deck 2024 | Byond Insights
WheelTug Short Pitch Deck 2024 | Byond InsightsWheelTug Short Pitch Deck 2024 | Byond Insights
WheelTug Short Pitch Deck 2024 | Byond Insights
 

Cybercrime & Business. Jak wygrać tę wojnę?

  • 1.
  • 2. Cybercrime & Business How do we fight this war? Pirkka Palomäki Chief Technology Officer F-Secure Corporation
  • 3.
  • 4.
  • 5. Operating system Floppy Browsers Lan Java Email Adobe Flash Web Adobe PDF reader Quicktime facebook, myspace, twitter, linkedin?
  • 9.
  • 10.
  • 11.
  • 12.
  • 13. Featuring Mr. Adewale Taiwo Featuring Mr. Cagatay Evyapan aka "Cha0"
  • 14.
  • 16. Case Mebroot – short introduction The first complex MBR rootkit with malicious payload Kernel-mode downloader and backdoor Downloads PWS and banking Trojan components Strengths of Mebroot: No executable files on file system No registry keys or standard launch points No driver module in module list Minimal memory footprint Early execution during system startup Stealth read/write disk operations Stealth Anti-Removal protection Totally generic, open malware platform (MAOS)
  • 17.
  • 18.
  • 19.
  • 20.
  • 21. How do we work?
  • 24. Obsolete for Hundreds of Thousands of samples every day
  • 25. Security Research Flow; The Critical Chain Malware Detection Malware Automatic Real-time Samples / Engine Researchers & Analysis delivery Acquisition Technology Analysts
  • 26.
  • 27.
  • 28.
  • 29.
  • 30.
  • 31.
  • 32.
  • 33.
  • 34.