alibaba cloud security introduction · 2019-09-03 · security introduction. in snapshot – 11.11...

22
Alibaba Cloud Security Introduction

Upload: others

Post on 26-May-2020

1 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Alibaba Cloud Security Introduction · 2019-09-03 · Security Introduction. In Snapshot – 11.11 • GMV: US$ 30.7B ... 01 DDoS Mitigation: Anti -DDoS Premium 02 Anti-Bot Using

Alibaba CloudSecurity Introduction

Page 2: Alibaba Cloud Security Introduction · 2019-09-03 · Security Introduction. In Snapshot – 11.11 • GMV: US$ 30.7B ... 01 DDoS Mitigation: Anti -DDoS Premium 02 Anti-Bot Using

In Snapshot – 11.11

• GMV:US$30.7B

• Orders:1.04B

• Successfullyblock1.6billionNetworkattacks

• 60.3%paymentaremadebyfingerprintandfacialrecognition

• Block-chainsupport150millionTraceabilityofgenuine

Page 3: Alibaba Cloud Security Introduction · 2019-09-03 · Security Introduction. In Snapshot – 11.11 • GMV: US$ 30.7B ... 01 DDoS Mitigation: Anti -DDoS Premium 02 Anti-Bot Using

Alibaba Cloud Security overview

TDSSituation Awareness

Risk Management

WAFServer GuardHost &

Application

Network Anti DDoS

Security Emergency Response

Service

SSL Certificate Data HSM Key Management Service

VPC/security Group

Page 4: Alibaba Cloud Security Introduction · 2019-09-03 · Security Introduction. In Snapshot – 11.11 • GMV: US$ 30.7B ... 01 DDoS Mitigation: Anti -DDoS Premium 02 Anti-Bot Using

Agenda

01 DDoS Mitigation: Anti-DDoS Premium

02 Anti-Bot Using Web Application Firewall (WAF)

03 Alibaba Cloud Web Threat Inspection (WTI)

04 Alibaba Cloud Content Moderation Service

Page 5: Alibaba Cloud Security Introduction · 2019-09-03 · Security Introduction. In Snapshot – 11.11 • GMV: US$ 30.7B ... 01 DDoS Mitigation: Anti -DDoS Premium 02 Anti-Bot Using

Alibaba Cloud Anti-DDoS Premium Service

Service Includes:

Exclusive IP Global Near-Source Scrubbing Centers

Unlimited Traffic Protection

Insurance Mode for Basic Service

• Provides exclusive IP resources for services deployed outside China mainland.

• Uses BGP Anycast technology to achieve global near-source scrubbing.

• Paid value-added services to mitigate DDoS attacks.

Page 6: Alibaba Cloud Security Introduction · 2019-09-03 · Security Introduction. In Snapshot – 11.11 • GMV: US$ 30.7B ... 01 DDoS Mitigation: Anti -DDoS Premium 02 Anti-Bot Using

Exclusive IPIn a CDN DDoS Protection, a single IP supports multiple domains.

This IP is blind to Layer 4 DDoS attacks:

• The service provider does not know which specific domain is the attack’s target

• All the domains using the IP suffer from service interruption.

An Exclusive IP prevents this scenario.

Page 7: Alibaba Cloud Security Introduction · 2019-09-03 · Security Introduction. In Snapshot – 11.11 • GMV: US$ 30.7B ... 01 DDoS Mitigation: Anti -DDoS Premium 02 Anti-Bot Using

Global Near-Source Scrubbing Centers

• 4 Scrubbing Centers, 2Tbps Mitigation Cap

• BGP Announcement

• Anycast Insurance Mode

• High Performance (pps)

• Attack Types Include:• SYN/ACK/FIN• UDP/DNS• NTP/SSDP

Page 8: Alibaba Cloud Security Introduction · 2019-09-03 · Security Introduction. In Snapshot – 11.11 • GMV: US$ 30.7B ... 01 DDoS Mitigation: Anti -DDoS Premium 02 Anti-Bot Using

Agenda

01 DDoS Mitigation: Anti-DDoS Premium

02 Anti-Bot Using Web Application Firewall (WAF)

03 Alibaba Cloud Web Threat Inspection (WTI)

04 Alibaba Cloud Content Moderation service

Page 9: Alibaba Cloud Security Introduction · 2019-09-03 · Security Introduction. In Snapshot – 11.11 • GMV: US$ 30.7B ... 01 DDoS Mitigation: Anti -DDoS Premium 02 Anti-Bot Using

Product - Web Application Firewall

Protects Millions of Websites Worldwide

US WestGermany

Malaysia

HK

US East

Australia

India

Singapore

Indonesia

Ready

CN Nodes

Page 10: Alibaba Cloud Security Introduction · 2019-09-03 · Security Introduction. In Snapshot – 11.11 • GMV: US$ 30.7B ... 01 DDoS Mitigation: Anti -DDoS Premium 02 Anti-Bot Using

Industrial WAF Solution - Targeted Crawler/ Attack

E-Commerce

Product Price Crawler

Product Lineup Crawler

Low Frequency

OWASP Top 10

OTA

Ticket Pricing

Promotion Abuse

Logical Flaw/ Weakness

Sensitive Information

Phone Number

Credit Card Number

ID

Page 11: Alibaba Cloud Security Introduction · 2019-09-03 · Security Introduction. In Snapshot – 11.11 • GMV: US$ 30.7B ... 01 DDoS Mitigation: Anti -DDoS Premium 02 Anti-Bot Using

Combat Advanced Bots

Human Bot

Alibaba Cloud WAF

UBA Big Data

Machine Learning

Bot Getting Smarter

Page 12: Alibaba Cloud Security Introduction · 2019-09-03 · Security Introduction. In Snapshot – 11.11 • GMV: US$ 30.7B ... 01 DDoS Mitigation: Anti -DDoS Premium 02 Anti-Bot Using

Easy Deployment

Page 13: Alibaba Cloud Security Introduction · 2019-09-03 · Security Introduction. In Snapshot – 11.11 • GMV: US$ 30.7B ... 01 DDoS Mitigation: Anti -DDoS Premium 02 Anti-Bot Using

How Do We Block Bad Bots?

Browser Web Server

IP Reputation

Bot Protection

Human-bot Identification

Expert Support

WAF Anti-Bot Protection

e.g. Block the IDC or cloud IP,

exception can be made by white list

Mobile App

SDKApp Server

Rate Analysis Based Blocking,

different parameter combined algorithm

Block the requests failed to pass Auth

Expert Support and Analysis

Legitimate Traffic Bot Traffic

Page 14: Alibaba Cloud Security Introduction · 2019-09-03 · Security Introduction. In Snapshot – 11.11 • GMV: US$ 30.7B ... 01 DDoS Mitigation: Anti -DDoS Premium 02 Anti-Bot Using

Human-Bot Identification Captcha

Page 15: Alibaba Cloud Security Introduction · 2019-09-03 · Security Introduction. In Snapshot – 11.11 • GMV: US$ 30.7B ... 01 DDoS Mitigation: Anti -DDoS Premium 02 Anti-Bot Using

Managed Security Services

Incident Response Incident ReportingTraining & Consulting 7*24*365 SOC

• Quick response to 0day attacks

• Attack handling

Let Alibaba Cloud be Your Professional Cybersecurity Safeguard

• Product consulting

• Cybersecurity knowledge training

• Customized IR • All Day reachable

• Professional experts support

Page 16: Alibaba Cloud Security Introduction · 2019-09-03 · Security Introduction. In Snapshot – 11.11 • GMV: US$ 30.7B ... 01 DDoS Mitigation: Anti -DDoS Premium 02 Anti-Bot Using

Agenda

01 DDoS Mitigation: Anti-DDoS Premium

02 Anti-Bot Using Web Application Firewall (WAF)

03 Alibaba Cloud Web Threat Inspection (WTI)

04 Alibaba Cloud Content Moderation service

Page 17: Alibaba Cloud Security Introduction · 2019-09-03 · Security Introduction. In Snapshot – 11.11 • GMV: US$ 30.7B ... 01 DDoS Mitigation: Anti -DDoS Premium 02 Anti-Bot Using

Traditional Vulnerability Products Weaknesses

• High False-Positive rate

• Long time (Yearly, quarterly)

• High False-Negative rate

• Too many vulnerabilities for a customer to handle

• Leaves a time window for the hacker to act

The vulnerability repairing period > 100 days vs Hacker attack < 5 days(Example: WannaCry – 26 days)

Page 18: Alibaba Cloud Security Introduction · 2019-09-03 · Security Introduction. In Snapshot – 11.11 • GMV: US$ 30.7B ... 01 DDoS Mitigation: Anti -DDoS Premium 02 Anti-Bot Using

The Advantages of WTI

High Performance Scanning ServiceThe WTI service is based on Alibaba Cloud’s architecture and supports 2000 scanning engines.

Strong and Easy IT Resources Discovery CapabilityFinds possible penetration paths for domain(s), without an agent or any deployment work.

Multiple Vulnerability Verification Methodslow false positive findings on injection, file, redirection.

Page 19: Alibaba Cloud Security Introduction · 2019-09-03 · Security Introduction. In Snapshot – 11.11 • GMV: US$ 30.7B ... 01 DDoS Mitigation: Anti -DDoS Premium 02 Anti-Bot Using

WTI - Quick and Professional Service to Harden Customer’s System

0 Day Vulnerability Response is a Race:

Hacker

On-premise DC

WTI

0day vulnerabilityexploits

0day vulnerabilityexploits

0day vulnerabilityexploits

Prepare Attack plan

Assess and design fixing plan

Automatic scanningbased on customer’srequirement on cloud

Execute attack

Test

Complete in hours

Verification

Fixed vulnerability

1-5 days

More than 10 days

24 hours

Page 20: Alibaba Cloud Security Introduction · 2019-09-03 · Security Introduction. In Snapshot – 11.11 • GMV: US$ 30.7B ... 01 DDoS Mitigation: Anti -DDoS Premium 02 Anti-Bot Using

Agenda

01 DDoS Mitigation: Anti-DDoS Premium

02 Anti-Bot Using Web Application Firewall (WAF)

03 Alibaba Cloud Web Threat Inspection (WTI)

04 Alibaba Cloud Content Moderation service

Page 21: Alibaba Cloud Security Introduction · 2019-09-03 · Security Introduction. In Snapshot – 11.11 • GMV: US$ 30.7B ... 01 DDoS Mitigation: Anti -DDoS Premium 02 Anti-Bot Using

Information Compliance- Content Moderation

1. Multi-Layer Filtering

2. VarietyDetection

3. Anti-SPAM 4. Adult/Violence/Inappropriate Content

Identification from Picture, Text, Video

Highlighted Feature

Page 22: Alibaba Cloud Security Introduction · 2019-09-03 · Security Introduction. In Snapshot – 11.11 • GMV: US$ 30.7B ... 01 DDoS Mitigation: Anti -DDoS Premium 02 Anti-Bot Using

Thank You for Joining

Start a Free Trial