disruptive innovation in cybercrime techniques

20
Disruptive Innovation in Cybercrime Techniques Etay Maor Senior Fraud Prevention Strategist

Category:

Technology


1 download

DESCRIPTION

Etay Maor. Senior Fraud Prevention Strategist. Trusteer (an IBM company). Curso de Verano "Innovación Disruptiva en tecnologías de seguridad". Campus Vicálvaro de la URJC. Summer Course "Disruptive innovation in security technologies". URJC's Vicálvaro Campus.

TRANSCRIPT

Page 1: Disruptive innovation in cybercrime techniques

Disruptive Innovation in Cybercrime Techniques

Etay Maor

Senior Fraud Prevention Strategist

Page 2: Disruptive innovation in cybercrime techniques

© IBM Trusteer, 2014

Security Silos FAIL!

Page 3: Disruptive innovation in cybercrime techniques

© IBM Trusteer, 2014

Targeting Security Solutions:

External and Perimeter

Anti virus

Sandbox

VMs

Login

Credential protection and encryption

OTP SMS

Device ID

Internal

Behavior anomaly detection

Clickstream analysis

3

Page 4: Disruptive innovation in cybercrime techniques

© IBM Trusteer, 2014

Malware Protection

4

Page 5: Disruptive innovation in cybercrime techniques

© IBM Trusteer, 2014

Malware Protection

5

Page 6: Disruptive innovation in cybercrime techniques

Malware Protection - Outsource

Page 7: Disruptive innovation in cybercrime techniques

© IBM Trusteer, 2014

Device Forging

Page 8: Disruptive innovation in cybercrime techniques

© IBM Trusteer, 2014

Bypassing Device ID

Notification

LoginInjection

Page 9: Disruptive innovation in cybercrime techniques

© IBM Trusteer, 2014

Bypassing Device ID

RDP

Transaction

Page 10: Disruptive innovation in cybercrime techniques

© IBM Trusteer, 2014

Behavior and Device ID Tricks

10

The data source:

Large European bank

3 weeks worth of data

1.5M accounts reviewed

10M login attempts

Fraudsters know behavioral profiling is in action

Fraud does not happen on the first login

30% of the users come from a mobile device

Confirmed fraud coming from the mobile channel. WHY?

Page 11: Disruptive innovation in cybercrime techniques

New Mobile Threats

11

Page 12: Disruptive innovation in cybercrime techniques

© IBM Trusteer, 2014

How Times Have Changed…

Page 13: Disruptive innovation in cybercrime techniques

Trusteer Confidential 2013 ©

Ajax Vs Barcelona

13

Page 14: Disruptive innovation in cybercrime techniques

Trusteer Confidential 2013 ©

Ajax Vs Barcelona???

14

Page 15: Disruptive innovation in cybercrime techniques

© IBM Trusteer, 2014

Overlay Mobile Attack

Page 16: Disruptive innovation in cybercrime techniques

© IBM Trusteer, 2014

Overlay Mobile Attack

Page 17: Disruptive innovation in cybercrime techniques

© IBM Trusteer, 2014

Mobile SVPENG

17

Page 18: Disruptive innovation in cybercrime techniques

© IBM Trusteer, 2014

Mobile SVPENG

1

8

C&C – ransomware preparations

Page 19: Disruptive innovation in cybercrime techniques

© IBM Trusteer, 2014

Mobile Ransomware

Page 20: Disruptive innovation in cybercrime techniques

Thank You