




版權說明:本文檔由用戶提供并上傳,收益歸屬內容提供方,若內容存在侵權,請進行舉報或認領
文檔簡介
1、1The next virusesWhat we could wait for?Fernando de la CuadraPanda Software International2Index Big attacks Summary of advantages and disadvantages What could we wait for? And then.3Big attacks Jerusalem Melissa Lovelettter Klez Sobig SQLSlammer Blaster4Jerusalem First big infection Payload: Deletes
2、 executables files Low damage according with nowadays figures Factors for success: Users misinformation Piracy Factors for being unsuccessful: Low number of computers in 1989 Date for payload: Friday, 13th Spreads without conditions: all EXE files5Melissa First mass-mailer worm for end users Payload
3、: Modifies Word 9.0 macro security Inserts some texts Forward itself to 50 addresses Factors for success: First mass mailer worm for Outlook Users misinformation Factors for being unsuccessful: Too many symptoms of being infected Excessive use of mail servers6Loveletter Another mass-mailer worm for
4、end users, with high media impact Payload: Overwrites certain files Steals personal information Factors for success: Forwards itself to all addresses Users misinformation Fast spreading Factors for being unsuccessful: Too many symptoms of being infected Excessive use of mail servers Big media impact
5、7Klez First big security hole exploit PayloadStops antivirusDeletes filesSpreads massively changing shape Factors for success:Users lack of upgradingVulnerability Factors for being unsuccessful:?8Sobig Combined threat PayloadSpreads massivelyDownloads a worm form Geocities Factors for success:Social
6、 engineeringUsers misinformation Factors for being unsuccessful:Use of mail serversMedia impact9SQLSlammer Non- PayloadDenial of Services in MS SQL Servers Factors for success:Fast spreadingLack of updating in servers Factors for being unsuccessful:Upgrading of serversCorrect firewall configuration1
7、0Blaster Using RPC vulnerability Payload Denial of Services to Installs Trivial Protocol server Factors for success: Fast spreading Lack of updating in computers Factors for being unsuccessful: Upgrading of computers Media impact11Summary SuccessSocial engineeringUsers misinformationFast spreadingLa
8、ck of updating in serversFast spreadingLack of updating in computers12Summary Factors for being unsuccessful:Excessive use of mail serversMedia impactUpgrading of serversCorrect firewall configurationUpgrading of computersMedia impact13What could we wait for? E-mail virus:Spreading through a non sus
9、picious e-mail address and sender “Postmaster” may be a good sender “Undeliverable” may be a good subjectIt cannot look like spamAbsolutely “aseptic” body and subject14What could we wait for? Slow actionNot more than 10 messages per dayNo administrator will detect this low traffic increasing15What c
10、ould we wait for? Propagation:Direct SMTP commandsE-mailing to addresses in different domains than the computerInside domains, direct spreading through open standard ports16What could we wait for? Avoid address book to read addressesLook for addresses in hard driveInternet temporal filesWord textsHT
11、ML files17What could we wait for? Very light PC damageComputers are its life support,Distributed attack to big Internet serversIf it cracks PC, it will become well knownFor non ADSL or networked PC, it should dial-up its own connection when screen saver pops up18What could we wait for? Avoiding antivirus detectionEncrypted attachmentRandom password inside the textWinZip may be a good tool!Better a new encryption system19And th
溫馨提示
- 1. 本站所有資源如無特殊說明,都需要本地電腦安裝OFFICE2007和PDF閱讀器。圖紙軟件為CAD,CAXA,PROE,UG,SolidWorks等.壓縮文件請下載最新的WinRAR軟件解壓。
- 2. 本站的文檔不包含任何第三方提供的附件圖紙等,如果需要附件,請聯系上傳者。文件的所有權益歸上傳用戶所有。
- 3. 本站RAR壓縮包中若帶圖紙,網頁內容里面會有圖紙預覽,若沒有圖紙預覽就沒有圖紙。
- 4. 未經權益所有人同意不得將文件中的內容挪作商業或盈利用途。
- 5. 人人文庫網僅提供信息存儲空間,僅對用戶上傳內容的表現方式做保護處理,對用戶上傳分享的文檔內容本身不做任何修改或編輯,并不能對任何下載內容負責。
- 6. 下載文件中如有侵權或不適當內容,請與我們聯系,我們立即糾正。
- 7. 本站不保證下載資源的準確性、安全性和完整性, 同時也不承擔用戶因使用這些下載資源對自己和他人造成任何形式的傷害或損失。
最新文檔
- 鐵道機車專業教學鄭州鐵路單紹平75課件
- 條碼技術物流工程課件
- 中醫職業醫師課件
- 房貸合同協議書范本
- 醫師勞動合同書
- 股東出資合作合同協議
- 世紀英才文化課件藏戲
- 銷售人員合同
- 設備租賃合同范本詳細
- 普法宣講【法律學堂】第十六章 行政復議申請書-ldfjxs004
- 人教版英語七年級下冊知識講義Unit 1 section A (教師版)
- 快開門式壓力容器操作人員培訓
- 手術分級管理制度
- 2025年江蘇宿遷經濟技術開發區人力資源有限公司招聘筆試參考題庫附帶答案詳解
- 2025-2030年中國聚氨酯產業市場風險評估規劃研究報告
- 2025年四川三新供電服務公司招聘筆試參考題庫含答案解析
- 2025年職教高考對口升學 護理類 專業綜合模擬卷(4)(四川適用)(原卷版)
- 天然氣液化技術發展-洞察分析
- 浙江省J12共同體聯盟校2024-2025學年八年級上學期期中語文試題
- 高校實驗室耗材管理制度
- 零售店員工管理
評論
0/150
提交評論