Главная
Study mode:
on
1
Intro
2
Presentation Overview
3
Domain Registration Process
4
What is Domain Squatting
5
Domain Squatting Techniques
6
Defensive Domains
7
How Big is the Problem
8
First Approach
9
Levenstein Edit Distance
10
Possible Squatting Domains
11
Interdomain Categorization
12
FortiGate
13
Access Bank
14
Domain squatting
15
Domain registration
16
DNS records
17
Domain squatting providers
18
False negatives
19
Overlap
20
Squatting
21
Biggest DNS SOA squat provider
22
Top 10 squatted organizations
23
Domain length
24
Conclusion
25
Future Work
26
A cautionary tale
27
The challenge
28
What can we find
29
Target organization
30
Picking a domain
31
Domain setup
32
What happened
33
Emails
34
Data
35
Domain Classification
36
PDFs
37
Xerox
38
Supply Chain
39
Email Model
40
Target and Classification
41
Plan A
42
Bianca
43
Bianca made a mistake
44
Targets
45
Domains
46
Questions
Description:
Explore a comprehensive conference talk on modernized domain squatting techniques and their implications for cybersecurity. Delve into how traditional domain squatting methods have evolved to incorporate OSINT gathering and weaponized document delivery via email. Discover the alarming accuracy of corporate relationship and supply chain mapping achieved through these techniques, as well as the repurposing of authentic business documents for spear-phishing attacks. Gain insights into the domain registration process, various squatting techniques, defensive strategies, and the scale of the problem. Learn about interdomain categorization, false negatives, and the biggest DNS SOA squat providers. Examine real-world examples and case studies, including a cautionary tale that highlights the potential risks and challenges associated with these tactics. Understand the email model, target classification, and domain setup processes used in modern domain squatting attacks. Suitable for those with a basic understanding of email protocols, DNS, spear-phishing, and supply-chain attacks. Read more

What Was Once Old Is New Again - Domain Squatting in 2020

RSA Conference
Add to list