The Internet's on Fire How WannaCry Went From A Windows Bug To An International Incident
6
Patch vs Exploitation Microsoft Security Bulletin MS17-010 - Critical
7
Attacker View
8
Defense Summary
9
Backdoor Details
10
Malware Credential Stealing
11
Propagation - Exploit Based
12
Propagation - PSEXEC
13
Encryption Process
14
Different Animal
15
Access Control
16
Vulnerability Details
17
Anyone Remember This??
18
Try Harder!!!!
19
General Tips
20
Patching Advice
21
Network Controls
22
User Controls
23
Backup & Restore
24
Conclusion
Description:
Explore the cyclical nature of cybersecurity threats in this 50-minute conference talk from HITB GSEC 2017. Delve into the resurgence of worms and SMB vulnerabilities, drawing parallels between 2017 and 2003. Examine the industry's regression from strong security controls to a focus on data access and firewall vulnerabilities. Analyze the obsession with zero-day attacks while basic security measures are neglected, such as leaving SMB ports open to the internet. Learn about current events driving these issues, historical patterns, and essential steps security professionals must take to address these challenges. Gain insights from Nick Biasini's extensive experience in information security, including his work with Talos researching exploit kits and malware campaigns.
Insecurity in 2017 - 0 Days Are the Least of Our Problems