Security Fails

Post on 21-Feb-2017

111 views 1 download

transcript

Security Fails

Marcelle LeeNovember 4, 2015

Internet of Things

How do the “Things” Fail?

Secure Browsing?Is the website you are entering information into secure? You can check!

What You SeeChecking out some art on a website, might want to buy some:

What the Hacker SeesEntering info on an insecure site? This is what the hacker could see:

Cracking Passwords is EasyThis crack took seconds.

Password TipsGood password: theR@INinSp@in1964(translates to The Rain in Spain 1964 - the year the musical My Fair Lady came out)Bad passwords: p@ssword, cookie15, love2015Check your password at this site: https://howsecureismypassword.net/

Clicking on LinksHow can you tell if a link is legitimate?Did it come from a known source?Hover over the link to see the URL.Cut and paste the link into Notepad or similar to see

the URL.

Malicious Links

Clicking on LinksSpoofed

email from PayPal.

Clearly the link doesn’t take you to PayPal’s

site!

Social Media TipsCheck your privacy settings on social media

What can non-connections see?What location data are you sharing?What private information are you sharing?Do you know who all your connections really are?

Social Media Geo-tagging

Code Exploits - HeartbleedCVE-2014-0160OpenSSL TLS Heartbeat Extension - Memory Disclosure

Web App AttacksFile Upload XSS

Network Scanning & Vulnerable Ports

Network Exploits

For more information, contact:www.linkedin.com/in/marcellelee

www.twitter.com/marcelle_fsg