Cyber Crime - The New World Order (v1.0 - 2016)

43
Delivering the best in z services, software, hardware and training. Delivering the best in z services, software, hardware and training. World Class z Specialists Cyber Crime – The New World Order Rui Miguel Feio – Senior Technical Lead

Transcript of Cyber Crime - The New World Order (v1.0 - 2016)

Page 1: Cyber Crime - The New World Order (v1.0 - 2016)

Deliveringthebestinzservices,software,hardwareandtraining.Deliveringthebestinzservices,software,hardwareandtraining.

WorldClasszSpecialists

CyberCrime– TheNewWorldOrder

RuiMiguelFeio– SeniorTechnicalLead

Page 2: Cyber Crime - The New World Order (v1.0 - 2016)

Agenda

ConclusionSummary of what was discussed and key points to remember

QuestionsAsk away any questions that you may have!

The value of dataWhy is data being targeted in the cyber world? The relevance and importance of ’knowing’

The Dark WebHow the Dark Web has been helping the cyber criminals to

take control of the cyber world

Cyber CrimeHow criminal

organisations are taking advantage of the cyber

world

Society &TechnologyEvolution of society and technology and the ever

more dependency on the online world

Page 3: Cyber Crime - The New World Order (v1.0 - 2016)

WhoAmI?

RUI MIGUEL FEIO

• WorkingwithRSMsince2010• Working withmainframesforthepast17years• StartedwithIBMasanMVSSysProgrammer• Specialises inmainframesecurity• Experienceinotherplatforms

Bio:

SENIOR TECHNICAL LEAD

Page 4: Cyber Crime - The New World Order (v1.0 - 2016)

SocietyandTechnology

Page 5: Cyber Crime - The New World Order (v1.0 - 2016)

Evolutionofman

Page 6: Cyber Crime - The New World Order (v1.0 - 2016)

Evolutionoftechnology

Page 7: Cyber Crime - The New World Order (v1.0 - 2016)

“Technology made large populations possible; largepopulations now make technology indispensable.”

JosephWoodKrutch

Page 8: Cyber Crime - The New World Order (v1.0 - 2016)

Evolutionofbusiness

Page 9: Cyber Crime - The New World Order (v1.0 - 2016)

Valueofonlinebusiness

*https://www.emarketer.com/Article/Worldwide-Retail-Ecommerce-Sales-Will-Reach-1915-Trillion-This-Year/1014369

Page 10: Cyber Crime - The New World Order (v1.0 - 2016)

Evolutionofcrime

Page 11: Cyber Crime - The New World Order (v1.0 - 2016)

Evolutionofcrime

Page 12: Cyber Crime - The New World Order (v1.0 - 2016)

CyberCrime

Page 13: Cyber Crime - The New World Order (v1.0 - 2016)

CyberCrime• 80%ofHackersworkwithorarepartofanorganisedcrimegroup*

• Cybercrimeorganisations:

– Arehighlyorganised– Adoptabusinessapproach(CybercrimeInc.)– Usetypicalcorporatestrategies– Useanonymitymethods:

• Cryptocurrencies• DarkWeb

*2014study bytheRandCorporation

Page 14: Cyber Crime - The New World Order (v1.0 - 2016)

CybercrimeInc.- Businessmodel• Takeadvantageof‘anonymous’servicestoadvertiseandselltheir

‘normal’productsandservicesonline

• Someofthenew‘business’opportunities:• Identitytheft• Intellectualpropertytheft• Tradesecrets• Industrialespionage• Sensitivedatatheft• Onlineextortion• Financialcrime• Datamanipulation

Page 15: Cyber Crime - The New World Order (v1.0 - 2016)

CybercrimeInc.- Tacticsused• SomeofthetacticsandmethodsusedbyCybercrimeInc:

– Phishingandspearphishing– Man-in-the-middle– Vulnerabilities– Trojanhorsesoftware– Spam– Botnets– Scareware– Ransomware– Malware– DoS andDDoS

Page 16: Cyber Crime - The New World Order (v1.0 - 2016)

CyberCrime Inc.- Example

*http://www.zdnet.com/article/carbanak-hacking-group-steal-1-billion-from-banks-worldwide/

Page 17: Cyber Crime - The New World Order (v1.0 - 2016)

CybercrimeInc.– Example

http://www.itv.com/news/2016-11-09/tesco-bank-pays-out-2-5m-to-9-000-customers-after-hacking-attack/

Page 18: Cyber Crime - The New World Order (v1.0 - 2016)

NewWorldOrder- Hackers

http://coed.com/2016/10/21/new-world-hackers-dyns-ddos-attack-denial-of-service-information-updates-facts/

Page 19: Cyber Crime - The New World Order (v1.0 - 2016)

CostofCyberCrime(UK)

https://www.getsafeonline.org/news/fraud-cybercrime-cost-uk-nearly-11bn-in-past-year/

Page 20: Cyber Crime - The New World Order (v1.0 - 2016)

TheDarkWeb

Page 21: Cyber Crime - The New World Order (v1.0 - 2016)

TheDarkWeb• Isasetofanonymouslyhostedwebsites

• Thatrequiresaspecialbrowsertoviewthem

• ThemostpopularbrowserisTOR(www.torproject.org)

• TORisallaboutonlineprivacy

• Typicallyassociatedwithbadandillegalactivities(cybercrime)

Page 22: Cyber Crime - The New World Order (v1.0 - 2016)

Cryptocurrencieshelpcybercrime

Page 23: Cyber Crime - The New World Order (v1.0 - 2016)

Hacking-as-a-Service

http://5eme2auqilcux2wq.onion/

Page 24: Cyber Crime - The New World Order (v1.0 - 2016)

Hacking-as-a-Service

http://hacker4hhjvre2qj.onion/

Page 25: Cyber Crime - The New World Order (v1.0 - 2016)

HackerforHire– Prices

http://hacker4hhjvre2qj.onion/

Page 26: Cyber Crime - The New World Order (v1.0 - 2016)

TheValueofData

Page 27: Cyber Crime - The New World Order (v1.0 - 2016)

Letmeaskyousomething…• Howmuchdoyouvalueyourprivacy?

• Howaboutyourfriendsandfamily’sprivacy?

• Whatdoyouthinkcouldhappenifyourdatawasmisused?

• Haveyoueversearchedorvisitedanonlinewebsitethatyouwouldratherliketokeepita‘secret’?

• IknowIhaveJ

Page 28: Cyber Crime - The New World Order (v1.0 - 2016)

Whowouldwantyourdata?• Everyone!Everysinglecompanywantsit!

• Why?– Becausenowtheyhaveawayofprofilingyou– Theyknowwhoyouare,whatyoulike,whatyoudon’tlike,

whatyoudo,whomyoudoitwith,whoareyourfriends,whatyourhabitsare…

– Aninsurancecompanyknowsyourhabits,andcannowdecideifyouare‘worthytobeinsured’

– Afinancialbankcandecideifitwilllendyoumoneyornot– Theyknowyoufromyour‘online’profile!

Page 29: Cyber Crime - The New World Order (v1.0 - 2016)

Whatdotheyhaveincommon?

Page 30: Cyber Crime - The New World Order (v1.0 - 2016)

Interestingfacts• OnadailybasisGoogleprocessesaround24Petabytesofdata

• Thisdataisthenstoredandsoldforadvertisement

• TheuseofCookies:– Fingerprintsthatallowyoutobetracedandcatalogued

• Whatyouseeonlineiscustomisedforyoubasedonyour‘onlineprofile’

Page 31: Cyber Crime - The New World Order (v1.0 - 2016)

ValueofaCompany• WhydoyouthinkFacebookorGoogleareworthbillionsofdollars?

• AstudypublishedbytheWallStreetJournalonFacebook:

– Eachlong-termuserisworth$80.95– Eachfriendshipisworth$0.62– Yourprofilepageisworth$1,800– Abusinesspageandassociatedadrevenuesareworth$3.1

million

Page 32: Cyber Crime - The New World Order (v1.0 - 2016)

Interestingfacts• DatabrokercompanyAcxiomCorporation:

– Hasmorethan23,000servers– Theseserverscollect,collateandanalysemorethan50trillion

uniquedatatransactionsperyear– 96%ofAmericanhouseholdsareinitsDBs– Hasmorethan700millionuserprofilesfromaroundtheworld– Eachprofilehasmorethan1,500specifictraits

• Onequotestated‘Thisistheageofthestalkereconomy’…

Page 33: Cyber Crime - The New World Order (v1.0 - 2016)

Databreaches

http://www.informationisbeautiful.net/visualizations/worlds-biggest-data-breaches-hacks/

Page 34: Cyber Crime - The New World Order (v1.0 - 2016)

Conclusion

Page 35: Cyber Crime - The New World Order (v1.0 - 2016)

Everyoneisatarget

Page 36: Cyber Crime - The New World Order (v1.0 - 2016)

Targets• Organisations ofallsizes(companies,governments)• Individuals• Mobiledevices• IoT devices• SCADAdevices• GPSSystems• TrackingSystems• Implantedmedicaldevices(IMDs)• Andsomanymore!!...

Page 37: Cyber Crime - The New World Order (v1.0 - 2016)

Shodan

https://www.shodan.io

Page 38: Cyber Crime - The New World Order (v1.0 - 2016)

Shodan

Page 39: Cyber Crime - The New World Order (v1.0 - 2016)

Haveyoubeenpwned?

https://haveibeenpwned.com

Page 40: Cyber Crime - The New World Order (v1.0 - 2016)
Page 41: Cyber Crime - The New World Order (v1.0 - 2016)
Page 42: Cyber Crime - The New World Order (v1.0 - 2016)

Questions?

Page 43: Cyber Crime - The New World Order (v1.0 - 2016)

RuiMiguelFeio,[email protected]

mobile:+44(0)7570911459

linkedin: www.linkedin.com/in/rfeio

www.rsmpartners.com

Contact