Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group

24
INTERNET SECURITY Naga Rohit S The Coding Club & DC91361 Present

description

Supporting material for the Seminar on Internet Security presented at IIT Guwahati, August 8th 2012.

Transcript of Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group

Page 1: Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group

INTERNET SECURITY Naga Rohit S

The Coding Club & DC91361 Present

Page 2: Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group

GMail Hacking

Page 3: Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group

GMail Hacking

Page 4: Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group

What we will cover today

Online Scams Why you din’t win $1m

Spam – Mail Bomb Write your own spam bot

Phishing Understanding the Phishermen

Identity Theft Malware

Stuxnet

AntiVirus, Firewall and IDS Best Practices Online Browser Wars

Pwn2Own

Gymkhana Elections Why it could have been a failure

Page 5: Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group

Lottery – Help - Funds

Rule 1 You did not win any lottery.

Rule 2 You do not inherit any overseas

property. Rule 3

You won’t receive any commission for helping people transfer their funds

Rule 4 Unsolicited income is a trap.

Page 6: Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group

Ge3k Humour

Page 7: Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group

Think before you help

Before you want to donate, Just Google it and donate only to established and recognized organizations.

Page 8: Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group

Spam – Mail Bomb

Spam is just another unsolicited email.

The very fact that you may receive an email which you may be anticipating from a ‘stranger’ is the reason why spam filter’s life is miserable

Often these carry several ‘infections’ with them. More on this later!

Page 9: Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group

Ge3k Humour

Page 10: Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group

Phishing

Phishing attacks use spoofed e-mails and fraudulent websites designed to fool recipients into divulging personal financial data such as credit card numbers, account usernames and passwords, social security numbers, etc.

Page 11: Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group
Page 12: Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group
Page 13: Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group

Demo

Mwhaaha ahaha haha..

Page 14: Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group

Malware

Spyware

Page 15: Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group

Malware

Trojans

Page 16: Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group

Malware

Virus

Page 17: Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group

Stuxnet

Page 18: Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group

Antivirus, Firewall and IDS

Page 19: Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group

Best Practices Online

Get a ‘Good’ Web Browser HTTPS vs HTTP Unique Password

A unique password for every site Best Security Impossible to Remember

Semi Unique Password A complicated password with slight

changes for different sites Difficult to Remember

Page 20: Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group

Best Practices Online

Unique Password Per Tier Top Tier Websites

Google, Facebook, IITG Webmail, etc. Medium Tier Websites

Microsoft, Yahoo, etc. Low Tier Websites

Competitions, Subscriptions, Registrations, etc.

Update and Patch your Operating System, Browser and AntiVirus.

Don’t download attachments until you are really anticipating some attachment from the sender.

Page 21: Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group

Browser Wars

Page 22: Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group

Gymkhana Election System

Page 23: Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group

Questions

Page 24: Internet Security - Naga Rohit S [ IIT Guwahati ] - Coding Club & DefCon DC91361 Group

What’s in Store for 2012-2013?

How to Unlock Everything in IITG

Feedback or even Just to say Hi!

[email protected]@iitg.ac.in