TCOM 59901 Information Assurance Management Software Hacking.

6
TCOM 5990 1 Information Assurance Management Software Hacking

Transcript of TCOM 59901 Information Assurance Management Software Hacking.

Page 1: TCOM 59901 Information Assurance Management Software Hacking.

TCOM 5990 1

Information Assurance Management

Software Hacking

Page 2: TCOM 59901 Information Assurance Management Software Hacking.

TCOM 5990 2

Software Hacking

• Remote Control Software– Essential for a globally connected economy.– Support personnel rarely on site.– Indispensable for administrators…– misconfigured and filled with security

weaknesses.

Page 3: TCOM 59901 Information Assurance Management Software Hacking.

TCOM 5990 3

Software Hacking

• Weaknesses– Cleartext user names and passwords

– Weak passwords

– Revealed passwords pulled from the GUI (remote or locally)

– Uploading profiles

Page 4: TCOM 59901 Information Assurance Management Software Hacking.

TCOM 5990 4

Software Hacking

• Countermeasures– Enable passwords

– Enforce strong passwords

– Force alternate authentication

– Password protect profile and setup files

– Logoff user with call completion

Page 5: TCOM 59901 Information Assurance Management Software Hacking.

TCOM 5990 5

Software Hacking

• Countermeasures– Encrypt session traffic

– Limit login attempts

– Log failed attempts

– Lockout failed users

Page 6: TCOM 59901 Information Assurance Management Software Hacking.

TCOM 5990 6

Web Hacking

• HTML source page

• Low hanging fruit…

• Common, well publicized vulnerabilities