Your Money or Your File! Highway Robbery with Blackhole and Ransomware

14
Your Money or Your File! Highway robbery with Blackhole and Ransomware

description

Drive-by downloads—attacks that exploit a user’s browser to distribute malware and steal data—are nothing new. But today’s most popular drive-by malware, called Blackhole, is highly sophisticated. As an IT professional, you need to understand how cybercriminals use the Blackhole crimeware kit to attack your employees with rootkits and ransomware.

Transcript of Your Money or Your File! Highway Robbery with Blackhole and Ransomware

Page 1: Your Money or Your File! Highway Robbery with Blackhole and Ransomware

Your Money or Your File!Highway robbery with Blackhole and Ransomware

Page 2: Your Money or Your File! Highway Robbery with Blackhole and Ransomware

Topics

• How threats work from compromised site to infection• How crimeware kits are developed, bought and sold• The money behind exploit kits and ransomware• Protecting against these types of attacks

2

Page 3: Your Money or Your File! Highway Robbery with Blackhole and Ransomware

Join us on Twitter

Live tweeting from @Sophos_News

Send us your thoughts #SophosLive

Page 4: Your Money or Your File! Highway Robbery with Blackhole and Ransomware

The attack

4

Page 5: Your Money or Your File! Highway Robbery with Blackhole and Ransomware

Beyond the event horizon

5

hcp://…

?<XML>

Page 6: Your Money or Your File! Highway Robbery with Blackhole and Ransomware

Delivered malware

6

Page 7: Your Money or Your File! Highway Robbery with Blackhole and Ransomware

The business behind Blackhole

7

Blackhole price list

Page 8: Your Money or Your File! Highway Robbery with Blackhole and Ransomware

Delivered malware

8

Page 9: Your Money or Your File! Highway Robbery with Blackhole and Ransomware

Winlocker

9

Page 10: Your Money or Your File! Highway Robbery with Blackhole and Ransomware

Global reach

10

Page 11: Your Money or Your File! Highway Robbery with Blackhole and Ransomware

File encryptor

11

Page 12: Your Money or Your File! Highway Robbery with Blackhole and Ransomware

Defending your network

12

Page 13: Your Money or Your File! Highway Robbery with Blackhole and Ransomware

Security News/TrendsAdditional resources

13

Page 14: Your Money or Your File! Highway Robbery with Blackhole and Ransomware

14

US and Canada 1-866-866-2802

[email protected]

UK and Worldwide + 44 1235 55 9933

[email protected]

nakedsecurity.sophos.com

Staying ahead of the curveStaying ahead of the curve

facebook.com/securitybysophos

twitter.com/Sophos_News

Sophos on Google+

linkedin.com/company/sophos