1
CERTs and Digital Forensics:
The Need for Security Collaborations Among Regions
- Dr. Soranun Jiwasurat
Division Director, Office of Security, ETDA
CERTs and Digital Forensics: The Need for Security Collaborations - - PowerPoint PPT Presentation
CERTs and Digital Forensics: The Need for Security Collaborations Among Regions Dr. Soranun Jiwasurat Division Director, Office of Security, ETDA 1 ThaiCERT: A Quick Glance A government funded unit, established in 2000 The first and
1
Division Director, Office of Security, ETDA
2
3
2000 2011 Year
5 12 12 2 17 21
2011 2012 2013
4
5
6
20 40 60 80 100 120 140
Jan Feb Mar Apr May Jun Jul Aug Sep Oct Nov Dec Jan Feb Mar Apr
Abusive Content Availability Fraud Information Gathering Information Security Intrusion Attempts Intrusion Malicious Code Other
2012 2013
7
50 100 150 200 250 300 350 400 450
Abusive Content Availability Fraud Information Gathering Information Security Intrusion Attempts Intrusion Malicious Code Other
8
DDoS Brute Force Phishing Malware URL Open Proxy Server Scanning Open DNS Resolver Botnet Spam
9
10
11
ISPs System admins Website maintainers
Threat Watch System
Incident alerts and reports Raw incident reports
12
13
14
15
Shown as a legitimate app Requires a password
Downloaded
Google Play Pass: xxx OTP: yyy Sends user’s info via SMS to the attacker
16
Servers located Worldwide Hacked websites are used as phishing site
17
Let’s go hunt!
18
Servers located Worldwide
19
20
– Constantly participated in a number of seminars and trainings to make connections, share experience and develop skills – Work closely and support LEA and Ministry of Justice
– Clean room (Disk Forensics) – Mobile Chip-off and Forensics – Computer Forensics
21
22