SESSION ID: SESSION ID:
#RSAC
Omer Farooq
IRL: Live Hacking Demos!
SBX2-R3
Senior Security Analyst Independent Security Evaluators (ISE) @omerfar23
Rick Ramgattie
Security Analyst Independent Security Evaluators (ISE) @rramgatie
IRL: Live Hacking Demos! Rick Ramgattie Omer Farooq Security - - PowerPoint PPT Presentation
#RSAC SESSION ID: SESSION ID: SBX2-R3 IRL: Live Hacking Demos! Rick Ramgattie Omer Farooq Security Analyst Senior Security Analyst Independent Security Evaluators (ISE) Independent Security Evaluators (ISE) @rramgatie @omerfar23 #RSAC
SESSION ID: SESSION ID:
#RSAC
Omer Farooq
SBX2-R3
Senior Security Analyst Independent Security Evaluators (ISE) @omerfar23
Rick Ramgattie
Security Analyst Independent Security Evaluators (ISE) @rramgatie
#RSAC
ISE Proprietary
#RSAC
3
#RSAC
4
#RSAC
5
1 https://www.gartner.com/newsroom/id/2905717 2 https://www.tripwire.com/register/enterprise-of-things-report/
#RSAC
6
#RSAC
7
1 http://fortifyprotect.com/HP_IoT_Research_Study.pdf 2 https://www.akamai.com/us/en/multimedia/documents/state-of-the-internet/sshowdown-
exploitation-of-iot-devices-for-launching-mass-scale-attack-campaigns.pdf
#RSAC
8
#RSAC
9
#RSAC
#RSAC
11
#RSAC
12
#RSAC
13
#RSAC
14
#RSAC
15
#RSAC
16
#RSAC
17
#RSAC
18
#RSAC
19
#RSAC
#RSAC
21
#RSAC
22
#RSAC
23
#RSAC
24
#RSAC
25
#RSAC
26
#RSAC
27
#RSAC
28
#RSAC
#RSAC
30
#RSAC
31
#RSAC
32
#RSAC
33
#RSAC
34
#RSAC
#RSAC
36
#RSAC
37
#RSAC
38
#RSAC
39
— gcc –fstack-protector
— gcc –fPIE || ld –pie
—gcc marks the stack non-executable by default
#RSAC
40
#RSAC
41
Scaling up ability to monitor and analyze greater volume of data – increased bandwidth and storage requirements Distributed network architecture1 Netflow analysis, watch for anomalous traffic patterns from similar classes of devices
Mandated patching of IoT/embedded devices Credential management and commissioning process Inventory process
1 http://internetofthingsagenda.techtarget.com/feature/Plan-an-
Internet-of-Things-architecture-in-the-data-center
#RSAC
#RSAC
43