21
Session ID: Session Classification: Grady Summers Mandiant STU-T17B Intermediate Studio: State of the Hack: M-Trends® 2013

Stu t17 b

Embed Size (px)

Citation preview

Page 1: Stu t17 b

Session ID:

Session Classification:

Grady Summers Mandiant

STU-T17B

Intermediate

Studio: State of the Hack: M-Trends® 2013

Page 2: Stu t17 b

By the Numbers

Page 3: Stu t17 b

Industries Being Targeted by Advanced Attackers

Page 4: Stu t17 b

How Compromises Are Being Detected

Page 5: Stu t17 b

Number of Days Attackers are in Networks Prior to Detection

Page 6: Stu t17 b

The Attacker Trends

Page 7: Stu t17 b

Outside In

Trend #1

Page 8: Stu t17 b

Trend #2

Page 9: Stu t17 b

Once A Target Always A Target

Trend #3

Page 10: Stu t17 b

Old School Drive-Bys With a Twist

Trend #4

Page 11: Stu t17 b

Anatomy of An Attacker

Page 12: Stu t17 b

Companies Targeted by Industry

Page 13: Stu t17 b

Victims Observed by Country

Page 14: Stu t17 b

Greatest Impact of APT Intrusions

Page 15: Stu t17 b

Location of Confirmed APT1 Servers

Page 16: Stu t17 b

Attack the Security Gap

Page 17: Stu t17 b

Staff Computer Incident Response Teams

Best Practice #1

Page 18: Stu t17 b

Use the Right Tools

Best Practice #2

Page 19: Stu t17 b

Constant Vigilance

Best Practice #3

Page 20: Stu t17 b

Share Information

Best Practice #4

Page 21: Stu t17 b

Contact: Grady Summers [email protected]