SlideShare a Scribd company logo
1 of 20
© 2015 IBM Corporation
How Cybercrime is Breaking Down Barriers to your Data
Etay Maor
Sr. Fraud Prevention
Strategist
March 2016
Borderless Breaches and
Migrating Malware
Limor Kessem
Cybersecurity
Evangelist
2© 2015 IBM Corporation
is the foundation for
advanced security and
threat research across
the IBM Security
Framework.
3© 2015 IBM Corporation
IBM X-Force® Research
Vulnerability
Protection
IP
Reputation
Anti-Spam
Malware
Analysis
Web
Application
Control
URL / Web
Filtering
The IBM X-Force Mission
 Monitor and evaluate the rapidly changing threat landscape
 Research new attack techniques and develop protection for tomorrow’s security challenges
 Educate our customers and the general public
 Integrate and distribute Threat Protection and Intelligence to make IBM solutions smarter
Expert analysis and data sharing on the global threat landscape
Zero-day
Research
4© 2015 IBM Corporation
Key Trends from 2015
4
5© 2015 IBM Corporation
Attacks are focusing on higher value data targets
2013
800,000,000+ records
breached, with no signs of
decreasing in the future
2014
1,000,000,000 records
breached, while CISOs cite increasing
risks from external threats
2015
Healthcare mega-breaches
set the trend for high value targets of
sensitive information
Source: IBM X-Force Threat Intelligence Report - 2016
6© 2015 IBM Corporation
The number of security incidents involving the leak of healthcare
records doubled from the previous year
Banking /
Financial,
22%
Citizen
Registry,
34%
Creden-
tials, 35%
Health,
10%
2014
Banking /
Financial,
14%
Citizen
Registry,
32%Creden-
tials, 33%
Health,
20%
2015
Source: IBM X-Force Interactive Security Incidents, count by incident based on type of records breached
7© 2015 IBM Corporation
Attacks on retail companies now include refined POS malware and
niche payment systems
Source: IBM X-Force Threat Intelligence Report - 2016
8© 2015 IBM Corporation
Classic attacks like DDoS and malware continued to be successful
because of a lack of practiced security fundamentals
Source: IBM X-Force Threat Intelligence Report - 2016
9© 2015 IBM Corporation
Breaches of durable PII bring attention to the complex intersection
between digital and physical identities
• 100M healthcare records were exposed in five mega-breaches
• Durable PII is harder to replace
Healthcare
PII
• Breaches at adult dating websites exposed sexual preferences and infidelities
• Opens opportunities for extortion and increased social engineering intelligence
• The breaches were linked to a number of suicides of affected victims
Sensitive
Personal
Data
• Increasing amounts of bandwidth, with the highest reported attack >600Gbps.
• The attack can affect not only the targeted domain, but also other sites and
services managed by the ISP.
DDoS
• The success of ransomware laid the groundwork for other types of cyber-
extortion.
• Bitcoin ransom demands range from a few hundred to tens of thousands of US
dollars.
Cyber-
Extortion
10© 2015 IBM Corporation
Source: IBM X-Force Threat Intelligence Report - 2016
11© 2015 IBM Corporation
Our predictions on cybercrime for 2015 not only came true, but also
exceeded expectations
 Cybercriminals breaking borders
 Card-not-present (CNP) fraud rise and attacks on EMV
 Escalation of sophistication of mobile threats, including exploit packs and
device takeover
 Widespread use of anonymity networks and stronger encryption
 Burgeoning fraud methods for new payment schemes
 Biometrics as a target
12© 2015 IBM Corporation
Cybercrime is no longer the domain of amateurs, but rather
organized gangs
Source: IBM X-Force Threat Intelligence Report - 2016
13© 2015 IBM Corporation
Malware is migrating across borders…
Malware leaps across target countries are
indicative of increasing sophistication and
organization in crime rings because they
require more than simple changes to
configuration files.
Source: IBM X-Force Threat Intelligence Report - 2016
14© 2015 IBM Corporation
… indicating growing sophistication needed to organize these new
geographic targets
Develop or buy social engineering emails for the target geography
Rent or pay for localized spam spreading
Study local banks’ authentication requirements
Develop web-injections to correspond with the transaction flow,
language, and look & feel for each target
Have local criminals and money mules ready to use
15© 2015 IBM Corporation
Malware scaled up by shifting some targets to businesses rather
than consumers
New malware modules, like “pn32”
in Dyre, can harvest user credentials
for enterprise email servers.
BEC fraud initiates credible-looking
email to company accountant to
make large wire transfers.
Extortion and ransom demands are
targeted at company’s or client data.
16© 2015 IBM Corporation
New malware techniques include overlay malware on the mobile
operating system
Mobile overlay malware offers a one-stop shop for blackhats
– Works with bank apps and other applications that use HTML/JS injections
– Enable credential collection
17© 2015 IBM Corporation
Cybercrime predictions for 2016
• CNP will grow and increase in sophistication
• Skimming will die out, give way to ATM “shimmers”
• Novel EMV attacks will emerge, such as automated EMV replay attacks
Card Fraud
• Apps run in a compromised OS, creating uncontrollable security gaps
• New Windows 10 app platform enables one app to run on every Windows
device, including phones, tablets, laptops, and Xbox gaming platform
Mobile Malware
• Biometric repositories hacked
• Biometric ID used in fraud and sold or traded by cybercriminals
Biometrics
18© 2015 IBM Corporation
Many of the incidents we’ve seen could be avoided with a focus on
security basics
Instrument your environment with effective detection.
Keep up with threat intelligence.
Maintain a current and accurate asset inventory.
Maintain identity governance to audit and enforce access rules & permissions.
Have a patching solution that covers your entire infrastructure.
Implement mitigating controls.
Create and practice a broad incident response plan.
19© 2015 IBM Corporation
130+ countries where IBM delivers
managed security services
25 industry analyst reports rank
IBM Security as a LEADER
No. 1 enterprise security software
vendor in total revenue
12K+ clients protected including…
90% of the Fortune 100
companies
Learn more about IBM X-Force
Visit our web page
ibm.com/security/xforce
Watch our videos
IBM Security YouTube Channel
View upcoming webinars & blogs
SecurityIntelligence.com
Follow us on Twitter
@ibmsecurity
Join IBM X-Force Exchange
xforce.ibmcloud.com
© Copyright IBM Corporation 2015. All rights reserved. The information contained in these materials is provided for informational purposes only, and is provided AS IS without warranty of any
kind, express or implied. IBM shall not be responsible for any damages arising out of the use of, or otherwise related to, these materials. Nothing contained in these materials is intended to, nor
shall have the effect of, creating any warranties or representations from IBM or its suppliers or licensors, or altering the terms and conditions of the applicable license agreement governing the use
of IBM software. References in these materials to IBM products, programs, or services do not imply that they will be available in all countries in which IBM operates. Product release dates and / or
capabilities referenced in these materials may change at any time at IBM’s sole discretion based on market opportunities or other factors, and are not intended to be a commitment to future product
or feature availability in any way. IBM, the IBM logo, and other IBM products and services are trademarks of the International Business Machines Corporation, in the United States, other countries
or both. Other company, product, or service names may be trademarks or service marks of others.
Statement of Good Security Practices: IT system security involves protecting systems and information through prevention, detection and response to improper access from within and outside
your enterprise. Improper access can result in information being altered, destroyed, misappropriated or misused or can result in damage to or misuse of your systems, including for use in attacks
on others. No IT system or product should be considered completely secure and no single product, service or security measure can be completely effective in preventing improper use or access.
IBM systems, products and services are designed to be part of a lawful, comprehensive security approach, which will necessarily involve additional operational procedures, and may require other
systems, products or services to be most effective. IBM DOES NOT WARRANT THAT ANY SYSTEMS, PRODUCTS OR SERVICES ARE IMMUNE FROM, OR WILL MAKE YOUR ENTERPRISE
IMMUNE FROM, THE MALICIOUS OR ILLEGAL CONDUCT OF ANY PARTY.
THANK YOUwww.ibm.com/security

More Related Content

What's hot

The Next Stage of Fraud Protection: IBM Security Trusteer Fraud Protection Suite
The Next Stage of Fraud Protection: IBM Security Trusteer Fraud Protection SuiteThe Next Stage of Fraud Protection: IBM Security Trusteer Fraud Protection Suite
The Next Stage of Fraud Protection: IBM Security Trusteer Fraud Protection Suite
IBM Security
 

What's hot (20)

10 Security Essentials Every CxO Should Know
10 Security Essentials Every CxO Should Know10 Security Essentials Every CxO Should Know
10 Security Essentials Every CxO Should Know
 
X-Force Threat Intelligence: Fight Insider Threats & Protect Your Sensitive Data
X-Force Threat Intelligence: Fight Insider Threats & Protect Your Sensitive DataX-Force Threat Intelligence: Fight Insider Threats & Protect Your Sensitive Data
X-Force Threat Intelligence: Fight Insider Threats & Protect Your Sensitive Data
 
IBM X-Force Threat Intelligence: Why Insider Threats Challenge Critical Busin...
IBM X-Force Threat Intelligence: Why Insider Threats Challenge Critical Busin...IBM X-Force Threat Intelligence: Why Insider Threats Challenge Critical Busin...
IBM X-Force Threat Intelligence: Why Insider Threats Challenge Critical Busin...
 
IBM X-Force: Insights from the 1Q 2015 X-Force Threat Intelligence Quarterly
IBM X-Force: Insights from the 1Q 2015 X-Force Threat Intelligence QuarterlyIBM X-Force: Insights from the 1Q 2015 X-Force Threat Intelligence Quarterly
IBM X-Force: Insights from the 1Q 2015 X-Force Threat Intelligence Quarterly
 
The Next Stage of Fraud Protection: IBM Security Trusteer Fraud Protection Suite
The Next Stage of Fraud Protection: IBM Security Trusteer Fraud Protection SuiteThe Next Stage of Fraud Protection: IBM Security Trusteer Fraud Protection Suite
The Next Stage of Fraud Protection: IBM Security Trusteer Fraud Protection Suite
 
Tolly Report: Stopping Attacks You Can't See
Tolly Report: Stopping Attacks You Can't SeeTolly Report: Stopping Attacks You Can't See
Tolly Report: Stopping Attacks You Can't See
 
The IBM X-Force 2016 Cyber Security Intelligence Index
The IBM X-Force 2016 Cyber Security Intelligence IndexThe IBM X-Force 2016 Cyber Security Intelligence Index
The IBM X-Force 2016 Cyber Security Intelligence Index
 
Cybercrime Threat Landscape: Cyber Criminals Never Sleep
Cybercrime Threat Landscape: Cyber Criminals Never SleepCybercrime Threat Landscape: Cyber Criminals Never Sleep
Cybercrime Threat Landscape: Cyber Criminals Never Sleep
 
Key Findings from the 2015 IBM Cyber Security Intelligence Index
Key Findings from the 2015 IBM Cyber Security Intelligence IndexKey Findings from the 2015 IBM Cyber Security Intelligence Index
Key Findings from the 2015 IBM Cyber Security Intelligence Index
 
IBM 2015 Cyber Security Intelligence Index
IBM 2015 Cyber Security Intelligence IndexIBM 2015 Cyber Security Intelligence Index
IBM 2015 Cyber Security Intelligence Index
 
The Economics of IT Risk and Reputation
The Economics of IT Risk and ReputationThe Economics of IT Risk and Reputation
The Economics of IT Risk and Reputation
 
Presentación AMIB Los Cabos
Presentación AMIB Los CabosPresentación AMIB Los Cabos
Presentación AMIB Los Cabos
 
Securité : Le rapport 2Q de la X-Force
Securité : Le rapport 2Q de la X-ForceSecurité : Le rapport 2Q de la X-Force
Securité : Le rapport 2Q de la X-Force
 
Safeguard Healthcare Identities and Data with Identity Governance and Intelli...
Safeguard Healthcare Identities and Data with Identity Governance and Intelli...Safeguard Healthcare Identities and Data with Identity Governance and Intelli...
Safeguard Healthcare Identities and Data with Identity Governance and Intelli...
 
Data Breaches: Is IBM i Really at Risk?
Data Breaches: Is IBM i Really at Risk?Data Breaches: Is IBM i Really at Risk?
Data Breaches: Is IBM i Really at Risk?
 
Level Up Your Security with Threat Intelligence
Level Up Your Security with Threat IntelligenceLevel Up Your Security with Threat Intelligence
Level Up Your Security with Threat Intelligence
 
Are We There Yet? The Path Towards Securing the Mobile Enterprise
Are We There Yet? The Path Towards Securing the Mobile EnterpriseAre We There Yet? The Path Towards Securing the Mobile Enterprise
Are We There Yet? The Path Towards Securing the Mobile Enterprise
 
Securing Systems of Engagement
Securing Systems of EngagementSecuring Systems of Engagement
Securing Systems of Engagement
 
The challenges of Retail Security
The challenges of Retail SecurityThe challenges of Retail Security
The challenges of Retail Security
 
CSE 2016 Future of Cyber Security by Matthew Rosenquist
CSE 2016 Future of Cyber Security by Matthew RosenquistCSE 2016 Future of Cyber Security by Matthew Rosenquist
CSE 2016 Future of Cyber Security by Matthew Rosenquist
 

Viewers also liked

brochure_lead3_ENG_final_18_6_2015
brochure_lead3_ENG_final_18_6_2015brochure_lead3_ENG_final_18_6_2015
brochure_lead3_ENG_final_18_6_2015
Maria Laura Fornaci
 
Powerpoint Do's and Don'ts
Powerpoint Do's and Don'tsPowerpoint Do's and Don'ts
Powerpoint Do's and Don'ts
bluegreen7
 
Desastres ambientais
Desastres ambientaisDesastres ambientais
Desastres ambientais
Pré Absoluto
 

Viewers also liked (18)

Certificate_SME route_Nathan
Certificate_SME route_NathanCertificate_SME route_Nathan
Certificate_SME route_Nathan
 
brochure_lead3_ENG_final_18_6_2015
brochure_lead3_ENG_final_18_6_2015brochure_lead3_ENG_final_18_6_2015
brochure_lead3_ENG_final_18_6_2015
 
Streamspain
StreamspainStreamspain
Streamspain
 
Capítulo 1
Capítulo 1Capítulo 1
Capítulo 1
 
TESTIMONIAL
TESTIMONIALTESTIMONIAL
TESTIMONIAL
 
Blog
BlogBlog
Blog
 
áRbol de objetivos
áRbol de objetivosáRbol de objetivos
áRbol de objetivos
 
Brochure Winter DDS
Brochure Winter DDS Brochure Winter DDS
Brochure Winter DDS
 
Powerpoint Do's and Don'ts
Powerpoint Do's and Don'tsPowerpoint Do's and Don'ts
Powerpoint Do's and Don'ts
 
X.ak.1
X.ak.1X.ak.1
X.ak.1
 
CrowdTruth: Machine-Human Computation for Harnessing Disagreement in Semantic...
CrowdTruth: Machine-Human Computation for Harnessing Disagreement in Semantic...CrowdTruth: Machine-Human Computation for Harnessing Disagreement in Semantic...
CrowdTruth: Machine-Human Computation for Harnessing Disagreement in Semantic...
 
Cronograma
CronogramaCronograma
Cronograma
 
Toni L Griffin: Keynote Speaker at 2015 Cluster Workshop
Toni L Griffin: Keynote Speaker at 2015 Cluster WorkshopToni L Griffin: Keynote Speaker at 2015 Cluster Workshop
Toni L Griffin: Keynote Speaker at 2015 Cluster Workshop
 
Tercer Dia International de la Fascination por las Plantas 18 de mayo de 2015...
Tercer Dia International de la Fascination por las Plantas 18 de mayo de 2015...Tercer Dia International de la Fascination por las Plantas 18 de mayo de 2015...
Tercer Dia International de la Fascination por las Plantas 18 de mayo de 2015...
 
Atelier scénarisation
Atelier scénarisationAtelier scénarisation
Atelier scénarisation
 
Desastres ambientais
Desastres ambientaisDesastres ambientais
Desastres ambientais
 
Mujer y Madre a Toda Prueba
Mujer y Madre a Toda PruebaMujer y Madre a Toda Prueba
Mujer y Madre a Toda Prueba
 
2015-2016全球P2P互传行业白皮书---印度市场解析
2015-2016全球P2P互传行业白皮书---印度市场解析2015-2016全球P2P互传行业白皮书---印度市场解析
2015-2016全球P2P互传行业白皮书---印度市场解析
 

Similar to Bordless Breaches and Migrating Malware

Similar to Bordless Breaches and Migrating Malware (20)

IBM - IAM Security and Trends
IBM - IAM Security and TrendsIBM - IAM Security and Trends
IBM - IAM Security and Trends
 
Big Fix Q-Radar Ahmed Sharaf - EmbeddedSecurity.net
Big Fix Q-Radar Ahmed Sharaf - EmbeddedSecurity.netBig Fix Q-Radar Ahmed Sharaf - EmbeddedSecurity.net
Big Fix Q-Radar Ahmed Sharaf - EmbeddedSecurity.net
 
3 Enablers of Successful Cyber Attacks and How to Thwart Them
3 Enablers of Successful Cyber Attacks and How to Thwart Them3 Enablers of Successful Cyber Attacks and How to Thwart Them
3 Enablers of Successful Cyber Attacks and How to Thwart Them
 
IBM Security Services Overview
IBM Security Services OverviewIBM Security Services Overview
IBM Security Services Overview
 
2015 Mobile Security Trends: Are You Ready?
2015 Mobile Security Trends: Are You Ready?2015 Mobile Security Trends: Are You Ready?
2015 Mobile Security Trends: Are You Ready?
 
Mobile Payments: Protecting Apps and Data from Emerging Risks
Mobile Payments: Protecting Apps and Data from Emerging RisksMobile Payments: Protecting Apps and Data from Emerging Risks
Mobile Payments: Protecting Apps and Data from Emerging Risks
 
Simple and secure mobile cloud access
Simple and secure mobile cloud accessSimple and secure mobile cloud access
Simple and secure mobile cloud access
 
2015 Cybercrime Trends – Things are Going to Get Interesting
2015 Cybercrime Trends – Things are Going to Get Interesting2015 Cybercrime Trends – Things are Going to Get Interesting
2015 Cybercrime Trends – Things are Going to Get Interesting
 
Ola Wittenby - Hotlandskapet på Internet
Ola Wittenby - Hotlandskapet på Internet Ola Wittenby - Hotlandskapet på Internet
Ola Wittenby - Hotlandskapet på Internet
 
Mobile Threat Management
Mobile Threat ManagementMobile Threat Management
Mobile Threat Management
 
3 Steps to Security Intelligence - How to Build a More Secure Enterprise
3 Steps to Security Intelligence - How to Build a More Secure Enterprise3 Steps to Security Intelligence - How to Build a More Secure Enterprise
3 Steps to Security Intelligence - How to Build a More Secure Enterprise
 
What’s the State of Your Endpoint Security?
What’s the State of Your    Endpoint Security?What’s the State of Your    Endpoint Security?
What’s the State of Your Endpoint Security?
 
Security Intelligence: Finding and Stopping Attackers with Big Data Analytics
Security Intelligence: Finding and Stopping Attackers with Big Data AnalyticsSecurity Intelligence: Finding and Stopping Attackers with Big Data Analytics
Security Intelligence: Finding and Stopping Attackers with Big Data Analytics
 
Cyber crime in a Smart Phone & Social Media Obsessed World
Cyber crime in a Smart Phone & Social Media Obsessed WorldCyber crime in a Smart Phone & Social Media Obsessed World
Cyber crime in a Smart Phone & Social Media Obsessed World
 
Smarter cyber security v8
Smarter cyber security v8Smarter cyber security v8
Smarter cyber security v8
 
Security in the Cognitive Era: Why it matters more than ever
Security in the Cognitive Era: Why it matters more than everSecurity in the Cognitive Era: Why it matters more than ever
Security in the Cognitive Era: Why it matters more than ever
 
Mitigate attacks with IBM BigFix and Q-Radar
Mitigate attacks with IBM BigFix and Q-RadarMitigate attacks with IBM BigFix and Q-Radar
Mitigate attacks with IBM BigFix and Q-Radar
 
Cyber threats
Cyber threatsCyber threats
Cyber threats
 
Don’t Drown in a Sea of Cyberthreats: Mitigate Attacks with IBM BigFix & QRadar
Don’t Drown in a Sea of Cyberthreats: Mitigate Attacks with IBM BigFix & QRadarDon’t Drown in a Sea of Cyberthreats: Mitigate Attacks with IBM BigFix & QRadar
Don’t Drown in a Sea of Cyberthreats: Mitigate Attacks with IBM BigFix & QRadar
 
IBM Cloud Security Enforcer
IBM Cloud Security EnforcerIBM Cloud Security Enforcer
IBM Cloud Security Enforcer
 

Recently uploaded

Al Mizhar Dubai Escorts +971561403006 Escorts Service In Al Mizhar
Al Mizhar Dubai Escorts +971561403006 Escorts Service In Al MizharAl Mizhar Dubai Escorts +971561403006 Escorts Service In Al Mizhar
Al Mizhar Dubai Escorts +971561403006 Escorts Service In Al Mizhar
allensay1
 
The Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai Kuwait
The Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai KuwaitThe Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai Kuwait
The Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai Kuwait
daisycvs
 

Recently uploaded (20)

Unveiling Falcon Invoice Discounting: Leading the Way as India's Premier Bill...
Unveiling Falcon Invoice Discounting: Leading the Way as India's Premier Bill...Unveiling Falcon Invoice Discounting: Leading the Way as India's Premier Bill...
Unveiling Falcon Invoice Discounting: Leading the Way as India's Premier Bill...
 
Durg CALL GIRL ❤ 82729*64427❤ CALL GIRLS IN durg ESCORTS
Durg CALL GIRL ❤ 82729*64427❤ CALL GIRLS IN durg ESCORTSDurg CALL GIRL ❤ 82729*64427❤ CALL GIRLS IN durg ESCORTS
Durg CALL GIRL ❤ 82729*64427❤ CALL GIRLS IN durg ESCORTS
 
Chandrapur Call Girl Just Call 8084732287 Top Class Call Girl Service Available
Chandrapur Call Girl Just Call 8084732287 Top Class Call Girl Service AvailableChandrapur Call Girl Just Call 8084732287 Top Class Call Girl Service Available
Chandrapur Call Girl Just Call 8084732287 Top Class Call Girl Service Available
 
PHX May 2024 Corporate Presentation Final
PHX May 2024 Corporate Presentation FinalPHX May 2024 Corporate Presentation Final
PHX May 2024 Corporate Presentation Final
 
Berhampur CALL GIRL❤7091819311❤CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
Berhampur CALL GIRL❤7091819311❤CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDINGBerhampur CALL GIRL❤7091819311❤CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
Berhampur CALL GIRL❤7091819311❤CALL GIRLS IN ESCORT SERVICE WE ARE PROVIDING
 
Pre Engineered Building Manufacturers Hyderabad.pptx
Pre Engineered  Building Manufacturers Hyderabad.pptxPre Engineered  Building Manufacturers Hyderabad.pptx
Pre Engineered Building Manufacturers Hyderabad.pptx
 
BADDI 💋 Call Girl 9827461493 Call Girls in Escort service book now
BADDI 💋 Call Girl 9827461493 Call Girls in  Escort service book nowBADDI 💋 Call Girl 9827461493 Call Girls in  Escort service book now
BADDI 💋 Call Girl 9827461493 Call Girls in Escort service book now
 
Cuttack Call Girl Just Call 8084732287 Top Class Call Girl Service Available
Cuttack Call Girl Just Call 8084732287 Top Class Call Girl Service AvailableCuttack Call Girl Just Call 8084732287 Top Class Call Girl Service Available
Cuttack Call Girl Just Call 8084732287 Top Class Call Girl Service Available
 
Al Mizhar Dubai Escorts +971561403006 Escorts Service In Al Mizhar
Al Mizhar Dubai Escorts +971561403006 Escorts Service In Al MizharAl Mizhar Dubai Escorts +971561403006 Escorts Service In Al Mizhar
Al Mizhar Dubai Escorts +971561403006 Escorts Service In Al Mizhar
 
Chennai Call Gril 80022//12248 Only For Sex And High Profile Best Gril Sex Av...
Chennai Call Gril 80022//12248 Only For Sex And High Profile Best Gril Sex Av...Chennai Call Gril 80022//12248 Only For Sex And High Profile Best Gril Sex Av...
Chennai Call Gril 80022//12248 Only For Sex And High Profile Best Gril Sex Av...
 
Home Furnishings Ecommerce Platform Short Pitch 2024
Home Furnishings Ecommerce Platform Short Pitch 2024Home Furnishings Ecommerce Platform Short Pitch 2024
Home Furnishings Ecommerce Platform Short Pitch 2024
 
Nanded Call Girl Just Call 8084732287 Top Class Call Girl Service Available
Nanded Call Girl Just Call 8084732287 Top Class Call Girl Service AvailableNanded Call Girl Just Call 8084732287 Top Class Call Girl Service Available
Nanded Call Girl Just Call 8084732287 Top Class Call Girl Service Available
 
KOTA 💋 Call Girl 9827461493 Call Girls in Escort service book now
KOTA 💋 Call Girl 9827461493 Call Girls in  Escort service book nowKOTA 💋 Call Girl 9827461493 Call Girls in  Escort service book now
KOTA 💋 Call Girl 9827461493 Call Girls in Escort service book now
 
Falcon Invoice Discounting: Unlock Your Business Potential
Falcon Invoice Discounting: Unlock Your Business PotentialFalcon Invoice Discounting: Unlock Your Business Potential
Falcon Invoice Discounting: Unlock Your Business Potential
 
Nashik Call Girl Just Call 7091819311 Top Class Call Girl Service Available
Nashik Call Girl Just Call 7091819311 Top Class Call Girl Service AvailableNashik Call Girl Just Call 7091819311 Top Class Call Girl Service Available
Nashik Call Girl Just Call 7091819311 Top Class Call Girl Service Available
 
The Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai Kuwait
The Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai KuwaitThe Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai Kuwait
The Abortion pills for sale in Qatar@Doha [+27737758557] []Deira Dubai Kuwait
 
WheelTug Short Pitch Deck 2024 | Byond Insights
WheelTug Short Pitch Deck 2024 | Byond InsightsWheelTug Short Pitch Deck 2024 | Byond Insights
WheelTug Short Pitch Deck 2024 | Byond Insights
 
QSM Chap 10 Service Culture in Tourism and Hospitality Industry.pptx
QSM Chap 10 Service Culture in Tourism and Hospitality Industry.pptxQSM Chap 10 Service Culture in Tourism and Hospitality Industry.pptx
QSM Chap 10 Service Culture in Tourism and Hospitality Industry.pptx
 
Bangalore Call Girl Just Call♥️ 8084732287 ♥️Top Class Call Girl Service Avai...
Bangalore Call Girl Just Call♥️ 8084732287 ♥️Top Class Call Girl Service Avai...Bangalore Call Girl Just Call♥️ 8084732287 ♥️Top Class Call Girl Service Avai...
Bangalore Call Girl Just Call♥️ 8084732287 ♥️Top Class Call Girl Service Avai...
 
Lucknow Housewife Escorts by Sexy Bhabhi Service 8250092165
Lucknow Housewife Escorts  by Sexy Bhabhi Service 8250092165Lucknow Housewife Escorts  by Sexy Bhabhi Service 8250092165
Lucknow Housewife Escorts by Sexy Bhabhi Service 8250092165
 

Bordless Breaches and Migrating Malware

  • 1. © 2015 IBM Corporation How Cybercrime is Breaking Down Barriers to your Data Etay Maor Sr. Fraud Prevention Strategist March 2016 Borderless Breaches and Migrating Malware Limor Kessem Cybersecurity Evangelist
  • 2. 2© 2015 IBM Corporation is the foundation for advanced security and threat research across the IBM Security Framework.
  • 3. 3© 2015 IBM Corporation IBM X-Force® Research Vulnerability Protection IP Reputation Anti-Spam Malware Analysis Web Application Control URL / Web Filtering The IBM X-Force Mission  Monitor and evaluate the rapidly changing threat landscape  Research new attack techniques and develop protection for tomorrow’s security challenges  Educate our customers and the general public  Integrate and distribute Threat Protection and Intelligence to make IBM solutions smarter Expert analysis and data sharing on the global threat landscape Zero-day Research
  • 4. 4© 2015 IBM Corporation Key Trends from 2015 4
  • 5. 5© 2015 IBM Corporation Attacks are focusing on higher value data targets 2013 800,000,000+ records breached, with no signs of decreasing in the future 2014 1,000,000,000 records breached, while CISOs cite increasing risks from external threats 2015 Healthcare mega-breaches set the trend for high value targets of sensitive information Source: IBM X-Force Threat Intelligence Report - 2016
  • 6. 6© 2015 IBM Corporation The number of security incidents involving the leak of healthcare records doubled from the previous year Banking / Financial, 22% Citizen Registry, 34% Creden- tials, 35% Health, 10% 2014 Banking / Financial, 14% Citizen Registry, 32%Creden- tials, 33% Health, 20% 2015 Source: IBM X-Force Interactive Security Incidents, count by incident based on type of records breached
  • 7. 7© 2015 IBM Corporation Attacks on retail companies now include refined POS malware and niche payment systems Source: IBM X-Force Threat Intelligence Report - 2016
  • 8. 8© 2015 IBM Corporation Classic attacks like DDoS and malware continued to be successful because of a lack of practiced security fundamentals Source: IBM X-Force Threat Intelligence Report - 2016
  • 9. 9© 2015 IBM Corporation Breaches of durable PII bring attention to the complex intersection between digital and physical identities • 100M healthcare records were exposed in five mega-breaches • Durable PII is harder to replace Healthcare PII • Breaches at adult dating websites exposed sexual preferences and infidelities • Opens opportunities for extortion and increased social engineering intelligence • The breaches were linked to a number of suicides of affected victims Sensitive Personal Data • Increasing amounts of bandwidth, with the highest reported attack >600Gbps. • The attack can affect not only the targeted domain, but also other sites and services managed by the ISP. DDoS • The success of ransomware laid the groundwork for other types of cyber- extortion. • Bitcoin ransom demands range from a few hundred to tens of thousands of US dollars. Cyber- Extortion
  • 10. 10© 2015 IBM Corporation Source: IBM X-Force Threat Intelligence Report - 2016
  • 11. 11© 2015 IBM Corporation Our predictions on cybercrime for 2015 not only came true, but also exceeded expectations  Cybercriminals breaking borders  Card-not-present (CNP) fraud rise and attacks on EMV  Escalation of sophistication of mobile threats, including exploit packs and device takeover  Widespread use of anonymity networks and stronger encryption  Burgeoning fraud methods for new payment schemes  Biometrics as a target
  • 12. 12© 2015 IBM Corporation Cybercrime is no longer the domain of amateurs, but rather organized gangs Source: IBM X-Force Threat Intelligence Report - 2016
  • 13. 13© 2015 IBM Corporation Malware is migrating across borders… Malware leaps across target countries are indicative of increasing sophistication and organization in crime rings because they require more than simple changes to configuration files. Source: IBM X-Force Threat Intelligence Report - 2016
  • 14. 14© 2015 IBM Corporation … indicating growing sophistication needed to organize these new geographic targets Develop or buy social engineering emails for the target geography Rent or pay for localized spam spreading Study local banks’ authentication requirements Develop web-injections to correspond with the transaction flow, language, and look & feel for each target Have local criminals and money mules ready to use
  • 15. 15© 2015 IBM Corporation Malware scaled up by shifting some targets to businesses rather than consumers New malware modules, like “pn32” in Dyre, can harvest user credentials for enterprise email servers. BEC fraud initiates credible-looking email to company accountant to make large wire transfers. Extortion and ransom demands are targeted at company’s or client data.
  • 16. 16© 2015 IBM Corporation New malware techniques include overlay malware on the mobile operating system Mobile overlay malware offers a one-stop shop for blackhats – Works with bank apps and other applications that use HTML/JS injections – Enable credential collection
  • 17. 17© 2015 IBM Corporation Cybercrime predictions for 2016 • CNP will grow and increase in sophistication • Skimming will die out, give way to ATM “shimmers” • Novel EMV attacks will emerge, such as automated EMV replay attacks Card Fraud • Apps run in a compromised OS, creating uncontrollable security gaps • New Windows 10 app platform enables one app to run on every Windows device, including phones, tablets, laptops, and Xbox gaming platform Mobile Malware • Biometric repositories hacked • Biometric ID used in fraud and sold or traded by cybercriminals Biometrics
  • 18. 18© 2015 IBM Corporation Many of the incidents we’ve seen could be avoided with a focus on security basics Instrument your environment with effective detection. Keep up with threat intelligence. Maintain a current and accurate asset inventory. Maintain identity governance to audit and enforce access rules & permissions. Have a patching solution that covers your entire infrastructure. Implement mitigating controls. Create and practice a broad incident response plan.
  • 19. 19© 2015 IBM Corporation 130+ countries where IBM delivers managed security services 25 industry analyst reports rank IBM Security as a LEADER No. 1 enterprise security software vendor in total revenue 12K+ clients protected including… 90% of the Fortune 100 companies Learn more about IBM X-Force Visit our web page ibm.com/security/xforce Watch our videos IBM Security YouTube Channel View upcoming webinars & blogs SecurityIntelligence.com Follow us on Twitter @ibmsecurity Join IBM X-Force Exchange xforce.ibmcloud.com
  • 20. © Copyright IBM Corporation 2015. All rights reserved. The information contained in these materials is provided for informational purposes only, and is provided AS IS without warranty of any kind, express or implied. IBM shall not be responsible for any damages arising out of the use of, or otherwise related to, these materials. Nothing contained in these materials is intended to, nor shall have the effect of, creating any warranties or representations from IBM or its suppliers or licensors, or altering the terms and conditions of the applicable license agreement governing the use of IBM software. References in these materials to IBM products, programs, or services do not imply that they will be available in all countries in which IBM operates. Product release dates and / or capabilities referenced in these materials may change at any time at IBM’s sole discretion based on market opportunities or other factors, and are not intended to be a commitment to future product or feature availability in any way. IBM, the IBM logo, and other IBM products and services are trademarks of the International Business Machines Corporation, in the United States, other countries or both. Other company, product, or service names may be trademarks or service marks of others. Statement of Good Security Practices: IT system security involves protecting systems and information through prevention, detection and response to improper access from within and outside your enterprise. Improper access can result in information being altered, destroyed, misappropriated or misused or can result in damage to or misuse of your systems, including for use in attacks on others. No IT system or product should be considered completely secure and no single product, service or security measure can be completely effective in preventing improper use or access. IBM systems, products and services are designed to be part of a lawful, comprehensive security approach, which will necessarily involve additional operational procedures, and may require other systems, products or services to be most effective. IBM DOES NOT WARRANT THAT ANY SYSTEMS, PRODUCTS OR SERVICES ARE IMMUNE FROM, OR WILL MAKE YOUR ENTERPRISE IMMUNE FROM, THE MALICIOUS OR ILLEGAL CONDUCT OF ANY PARTY. THANK YOUwww.ibm.com/security