No  Substitute for Ongoing Data, Quantification, Visualization, and Story-Telling John S. Quarterman Gretchen K. Phillips ...
A Month's Phishing Infestation
Multiple Servers and Targets <ul><li>Both red and green nodes are phishing servers </li></ul><ul><li>Some churn in ongoing...
Know Your Network Neighborhood
Hurricane Ivan Meets Cayman Islands
No Substitute <ul><li>ISPs won't tell you (competitive info.; embarrassment) </li></ul><ul><li>ISPs can't tell you: don't ...
Contact Information <ul><ul><li>John S. Quarterman </li></ul></ul><ul><ul><li>[email_address] </li></ul></ul><ul><ul><li>G...
Upcoming SlideShare
Loading in …5
×

No Substitute for Ongoing Data, Quantification, Visualization, and Story-Telling

1,652 views

Published on

No Substitute for Ongoing Data, Quantification, Visualization, and Story-Telling

Published in: Technology
0 Comments
1 Like
Statistics
Notes
  • Be the first to comment

No Downloads
Views
Total views
1,652
On SlideShare
0
From Embeds
0
Number of Embeds
21
Actions
Shares
0
Downloads
14
Comments
0
Likes
1
Embeds 0
No embeds

No notes for slide

No Substitute for Ongoing Data, Quantification, Visualization, and Story-Telling

  1. 1. No Substitute for Ongoing Data, Quantification, Visualization, and Story-Telling John S. Quarterman Gretchen K. Phillips InternetPerils 1 August 2006 Metricon Vancouver, BC
  2. 2. A Month's Phishing Infestation
  3. 3. Multiple Servers and Targets <ul><li>Both red and green nodes are phishing servers </li></ul><ul><li>Some churn in ongoing infestation </li></ul><ul><li>Multiple targets, e.g., paypal and ebay </li></ul><ul><li>No single target would know this </li></ul><ul><li>Phishers use leverage of Internet: can't counter that alone </li></ul><ul><li>Lists of phishing servers from APWG repository </li></ul><ul><li>Topology & performance data & visualization by InternetPerils </li></ul><ul><li>Give to collaborate: report phishing to APWG; focus nodes to monitoring companies; etc.; iterate for collective action </li></ul>
  4. 4. Know Your Network Neighborhood
  5. 5. Hurricane Ivan Meets Cayman Islands
  6. 6. No Substitute <ul><li>ISPs won't tell you (competitive info.; embarrassment) </li></ul><ul><li>ISPs can't tell you: don't know outside their network </li></ul><ul><li>Running forensic tools yourself is not enough </li></ul><ul><li>Need early warning: need independent 3 rd party data </li></ul><ul><li>Need real data for baselines + longitudinal + ongoing </li></ul><ul><li>Already watching when events occur + frequent scans to catch event + specific focus + wide view to see related </li></ul><ul><li>Quantify + visualize for pattern recognition and presentation </li></ul><ul><li>Tell a story! </li></ul>
  7. 7. Contact Information <ul><ul><li>John S. Quarterman </li></ul></ul><ul><ul><li>[email_address] </li></ul></ul><ul><ul><li>Gretchen K. Phillips </li></ul></ul><ul><ul><li>www.internetperils.com </li></ul></ul><ul><ul><li>book: Risk Management Solutions </li></ul></ul>

×