SlideShare a Scribd company logo
1 of 16
UNCLASSIFIED 1UNITED IN SERVICE TO OUR NATION
IoT Cyber Warfare
Prakash Padariya
September 2019
All views are strictly personal
Prakash Padariya
www.linkedin.com/in/prakashp
• 16+ years of core Information / Cyber Security & Technology corporate experience
• Fortune 100 multinational corporations like GE, Royal Bank of Scotland, IBM, Target Corporation & Accenture.
• India, USA, UK, Australia, Canada and UAE.
• Chief Information Security Officer (CISO) of GE India Technology Center (JFWTC) responsible to manage
14+ portfolios for 11 GE businesses covering 5500+ employees in 50 acres campus.
• Personal website www.thesecureplanet.com focusing on Information security world.
• Strong supporter of Entrepreneurship & Start-up Ecosystem (IT/Non-IT).
UNCLASSIFIED 3UNITED IN SERVICE TO OUR NATION
Prakash Padariya
UNCLASSIFIED 4UNITED IN SERVICE TO OUR NATION
Prakash Padariya
UNCLASSIFIED 5UNITED IN SERVICE TO OUR NATION
Every Industry
Needs IoT
A
Smart
ONE
Prakash Padariya
UNCLASSIFIED 6UNITED IN SERVICE TO OUR NATION
What
“Smart”
Future
Holds?
Prakash Padariya
UNCLASSIFIED 7UNITED IN SERVICE TO OUR NATION
A
“Small”
World
Of
IoT
Prakash Padariya
UNCLASSIFIED 8UNITED IN SERVICE TO OUR NATION
Prakash Padariya
UNCLASSIFIED 9UNITED IN SERVICE TO OUR NATION
What are these IoT devices?
Prakash Padariya
UNCLASSIFIED 10UNITED IN SERVICE TO OUR NATION
Add them in 50 Billion too :)
Prakash Padariya
Cyber Warfare - Let the Game Begin !!
Well Started Long time Back
– Stuxnet –
Developed in 2005,
Uncovered in 2010
A Huge
Nuclear
Plant
Scope
Prakash Padariya
UNCLASSIFIED 12UNITED IN SERVICE TO OUR NATION
A Small
Toothbrush
1. Adafruit Bluefruit Snier
2. Ubertooth
3. BLE Snier Python Scripts
4. Python - Bluepy
Prakash Padariya
UNCLASSIFIED 13UNITED IN SERVICE TO OUR NATIONUNCLASSIFIED
Drone Hacking - A New Aviation Industry
• Military drones - Well-controlled, Heavily regulated, Very secure
• Commercial and Personal/Hobby drones - Perfect spy device & ATTACK Device too
Attack Vectors
• GPS location spoofing and spoofing of altitude, speed
• GPS channel remote command injection
• Control channel traffic interception and decryption
• Control channel remote command injection
• Return feed inception and monitoring
• Return feed traffic spoofing
• Malicious firmware
• Malicious hardware
• Hardware implants
• Hardware tinkering/hacking
• Software code failure
• GPS signal jamming
• Control channel signal jamming
• Return feed signal jamming
Next Gen Risks?
• Artificial intelligence in drones
• Self-power (Solar power) – Infinite Flying
Prakash Padariya
UNCLASSIFIED 14UNITED IN SERVICE TO OUR NATION
Remember - Skynet?
Can It Happen in race of AI & ML?
Prakash Padariya
UNCLASSIFIED 15UNITED IN SERVICE TO OUR NATIONUNCLASSIFIED
OWASP IoT Top 10
https://www.owasp.org/images/1/1c/OWASP-IoT-Top-10-2018-final.pdf
Take Away
CIS Critical Controls Framework
https://www.cisecurity.org/critical-controls.cfm
CTIA - Wireless communications industry - IoT Cybersecurity Certification
https://www.ctia.org/about-ctia/certification-resources
Stanford Secure Internet of Things Project
http://iot.stanford.edu/
NISTIR 8200 - International Cybersecurity Standardization for the Internet of Things (IoT)
https://nvlpubs.nist.gov/nistpubs/ir/2018/NIST.IR.8200.pdf
ENISA (European Union) Baseline Security Recommendations for IoT
https://www.enisa.europa.eu/publications/baseline-security-recommendations-for-iot/at_download/fullReport
IEEE Internet of Things Standards (30+)
https://standards.ieee.org/initiatives/iot/stds.html
Cloud Security Alliance IoT Security Controls Framework
https://cloudsecurityalliance.org/artifacts/iot-security-controls-framework/
How can "WE" make IoT Secure?
Prakash Padariya
UNCLASSIFIED 16UNITED IN SERVICE TO OUR NATION
IoT Cyber Warfare
Questions?
Prakash Padariya
Image Credits - Beecham Research, Cisco, Gartner, Dan Ledger www.linkedin.com/in/prakashp

More Related Content

What's hot

The march of the IoT - Jérôme Poulain, Orange Business Services
The march of the IoT - Jérôme Poulain, Orange Business ServicesThe march of the IoT - Jérôme Poulain, Orange Business Services
The march of the IoT - Jérôme Poulain, Orange Business ServicesSITA
 
Primend praktiline konverents - Samsung Cloud. Management. Security
Primend praktiline konverents - Samsung Cloud. Management. SecurityPrimend praktiline konverents - Samsung Cloud. Management. Security
Primend praktiline konverents - Samsung Cloud. Management. SecurityPrimend
 
AirTight Corporate Presentation _ July2013
AirTight Corporate Presentation _ July2013AirTight Corporate Presentation _ July2013
AirTight Corporate Presentation _ July2013AirTight Networks, Inc.
 
Considerations for a secure enterprise wlan data connectors 2013
Considerations for a secure enterprise wlan   data connectors 2013Considerations for a secure enterprise wlan   data connectors 2013
Considerations for a secure enterprise wlan data connectors 2013AirTight Networks
 
Why mobile-should-stop-worrying-learn-love-root-andrew-hoog-viaforensics-rsa-...
Why mobile-should-stop-worrying-learn-love-root-andrew-hoog-viaforensics-rsa-...Why mobile-should-stop-worrying-learn-love-root-andrew-hoog-viaforensics-rsa-...
Why mobile-should-stop-worrying-learn-love-root-andrew-hoog-viaforensics-rsa-...viaForensics
 
The march of the IoT - Charlie Sheridan, Intel Labs Europe
The march of the IoT - Charlie Sheridan, Intel Labs EuropeThe march of the IoT - Charlie Sheridan, Intel Labs Europe
The march of the IoT - Charlie Sheridan, Intel Labs EuropeSITA
 
Cyber Raksha - by Vanshit Malhotra
Cyber Raksha - by Vanshit MalhotraCyber Raksha - by Vanshit Malhotra
Cyber Raksha - by Vanshit MalhotraVanshit Malhotra
 
I mas appsecusa-nov13-v2
I mas appsecusa-nov13-v2I mas appsecusa-nov13-v2
I mas appsecusa-nov13-v2drewz lin
 
iOS recon with Radare2
iOS recon with Radare2iOS recon with Radare2
iOS recon with Radare2NowSecure
 
SE-4063, Leveraging Fingerprint Biometric Authentication to Streamline Secure...
SE-4063, Leveraging Fingerprint Biometric Authentication to Streamline Secure...SE-4063, Leveraging Fingerprint Biometric Authentication to Streamline Secure...
SE-4063, Leveraging Fingerprint Biometric Authentication to Streamline Secure...AMD Developer Central
 
SE-4060, Securing the Mobile World, by Norman Shaw and John Pragnell
SE-4060, Securing the Mobile World, by Norman Shaw and John PragnellSE-4060, Securing the Mobile World, by Norman Shaw and John Pragnell
SE-4060, Securing the Mobile World, by Norman Shaw and John PragnellAMD Developer Central
 
Raspberry Pi NightHacking by Stephen Chin
Raspberry Pi NightHacking by Stephen Chin Raspberry Pi NightHacking by Stephen Chin
Raspberry Pi NightHacking by Stephen Chin Codemotion
 
Extronics iRFID500 Track and Trace use case
Extronics iRFID500 Track and Trace use caseExtronics iRFID500 Track and Trace use case
Extronics iRFID500 Track and Trace use caseSusie Marriott
 
Aegex and Extronics Passive RFID use case
Aegex and Extronics Passive RFID use caseAegex and Extronics Passive RFID use case
Aegex and Extronics Passive RFID use caseSusie Marriott
 
"Azure is the new black”
"Azure is the new black” "Azure is the new black”
"Azure is the new black” Marketing Team
 
Safety reliability and security lessons from defense for IoT
Safety reliability and security lessons from defense for IoTSafety reliability and security lessons from defense for IoT
Safety reliability and security lessons from defense for IoTIoT613
 
Enjoying Wi-Fi & Olives at Club Magic Life Tunisia
Enjoying Wi-Fi & Olives at Club Magic Life TunisiaEnjoying Wi-Fi & Olives at Club Magic Life Tunisia
Enjoying Wi-Fi & Olives at Club Magic Life Tunisia4ipnet
 
Device Management for Connected Devices
Device Management for Connected Devices Device Management for Connected Devices
Device Management for Connected Devices WSO2
 

What's hot (20)

The march of the IoT - Jérôme Poulain, Orange Business Services
The march of the IoT - Jérôme Poulain, Orange Business ServicesThe march of the IoT - Jérôme Poulain, Orange Business Services
The march of the IoT - Jérôme Poulain, Orange Business Services
 
Primend praktiline konverents - Samsung Cloud. Management. Security
Primend praktiline konverents - Samsung Cloud. Management. SecurityPrimend praktiline konverents - Samsung Cloud. Management. Security
Primend praktiline konverents - Samsung Cloud. Management. Security
 
AirTight Corporate Presentation _ July2013
AirTight Corporate Presentation _ July2013AirTight Corporate Presentation _ July2013
AirTight Corporate Presentation _ July2013
 
Considerations for a secure enterprise wlan data connectors 2013
Considerations for a secure enterprise wlan   data connectors 2013Considerations for a secure enterprise wlan   data connectors 2013
Considerations for a secure enterprise wlan data connectors 2013
 
Why mobile-should-stop-worrying-learn-love-root-andrew-hoog-viaforensics-rsa-...
Why mobile-should-stop-worrying-learn-love-root-andrew-hoog-viaforensics-rsa-...Why mobile-should-stop-worrying-learn-love-root-andrew-hoog-viaforensics-rsa-...
Why mobile-should-stop-worrying-learn-love-root-andrew-hoog-viaforensics-rsa-...
 
The march of the IoT - Charlie Sheridan, Intel Labs Europe
The march of the IoT - Charlie Sheridan, Intel Labs EuropeThe march of the IoT - Charlie Sheridan, Intel Labs Europe
The march of the IoT - Charlie Sheridan, Intel Labs Europe
 
Cyber Raksha - by Vanshit Malhotra
Cyber Raksha - by Vanshit MalhotraCyber Raksha - by Vanshit Malhotra
Cyber Raksha - by Vanshit Malhotra
 
UL TS - CSA NL SUMMIT
UL TS - CSA NL SUMMITUL TS - CSA NL SUMMIT
UL TS - CSA NL SUMMIT
 
I mas appsecusa-nov13-v2
I mas appsecusa-nov13-v2I mas appsecusa-nov13-v2
I mas appsecusa-nov13-v2
 
iOS recon with Radare2
iOS recon with Radare2iOS recon with Radare2
iOS recon with Radare2
 
SE-4063, Leveraging Fingerprint Biometric Authentication to Streamline Secure...
SE-4063, Leveraging Fingerprint Biometric Authentication to Streamline Secure...SE-4063, Leveraging Fingerprint Biometric Authentication to Streamline Secure...
SE-4063, Leveraging Fingerprint Biometric Authentication to Streamline Secure...
 
Intel: 巨變的漩渦
Intel: 巨變的漩渦Intel: 巨變的漩渦
Intel: 巨變的漩渦
 
SE-4060, Securing the Mobile World, by Norman Shaw and John Pragnell
SE-4060, Securing the Mobile World, by Norman Shaw and John PragnellSE-4060, Securing the Mobile World, by Norman Shaw and John Pragnell
SE-4060, Securing the Mobile World, by Norman Shaw and John Pragnell
 
Raspberry Pi NightHacking by Stephen Chin
Raspberry Pi NightHacking by Stephen Chin Raspberry Pi NightHacking by Stephen Chin
Raspberry Pi NightHacking by Stephen Chin
 
Extronics iRFID500 Track and Trace use case
Extronics iRFID500 Track and Trace use caseExtronics iRFID500 Track and Trace use case
Extronics iRFID500 Track and Trace use case
 
Aegex and Extronics Passive RFID use case
Aegex and Extronics Passive RFID use caseAegex and Extronics Passive RFID use case
Aegex and Extronics Passive RFID use case
 
"Azure is the new black”
"Azure is the new black” "Azure is the new black”
"Azure is the new black”
 
Safety reliability and security lessons from defense for IoT
Safety reliability and security lessons from defense for IoTSafety reliability and security lessons from defense for IoT
Safety reliability and security lessons from defense for IoT
 
Enjoying Wi-Fi & Olives at Club Magic Life Tunisia
Enjoying Wi-Fi & Olives at Club Magic Life TunisiaEnjoying Wi-Fi & Olives at Club Magic Life Tunisia
Enjoying Wi-Fi & Olives at Club Magic Life Tunisia
 
Device Management for Connected Devices
Device Management for Connected Devices Device Management for Connected Devices
Device Management for Connected Devices
 

Similar to Prakash Padariya - IoT Cyber Warfare

Fast IT Mariano O'Kon, Cisco Live Cancun 2014
Fast IT Mariano O'Kon, Cisco Live Cancun 2014Fast IT Mariano O'Kon, Cisco Live Cancun 2014
Fast IT Mariano O'Kon, Cisco Live Cancun 2014Felipe Lamus
 
Wed Sponsor Press Conf - 10.15
Wed Sponsor Press Conf - 10.15Wed Sponsor Press Conf - 10.15
Wed Sponsor Press Conf - 10.15Bessie Wang
 
5G and IoT Security
5G and IoT Security5G and IoT Security
5G and IoT SecurityNUS-ISS
 
reStartEvents 8:17 Nationwide All-Clearances V-Career Fair Employer Directory...
reStartEvents 8:17 Nationwide All-Clearances V-Career Fair Employer Directory...reStartEvents 8:17 Nationwide All-Clearances V-Career Fair Employer Directory...
reStartEvents 8:17 Nationwide All-Clearances V-Career Fair Employer Directory...Ken Fuller
 
DTS Solution - ISACA UAE Chapter - ISAFE 2014 - RU PWNED - Living a Life as a...
DTS Solution - ISACA UAE Chapter - ISAFE 2014 - RU PWNED - Living a Life as a...DTS Solution - ISACA UAE Chapter - ISAFE 2014 - RU PWNED - Living a Life as a...
DTS Solution - ISACA UAE Chapter - ISAFE 2014 - RU PWNED - Living a Life as a...Shah Sheikh
 
Next Generation Infrastructure for Internet of Things
Next Generation Infrastructure for Internet of ThingsNext Generation Infrastructure for Internet of Things
Next Generation Infrastructure for Internet of ThingsPT Datacomm Diangraha
 
Next Generation Security
Next Generation SecurityNext Generation Security
Next Generation SecurityCisco Canada
 
Nvis, inc. 03 18-2020 - final
Nvis, inc. 03 18-2020 - finalNvis, inc. 03 18-2020 - final
Nvis, inc. 03 18-2020 - finalA. Phillip Smith
 
[Webinar] Why Security Certification is Crucial for IoT Success
[Webinar] Why Security Certification is Crucial for IoT Success[Webinar] Why Security Certification is Crucial for IoT Success
[Webinar] Why Security Certification is Crucial for IoT SuccessElectric Imp
 
reStartEvents 10/26 All-Clearances Employer Directory
reStartEvents 10/26 All-Clearances Employer DirectoryreStartEvents 10/26 All-Clearances Employer Directory
reStartEvents 10/26 All-Clearances Employer DirectoryKen Fuller
 
SplunkLive! Paris 2016 - Plenary session
SplunkLive! Paris 2016 - Plenary sessionSplunkLive! Paris 2016 - Plenary session
SplunkLive! Paris 2016 - Plenary sessionSplunk
 
Building a Mobile App Pen Testing Blueprint
Building a Mobile App Pen Testing BlueprintBuilding a Mobile App Pen Testing Blueprint
Building a Mobile App Pen Testing BlueprintNowSecure
 
The Journey from Zero to SOC: How Citadel built its Security Operations from ...
The Journey from Zero to SOC: How Citadel built its Security Operations from ...The Journey from Zero to SOC: How Citadel built its Security Operations from ...
The Journey from Zero to SOC: How Citadel built its Security Operations from ...Elasticsearch
 
Device to Intelligence, IOT and Big Data in Oracle
Device to Intelligence, IOT and Big Data in OracleDevice to Intelligence, IOT and Big Data in Oracle
Device to Intelligence, IOT and Big Data in OracleJunSeok Seo
 
vip_day_2._1130_cloud
vip_day_2._1130_cloudvip_day_2._1130_cloud
vip_day_2._1130_cloudNicholas Chia
 
Internet of Things (IoT) based Solar Energy System security considerations
Internet of Things (IoT) based Solar Energy System security considerationsInternet of Things (IoT) based Solar Energy System security considerations
Internet of Things (IoT) based Solar Energy System security considerationsBohitesh Misra, PMP
 
reStartEvents 8/25 Nationwide All-Clearances Employer Directory.pdf
reStartEvents 8/25 Nationwide All-Clearances Employer Directory.pdfreStartEvents 8/25 Nationwide All-Clearances Employer Directory.pdf
reStartEvents 8/25 Nationwide All-Clearances Employer Directory.pdfKen Fuller
 
GISEC 2015 Your Network in the Eyes of a Hacker - DTS Solution
GISEC 2015 Your Network in the Eyes of a Hacker - DTS SolutionGISEC 2015 Your Network in the Eyes of a Hacker - DTS Solution
GISEC 2015 Your Network in the Eyes of a Hacker - DTS SolutionShah Sheikh
 

Similar to Prakash Padariya - IoT Cyber Warfare (20)

Fast IT Mariano O'Kon, Cisco Live Cancun 2014
Fast IT Mariano O'Kon, Cisco Live Cancun 2014Fast IT Mariano O'Kon, Cisco Live Cancun 2014
Fast IT Mariano O'Kon, Cisco Live Cancun 2014
 
Wed Sponsor Press Conf - 10.15
Wed Sponsor Press Conf - 10.15Wed Sponsor Press Conf - 10.15
Wed Sponsor Press Conf - 10.15
 
5G and IoT Security
5G and IoT Security5G and IoT Security
5G and IoT Security
 
reStartEvents 8:17 Nationwide All-Clearances V-Career Fair Employer Directory...
reStartEvents 8:17 Nationwide All-Clearances V-Career Fair Employer Directory...reStartEvents 8:17 Nationwide All-Clearances V-Career Fair Employer Directory...
reStartEvents 8:17 Nationwide All-Clearances V-Career Fair Employer Directory...
 
DTS Solution - ISACA UAE Chapter - ISAFE 2014 - RU PWNED - Living a Life as a...
DTS Solution - ISACA UAE Chapter - ISAFE 2014 - RU PWNED - Living a Life as a...DTS Solution - ISACA UAE Chapter - ISAFE 2014 - RU PWNED - Living a Life as a...
DTS Solution - ISACA UAE Chapter - ISAFE 2014 - RU PWNED - Living a Life as a...
 
Next Generation Infrastructure for Internet of Things
Next Generation Infrastructure for Internet of ThingsNext Generation Infrastructure for Internet of Things
Next Generation Infrastructure for Internet of Things
 
Next Generation Security
Next Generation SecurityNext Generation Security
Next Generation Security
 
Nvis, inc. 03 18-2020 - final
Nvis, inc. 03 18-2020 - finalNvis, inc. 03 18-2020 - final
Nvis, inc. 03 18-2020 - final
 
[Webinar] Why Security Certification is Crucial for IoT Success
[Webinar] Why Security Certification is Crucial for IoT Success[Webinar] Why Security Certification is Crucial for IoT Success
[Webinar] Why Security Certification is Crucial for IoT Success
 
reStartEvents 10/26 All-Clearances Employer Directory
reStartEvents 10/26 All-Clearances Employer DirectoryreStartEvents 10/26 All-Clearances Employer Directory
reStartEvents 10/26 All-Clearances Employer Directory
 
SplunkLive! Paris 2016 - Plenary session
SplunkLive! Paris 2016 - Plenary sessionSplunkLive! Paris 2016 - Plenary session
SplunkLive! Paris 2016 - Plenary session
 
Building a Mobile App Pen Testing Blueprint
Building a Mobile App Pen Testing BlueprintBuilding a Mobile App Pen Testing Blueprint
Building a Mobile App Pen Testing Blueprint
 
The Journey from Zero to SOC: How Citadel built its Security Operations from ...
The Journey from Zero to SOC: How Citadel built its Security Operations from ...The Journey from Zero to SOC: How Citadel built its Security Operations from ...
The Journey from Zero to SOC: How Citadel built its Security Operations from ...
 
Device to Intelligence, IOT and Big Data in Oracle
Device to Intelligence, IOT and Big Data in OracleDevice to Intelligence, IOT and Big Data in Oracle
Device to Intelligence, IOT and Big Data in Oracle
 
Internet of things
Internet of thingsInternet of things
Internet of things
 
vip_day_2._1130_cloud
vip_day_2._1130_cloudvip_day_2._1130_cloud
vip_day_2._1130_cloud
 
Fortinet_for_SAP
Fortinet_for_SAPFortinet_for_SAP
Fortinet_for_SAP
 
Internet of Things (IoT) based Solar Energy System security considerations
Internet of Things (IoT) based Solar Energy System security considerationsInternet of Things (IoT) based Solar Energy System security considerations
Internet of Things (IoT) based Solar Energy System security considerations
 
reStartEvents 8/25 Nationwide All-Clearances Employer Directory.pdf
reStartEvents 8/25 Nationwide All-Clearances Employer Directory.pdfreStartEvents 8/25 Nationwide All-Clearances Employer Directory.pdf
reStartEvents 8/25 Nationwide All-Clearances Employer Directory.pdf
 
GISEC 2015 Your Network in the Eyes of a Hacker - DTS Solution
GISEC 2015 Your Network in the Eyes of a Hacker - DTS SolutionGISEC 2015 Your Network in the Eyes of a Hacker - DTS Solution
GISEC 2015 Your Network in the Eyes of a Hacker - DTS Solution
 

Recently uploaded

Next-generation AAM aircraft unveiled by Supernal, S-A2
Next-generation AAM aircraft unveiled by Supernal, S-A2Next-generation AAM aircraft unveiled by Supernal, S-A2
Next-generation AAM aircraft unveiled by Supernal, S-A2Hyundai Motor Group
 
Pigging Solutions Piggable Sweeping Elbows
Pigging Solutions Piggable Sweeping ElbowsPigging Solutions Piggable Sweeping Elbows
Pigging Solutions Piggable Sweeping ElbowsPigging Solutions
 
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024BookNet Canada
 
Benefits Of Flutter Compared To Other Frameworks
Benefits Of Flutter Compared To Other FrameworksBenefits Of Flutter Compared To Other Frameworks
Benefits Of Flutter Compared To Other FrameworksSoftradix Technologies
 
Azure Monitor & Application Insight to monitor Infrastructure & Application
Azure Monitor & Application Insight to monitor Infrastructure & ApplicationAzure Monitor & Application Insight to monitor Infrastructure & Application
Azure Monitor & Application Insight to monitor Infrastructure & ApplicationAndikSusilo4
 
Human Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR SystemsHuman Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR SystemsMark Billinghurst
 
How to Remove Document Management Hurdles with X-Docs?
How to Remove Document Management Hurdles with X-Docs?How to Remove Document Management Hurdles with X-Docs?
How to Remove Document Management Hurdles with X-Docs?XfilesPro
 
Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Scott Keck-Warren
 
IAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsIAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsEnterprise Knowledge
 
Making_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptx
Making_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptxMaking_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptx
Making_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptxnull - The Open Security Community
 
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticsKotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticscarlostorres15106
 
My Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationMy Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationRidwan Fadjar
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking MenDelhi Call girls
 
Swan(sea) Song – personal research during my six years at Swansea ... and bey...
Swan(sea) Song – personal research during my six years at Swansea ... and bey...Swan(sea) Song – personal research during my six years at Swansea ... and bey...
Swan(sea) Song – personal research during my six years at Swansea ... and bey...Alan Dix
 
Key Features Of Token Development (1).pptx
Key  Features Of Token  Development (1).pptxKey  Features Of Token  Development (1).pptx
Key Features Of Token Development (1).pptxLBM Solutions
 
Install Stable Diffusion in windows machine
Install Stable Diffusion in windows machineInstall Stable Diffusion in windows machine
Install Stable Diffusion in windows machinePadma Pradeep
 
Understanding the Laravel MVC Architecture
Understanding the Laravel MVC ArchitectureUnderstanding the Laravel MVC Architecture
Understanding the Laravel MVC ArchitecturePixlogix Infotech
 
SIEMENS: RAPUNZEL – A Tale About Knowledge Graph
SIEMENS: RAPUNZEL – A Tale About Knowledge GraphSIEMENS: RAPUNZEL – A Tale About Knowledge Graph
SIEMENS: RAPUNZEL – A Tale About Knowledge GraphNeo4j
 
Unblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesUnblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesSinan KOZAK
 

Recently uploaded (20)

E-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptx
E-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptxE-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptx
E-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptx
 
Next-generation AAM aircraft unveiled by Supernal, S-A2
Next-generation AAM aircraft unveiled by Supernal, S-A2Next-generation AAM aircraft unveiled by Supernal, S-A2
Next-generation AAM aircraft unveiled by Supernal, S-A2
 
Pigging Solutions Piggable Sweeping Elbows
Pigging Solutions Piggable Sweeping ElbowsPigging Solutions Piggable Sweeping Elbows
Pigging Solutions Piggable Sweeping Elbows
 
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
 
Benefits Of Flutter Compared To Other Frameworks
Benefits Of Flutter Compared To Other FrameworksBenefits Of Flutter Compared To Other Frameworks
Benefits Of Flutter Compared To Other Frameworks
 
Azure Monitor & Application Insight to monitor Infrastructure & Application
Azure Monitor & Application Insight to monitor Infrastructure & ApplicationAzure Monitor & Application Insight to monitor Infrastructure & Application
Azure Monitor & Application Insight to monitor Infrastructure & Application
 
Human Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR SystemsHuman Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR Systems
 
How to Remove Document Management Hurdles with X-Docs?
How to Remove Document Management Hurdles with X-Docs?How to Remove Document Management Hurdles with X-Docs?
How to Remove Document Management Hurdles with X-Docs?
 
Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024
 
IAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsIAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI Solutions
 
Making_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptx
Making_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptxMaking_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptx
Making_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptx
 
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticsKotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
 
My Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationMy Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 Presentation
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men
 
Swan(sea) Song – personal research during my six years at Swansea ... and bey...
Swan(sea) Song – personal research during my six years at Swansea ... and bey...Swan(sea) Song – personal research during my six years at Swansea ... and bey...
Swan(sea) Song – personal research during my six years at Swansea ... and bey...
 
Key Features Of Token Development (1).pptx
Key  Features Of Token  Development (1).pptxKey  Features Of Token  Development (1).pptx
Key Features Of Token Development (1).pptx
 
Install Stable Diffusion in windows machine
Install Stable Diffusion in windows machineInstall Stable Diffusion in windows machine
Install Stable Diffusion in windows machine
 
Understanding the Laravel MVC Architecture
Understanding the Laravel MVC ArchitectureUnderstanding the Laravel MVC Architecture
Understanding the Laravel MVC Architecture
 
SIEMENS: RAPUNZEL – A Tale About Knowledge Graph
SIEMENS: RAPUNZEL – A Tale About Knowledge GraphSIEMENS: RAPUNZEL – A Tale About Knowledge Graph
SIEMENS: RAPUNZEL – A Tale About Knowledge Graph
 
Unblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesUnblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen Frames
 

Prakash Padariya - IoT Cyber Warfare

  • 1. UNCLASSIFIED 1UNITED IN SERVICE TO OUR NATION IoT Cyber Warfare Prakash Padariya September 2019 All views are strictly personal
  • 2. Prakash Padariya www.linkedin.com/in/prakashp • 16+ years of core Information / Cyber Security & Technology corporate experience • Fortune 100 multinational corporations like GE, Royal Bank of Scotland, IBM, Target Corporation & Accenture. • India, USA, UK, Australia, Canada and UAE. • Chief Information Security Officer (CISO) of GE India Technology Center (JFWTC) responsible to manage 14+ portfolios for 11 GE businesses covering 5500+ employees in 50 acres campus. • Personal website www.thesecureplanet.com focusing on Information security world. • Strong supporter of Entrepreneurship & Start-up Ecosystem (IT/Non-IT).
  • 3. UNCLASSIFIED 3UNITED IN SERVICE TO OUR NATION Prakash Padariya
  • 4. UNCLASSIFIED 4UNITED IN SERVICE TO OUR NATION Prakash Padariya
  • 5. UNCLASSIFIED 5UNITED IN SERVICE TO OUR NATION Every Industry Needs IoT A Smart ONE Prakash Padariya
  • 6. UNCLASSIFIED 6UNITED IN SERVICE TO OUR NATION What “Smart” Future Holds? Prakash Padariya
  • 7. UNCLASSIFIED 7UNITED IN SERVICE TO OUR NATION A “Small” World Of IoT Prakash Padariya
  • 8. UNCLASSIFIED 8UNITED IN SERVICE TO OUR NATION Prakash Padariya
  • 9. UNCLASSIFIED 9UNITED IN SERVICE TO OUR NATION What are these IoT devices? Prakash Padariya
  • 10. UNCLASSIFIED 10UNITED IN SERVICE TO OUR NATION Add them in 50 Billion too :) Prakash Padariya
  • 11. Cyber Warfare - Let the Game Begin !! Well Started Long time Back – Stuxnet – Developed in 2005, Uncovered in 2010 A Huge Nuclear Plant Scope Prakash Padariya
  • 12. UNCLASSIFIED 12UNITED IN SERVICE TO OUR NATION A Small Toothbrush 1. Adafruit Bluefruit Snier 2. Ubertooth 3. BLE Snier Python Scripts 4. Python - Bluepy Prakash Padariya
  • 13. UNCLASSIFIED 13UNITED IN SERVICE TO OUR NATIONUNCLASSIFIED Drone Hacking - A New Aviation Industry • Military drones - Well-controlled, Heavily regulated, Very secure • Commercial and Personal/Hobby drones - Perfect spy device & ATTACK Device too Attack Vectors • GPS location spoofing and spoofing of altitude, speed • GPS channel remote command injection • Control channel traffic interception and decryption • Control channel remote command injection • Return feed inception and monitoring • Return feed traffic spoofing • Malicious firmware • Malicious hardware • Hardware implants • Hardware tinkering/hacking • Software code failure • GPS signal jamming • Control channel signal jamming • Return feed signal jamming Next Gen Risks? • Artificial intelligence in drones • Self-power (Solar power) – Infinite Flying Prakash Padariya
  • 14. UNCLASSIFIED 14UNITED IN SERVICE TO OUR NATION Remember - Skynet? Can It Happen in race of AI & ML? Prakash Padariya
  • 15. UNCLASSIFIED 15UNITED IN SERVICE TO OUR NATIONUNCLASSIFIED OWASP IoT Top 10 https://www.owasp.org/images/1/1c/OWASP-IoT-Top-10-2018-final.pdf Take Away CIS Critical Controls Framework https://www.cisecurity.org/critical-controls.cfm CTIA - Wireless communications industry - IoT Cybersecurity Certification https://www.ctia.org/about-ctia/certification-resources Stanford Secure Internet of Things Project http://iot.stanford.edu/ NISTIR 8200 - International Cybersecurity Standardization for the Internet of Things (IoT) https://nvlpubs.nist.gov/nistpubs/ir/2018/NIST.IR.8200.pdf ENISA (European Union) Baseline Security Recommendations for IoT https://www.enisa.europa.eu/publications/baseline-security-recommendations-for-iot/at_download/fullReport IEEE Internet of Things Standards (30+) https://standards.ieee.org/initiatives/iot/stds.html Cloud Security Alliance IoT Security Controls Framework https://cloudsecurityalliance.org/artifacts/iot-security-controls-framework/ How can "WE" make IoT Secure? Prakash Padariya
  • 16. UNCLASSIFIED 16UNITED IN SERVICE TO OUR NATION IoT Cyber Warfare Questions? Prakash Padariya Image Credits - Beecham Research, Cisco, Gartner, Dan Ledger www.linkedin.com/in/prakashp