@adam_englander
The Red Team Is Coming!
Adam Englander
iovation
@adam_englander
@adam_englander
Red vs. Blue
Lone Gunmen
Hactivists
Competitors
Organized Crime
Nation States
You
@adam_englander
@adam_englander
@adam_englander
@adam_englander
@adam_englander
68% of people reuse passwords
Source: August 2015 Password Survey
https://s3.amazonaws.com/launchkey-blog/LaunchKey_Password_Survey_Results.pdf
@adam_englander
@adam_englander
Multi-Factor Auth has limited adoption
Source: August 2015 Password Survey
https://s3.amazonaws.com/launchkey-blog/LaunchKey_Password_Survey_Results.pdf
@adam_englander
The Path to Pwnage
Your
Website
Bank
Account
Credit Card
Account
Cloud
Document
Storage
Government
ID
Identity
Theft
Shadow
Card
Account
Malware
Propagation
Key Logging
Account
Takeover
User’s
Email
Account
@adam_englander
@adam_englander
@adam_englander
–FTC Annual Summary of Consumer Complaints for 2017
399,225 reports of identity theft were
made last year in the United States.
@adam_englander
–Las Vegas Review Journal
https://www.reviewjournal.com/business/8-identity-theft-myths-you-should-ignore/
“The FTC estimates that it takes an
average of six months and 200 hours of
work to recover from an instance of
identity theft”
@adam_englander
@adam_englander
FIPSHIPPA
PCI DSS
@adam_englander
@adam_englander
@adam_englander
PHP
http://php.net/manual/en/security.php
@adam_englander
OWASP
https://www.owasp.org
@adam_englander
websec.io
https://websec.io/
@adam_englander
Security BSides
http://www.securitybsides.com/
@adam_englander
@adam_englander
iovation.com/dummies
@adam_englander
@adam_englander
@adam_englander
https://joind.in/talk/2c002
Please rate this talk
@adam_englander
• Compliance: By Nick Young [CC BY-SA 3.0]
• Botnet: By Joey Devilla [CC BY-SA 4.0], via Wikimedia Commons
• The Red Pill or the Blue Pill: By Paul L Dineen [CC BY-SA 2.0]
• All other photos were public domain

ZendCon 2017: The Red Team is Coming