12.07.2015 Views

Information and Security

Information and Security

Information and Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

<strong>Security</strong> DemoPort ScannerPort ScanningUnzip WinStrobe.zipCopy ports.ini to c:\windowsRun WinstrobeFile / Start / Server-1Run against your PCFile / Start / 127.0.0.1Analyzing The ResultsWhat ports were open?What services are running?Do you need those services?How can a hacker use this information?Did MBSA give us this infomation?Probing PortsOpen a comm<strong>and</strong> tooltelnet host portTo turn on local echoCTRL+]set localechoTelnet to ports 21, 23, 25, 110What can you find out about theseports?Case StudyCost of <strong>Security</strong>Case StudyStolen Computers Contain Wells FargoCustomer Data (5 November 2004)Four computers stolen from RegulusIntegrated Solutions LLS's Atlanta officecontain names, addresses, social security<strong>and</strong> account numbers belonging tothous<strong>and</strong>s of Wells Fargo student loan <strong>and</strong>mortgage customers. Wells Fargo hasnotified affected customers by mail <strong>and</strong> isoffering a free year of its credit monitoringservice.Some NumbersIf 5,000 accounts were compromised <strong>and</strong>500 of those offered took Wells Fargo up onthe free credit reporting for a year.Let's also assume there were 10 PCs (vs.just the 4 that were stolen) in the office.The cost of this incident is at least $125,000.The cost of having encryption software onthose 10 PCs would be well under $10,000.<strong>Security</strong>+Domain 2: WirelessConceptsWireless Application ProtocolWireless Local Area NetworksWired Equivalent PrivacyWireless Zero Configuration

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!