Location via proxy:   [ UP ]  
[Report a bug]   [Manage cookies]                
SlideShare a Scribd company logo
Доставка зловредов
через…
ptsecurity.com
Антон Тюрин
…облака
Attack Detection Team
Positive Technologies
http://pre09.deviantart.net/0226/th/pre/i/2015/138/f/a/pixel_cloud_lightning_strikes_by_mattcheveralls-d8ttyal.jpg
Anyone
Sharing
Service
Your Cloud
Storage
Cloud Inbox Sharing
ptsecurity.com
1
balloon.io
ptsecurity.com
2
Dropbox oauth2
Enter share name
https://balloon.io/$SHARE
Looking for shares
ptsecurity.com
3
Looking for shares
ptsecurity.com
4
Gmail
5 million
leakage
Looking for shares
ptsecurity.com
5
• 1000 gmail usernames
• 39 found
• 5 000 000 * 4% = 200 000
[RCE] CVE-2015-0096 .LNK exploit
ptsecurity.com
6
CVE-2010-2568
Stuxnet
5 years alive
DLL loading
during Windows
Explorer access
to the icon of a
crafted shortcut
To trigger
vulnerability just
open Explorer
Our case
ptsecurity.com
7
Anyone Balloon.io Dropbox
Local
Folder
Demo
ptsecurity.com
8
Доставка зловредов через облака
ptsecurity.com
9
Any questions?
ptsecurity.com
Спасибо!
Доставка зловредов через облака
@attackdetection

More Related Content

Доставка зловредов через облака