Professional Documents
Culture Documents
THE GRUGQ
@THEGRUGQ
IVE BEEN IN THIS
GAME FOR YEARS
HACKING IN THE 90S
10 FIND 0DAY
20 HACK THE PLANET
30 GOTO 10
THE GAME
THE GAME: CYBERSECURITY 2000
• Clean up malware
• Sometimes by cybercriminals
• No weapons
• Takeaway
• Boelke Dicta
• Takeaway
• Attack in groups
“There are two types of planes: fighters, and
targets”
A I R F O R C E S AY I N G
FIGHTER
TA R G E T
OVERWHELM THE WEAK
GO IN QUICK
HIT HARD
GET OUT
TA C T I C A L C Y B E R
CYBERWAR 2015: IN THEORY…
CYBER CONFLICT 2015: PRACTICE
• Targeted
• Easy*
• It works
APT
• Targeted
• Easy
• It works
EVERYONE
• Targeted
• Easy
• It works
W H AT W O R K S
• Client sides
• Spear/phishing
• Browsers
• USB
• Web Apps
• Other:
• planning
• preparation
• execution
• finish
SPEC OPS
• simplicity
• security
• repetition
• surprise
• speed
• purpose
CYBERWAR 2015
A D V E R S A R I A L O R G A N I S AT I O N S
CHINA
RUSSIA
INDIA
NORTH KOREA
TOOLCHAINS
• Constant maintenance
– T W O S TA R G E N E R A L , C Y B E R C O M M A N D
W H AT C A N H E L P ?
SECURITY VENDORS’ SOLUTIONS
DISASTER TOURISTS
CISSP
G O O D L U C K W I T H T H AT
NATIONAL INTELLIGENCE AGENCIES