- 1 - Information Security
- 2 - Agenda A Brief History of Internet security What is Security What I worry about
- 3 - The Internet
- 4 - The Internet Worm Incident 2 November 1988 Used vulnerabilities in: Fingerd Sendmail ‘r’ commands Cracked password Consumed CPU Aka. ‘The Morris Worm’
- 5 - Firewalls
- 6 - Intrusion Detection
- 7 - DoS and DDoS
- 8 - Code Red
- 9 - Broadband
CyberWar and …
… CyberTerrorism
Spy Ware / Ad Ware
CyberCrime
The CIA Triad Confidentiality Integrity Availability The state of being secret The state or quality of being entire or complete Present and ready for use The state of being secret The state or quality of being entire or complete Present and ready for use Security = Security
A Definition Security is a Methodology for Handling Threats to Confidentiality, Integrity and Availability - i.e. Risk Management
Things I Worry About Users IT People IT Vendors Nation-State conflict or Terrorists and Web Mobile Devices Anyone who thinks that I am responsible for Information Security
Further Reading Bruce Schneier SANS Internet Storm Centre SecurityFocus Titan Rain Jericho Forum