trend kejahatan cyber 2015

Post on 21-Jan-2017

337 Views

Category:

Internet

3 Downloads

Preview:

Click to see full reader

TRANSCRIPT

TREND KEJAHATAN CYBER 2015

Dedi.Dwianto, M.Kom, C|EH, OSCP, eMAPTSeminar Pengaturan Cybercrime dalam UU ITE – 4-5 November 2015

2 11/2/15

3

STATISTIK

11/2/15

4

PERANGKAT MOBILE & INTERNET OF THINGS

11/2/15

5

PERANGKAT MOBILE & INTERNET OF THINGS

11/2/15

6

MOBILE MALWARE

Sumber : Symantec Internet Security Threat Report 20 – April 2015

11/2/15

7

ANDROID MALWARE

• Svpeng trojan “ Android.Trojan.Svpeng.A”• FakenToken Trojan “Android.Backdoor.Token.A”

11/2/15

8

ANDROID MALWARE

• Kemoge Malware

11/2/15Sumber : Fireeye.com

9

KEMOGE MALWARE

11/2/15Sumber : Fireeye.com

10

KEMOGE MALWARE

11/2/15Sumber : Fireeye.com

11

SOCIAL MEDIA & SCAM

11/2/15

12

SOCIAL MEDIA & SCAM

11/2/15

13

SMS PENIPUAN & IKLAN

11/2/15

14

SMS PENIPUAN & IKLAN

11/2/15

15

MOBILE VULNERABILITIES

Sumber : Symantec Internet Security Threat Report 20 – April 2015

11/2/15

16

DROIDJACK

11/2/15

17

ANCAMAN WEB• Heart Bleed Attack• Shell Shock Attack

11/2/15

18

ANCAMAN WEB

11/2/15

19

ANCAMAN BROWSER

11/2/15

20

ZEUS MALWARE

• ZEUS TROJAN YANG MENCURI INFORMASI BANK• DITEMUKAN MARET 2009• BOA, NASA,ABC,ORACLE,CISCO,AMAZON

11/2/15

21

ZEUS MALWARE

11/2/15

22

ZEUS MALWARE

11/2/15

23

ZEUS MALWARE

11/2/15

24

HAMMERTOSS

11/2/15

25

POPULAR DOMAIN MALWARE

11/2/15

26

TARGET

• DATA BANK & KEUANGAN• DATA PENDUDUK• DATA PEMERINTAHAN

11/2/15

27

TARGET

11/2/15

28

DEFACEMENT

• Total Notifications: 17,090 • Of Which 4,404 Single IP • 12,686 Mass Defacements

Sumber : Zone-h.org

11/2/15

02/11/2015

29

DEFACEMENT

• Total Notifications: 17,118 • Of Which 4,412 Single IP • 12706 Mass Defacements

Sumber : Zone-h.org

11/2/15

05/11/2015 : 10:43

30

DEFACEMENT

• 4,404 - 4,412 = 8 IP 3 day = 2 IP/day

Sumber : Zone-h.org

11/2/15

31 11/2/15ns.hack.id ib.hack.id (1.2.3.4)

ns.local.id

ns.bank.id Ib.bank.id (5.6.7.8)

1) Request : any.hack.id

2) Re

quest

: any.

hack.

id

3) Store request ID

4) Request : ib.bank.id

5) Request : ib.bank.id

6) Call zombie

7) DDoS Attack

8) Sp

oofin

g A ib

.bank

.id

9) Request : ib.bank.id10) Response: ib.bank.id (1.2.3.4)

11) Request: ib.bank.id (1.2.3.4)

32

DEMO

• Android Malware• Man in the middle browser

11/2/15

top related