Securing the Insecure

Post on 08-Jun-2015

401 Views

Category:

Engineering

2 Downloads

Preview:

Click to see full reader

DESCRIPTION

Securing the Insecure - WSO2Con 2014 USA

Transcript

Securing the Insecure

Prabath Siriwardena Director of Security Architecture

WSO2

Perception

Perception

Perception

Perception

Correctness

C-I-A

C-I-A

Confidentiality

Integrity

Availability

Attacks : RSA – March, 2011

Attacks : Adobe – October, 2013

Attacks : Target – November, 2013

The Weakest Link: Monoprix, France

The Defense in Depth: Los Angeles Airport

Insider Attacks: WikiLeaks, NSA

Insider Attacks: Cyber Insider Threat (CINDER)

Security by Obscurity: Microsoft NTLM

Software Security: Code is the Focus

Operating System Security

Firewalls and IDS

Heartbleed

Threat Modeling

Thank You

top related