19
Coming soon: Blog: ThreatChaos.com twitter.com/cyberwar Surviving Cyber War

Surviving Cyber War April09

  • View
    1.467

  • Download
    2

Embed Size (px)

DESCRIPTION

Presentation on the events leading up to the current state of cyber unpreparedness.

Citation preview

Page 1: Surviving Cyber War April09

Coming soon:

Blog: ThreatChaos.com twitter.com/cyberwar

Surviving Cyber War

Page 2: Surviving Cyber War April09

2

Agenda

Pervasive Espionage

Background

Cyber Defense Preparedness

Crowd Sourced Cyber Weapons

Page 3: Surviving Cyber War April09

Threat hierarchy is a time line!

• Information Warfare• CyberCrime• Hactivism• Vandalism• Experimentation

Page 4: Surviving Cyber War April09

Rumblings

April 1, 2001

Navy EP-3

ChineseF-8

Page 5: Surviving Cyber War April09

The Five Levels of Cyber Defense Conditions

• Cyber DefCon 1. Travel warnings. Governments issue warnings about protecting data when travelling to foreign nations.

• Cyber DefCon 2. Nation states probe each other’s network’s for vulnerabilities.

• Cyber Defcon 3. Wide spread information theft with intent to mine industrial as well as military and geo-political secret information.

• Cyber DefCon 4. Targeted attacks against a nation’s military and government installations. Loss of critical data, collateral damage.

• Cyber DefCon 5. Nation to nation attacks are malicious with intent to destroy communication infrastructure and disable business processes including financial markets.

Page 6: Surviving Cyber War April09

Chinese Thinking

• Wang Qingsong, Modern Military-Use High Technology, 1993• Zhu Youwen, Feng Yi,and Xu Dechi, Information War Under High

Tech Conditions1994• Li Qingshan, New Military Revolution and High Tech War, 1995• Wang Pufeng, InformationWarfare and the Revolution in Military

Affairs, Beijing: 1995;• Zhu Xiaoli and Zhao Xiaozhuo, The United States and Russia in the

New Military Revolution,1996;• Li Qingshan, New Military Revolution and High Tech War, 1995• Dai Shenglong and Shen Fuzhen, Information Warfare and

Information Security Strategy, 1996• Shen Weiguang, On New War 1997

Page 7: Surviving Cyber War April09

Goal: Information Dominance

The degree of information superiority that allows the possessor to use information systems and capabilities to achieve an operational advantage in a conflict or to control the situation in operations short of war, while denying those capabilities to the adversary.

-Field Manual 100-6 Information Operations, August1996.

Page 8: Surviving Cyber War April09

Custom Trojans, tools of the tradeMichael Haephrati shows us how.

Page 9: Surviving Cyber War April09

China knows Trojans

• In the UK, the Home Office has warned about a spate of attacks in recent months involving e-mail Trojans. "We have never seen anything like this in terms of the industrial scale of this series of attacks," said Roger Cumming, director of NISCC

Page 10: Surviving Cyber War April09

Titan Rain world wide

• Custom Trojans• Sandia drops its shorts, 2005• Shawn Carpenter, First US Cyber Warrior• Summer 2007 Pentagon is attacked and shut

down. Source of attack Chinese Red Army• German Chancellery, Summer 2007• Whitehall, UK• France• India• Australia

Page 11: Surviving Cyber War April09

Ghost Net

• 1,200 computers including ministry and NATO machines

• Looking for attribution• Attacks on the office of the Dalai Lama• Joint Strike Fighter Breach April 21, 2009

Page 12: Surviving Cyber War April09

Joint Strike Fighter

Page 13: Surviving Cyber War April09

Crowd sourcing

Page 14: Surviving Cyber War April09

Cyber war breaks out

• Estonia, March 2007• Ukrain November 2007• Lithuania, June 2008• Georgia, August 2008

Nashi summer camp ‘07

Page 15: Surviving Cyber War April09

Cyber Defense Preparedness: Estonia

"Cooperative Cyber Defence (CCD) Centre of Excellence (COE) in Tallinn, Estonia.

-Cyber Defense Advisors deployed to Georgia

-Focus on “home guard”. The minute-man approach.

-Tools and techniques (to come)

Page 16: Surviving Cyber War April09

Cyber Defense Preparedness: US

Cyber Defense Structure. Air Force? NSA? STRATCOM?

Offensive capability?

Spending: $7 billion new spending per year

Page 17: Surviving Cyber War April09

Defending against DDoS

Massive bandwidth: 18+ gigsBlocking DNSShell game using virtualization

Page 18: Surviving Cyber War April09

Surviving Cyber War for every organization

• Same rules apply, only more so. • Appoint a cyber security commander • Defense in depth against multiple adversaries• Fighting the low and slow war. Your

information is their weapon. Worry about infiltration.

• DDoS. Yes, it takes investment.• Surviving a meltdown. Remember modems?

Page 19: Surviving Cyber War April09

Blog: www.threatchaos.com

email: [email protected]

Twitter: twitter.com/cyberwar