What You Need to Know about Ripple20

Logo
Presented by

Shlomi Oberman, CEO & Researcher, JSOF & Daniel dos Santos, Security Researcher, Forescout Technologies

About this talk

A Conversation with Shlomi Oberman from JSOF According to Gartner, “over 80% of organizations currently use IoT to solve business use cases, and almost 20% of organizations have already detected an IoT-based attack in the past three years.” By now, you’ve heard about Ripple20 – the collective group of vulnerabilities in a widely used Transmission Control Protocol/Internet Protocol (TCP/IP) software library developed by Treck Inc., and discovered by a team at JSOF. JSOF partnered with Forescout Research Labs to use Forescout’s Device Cloud, a unique data lake with information from more than 12 million devices categorized in more than 150 device types, to identify potentially impacted vendors and devices. Tens of millions of devices across over 50 vendors may be affected, exposing a complex supply chain for IoT devices. Additionally, threat actors could execute remote commands against devices connected to the internet, compromise them and move laterally within the network to access or infect other devices. How do security teams respond swiftly to identify and mitigate these vulnerable devices? Join us for a lively conversation with Shlomi Oberman (JSOF) and Daniel dos Santos (Forescout) as they explain: • What really is Ripple20? – a deep dive into discovered vulnerabilities • The impact on the supply chain and the impacted vendors • How to mitigate the risks – even in environments where these devices cannot be patched • What vendors and security teams must do next to limit their exposure
Related topics:

More from this channel

Upcoming talks (0)
On-demand talks (99)
Subscribers (4545)
Your organization has become an Enterprise of Things (EoT). PCs, mobile devices, cloud workloads and other traditional IT systems. Agentless IoT and OT devices. Device diversity is thriving at the cost of security as your users connect from all over the map – literally. Every thing that touches your enterprise network exposes you to potential risk. You must see it and secure it. Get to know Forescout. Learn more about our products, hear about new cyber security trends and see how Forescout helps you address these. We offer the only solution that actively defends the Enterprise of Things at scale. Register for our webinars or visit our website for more information: www.forescout.com Webinar languages include English, German, French, Italian and Spanish.