Apache Struts: Don't Be The Next Equifax

Logo
Presented by

Oleg Kolesnikov, Director of Threat Research

About this talk

The cybersecurity world was shaken last week when it heard about Equifax which will likely turn into the largest data breach in history. Equifax has now officially confirmed that the vulnerability used to exploit the company’s Web server enabling malicious threat actor to steal data from over 143 million customers was the critical Apache Struts 2 Jakarta Multipart Parser Vulnerability (CVE-2017-5638). We will show you the actual attack that was used to breach Equifax in action. You will also learn how you can leverage user and big data security analytics to increase the chances of detecting such cyber attacks/data breaches at an early stage. We’ll cover: - A deep dive into the exact mechanisms that lead to the Equifax breach - How security analytics can help increase chances of early detection of such attacks - A simulation of the attack that was used attack Equifax
Related topics:

More from this channel

Upcoming talks (0)
On-demand talks (80)
Subscribers (16880)
Securonix Next-Gen SIEM delivers threat detection and response powered by flexible, cloud-native advanced analytics. Follow this channel to learn from our security experts. They will discuss threat trends, detection techniques, and SecOps topics such as cloud security, insider threat, SIEM, UEBA, and SOAR.