十一届全国政协委员职务和界别情况T。。。

PPT
  • 阅读 51 次
  • 下载 0 次
  • 页数 29 页
  • 大小 470.731 KB
  • 2023-08-11 上传
  • 收藏
  • 违规举报
  • © 版权认领
下载文档22.00 元 加入VIP免费下载
此文档由【精品优选】提供上传,收益归文档提供者,本网站只提供存储服务。若此文档侵犯了您的版权,欢迎进行违规举报版权认领
十一届全国政协委员职务和界别情况T。。。
可在后台配置第一页与第二页中间广告代码
十一届全国政协委员职务和界别情况T。。。
可在后台配置第二页与第三页中间广告代码
十一届全国政协委员职务和界别情况T。。。
可在后台配置第三页与第四页中间广告代码
十一届全国政协委员职务和界别情况T。。。
十一届全国政协委员职务和界别情况T。。。
还剩10页未读,继续阅读
【这是免费文档,您可以免费阅读】
/ 29
  • 收藏
  • 违规举报
  • © 版权认领
下载文档22.00 元 加入VIP免费下载
文本内容

【文档说明】十一届全国政协委员职务和界别情况T。。。.pptx,共(29)页,470.731 KB,由精品优选上传

转载请保留链接:https://www.ichengzhen.cn/view-324492.html

以下为本文档部分文字说明:

Setiri:AdvancesinTrojanTechnologyRoelofTemminghHaroonMeerBlackHatUSA2002ScheduleIntroductionWhyTrojans?BriefHistoryofTrojans&CovertChannelsThe

HybridmodelSetiri:AdvancesinTrojanTechnologyDemonstrationTakingitfurtherPossiblefixesIntroductionSensePostThespeakersObjectiveo

fpresentationWhyTrojans?ProfileofTrojanusersRealcriminals……don’twritebufferoverflowsTheweirdnessoftheindustryExamplesBr

iefHistoryofTrojans&CovertTunnelsTrojansFromQuickThinkingGreeks…toQuickThinkingGeeksTunnelsCovertChannelsTrojans.

.ValidIP–NoFiltersValidIP–StatelessFiltersPrivateAddresses–StatefulFiltersPrivate+Stateful+IDS+PersonalFirewalls+Conten

tChecking+…Trojans..(ValidIP–NoFilters)“getreal..”Trojans..(ValidIP–StatelessFilter)DialHomeTrojansRandomPorts/OpenPorts/HighPorts[cDc]ACKTu

nneling[ArneVidstrom]Trojans..(StatefulFilters)BackOrifice-http://bo2k.sourceforge.netGbotRattlerBriefHistoryofTrojans&CovertTunnelsTrojans

FromQuickThinkingGreeks…toQuickThinkingGeeksTunnelsCovertChannelsTunnels&CovertChannelsConventionalTrojans&howtheyfailStatef

ulfirewall&IDSDirectmodelDirectmodelwithnetworktricksICMPtunnelingACKtunnelingProperlyconfiguredstatefulfirewallIR

Cagents+AuthenticationproxyHTTPtunnel++Personalfirewall&AdvancedProxyHTTPtunnelwithAuthentication+++Hybridmodel:“GatSlag”Combinatio

nbetweencovertTunnelandTrojanDefensesmechanismstoday:Packetfilters(stateful)/NATAuthenticationProxiesIntrusiondetectionsystemsPersonalfirewa

llsContent/protocolcheckingBiometrics/TokenPads/OnetimepasswordsEncryptionAtypicalnetworkHowGatSlagworkedReverseconnectionHTTPcoverttunnelM

icrosoftInternetExplorerastransportControlsIEviaOLEEncapsulateinIE,notHTTPReceivecommandsintitleofwebpageReceiveencodeddataasplaintextinbodyofwebpa

geSenddatawithPOSTrequestSendalivesignalswithGETrequestWhyGatSlagworkedIntegrationofclientwithMSProxyNTLMauthenticationSSLcapableRegist

rychangesPersonalfirewallsJustanotherbrowserPlatformindependentIEoneverydesktopSpecifyControllerViapublic

webpage–theMASTERsiteHowGatSlagworkedIICreatesinvisiblebrowserFindcontrolleratMASTERSendrequesttoControllerIfnoController&&retry>7,gotoMASTERRece

ivereplyParsereply:+Uploadfile()+Downloadfile+ExecutecommandLoopWhydefensesfailFirewalls(stateful/NAT)ConfiguredtoallowuserorproxyoutConten

tlevel&IDSLookslikevalidHTTPrequests&repliesFilesdownloadedastextinwebpagesNodataorportstolockontoSSLprovidesencryptionPersonalfirewallsIEv

alidapplicationConfiguredtoallowbrowsingAuthenticationproxiesUsersurfthewebProblemswithGatslagTheController’sIPcanbeobtained!Handlingofmultipleinst

ancesGUIsupportControllerneededtobeonlineBatchcommandsCommandhistoryMultiplecontrollersUploadfacilityn

otefficientPlatformsupportStabilitySessionleveltunnelingSetiri:AdvancesinTrojanTechnologyDesignnotes:Websitecontainsinstructions

CGIstocreatenewinstructionController’sinterface:•EXEC(DOScommands)•TX(Fileupload)•RX(Filedownload)Directorystructu

re–eachinstanceTrojan“surfs”towebsite–justanormaluserwouldSetiri:AdvancesinTrojanTechnologyIIAnonymityProblemswithnormalpro

xiesAlreadyusingaproxyProxylogs“Cleaners”provideanonymity“Inbrowserproxy”–AnonymizerTrojan->Cleaner:SSLCleaner-

>Controller:SSLChallenges:BrowserhistoryTemporaryfilesDemonstrationTakingitfurtherSessionleveltunnelingFlowcontrolchallengesHowt

hisisdifferentfromHTTPtunnelingAbrowserisnotasocketNoselectonbrowserTrainmodelTheControllersideCannot“send”BufferingofdataatControll

erTheTrojansideMulti-partPOSTsMultipleconnections(HTTP)TruenetworkleveltunnelingSolvingthedilemmaDeliveryWhitel

istingUsereducationAV,personalfirewallsShouldyoualloweveryonetosurfthe‘net?ConclusionAwarenessOurmotivation

精品优选
精品优选
该用户很懒,什么也没有留下。
  • 文档 34925
  • 被下载 0
  • 被收藏 0
相关资源
广告代码123
若发现您的权益受到侵害,请立即联系客服,我们会尽快为您处理。侵权客服QQ:395972555 (支持时间:9:00-21:00) 公众号
Powered by 太赞文库
×
确认删除?