مركز م ديريت ا مداد و ه ماهنگي عمليات ر خدادهاي ر...

Click here to load reader

Upload: sine

Post on 08-Feb-2016

91 views

Category:

Documents


0 download

DESCRIPTION

مركز م ديريت ا مداد و ه ماهنگي عمليات ر خدادهاي ر ايانه اي ( ماهـــر ). اقدام شماره 2-4 سند راهبردي امنيت فضاي توليد و تبادل اطلاعات (افتا) دهم اسفند سال 1387. اهداف مرکز ماهر. ایجاد یک نقطه کانونی در سطح ملی برای انجام فعالیت های هماهنگ راهبری رخدادهای فضای تبادل داده - PowerPoint PPT Presentation

TRANSCRIPT

Slide 1

2

( )3 2-4 () 1387

4 ( ) ( www.Certcc.ir )5 IP : 6 7 : 16217 90 12606 91 : 1547 ( ... ) 90 2645 ( ... ) 91 www.Certcc.ir

8 9 90 424 54 91 . .

91 96% 97% 99% 100% . 10 Wiper (Flame) Madi Shamoon Mini Flame New Wiper 11 ( 40 ) ( 200 ) 10

Large infra has more botnet but iran . , web app with vul , isp with no attention to malware removal , lack of regulation , clients infection versus servers ,200$ per day for 100G traffic with 120000 clients rent1213 : .

2000 ( )200

14DNS reflection attack

15DrDOS exploit dns protocol in 3 steps : spoofing target IP address , find dns servers that have open resolver , request to dns with lots of attributes about Q and send lots of traffic to target15 CERT hack & deface 16

8800

1100 91

30 91

17 ( www.Certcc.ir )18 ( ) 1750 970 90 100 140

WWW.Certcc.ir 20 () () () 4 - - - () 13 6 90 91 CERT CERT OIC-CERT (CERT ) IMPACT CERT

CERT :Computer Emergency Response TeamOIC-Cert : Organization of Islamic Cooperation CERTIMPACT : International Multilateral Partnership Against Cyber Threats 21 22 ( ) 23 24

25