Defense Evasion Modeling

BSidesLV 2013

Presented by: Francisco Artes
Date: Thursday August 01, 2013
Time: 15:00 - 15:50
Location: Florentine A
Track: Breaking Ground

Cybercriminals persistently challenge the security of organizations through the rapid implementation of diverse attack methodologies, state of the art malware, and innovative evasion techniques. In response organizations deploy and rely on multiple layers of diverse security technologies. This talk examines the “kill chain” and the measured effectiveness of typical defense technologies such as Next Generation Firewalls, Intrusion Prevention Systems IPS, Antivirus/Malware Detection, and browsers internal protection. Empirical data on the effectiveness of security products derived from NSS Labs harsh real world testing is presented together with a live demonstration of successful evasion of malware detection. We find a considerable gap of protection levels within/and across different security product groups. The presentation will be backed up with a paper to be made available to attendees.

Francisco Artes

Francisco Artes is a recognized information security executive who has helped form many of the best practices for securing intellectual property within the computer gaming, motion picture, and television industries. Mr. Artes is also know for his work on cybercrime, hacking, and forensic security issues with various federal, state and local government and law enforcement agencies such as the US Dept. of Homeland Security, FBI, Texas Rangers, and US Marshals. Prior to his appointment as Research Director with NSS Labs, Mr. Artes most recently served as Vice President, Chief Architect / Content Protection for Trace3, and as Vice President, Security Worldwide for Deluxe Entertainment Services Group. Mr Artes has presented on six of the seven continents, and serves on several boards.


KhanFu - Mobile schedules for INFOSEC conferences.
Mobile interface | Alternate Formats