Thursday 2014-04-10

Some random notes for a network security basics talk for upper high school students, related to an IB case study.

  1. Defense
    1. Perimeters around us = classroom, skin, blood-brain barrier
    2. Defense in Depth = from Krak des Chevaliers to Vauban's Neuf-Brisach
    3. Sieges = DoS
    4. Kill Zones = Firewalls
    5. Force Multiplication = Tarpitting / Greylisting
    6. Fabian tactics = Honeypot
    7. Collapsible Vauban defense = Automated BGP DDoS filter w/ upstreams
    8. Window of Attack = time to accomplish tasks (dl data, wreck data, wreck centrifuges ;)
  2. Offense
    1. Siege Engines = Reflection + Amplification
    2. Subversion of control = Buffer overflow, sqli, hacked-certware
    3. Vuln detection = Scanning, fuzzing, static analysis
    4. Genghis Khan sieged cities so ppl can't leave, then catapulted in plague victims =? Crypto Locker