脆弱性安全-结构性安全模板课件

上传人:txadgkn****dgknqu... 文档编号:240943191 上传时间:2024-05-19 格式:PPTX 页数:66 大小:1.48MB
返回 下载 相关 举报
脆弱性安全-结构性安全模板课件_第1页
第1页 / 共66页
脆弱性安全-结构性安全模板课件_第2页
第2页 / 共66页
脆弱性安全-结构性安全模板课件_第3页
第3页 / 共66页
点击查看更多>>
资源描述
1安全与可信security and trusted脆弱性安全脆弱性安全 vs.结构性安全结构性安全Vulnerability vs.Structure攻防两端如何在结构性安全环境中寻求空间Space in the structural environment1安全与可信security and trusted脆弱2摘要Summary脆弱性安全Vulnerability-oriented security结构性安全Structural security结构性安全中的脆弱性Vulnerabilities in structures结构性威胁Structural threats2摘要Summary脆弱性安全Vulnerability-o3脆弱性安全Vulnerability-oriented security3脆弱性安全Vulnerability-oriented 4脆弱性Vulnerabilities弱口令 simple password病毒 virus操作系统漏洞 OS flaw协议漏洞 protocol flaw造成拒绝服务攻击的性能限制performance limitation防火墙配置不当 bad configuration of firewalls 4脆弱性Vulnerabilities弱口令 simple 5面向脆弱性的安全Vulnerability-oriented security防病毒系统 anti-virus system漏洞扫描系统 vulnerability scanner补丁管理系统 patch management system入侵检测系统 IDS防拒绝服务攻击系统 anti-DoS防火墙 Firewall多功能安全网关 UTM 5面向脆弱性的安全Vulnerability-orient6PSPC需求驱动筐架Requirement Driven BaCaMeth需求筐架Req.BCM.来自内部From Internal来自外部From External主动引导Active体系化体系化Systematic政策性政策性Policy被动要求Passive问题型问题型Problem合规性合规性Compliance6PSPC需求驱动筐架Requirement Dr7面向脆弱性的风险管理Vulnerability-oriented risk management7面向脆弱性的风险管理Vulnerability-orie8国家标准中的风险管理关系图Risk management elements in Chinese standard8国家标准中的风险管理关系图Risk management9最精简的风险管理要素模型3-element risk management model9最精简的风险管理要素模型3-element risk 102006 SC AwardsBest anti-malware solution Best Anti-spyware Best Anti-trojan Best Anti-virus Best Anti-worm Best Content Security Solution Best Anti-spam Best Email Content Filtering Best Email Security Best IM security Best Intellectual Property Protection Best Network Security Solution Best Wireless Security Best Enterprise Firewall Best Intrusion Detection Best Intrusion Prevention Best Desktop Firewall Best Remote Access Best VPN-SSL Best VPN-Ipsec Best Endpoint Security Solution Best Web Filtering Best Encryption Best Identity Management Solution Best Password Management Best Authentication Best Single Sign-on Best Two-Factor Solution Best Unified Threat Solution Best Integrated Security Software Best Integrated Security Appliance Best Managed Security Service Best Email Managed Service Best Network Security Management Best Event Management Best Computer Forensics Best Policy Management Best Security Audit Best Security Management Tool Best Vulnerability Assessment and Remediation Best Patch Management Best Vulnerability Assessment Source from:http:/ SC AwardsBest anti-malw11脆弱性安全的产业环境Vulnerability-oriented security industrial environment威胁方Threat agents厂商Provider用户User11脆弱性安全的产业环境Vulnerability-ori12木桶原理的迷失Misleading of Cask Rule误导将整体结构仅仅简化为防御结构不考虑防御纵深问题只考虑静态的结果状态没有成本观念 MisleadingOnly consider prevention structureNot consider deep preventionOnly consider static stateNot consider cost-effective 12木桶原理的迷失Misleading of Cask R13结构性安全Structural security基本结构basic structure紧密结构 tight structure松散结构loose structure13结构性安全Structural security基本结14访问控制的RM机制Reference monitor of access control访问控制的RM机制是非常基本的安全结构Reference monitor of access control is a very basic security structure14访问控制的RM机制Reference monitor 15RM机制有效的结构性条件Structural conditions of valid RM mechanism三个条件不能被绕过不可篡改足够小,可以被证明3 conditions of VRMCan not be bypassCan not be tamperedBe small enough,can be proved15RM机制有效的结构性条件Structural cond16Randomly GeneratedSymmetric Key(seed+PRNG)AlicePublickeyPrivatekeyPrivate keyPublic keyBob密钥交换过程密钥交换过程Key Exchange ProcessmessageX15/ow83h7ERH39DJ3HmessageX15/ow83h7ERH39DJ3H16Randomly GeneratedAlicePubli17紧密安全结构的代表可信计算Tight security structure Trusted Computinghttp:/www.trustedcomputinggroup.org可信的定义 Definition of trust可信就是,一个设备的行为是按照其预期目标和指定方式执行的Trust is the expectation that a device will behave in a particular manner for a specific purpose.一个可信平台应当至少提供三个基本特性:保护能力、完整性测量和完整性报告A trusted platform should provide at least three basic features:protected capabilities,integrity measurement and integrity reporting.(From section 4.1,TCG Architecture Overview 1.0)17紧密安全结构的代表可信计算Tight securi18TCG的基石性原理Fundamental rule of TCG信任根就像“公理”一样,是信任的基础。在PC系统中,常常用硬件芯片实现。Roots of trustIn TCG systems roots of trust are components that must be trusted because misbehavior might not be detected.信任链则是信任传递的机制。常常采用密码技术。Chains of trustTransitive trust also known as“Inductive Trust”,is a process where the Root of Trust gives a trustworthy description of a second group of functions.18TCG的基石性原理Fundamental rule o19一个包含TPM的PCReference PC platform containing a TCG TPM19一个包含TPM的PCReference PC plat20TCG 可信平台模块TCG Trusted Platform Module(TPM)一个可信平台常常拥有三个可信根There are commonly three Roots of Trust in a trusted platform测量可信根 root of trust for measurement(RTM)存储可信根 root of trust for storage(RTS)报告可信根 root of trust for reporting(RTR)20TCG 可信平台模块TCG Trusted P21证明协议和消息交换Attestation protocol and message exchange21证明协议和消息交换Attestation protoc22TPM 存储可信根的体系结构TPM Root of Trust for Storage(RTS)22TPM 存储可信根的体系结构TPM Root 23TPM 部件体系结构TPM component architecture23TPM 部件体系结构TPM component arc24TCG 软件分层TCG software layering24TCG 软件分层TCG software layeri25可信平台的生命周期The trusted platform lifecycle25可信平台的生命周期The trusted platfo26可信平台上的用户认证User authentication using trusted platforms 26可信平台上的用户认证User authenticati27可信平台上的用户认证User authentication using trusted platforms27可信平台上的用户认证User authenticati28经典的四角模型The classical four corners model28经典的四角模型The classical four c29四角模型的可信平台实现Detailed TP deployment architecture29四角模型的可信平台实现Detailed TP depl30TCG对于可信计算平台的划分8 categories of Trusted platform体系结构体系结构体系结构体系结构ArchitectureArchitectureArchitectureArchitectureTPMTPMTPMTPM移动设备移动设备移动设备移动设备MobileMobileMobileMobile客户端客户端客户端客户端PC ClientPC ClientPC ClientPC Client服务器服务器服务器服务器ServerServerServerServer软件包软件包软件包软件包Software StackSoftware StackSoftware StackSoftware Stack存储存储存储存储StorageStorageStorageStorage可信网络连接可信网络连接可信网络连接可信网络连接Trusted Network ConnectTrusted Network ConnectTrusted Network ConnectTrusted Network Connect30TCG对于可信计算平台的划分8 categories 31TCG的IWG和TNC的对应关系the IWG and TNC architecture31TCG的IWG和TNC的对应关系the IWG and32TNC体系结构TNC architecture32TNC体系结构TNC architecture33TNC体系结构下的消息流Message flow between components33TNC体系结构下的消息流Message flow be34拥有TPM的TNC体系结构The TNC architecture with the TPM34拥有TPM的TNC体系结构The TNC archit35思科的自防御网络体系Ciscos self-defending network35思科的自防御网络体系Ciscos self-defe36思科的自防御网络体系Ciscos self-defending network36思科的自防御网络体系Ciscos self-defe37松散安全结构的代表框架和方案Loose security structure Framework松散结构中的各个部件关联关系,常常靠人的集成来实现The connection among the components of loose structure is always integrated by human.松散结构常常表现为框架Framework技术框架Technology framework管理体系Management systemISO27001,ISO20000,etc.37松散安全结构的代表框架和方案Loose secur383839技术功能是PDR的衍生PDR can express technology framework39技术功能是PDR的衍生PDR can express 40检测能力是松散技术结构的关联要素Detection make the loose structure tight攻击者不得不面对越来越多的Attackers have to face more入侵检测 IDS漏洞扫描 scanner应用审计系统 Application auditing system日志系统 log system蜜罐 honey pot取证系统 forensic system监控平台 monitoring platform等等 etc.40检测能力是松散技术结构的关联要素Detection m41一个信息安全管理体系的结构Structure of a ISMS(modified ISO27001)41一个信息安全管理体系的结构Structure of a42结构性安全中的脆弱性Vulnerabilities in structures42结构性安全中的脆弱性Vulnerabilities i43你对刚才阐述的结构性安全有什么感觉?Whats your feeling about structural security?复杂 complex怀疑其完备性 concern about the completion成本 cost蠢人永远有 stupid guys are there 43你对刚才阐述的结构性安全有什么感觉?Whats yo44不要被“结构性安全”给忽悠了!Do not be misled by structural security不要被“结构性安全”给忽悠了!脆弱性安全和结构性安全并不是对立的,也不是两个发展阶段;脆弱性安全也有结构,结构性安全也有脆弱性。Do not be misled by structural securityVulnerability-oriented security also has structureStructural security also has vulnerabilities44不要被“结构性安全”给忽悠了!Do not be mi45借助非技术环节来侵害技术结构Find vulnerabilities from non-technology partsRandomly GeneratedSymmetric Key(seed+PRNG)AlicePublickeyPrivatekeyPrivate keyPublic keyBob45借助非技术环节来侵害技术结构Find vulnerab46借助非技术环节来侵害技术结构Find vulnerabilities from non-technology partsRandomly GeneratedSymmetric Key(seed+PRNG)AlicePublickeyPrivatekeyPrivate keyPublic keyBobPrivate keyPublic keyCarl线路的透明插入,可以完成对于加密通信的嗅探攻击46借助非技术环节来侵害技术结构Find vulnerab47借助非技术环节来侵害技术结构Find vulnerabilities from non-technology partsRandomly GeneratedSymmetric Key(seed+PRNG)AlicePublickeyPrivatekeyPrivate keyPublic keyBobPrivate keyPublic keyCarl47借助非技术环节来侵害技术结构Find vulnerab48结构性安全的局限性Limitation of structural security结构是在环境中的、有边界的environment and boundary48结构性安全的局限性Limitation of stru49在生命周期中寻找弱点 Find vulnerabilities along the lifecycle厂家的生产环节常常会埋有后门back doors embedded during manufacturing没有一个系统是完美的No perfect system 49在生命周期中寻找弱点 Find vulnerabili50在结构的时序中寻找突破Find vulnerabilities through time sequence以文档保密系统为例Sample:Document protection system文档的生成环节最可能存在漏洞Vulnerabilities during creating documentation50在结构的时序中寻找突破Find vulnerabili51结构性安全的局限性Limitation of structural security结构是在环境中的、有边界的environment and boundary在不同阶段、不同人手中保持安全很困难different phases and organizations51结构性安全的局限性Limitation of stru52在人性中寻找弱点Find vulnerabilities from human behavior社交工程攻击Social Engineering隐私保护Privacy protection自由倾向Anti-DRM懒惰Lazy 52在人性中寻找弱点Find vulnerabilitie53结构性安全的局限性Limitation of structural security结构是在环境中的、有边界的environment and boundary在不同阶段、不同人手中保持安全很困难different phases and organizations人把科学变成了艺术Human transform science to art53结构性安全的局限性Limitation of stru54结构本身可能就有问题Find vulnerabilities from structure itself54结构本身可能就有问题Find vulnerabilit55对于AR/PEP/PDP的伪装,可能打破整个结构every role may be spoofed所有看似漂亮的结构,其性能和可用性问题可能会非常严重,会轻易被拒绝服务攻击击垮Most beautiful structures have performance and availability problems and may be easy to be kick down by DoS.那么多传统攻击方式,可能有的还有效Some traditional attacks are still effective结构本身可能就有问题Find vulnerabilities from structure itself55对于AR/PEP/PDP的伪装,可能打破整个结构结构本身56结构性安全还要继续博弈We are still in the game怎么博弈?How to Play the game?你了解对方的结构吗?Do you know the structure of all players?你了解对方了解多少自己的结构吗?Do you know“how much have the other player known about your structure”?56结构性安全还要继续博弈We are still in 57结构性威胁Structural threats知识、资源和原则Knowledge,Resources and Principles57结构性威胁Structural threats知识、资58知识Knowledge寻求对于系统更深层次技术结构的研究Who know lower?寻求对于系统宏观结构的了解Who know the macro-structure better?寻求对于具体对象的全面了解How many details do you know?58知识Knowledge寻求对于系统更深层次技术结构的研59资源Resources从分布式拒绝服务攻击到僵尸网络,掌握具有结构和组织的攻击体Botnet is a sample of structural software organization for attacking在时序上组成结构,非常有利于攻击Time sequence spreading is a good thinking of structural attack 59资源Resources从分布式拒绝服务攻击到僵尸网络,60结构的一些关键字Key words of structureBusinessDistributionHierarchyTime sequenceLife-cycleManagementOrganizationRegularProcess ControlValue业务分布式层次时序生命周期管理组织制度过程控制价值60结构的一些关键字Key words of struct61流程化的结构思路Process-oriented structureprocessprocessprocessprocessinputinputinputinputoutputoutputoutputoutputProcess ownerProcess ownerProcess ownerProcess owneroperatoroperatoroperatoroperatorInfra-Infra-Infra-Infra-structurestructurestructurestructureKnowledgeKnowledgeKnowledgeKnowledgebasebasebasebaseLOGLOGLOGLOGArchiveArchiveArchiveArchiveProcessProcessProcessProcessimprovingimprovingimprovingimprovingMonitorMonitorMonitorMonitor61流程化的结构思路Process-oriented st62原则Principles安全没有百分之百 No 100%Security安全相对性的三个原则 3 security relativity rule生存原则 survival rule风险原则 Risk rule保镖原则 bodyguard rule自身完备性要求Perfective requirement62原则Principles安全没有百分之百 No 10063总结 Conclusion脆弱性安全Vulnerability-oriented security结构性安全Structural security结构性安全中的脆弱性Vulnerabilities in structures结构性威胁Structural threats63总结 Conclusion脆弱性安全Vulnerabil64总结:一个可以持续研究下去的课题Conclusion:A good problem to keep approaching脆弱性防御脆弱性防御V.O.defend结构性防御结构性防御Structuraldefend脆弱性攻击脆弱性攻击V.O.attack结构性攻击结构性攻击Structuralattack脆弱性和结构性 Vulnerability-oriented vs.structural攻击和防守 defend vs.attack64总结:一个可以持续研究下去的课题Conclusion:65谢谢Thanks65谢谢Thanks6666
展开阅读全文
相关资源
相关搜索

最新文档


当前位置:首页 > 办公文档 > 教学培训


copyright@ 2023-2025  zhuangpeitu.com 装配图网版权所有   联系电话:18123376007

备案号:ICP2024067431-1 川公网安备51140202000466号


本站为文档C2C交易模式,即用户上传的文档直接被用户下载,本站只是中间服务平台,本站所有文档下载所得的收益归上传人(含作者)所有。装配图网仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对上载内容本身不做任何修改或编辑。若文档所含内容侵犯了您的版权或隐私,请立即通知装配图网,我们立即给予删除!