[SQL|FTP|Cache] Malicious data Injection in drive-by downloads

Symposium Plenary

Tuesday — March 27th, 2012 14:30

Drive-by downloads are one of the most common infection vectors nowadays. There are thousands of infected webpages that are continuosly trying to infect their visitors. But which are the main methods of infecting those pages? We'll have a quick look to the most used methods, and examine in detail one additional method that we haven't seen in the wild, but we could probably see it in a near future: web cache infection.

Presenters

  • David Berrueta (Telefonica, ES) ES

    David Barroso is currently Head of Cybersecurity Intelligence at Telefonica Digital. Prior to joining Telefonica, he was the AT&T Security coordinator for Spain & Portugal and the S21sec e-crime Director leading all the efforts fighting against cybercrime and helping companies to prevent and respond to any threat. David is a frequent speaker on security, mobile, cybercrime, botnets, malware, underground economy, CIP, and other topics, and he has participated in many conferences around the world, sharing his knowledge about security in events like BlackHat, RSA Conference, e-crime congress, APWG, FIRST, NATO, ENISA, RootedCon, ICCyber, among others.