18
A SEMINAR PRESENTATION ON BY :HEMANT MITAL

Heartbleed

Embed Size (px)

Citation preview

Page 1: Heartbleed

A SEMINAR PRESENTATION ON

BY :HEMANT MITAL

Page 2: Heartbleed
Page 3: Heartbleed

04/17/23

Page 4: Heartbleed

04/17/23

Page 5: Heartbleed

04/17/23

Page 6: Heartbleed
Page 7: Heartbleed
Page 8: Heartbleed
Page 9: Heartbleed
Page 10: Heartbleed
Page 11: Heartbleed
Page 12: Heartbleed
Page 13: Heartbleed
Page 14: Heartbleed

04/17/23

Page 15: Heartbleed

What else?

● Most Android devices are vulnerable.

● iOS and Mac OSX are not vulnerable.

-but some 3rd party iOS apps are.

● Most Linux browsers are probably

vulnerable.

Page 16: Heartbleed

WHAT ELSE ?• IP phones

• Routers

• Medical devices

• Smart TV sets

• embedded devices

Page 17: Heartbleed

Safe(r) Browsers● Firefox, Chrome, and IE (on Windows) use

the Microsoft implementation of SSL not OpenSSL.

● Internet Informations Server/Services (IIS) are not vulnerable.

Page 18: Heartbleed

What is Information Security doing?

● Continuous monitoring for this vulnerability with both IDS and IPS devices.

● Vulnerability scans. - not as effective since it's a snapshot in time but a good starting point.