06.02.2015 Views

Russian Business Network study - bizeul.org

Russian Business Network study - bizeul.org

Russian Business Network study - bizeul.org

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Version 1.0.1<br />

RBN <strong>study</strong> – before and after<br />

David Bizeul<br />

Mitigation strategies<br />

This chapter is composed of two parts applying the precept “think big, act small”.<br />

4. Think big to understand the threat impact and to predict evolution<br />

Considering bank issues, a merge of all elements exposed in this document can be represented on the following<br />

picture:<br />

This figure shows that victim is at the center of this puzzle. This victim has a trust relation with his bank but this trust<br />

relation can be eroded because of malware/phishing. Those malicious activities are located on hosting companies.<br />

Some of these companies are legitimate companies but they lack in control/detection system. Some of these companies<br />

are bad companies dedicated to provide bullet proof services so that it can be a shelter for malicious activities.<br />

45

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!