Hiding in plain sight: How sub domain attacks use your email authentication against you

Tuesday
 
26
 
November
11:35 am
 - 
12:15 pm

Speakers

Bradley Anstis

Bradley Anstis

Cyber Security Specialist
Cisco Systems

Synopsis

Analysts and security specialists/architects alike have been pushing organizations to become DMARC complaint, to deploy email authentication to ensure their legitimate email has the best chance of getting to the intended recipients and for them to be quickly notified of any unauthorised usage of their domains – let them know they are being spoofed.

This session will quickly explain the benefits of being DMARC compliant and what that involves, the basics of DMARC, SPF & DKIM as well as how it is normally achieved.

We will then explain what these Sub Domain attacks are all about, how the attackers are using an organizations complacency on deploying email authentication and being DMARC Compliant against them and what the organisation can do about it.

These attacks have seen widespread success with many very well-known brands being taken advantage of, we will cover what has happened in some of these attacks and the impact it had to those organisations.

Finally, the other aspect of these attacks is the innovation in security products that they have to drive, DMARC compliant organisations will likely rely on a well-known DMARC reporting tool to help become and stay DMARC compliant – we will explain how these tools need to evolve to stay ahead of this widening issue.

Acknowledgement of Country

We acknowledge the traditional owners and custodians of country throughout Australia and acknowledge their continuing connection to land, waters and community. We pay our respects to the people, the cultures and the elders past, present and emerging.

Acknowledgement of Country