Hey! Your database got pwned

Presented at Kernelcon 2022, April 1, 2022, 11:15 a.m. (20 minutes).

A data breach is an organization's worst nightmare. Your databases can be used as a pivot to infiltrate the organization or may be the target to exfiltrate sensitive data. In this talk we will explore different exploitation techniques used by attackers to attack databases. We will dive into practical real life examples captured by our honeypots around the world and present advanced detection approach to identify attacks such as: ransom and crypto mining campaigns, malware deployment, distributed brute-force attacks, evasion techniques and slow & low exfiltration.

Presenters:

  • Islam Heralla - Imperva
    Islam is a computer security expert , Graduated from University at the age of 16 - holds a B.Sc in Computer Science and Mathematics. Experienced with security research in the areas of cloud and database. 17 years of experience in multidisciplinary software development with a proven track record.

Links:

Similar Presentations: