电子文档交易市场
安卓APP | ios版本
电子文档交易市场
安卓APP | ios版本
换一换
首页 金锄头文库 > 资源分类 > PPT文档下载
分享到微信 分享到微博 分享到QQ空间

别让垃圾邮件成为资讯安全漏洞

  • 资源ID:57312379       资源大小:6.33MB        全文页数:16页
  • 资源格式: PPT        下载积分:20金贝
快捷下载 游客一键下载
账号登录下载
微信登录下载
三方登录下载: 微信开放平台登录   支付宝登录   QQ登录  
二维码
微信扫一扫登录
下载资源需要20金贝
邮箱/手机:
温馨提示:
快捷下载时,用户名和密码都是您填写的邮箱或者手机号,方便查询和重复下载(系统自动生成)。
如填写123,账号就是123,密码也是123。
支付方式: 支付宝    微信支付   
验证码:   换一换

 
账号:
密码:
验证码:   换一换
  忘记密码?
    
1、金锄头文库是“C2C”交易模式,即卖家上传的文档直接由买家下载,本站只是中间服务平台,本站所有文档下载所得的收益全部归上传人(卖家)所有,作为网络服务商,若您的权利被侵害请及时联系右侧客服;
2、如你看到网页展示的文档有jinchutou.com水印,是因预览和防盗链等技术需要对部份页面进行转换压缩成图而已,我们并不对上传的文档进行任何编辑或修改,文档下载后都不会有jinchutou.com水印标识,下载后原文更清晰;
3、所有的PPT和DOC文档都被视为“模板”,允许上传人保留章节、目录结构的情况下删减部份的内容;下载前须认真查看,确认无误后再购买;
4、文档大部份都是可以预览的,金锄头文库作为内容存储提供商,无法对各卖家所售文档的真实性、完整性、准确性以及专业性等问题提供审核和保证,请慎重购买;
5、文档的总页数、文档格式和文档大小以系统显示为准(内容中显示的页数不一定正确),网站客服只以系统显示的页数、文件格式、文档大小作为仲裁依据;
6、如果您还有什么不清楚的或需要我们协助,可以点击右侧栏的客服。
下载须知 | 常见问题汇总

别让垃圾邮件成为资讯安全漏洞

Building Trust in Computing,Bill Gates Chairman & Chief Software Architect Microsoft Corporation,別讓垃圾郵件成為資訊安全漏洞 - 談微軟訊息平台最新反垃圾郵件技術,June 21, 2005Kirwin Chen 陳國豪 Regional Program Manager Microsoft Taiwan - R&D,The Technology Landscape,DMZ,Update Services,Internet,Hosted Services,Client Solutions Software resides on client, filters mail as read by the mail client.,Enterprise Solutions Software targets mail servers (e.g. Exchange, Lotus), filters mail prior to delivering to mailboxes. Typically mail server add-ons.,Gateway Solutions Software targets gateway devices, filters spam and viruses, blocks IP addresses, performs reverse DNS lookups. Often dedicated HW appliance.,Hosted Services Pre-process mail prior to delivery to customers, filters spam and viruses from mail. Prevents domain harvesting attacks.,Update Services Deliver anti-virus and anti-spam filter updates to gateway, enterprise, and client-side solutions. Always a component of another solution.,SMTP Gateway,SMTP Gateway,Mailbox Servers,Mail Client,Mail Client,Mail Client,多層次的 E-Mail 篩選策略,Outlook 收件匣,Outlook 垃圾郵件資料匣,1. 連線篩選,2.寄件者/收件者篩選,3. 智慧郵件篩選 IMF,內送網際網路電子郵件,Spam filtering with Challenge Response,SPAM,Internet,GOOD,Highly Probable Spam,Probable Spam,Good email,Spam sent to Junk Mail Folder,Subset of mail challenged and quarantined in Quarantine Folder,Only Safe list mail sent to Inbox,“Grey” Mail,False Positives are now rescued & reduced,ATS Spam Filter,IMF 垃圾郵件管理中心,Challenge Response Flow - Sample,Challenge Response Flow - Sample,Challenge Response mail flow view,1,2,3,Internet,SMTP Gateway,Mailbox Servers,Receiving Mail Client,Internet,SMTP Gateway,Mailbox Servers,Internet,SMTP Gateway,Mailbox Servers,Real mail or spam is sent to a user.,If highly suspect mail then challenge is sent back to sender. This will happen automatically. Sender then has to complete either a computational challenge or HIP puzzle.,The sender solves the challenge and the message is returned to the original recipient and the mail is delivered. Future mail from sender is let through if the recipient safe lists him/her.,Receiving Mail Client,SPAM,SPAM,Receiving Mail Client,Phishing - The Current Landscape,Citibank, e-Bay and Paypal the prime target of phishers1,2,Total Phishing attacks increased from 47/day in March 2004 to 415/day in June 2004192% of all Phishing attacks occurred in the last 12 months376% of all attacks happened in the last 6 months,Number of new phishing attacks (new sites to scam) went up from 10/day to 40/day between Feb to May 20041,Financial Sector the prime target of phishers2 Attack on web retailers increasingPhishing scams direct cause of $1.2 B in the last 12 months3,Data Source Legend 1. Anti-Phishing Working Group 2. HM Feedback Loop Analysis 3. Gartner Group,Phishing Attacks,1,Most Targeted Companies,2,3,Unique Phishing Attacks by Industry Segment,4,Unique Phishing Attacks per day,Key Choke Points for Phishing Attacks,Target key choke points on the network to protect customers from phishing scam mails and phishing sites on the internet,95% of phishing attack from spoofed domains10.2% of all mail on the internet is phishing related27% of all purported mails from top 5 targeted institutions are phishing based2,Data Source Legend 1. Anti-Phishing Working Group 2. HM Feedback 3. Brightmail Anti-Fraud Statistics,5% of recipients get scammed into sharing their PII by the phishing emails1,3.52 billion phishing messages blocked in June 20043,40 unique phishing sites are detected each day1,Current Email Tricks,1,2,Domain Spoofing,Subject Line Deception,3,Brand Fraud Content Deception,4,Deceptive URLs (“fool-the-eye” URLs),The domain listed is of “Barclays Bank” - actually sent by phisher,Subject line is misleading,Fraudulent content displays brand images of Barclays bank,URL listed includes Barclays,61% of phishing email detected in hotmail involve domain spoofing,93% of phishing email detected in hotmail have in their subject line the name of an institution and a request for data,24% of phishing email detected in hotmail involve genuine looking content,100% of phishing emails contain URLs, 2% contain good URLS that point to bad sites,Data Source: HM feedback loop sample of 500 messages from Jan-April 2004,Phishing messages have an average of 2.78 tricks per message,Current Browser Tricks,2,Similar URL to actual URL,1,Genuine Looking Content,3,Incorrect URL,4,Deceptive Address Bar ( “chromeless window”),http:/123.456.789/paypal,Paypal brand logo,Javascript overlays actual URL with hidden window,http:/www.security-yahoo.com,Current Browser Tricks (cont.),6,Fraudulent Forms,5,Two windows fraudulent Pop Up Window,Fraudulent Pop-up sits on top of valid Citibank site,Forms seem like real Paypal forms,Note Trusted Logos,Phishing Lifecycle,STS Email Filter Overview,SmartScreen combined Phishing, Sender ID, Spam filterFilter returns three separate ratings for Anti-Phishing, Sender ID, and SpamUses combined data file User experience is owned by Hotmail Hotmail will take the separate outputs and decide on overall deliver/move/delete action for a messageAnti-Phishing filter detects suspect URLs in message Extracts embedded URLs Canonicalizes URLs Attempts to match URLs against safe/block list (does rollup) Detects URL tricks (%00, %01, and name. tricks) Uses simple rules to combine list matches and tricksAllow/Block URL list Stored in common resource containing spam, Sender ID, and Anti-phishing data Complete filter updates sent by STS to Hotmail frequently Based on new data arriving from 3rd parties and partners,

注意事项

本文(别让垃圾邮件成为资讯安全漏洞)为本站会员(j****9)主动上传,金锄头文库仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对上载内容本身不做任何修改或编辑。 若此文所含内容侵犯了您的版权或隐私,请立即阅读金锄头文库的“版权提示”【网址:https://www.jinchutou.com/h-59.html】,按提示上传提交保证函及证明材料,经审查核实后我们立即给予删除!

温馨提示:如果因为网速或其他原因下载失败请重新下载,重复下载不扣分。




关于金锄头网 - 版权申诉 - 免责声明 - 诚邀英才 - 联系我们
手机版 | 川公网安备 51140202000112号 | 经营许可证(蜀ICP备13022795号)
©2008-2016 by Sichuan Goldhoe Inc. All Rights Reserved.