Attack Vectors, New and Old: How Hackers Bypass Office 365, and Why They’ll Start Targeting Slack

No ratings

Presented at SecureWorldSeattle 2019 by

The scale of migration to the cloud requires a strategic shift in collaboration security suites. The Office 365 inbox and user credentials are the #1 target for hackers. 90% of breaches start with email, and the security incident orchestration, automation, and response workload drains resources from the SOC team. Sharing insights from research, Jeff will demonstrate the techniques attackers use to bypass Microsoft’s defenses, fool filters, and launch attacks.Slack is an increasingly important tool for communication and sharing—but is it secure? The same malicious actors who have primarily focused on email have started to turn their attention here. Jeff will discuss key insights around this burgeoning attack vector, and what security pros can do about it.He will discuss how CISOs have started to adopt a continuous adaptive risk and trust assessment mindset to protect users across email and messaging from evolving threats, including phishing, account takeover, and business email compromise (BEC).Learning Objectives:1. Understand the typical attack methods specific to Microsoft Office 3652. Learn about the new attacks targeting Slack, and how to combat them3. Learn about the shared responsibility model with major vendors in relation to Zero Day and known threats4. Discern between the various tools available to help address preventative protection from advanced and evolving threatsPoints include data from extensive research on email-based phishing, spoofing, and malware, as well as account takeover, insider threats, and compromised credentials that have caused loss of sensitive data from organizations across the country.