This video is unavailable.
Opening the email that was used to hack RSA
Sign in to YouTube
Sign in to YouTube
Sign in to YouTube
Uploaded on Aug 26, 2011
In this video you can see us opening the very email that was used to break into RSA / EMC in March 2011. The email is opened to Outlook and the attachment is launched. The attachment is an XLS file which has no content except an embedded flash object. The object shows up as a [X] symbol in the spreadsheet. Flash is executed by Excel and it uses the CVE-2011-0609 vulnerability to execute code and to drop a Poison Ivy backdoor to the system. After this, the exploit code closes Excel and the infection is over. After this, the attacker has full remote access to the infected workstation and full access to network drives that the user can access. Video done by F-Secure Labs
-
Category
-
License
Standard YouTube License
Loading...
Loading...
Loading...
Loading...
-
31:23
8 PLAYER FFA WITH FANS! - FASTEST POSSIBLE MAP - StarCraft 2by HuskyStarcraftFeatured
663,190
-
3:48
Kabaret Moralnego Niepokoju - Odpadyby KabaSkeczyKM4
77,224 views
-
0:56
The Most Secure Security Code Everby morgunnenteprises
1,115,335 views
-
5:27
Minecraft: Simple Yet Effective SMP Trapby RedStormsAssassin
181,293 views
-
9:30
Poison Ivy Tutorialby littlesmokie1
77,022 views
-
2:34
Mila Kunis About WoWby UltimateWoWMaster
1,589,045 views
-
1:16:26
Information Security—Before & After Public-Key Cryptographyby ComputerHistory
63,974 views
-
46:25
The Cryptographers' Panel - Ari Juels - RSA Conference US 2013 Keynoteby RSAConference
5,126 views
-
22:49
Juniper Networks' Pradeep Sindhu: ChalkTalk on Software Defined Networks (SDN)by JuniperNetworks
15,410 views
-
7:18
Hack Wireless Wep with Ubuntuby organiser94
10,399 views
-
53:47
Lecture About RSA encryptionby Gary Rubinstein
15,606 views
-
42:20
RSA Conference 2011 - From White Hat to Black - The Curious Case of Cybercrime Kingpin, Max Visionby RSAConference
3,990 views
-
30:21
The Lifecycle of Cybercrime - Nicholas Percoco & Erik Rasmussen - RSA Conference US 2013 Keynoteby RSAConference
2,384 views
-
58:21
Token Security | TechSNAP 64by jupiterbroadcasting
1,529 views
-
29:19
CISSP Training - Cryptographyby palaestratraining
43,178 views
-
37:37
RSA Conference 2013 Panel-Advanced Persistent Threats and NIST SP 800-147 and NIST SP 800-155by TCGadmin
896 views
-
7:51
How do RSA SecurID tokens work? Signify CEO, Dave Abraham explainsby Signify2FA
26,831 views
-
1:46
Pendulum Wavesby NatSciDemos
8,538,754 views
-
31:23
Big Data Redefines Security - Arthur Coviello, Jr. - RSA Conference US 2013 Keynoteby RSAConference
1,700 views
-
0:56
Advance Fee Fraud (419) SMSby fslabs
10,590 views
- Loading more suggestions...
Top Comments
pathduck 1 year ago
Man, RSA are such noobs.
Sign in to YouTube
Sign in to YouTube
stupidjunk978 1 year ago
LOL, RSA fell for a scam that even my grandmother wouldn't be suckered in to. Poor practice indeed.
Sign in to YouTube
Sign in to YouTube
All Comments (16)
abvmoose87 5 months ago
do the infected computer have to have telnet service installed and active for this to work?
Sign in to YouTube
Sign in to YouTube
newlookmedia 1 year ago
That's what I've just sad !
This video is just reconstruction of behavior of email and user.
So! What does this user (F-secure worker) done ? NOTHING!
He or she must IGNORE this suspicious behavior and let this thing work in their internal network for next few days. Until someone discovered security break.
So !?
Is it possible? In fully secured company which workers live from building security software or ..
.. someone trying to feed us some shit to cover real circumstances of
Sign in to YouTube
Sign in to YouTube
newlookmedia 1 year ago
Ten film to lipa!
Gdzie w firmie zajmującej się ochroną antywirusową ten kto odebrał takiego maila zignorował by takie zachowanie arkusza !
Lepiej æeby poszukali sobie pracy na farmie na nie robili oprogramowanie do ochrony danych.
This video is FAKE !
If not then they must fire all F-secure workers and close company.
People who call themselfs security specialist and ignore that kind behavior ???!!!
They better look for jobs in farm! Not to sell security software.
Sign in to YouTube
Sign in to YouTube
hussanali 1 year ago
FS Labs sucks. XP Suck at security.
Sign in to YouTube
Sign in to YouTube
er00si 1 year ago
security is a dream?! no wonder we got all our RSA token replaced.
It is really funny, our IT shipped my colleague's token to me. Well, he got a token that was undocumented!!! The final solution was that we exchanged the token and our IT reassigned the undocumented token to me. LOL.
Sign in to YouTube
Sign in to YouTube