Informatics Havana 2022

Conference: Lack of management and overconfidence “There is no insurmountable control and no intimidated adversaries”

Tomado de / Autor: Dirección de Comunicación Institucional
13 de March de 2024

Lack of management and overconfidence “There is no insurmountable control and no intimidated adversaries”, por MSc. Eduardo Chavarro Ovalle, Colombia. Proposal for a conference which will take place in the sessions of 16th Ibero-American Seminar on Information Technology Security, at the International Convention and Fair Informática 2024.

During the analysis of BEC (Business Email Compromise) incidents, we identified the compromise of email accounts using multiple techniques and taking advantage of different configuration and management weaknesses. Incidents that allowed attackers to transfer hundreds of thousands of dollars by impersonating critical people; but according to our research, mainly taking advantage of the trust and “liability discharge” that many users and IT administrators generate in the multi-factor authentication control. We will present incident scenarios, study frameworks used by attackers and some security recommendations for handling additional authentication controls.

This year’s edition of the Ibero-American Seminar on Information Technology Security, with the slogan “Computerizing society in a secure way,” will present the experiences and research carried out in the field of cybersecurity. It will be a meeting between members of the Ibero-American community of scholars, businesspeople, students and representatives of national and international organizations, where they will discuss and exchange experiences, serving as a platform to broaden the knowledge of the participants and strengthen the relationships among them.

How to take part?

Informática 2024 conceives the possibility of participation in the face-to-face and online modalities at its Scientific Convention and virtually at the Exhibition Fair.

Know the forms of participation in each one.