(130202) #fitalk china threat

26
FORENSIC INSIGHT; DIGITAL FORENSICS COMMUNITY IN KOREA China Threat UNFIXED [email protected]

Transcript of (130202) #fitalk china threat

Page 1: (130202) #fitalk   china threat

FORENSIC INSIGHT; DIGITAL FORENSICS COMMUNITY IN KOREA

China Threat

UNFIXED

[email protected]

Page 2: (130202) #fitalk   china threat

forensicinsight.org Page 2

Contents

1. Human-wave Strategy

2. Censorship

3. Black market

Page 3: (130202) #fitalk   china threat

forensicinsight.org Page 3

Human-wave strategy

Page 4: (130202) #fitalk   china threat

forensicinsight.org Page 4

2,405,518,376 273,785,413 538,000,000 40,329,660

출처 : http://www.internetworldstats.com

Page 5: (130202) #fitalk   china threat

forensicinsight.org Page 5

China's Internet users and Internet penetration rate

9400 11100

13700

21000

29800

38400

45730

51310

56400

7.2% 8.5%

10.5%

16.0%

22.6%

28.9%

34.3%

38.3%

42.1%

0%

5%

10%

15%

20%

25%

30%

35%

40%

45%

0

10000

20000

30000

40000

50000

60000

2004 2005 2006 2007 2008 2009 2010 2011 2012

인터넷 사용자 인터넷 보급율

※출처 :중국인터넷정보센터(CNNIC)

Page 6: (130202) #fitalk   china threat

forensicinsight.org Page 6

China's Mobile Internet users and Internet penetration rate

5040

11760

23344

30274

35558

41997

24.0%

39.5%

60.8%

66.2% 69.3%

74.5%

0%

10%

20%

30%

40%

50%

60%

70%

80%

0

10000

20000

30000

40000

50000

2007 2008 2009 2010 2011 2012

모바일 인터넷 사용자 규모 전체 인터넷 사용자중 모바일 인터넷 사용자 비율

※출처 :중국인터넷정보센터(CNNIC)

Page 7: (130202) #fitalk   china threat

forensicinsight.org Page 7

Online payment of number of users and usage

16676

22065

32.5% 39.1%

0%

20%

40%

60%

80%

100%

0

5000

10000

15000

20000

25000

2011 2012

온라인 결재 이용자 수 사용율

※출처 :중국인터넷정보센터(CNNIC)

Page 8: (130202) #fitalk   china threat

forensicinsight.org Page 8

Censorship

Page 9: (130202) #fitalk   china threat

forensicinsight.org Page 9

China vs. the others

Page 10: (130202) #fitalk   china threat

forensicinsight.org Page 10

Isolation?

출처 : yoony2.egloos.com

Page 11: (130202) #fitalk   china threat

forensicinsight.org Page 11

Technical implementation of The Great fire wall

HOW?

IP blocking

DNS filtering

and

redirection

URL filtering

Packet

filtering

Man-in-the-

middle

attack

Connection

reset

Network

enumeration

Page 12: (130202) #fitalk   china threat

forensicinsight.org Page 12

Internet censorship in the People's Republic of China

Page 13: (130202) #fitalk   china threat

forensicinsight.org Page 13

Black market

Page 14: (130202) #fitalk   china threat

forensicinsight.org Page 14

Black market for RMT

Page 15: (130202) #fitalk   china threat

forensicinsight.org Page 15

Black market for DDoS

Page 16: (130202) #fitalk   china threat

forensicinsight.org Page 16

Black market for DDoS

Page 17: (130202) #fitalk   china threat

forensicinsight.org Page 17

Black market for DDoS

Page 18: (130202) #fitalk   china threat

forensicinsight.org Page 18

Black market for DDoS

Page 19: (130202) #fitalk   china threat

forensicinsight.org Page 19

nondisclosure

Page 20: (130202) #fitalk   china threat

forensicinsight.org Page 20

Page 21: (130202) #fitalk   china threat

forensicinsight.org Page 21

Page 22: (130202) #fitalk   china threat

forensicinsight.org Page 22

Page 23: (130202) #fitalk   china threat

forensicinsight.org Page 23

Page 24: (130202) #fitalk   china threat

forensicinsight.org Page 24

Page 25: (130202) #fitalk   china threat

forensicinsight.org Page 25

nondisclosure

Page 26: (130202) #fitalk   china threat

forensicinsight.org Page 26

Question and Answer