Upgrade to Pro — share decks privately, control downloads, hide ads and more …

Security Fintech

Security Fintech

Financial Technology basic security knowledge - presented at ServerHack Summit

Yahya Fadhlulloh Al-Fatih

November 12, 2017
Tweet

More Decks by Yahya Fadhlulloh Al-Fatih

Other Decks in Technology

Transcript

  1. Hello! Saya Yahya F. Al Fatih 7 years experience in

    bank infrastructure pentest 5 years experience in government infrastructure pentest Wawadukan organization Development Operation at Crowde 2
  2. Kelebihan - Sistem yang mapan - General Data Protection Regulation

    - Fraud Refund Traditional Banking System Kekurangan - Mampu untuk di manipulasi - Tidak Transparan - Bank fees 5
  3. 6

  4. 7

  5. Blockchain Kekurangan - Banyak yang tidak menerima - Tidak didukung

    pemerintah - 51% real threat attack - revert fraud transaction 11 Kelebihan - Trust less - Transaksi Murah - Bebas dari manipulasi - No middleman
  6. “ Bitcoin have a potential to replace 'national currency' into

    'people currency' 12 https://www.forbes.com/sites/panosmourdoukoutas/2017/09/14/why-big-banks-attacked-bitcoin/
  7. 13

  8. Blockchain Vulnerability (potential) 16 1. User attack 2. Tracing coin

    history 3. DoS attack 4. Packet Sniffing 5. Illegal Content 6. Energy Consumption 7. CVE (?)
  9. 17

  10. 18

  11. Apakah aman menggunakan online payment ? - Security end-point -

    Data Encryption - Semakin aman = tidak menjamin cepat 21
  12. 22

  13. 24

  14. - 2 factor authentication - Password new Standard (NIST) -

    Never click on links in emails - Pay close attention to website URLs - Be suspicious of unknown links or requests sent through email or text message - Guide : https://medium.com/@nickrosener/an-in-depth-guide-t o-personal-cybersecurity-be98ba47c968?source=book marks---------12---------------- - https://www.dhs.gov/how-do-i/protect-myself-cyber-att acks Personal Security 26
  15. - Cara paling ampuh untuk menyimpan secret key ke dalam

    aplikasi adalah dengan cara tidak menyimpan secret key ke dalam aplikasi - Hilangkan pemikiran CyberSecurity Dark Age - Immune System =/= Secure System - Please no Default dude! - Paham Teknologi Security - Developer Security Guidelines (https://simplesecurity.sensedeep.com/web-developer-se curity-checklist-f2e4f43c9c56) Security for Developer 28