Anti-SPAM-FRAMEWORK-how-to-erradicate.pptx

MuhammadSalahuddien 10 views 8 slides Aug 18, 2024
Slide 1
Slide 1 of 8
Slide 1
1
Slide 2
2
Slide 3
3
Slide 4
4
Slide 5
5
Slide 6
6
Slide 7
7
Slide 8
8

About This Presentation

Anti SPAM Framework


Slide Content

SPAM ERRADICATION M.S. Manggalanny

FRAMEWORK

preparation Combating SPAM needs a commitment and continuous support from policy maker level of management. Generally to provide not only investment budget to manage and eradicate SPAM, but also to educate and study in order to achive day to day improvement as the SPAM is also dynamically changes into another game level. Traditionally, to manage SPAM, an organization needs to appointed responsible staff as a single point of contact to handle everyday operation and incident response. A resource wise strategy is also needed to be in place in order to anticipate SPAM crisis. As if it is happening. The organization may setup an additional “just in time” upgreadeable clean pipe internet access contract, a vendor support agreement - including a possibility to deploy expert team assistance and rent spare equipment Mostly, a PREPARATION step in combating SPAM is a POLICY and SOP approach

identification FILTERING : IP and Domain sanitation, Phishtank, Spamhaus, RBL’s PATTERN : Bayesian, SPAM Assassin, Anti Virus / Malware Scan CONTENT : REGEX, manual separation, End Point Detection / Scan

containment General purpose to quarantine SPAM messages is to study : BEHAVIOR : just SPAM, data harvesting agent, attack vector PATTERN : detection avoidance technique, delivery tactics CONTENT : encoding messages, malware infected, PUA TRACING : sender origin, bulk services and syndication COMBATING : as a sample and dataset to test anti SPAM COLLABORATION : sent the sample to anti SPAM initiatives ENGAGEMENT : knowledge and experience sharing with community

eradication DESTROYING : sanitize artifact, terminate malicious payload HUNTING : taking down the source of SPAM and its network REPORTING : to law enforcement (if any), to internet authority

recovery BACKUP, BACKUP, BACKUP and BACKUP – an archive is cheaper Rolling back to the latest recovery point objectives (RPO) available Preventing recurrence : discussing and evaluatie, a lesson learnt study Arrange continuous awareness program to educate and ALERT the organization

Thank You Personal Contact: Mobile: +628119936071 Email: [email protected]
Tags