Cargando…

Exploring Cybersecurity Frontiers: Challenges regarding 2FA, Incident Response, and Web Scanning

<!--HTML-->In my CERN openlab 2023 summer tenure, I undertook three cybersecurity projects. Firstly, I addressed the challenge of integrating two-factor authentication (2FA) standards—FIDO2 and OTP—across CERN systems. Despite intensive efforts, the dissonance between these protocols posed ins...

Descripción completa

Detalles Bibliográficos
Autor principal: Licu, Mihai
Lenguaje:eng
Publicado: 2023
Materias:
Acceso en línea:http://cds.cern.ch/record/2868467
_version_ 1780978222643544064
author Licu, Mihai
author_facet Licu, Mihai
author_sort Licu, Mihai
collection CERN
description <!--HTML-->In my CERN openlab 2023 summer tenure, I undertook three cybersecurity projects. Firstly, I addressed the challenge of integrating two-factor authentication (2FA) standards—FIDO2 and OTP—across CERN systems. Despite intensive efforts, the dissonance between these protocols posed insurmountable obstacles to unification. Secondly, I engaged in translating and dissecting IRC chat logs and Telegram conversations of Romanian hacker collectives implicated in the MICI-BICA incident. My role involved decoding strategies, exposing potential threat vectors, and uncovering their tactics to safeguard CERN and affiliated institutions. Lastly, I am currently developing a Python tool for technology detection of 17,000+ CERN websites. This task entails migrating the tool to Python 3, automating core functions, and integrating with the new Single Sign-On. The future plan involves optimizing the tool's capabilities using Go and implementing a versatile vulnerability scanner named Nuclei, leveraging a YAML-based DSL.
id cern-2868467
institution Organización Europea para la Investigación Nuclear
language eng
publishDate 2023
record_format invenio
spelling cern-28684672023-08-25T20:29:07Zhttp://cds.cern.ch/record/2868467engLicu, MihaiExploring Cybersecurity Frontiers: Challenges regarding 2FA, Incident Response, and Web ScanningCERN openlab Summer Student Lightning Talks (2/2)CERN openlab Summer Student Programme 2023<!--HTML-->In my CERN openlab 2023 summer tenure, I undertook three cybersecurity projects. Firstly, I addressed the challenge of integrating two-factor authentication (2FA) standards—FIDO2 and OTP—across CERN systems. Despite intensive efforts, the dissonance between these protocols posed insurmountable obstacles to unification. Secondly, I engaged in translating and dissecting IRC chat logs and Telegram conversations of Romanian hacker collectives implicated in the MICI-BICA incident. My role involved decoding strategies, exposing potential threat vectors, and uncovering their tactics to safeguard CERN and affiliated institutions. Lastly, I am currently developing a Python tool for technology detection of 17,000+ CERN websites. This task entails migrating the tool to Python 3, automating core functions, and integrating with the new Single Sign-On. The future plan involves optimizing the tool's capabilities using Go and implementing a versatile vulnerability scanner named Nuclei, leveraging a YAML-based DSL.oai:cds.cern.ch:28684672023
spellingShingle CERN openlab Summer Student Programme 2023
Licu, Mihai
Exploring Cybersecurity Frontiers: Challenges regarding 2FA, Incident Response, and Web Scanning
title Exploring Cybersecurity Frontiers: Challenges regarding 2FA, Incident Response, and Web Scanning
title_full Exploring Cybersecurity Frontiers: Challenges regarding 2FA, Incident Response, and Web Scanning
title_fullStr Exploring Cybersecurity Frontiers: Challenges regarding 2FA, Incident Response, and Web Scanning
title_full_unstemmed Exploring Cybersecurity Frontiers: Challenges regarding 2FA, Incident Response, and Web Scanning
title_short Exploring Cybersecurity Frontiers: Challenges regarding 2FA, Incident Response, and Web Scanning
title_sort exploring cybersecurity frontiers: challenges regarding 2fa, incident response, and web scanning
topic CERN openlab Summer Student Programme 2023
url http://cds.cern.ch/record/2868467
work_keys_str_mv AT licumihai exploringcybersecurityfrontierschallengesregarding2faincidentresponseandwebscanning
AT licumihai cernopenlabsummerstudentlightningtalks22