Ofir Arkin: Bypassing Network Access Control (NAC) Systems

Published: June 4, 2006, 11:10 p.m.

b'The threat of viruses, worms, information theft and lack of control of the IT infrastructure lead companies to implement security solutions to control the access to their internal IT networks.\\n\\t\\n\\tA new breed of software (Sygate, Microsoft, etc.) and hardware (Cisco, Vernier Networks, etc.) solutions from a variety of vendors has emerged recently. All are tasked with one goal - controlling the access to a network using different methods and solutions.\\n\\t\\n\\tThis presentation will examine the different strategies used to provide with network access controls.\\n\\t\\n\\tFlaws associated with each and every NAC solution presented would be presented. These flaws allows the complete bypass of each and every network access control mechanism currently offered on the market.\\n\\t\\n\\tOfir Arkin is the CTO and Co-founder of Insightix, which pioneers the next generation of IT infrastructure discovery, monitoring and auditing systems for enterprise networks.\\n\\t\\n\\tOfir holds 10 years of experience in data security research and management. Prior of co-founding Insightix, he had served as a CISO of a leading Israeli international telephone carrier. In addition, Ofir had consulted and worked for multinational companies in the financial, pharmaceutical and telecommunication sectors.\\n\\t\\n\\tOfir conducts cutting edge research in the information security field and has published several research papers, advisories and articles in the fields of information warfare, VoIP security, and network discovery, and lectured in a number of computer security conferences about the research. The most known papers he had published are: "ICMP Usage in Scanning", "Security Risk Factors with IP Telephony based Networks", "Trace-Back", "Etherleak: Ethernet frame padding information leakage", etc. He is a co-author of the remote active operating system fingerprinting tool Xprobe2.\\n\\t\\n\\tOfir is chair of the security research committee of the Voice Over IP Security Alliance (VoIPSA) and also serves as a board member.\\n\\t\\n\\tOfir is the founder of (Sys-Security Group), a computer security research group."'