From Security Weekly Wiki
Jump to navigationJump to search
Added By Paul's Craptastic PPWorks Code
************************* DO NOT EDIT THIS SECTION. THIS IS AUTO-GENERATED BY PPWORKS. YOUR CHANGES WILL BE LOST! ***************************
= 1. Interview - John Chirhart, Google Cloud How to Prevent Account Takeover Attacks - 12:30 PM-12:30 PM =
************************* MAKE CHANGES IN THE TEMPLATES BELOW! ***************************
=== Description ===
Description TBDAttackers are using methods such as password spraying and credential theft to commit fraud against websites at an alarming rate. Automated bots are aiding the attacker to conduct these operations at scale. Your defensive strategy should include a mechanism to determine if a session is being controlled by a real user or a bot. How can we best accomplish this without creating too much friction between the real users and your web applications?
===John Chirhart===
<gallery mode="nolines" widths=175px heights=175px>
Image:JohnChirhart-0.png|'''[ John Chirhart]''' is Customer Experience Engineer at Google Cloud<br>
John is an Engineer on Google Cloud Security’s User Protection Services (UPS) Team. He specializes in developing capabilities and solutions to detect and mitigate automated attacks against web applications and infrastructure. John first joined Google as part of Chronicle, a Google Moonshot Factory Graduate. He’s an information security and compliance veteran with 18+ years of experience.<br>


Navigation menu