Over the years, the security industry has become smarter and more effective in stopping hackers; unfortunately, hacker tools are becoming smarter and more complex. One of the most effective methods in stopping the enemy is actually testing the environment with the same tools and tactics an attacker might use against you.
This workshop lets you put what you have learned over the past week into practice. You will be connected to one of the most hostile networks on planet Earth. This network simulates the Internet and allows students to try actual attacks against live machines and learn how to protect against these attacks. This workshop will supplement the classroom training that the student has already received and give them flight time with the attack tools to better understand how they work. Instructors will give guidance on exactly what is happening as exploits and defensive measures are running. As students work on various exploits and master them, the environment will become increasingly difficult so that students will have to master additional skills in order to successfully complete the exercises.
Additionally, students can participate in the workshop's Capture The Flag event. By penetrating systems, discovering subtle flaws, and using puzzle-solving techniques, you can test the skills you've built over the week in this engaging contest. The Capture The Flag victors will win a prize.
Paranoia is good!
Your laptop will be attacked. Do not have any sensitive data stored on the system. SANS is not responsible for your system if (actually, when) someone in the class attacks it in the workshop. Bring the right equipment and prepare it in advance to maximize what you'll learn and the fun you'll have doing it.
- Hands-on Analysis
- Nmap Port Scanner
- Nessus Vulnerability Scanner
- Network Mapping
- Sniffer Attack Tools
- Netcat: File Transfer, Backdoors, and Relays
- General Exploits
- IP Spoofing
- Session Hijacking
- Buffer Overflows
- John the Ripper Password Cracker
- Other Attack Tools and Techniques
- Web Application Manipulation
- Backdoors with Netcat, BO2K, and VNC
- File and Directory Hiding on Windows and Linux
- Covert Channels in HTTP, ICMP, and TCP
- And much more . . .