If you have any questions please call toll-free at +1 (888) 732-9406.

    My Profile     Search     Catalog
    Calendar     Login     Checkout
Search Results
 

7Safe Certified Security Testing Associate (CSTA) - Ethical Hacking
Course Length: 4 days

Target Audience
The course is ideally suited to anyone with responsibility for, or with an interest in, the security of IT systems, such as: system administrators, auditors, IT security officers, information security professionals and budding penetration testers.

Prerequisites
Persons attending this course should have a working knowledge of networking concepts, Windows Server and/or UNIX, and experience with TCP/IP and the Internet.

Course Overview:
In this course, practical exercises reinforce theory with each delegate having access to a Windows 2008 domain (server and workstation) along with a Linux server. Although the course demonstrates current hacking techniques, this is always done with defense in mind and countermeasures are discussed throughout. The CSTA exam (theory based) is included at the end of the course.

Course Outline:
Introduction

  • Motivations behind hacking
  • The hacking scene
  • Methodology
Networking Refresher
  • Sniffing traffic
Information Discovery
  • Useful information
  • Sources – websites, metadata, search engines, DNS, social engineering
Target Scanning
  • Host discovery
  • Port scanning techniques
  • Banner grabbing
Vulnerability Assessment
  • Causes of vulnerabilities
  • The classic buffer overflow
  • Vulnerability tracking
  • Scanning
  • Client-side vulnerabilities
Attacking Windows
  • Windows enumeration
  • Metasploit
  • Client-side exploits
Privilege Escalation – Windows
  • Local information gathering
  • Metasploit’s Meterpreter
  • Keyloggers
  • Password storage
  • Password extraction
  • Password cracking techniques
  • Cached Domain Credentials
  • Windows network authentication
  • Access tokens
  • Pass the hash
Attacking Linux
  • Exploitation
  • Web shells
  • Pivoting the attack
  • Online password cracking
  • ARP Poisoning Man in the Middle
  • Privilege Escalation – Linux
  • Standard streams
  • Privilege escalation by exploit
  • Commercial penetration testing tools
  • Password storage
  • Password cracking
  • Permission errors
  • Sudo
  • SUID
  • Flawed shell scripts
Retaining Access
  • Backdoors
  • Trojan Horses
  • Delivery mechanisms
  • Botnets
  • Bypassing client-side security
Covering Tracks
  • Hiding backdoors
  • Simple obfuscation
  • Rootkits
  • Anti-forensics
  • Log manipulation
  • Connection laundering
Conclusions
2/27/12 - 3/1/12
9:00AM - 5:00PM

Atlanta
Amenities  Details
 
    Register

3/12/12 - 3/15/12
9:00AM - 5:00PM

San Francisco Bay Area
Amenities  Details
 
    Register

4/2/12 - 4/5/12
9:00AM - 5:00PM

New York
Amenities  Details
 
    Register

4/2/12 - 4/5/12
9:00AM - 5:00PM

Twin Cities
Amenities  Details
 
    Register

4/9/12 - 4/12/12
9:00AM - 5:00PM

Washington D.C. Metro Area
Amenities  Details
 
    Register

6/11/12 - 6/14/12
9:00AM - 5:00PM Eastern Time (US & Canada)


Tampa
Amenities  Details
 
    Register

6/18/12 - 6/21/12
9:00AM - 5:00PM

Kansas City
Amenities  Details
 
    Register

6/25/12 - 6/28/12
9:00AM - 5:00PM

Las Vegas  Details
 
    Register

8/6/12 - 8/9/12
9:00AM - 5:00PM

Atlanta
Amenities  Details
 
    Register

10/15/12 - 10/18/12
9:00AM - 5:00PM

Kansas City
Amenities  Details
 
    Register

11/26/12 - 11/29/12
9:00AM - 5:00PM

Tampa
Amenities  Details
 
    Register

12/3/12 - 12/6/12
9:00AM - 5:00PM

Las Vegas  Details
 
    Register

7Safe Certified Security Testing Professional (CSTP) - Ethical Hacking II
The course introduces delegates to the exploitation and security auditing of web applications. It also reinforces and develops techniques from CSTA.

Length: 2 days

Prerequisites: Prior attendance of the CSTA Ethical Hacking: Hands-On training course (or equivalent) is strongly recommended. A basic understanding of HTTP & HTML is needed.

Web application vulnerabilities can pose serious problems to an organisation’s security. Many do not realise how much control an attacker can gain via a simple flaw in the security of a public-facing web application.

The CSTP commands industry recognition and forms part of 7Safe’s ground-breaking Masters-level education programme.

What you will learn:

  • Review of professional penetration testing tools
  • Further exercises against Windows and UNIX targets
  • The Metasploit framework
  • Web application security, including:
    • SQL Injection
    • Cross-site scripting (XSS)
    • Cross-site request forgeries (CSRF)
    • Threats to users

Who should attend:
Those responsible for, or with an interest in, the security of IT systems and web applications, including (but not limited to): System/Network Administrators, Crime Prevention & Protection Officers, Auditors, Security Officers, Information Security Professionals& Pen-Testers.

Benefits:

  • Develop your skills in a state-of-the-art class environment with Windows & Linux operating systems & associated server software
  • Gain experience testing and exploiting purposebuilt victim machines and applications
  • Journey through various aspects of a pen test, such as the core infrastructure, web applications and client-side assessment
  • Includes an examination, successful completion of which earns delegates the industry-recognised CSTP certification
  • Around 20 hands-on practical exercises, using a wide variety of hacking tools
4/24/12 - 4/25/12
9:00AM - 5:00PM

Kansas City
Amenities  Details
 
    Register

5/21/12 - 5/22/12
9:00AM - 5:00PM

Remote Live Training (RLT)  Details
 
    Register

5/28/12 - 5/29/12
9:00AM - 5:00PM

Dallas
Amenities  Details
 
    Register

8/28/12 - 8/29/12
9:00AM - 5:00PM

Kansas City
Amenities  Details
 
    Register

9/6/12 - 9/7/12
9:00AM - 5:00PM

Washington D.C. Metro Area
Amenities  Details
 
    Register

9/25/12 - 9/26/12
9:00AM - 5:00PM

Atlanta
Amenities  Details
 
    Register





ViewCentral Privacy Statement

Copyright © 2011 Rainmaker Systems, Inc. All rights reserved.
VCREG1H