If you have any questions please call toll-free at +1 (888) 732-9406.

    My Profile     Search     Catalog
    Calendar     Login     Checkout
Search Results
 

7Safe Certified Security Testing Associate (CSTA) - Ethical Hacking
Course Length: 4 days

Target Audience
The course is ideally suited to anyone with responsibility for, or with an interest in, the security of IT systems, such as: system administrators, auditors, IT security officers, information security professionals and budding penetration testers.

Prerequisites
Persons attending this course should have a working knowledge of networking concepts, Windows Server and/or UNIX, and experience with TCP/IP and the Internet.

Course Overview:
In this course, practical exercises reinforce theory with each delegate having access to a Windows 2008 domain (server and workstation) along with a Linux server. Although the course demonstrates current hacking techniques, this is always done with defense in mind and countermeasures are discussed throughout. The CSTA exam (theory based) is included at the end of the course.

Course Outline:
Introduction

  • Motivations behind hacking
  • The hacking scene
  • Methodology
Networking Refresher
  • Sniffing traffic
Information Discovery
  • Useful information
  • Sources – websites, metadata, search engines, DNS, social engineering
Target Scanning
  • Host discovery
  • Port scanning techniques
  • Banner grabbing
Vulnerability Assessment
  • Causes of vulnerabilities
  • The classic buffer overflow
  • Vulnerability tracking
  • Scanning
  • Client-side vulnerabilities
Attacking Windows
  • Windows enumeration
  • Metasploit
  • Client-side exploits
Privilege Escalation – Windows
  • Local information gathering
  • Metasploit’s Meterpreter
  • Keyloggers
  • Password storage
  • Password extraction
  • Password cracking techniques
  • Cached Domain Credentials
  • Windows network authentication
  • Access tokens
  • Pass the hash
Attacking Linux
  • Exploitation
  • Web shells
  • Pivoting the attack
  • Online password cracking
  • ARP Poisoning Man in the Middle
  • Privilege Escalation – Linux
  • Standard streams
  • Privilege escalation by exploit
  • Commercial penetration testing tools
  • Password storage
  • Password cracking
  • Permission errors
  • Sudo
  • SUID
  • Flawed shell scripts
Retaining Access
  • Backdoors
  • Trojan Horses
  • Delivery mechanisms
  • Botnets
  • Bypassing client-side security
Covering Tracks
  • Hiding backdoors
  • Simple obfuscation
  • Rootkits
  • Anti-forensics
  • Log manipulation
  • Connection laundering
Conclusions
2/27/12 - 3/1/12
9:00AM - 5:00PM

Atlanta
Amenities  Details
 
    Register

3/12/12 - 3/15/12
9:00AM - 5:00PM

San Francisco Bay Area
Amenities  Details
 
    Register

4/2/12 - 4/5/12
9:00AM - 5:00PM

New York
Amenities  Details
 
    Register

4/2/12 - 4/5/12
9:00AM - 5:00PM

Twin Cities
Amenities  Details
 
    Register

4/9/12 - 4/12/12
9:00AM - 5:00PM

Washington D.C. Metro Area
Amenities  Details
 
    Register

6/11/12 - 6/14/12
9:00AM - 5:00PM Eastern Time (US & Canada)


Tampa
Amenities  Details
 
    Register

6/18/12 - 6/21/12
9:00AM - 5:00PM

Kansas City
Amenities  Details
 
    Register

6/25/12 - 6/28/12
9:00AM - 5:00PM

Las Vegas  Details
 
    Register

8/6/12 - 8/9/12
9:00AM - 5:00PM

Atlanta
Amenities  Details
 
    Register

10/15/12 - 10/18/12
9:00AM - 5:00PM

Kansas City
Amenities  Details
 
    Register

11/26/12 - 11/29/12
9:00AM - 5:00PM

Tampa
Amenities  Details
 
    Register

12/3/12 - 12/6/12
9:00AM - 5:00PM

Las Vegas  Details
 
    Register





ViewCentral Privacy Statement

Copyright © 2011 Rainmaker Systems, Inc. All rights reserved.
VCREG1H