IT security audit

Contacts

Belarus: Tel: +(375 17) 2169118
UAE: Tel: +(971 26) 457670
Switzerland: Tel: +(412 27) 432087
E-mail: Send message



Web audit


Hacking Unlimited

There are many ways to counter today’s security problems. Knowing the hacking mindset is the most important of these. How, in other words, a hacker thinks, behaves and acts – what techniques and methodologies are used by the hacker to take advantage of current existing vulnerabilities. With this is mind, Hands-on Hacking Unlimited has been created for IT professionals, security officers, network administrators and others who wish to understand what really happens whenever an attack is perpetrated and which vulnerabilities are exploited by hackers. Hands-on Hacking Unlimited offers an effective and complete perspective with a focus on network vulnerabilities and an in-depth analysis of the most critical vulnerabilities, targets and concerns.

Training Overview

This course is targeted at IT professionals who wish to learn the various hacking and defensive techniques used by hackers to compromise an organization’s IT infrastructure. The course offers a set of live simulations and live labs featuring a variety of missions on proprietary targets.

Who Should Attend?

  • IT managers
  • IT security specialists
  • Security officers
  • Network administrators
  • Individuals and enthusiasts interested in this topic

Course Contents

  • General Introduction to Hacking
  • Collecting Information on our Target
    Web-based instruments: Google, Netcraft, Visualroute, etc.
    Local instruments: scanners, fingerprinters, etc.
  • Extended Network Mapping
    A detailed analysis of the techniques to be used for executing network mapping:
    Passive and active resources, DNS bruteforcing, Zone Transfer.
  • Collecting Information on Old and New Vulnerabilities
  • Protecting Anonymity while Hacking (shells, proxys, tor)
  • Live Session on Gathering Information on Various Targets
  • The Typical Structure of a Web Site Enumeration of the components and their inherent possible vulnerable points.
  • Vulnerabilities
    Encrypted communication lines, Firewalls and routers, Webservers (Apache/IIS), Applications, Databases.
  • What is an Exploit?
  • Introducing and Exploiting Most Common Linux Vulnerabilities
    SSH, SSL, Apache, Others.

  • Introducing and Exploiting Most Common Windows Vulnerabilities
    Frontpage extension, The ever-present Unicode, Others.
  • SBuffer Overflows: after decades, still one of the most severe vulnerabilities
    Local Buffer Overflow, Remote Buffer Overflow.
  • Man in the Middle: a particular category of attacks
    ARP Poisoning, DNS Poisoning, ICMP Redirect.
  • Passwords
    Password Security, Hacking Instruments.
  • Exloiting Database Vulnerabilities
    SQL Injection, URL Poisoning.
    Live session
  • Cross Site Scripting
    Learn how a technique, considered by some as banal,allows in
    fact attackers to obtain surprising results:
    Site hijacking, Session hijacking, Reprogramming network
    components, HTML principles and vulnerabilities.
    Online session against banking, open forum, e-mail sessions.
  • Black Box Hacking Session
    Hacking an unknown Windows system.
    Hacking an unknown Linux system.
    Hacking an unknown OS system.
  • Social Engineering: techniques and psychological traps
  • Attacks Against the User: malware

What You Will Learn

  • How to think like a hacker to improve protection of your system.
  • How to discover and exploit discovered vulnerabilities.
  • Typical techniques used to gain access into a system.

Course Style: Live Hacking! Duration

2 days

Prerequisites


Background in Microsoft Windows and Linux is desirable.
Knowledge of TCPIP protocols.






Education Affiliate Provider

© 2006-2008 JLLC Belsec - IT-Security audit