Identifying Today's Top 5 Lateral Movement Techniques
In order to properly scope an incident and identify all of the systems involved, a responder must be able to detect signs of lateral movement. Yet, today's attackers are developing more sophisticated techniques of traversing the network, leaving behind minimal footprints through the use of PowerShell and WMIC queries and remote executions. During this presentation, attendees will be introduced to the top 5 current lateral movement techniques, as well as armed with techniques for their detection.
Bonus Sessions
The following bonus sessions are open to all paid attendees at no additional cost. There are many different types of events that fall into four categories:
- Lunch & Learn: Short presentations given during the lunch break.
- SANS@Night: Evening presentations given after day courses have ended. This category includes Keynotes.
- Vendor: Events hosted by external vendor exhibitors.
- Special Events: SANS-hosted events and other non-technical recreational offerings. This category includes, but is not limited to, Receptions and Information Tables.