The most trusted source for computer security training, certification and research.



Global Information Assurance Certification

Very intense. I have never been to a conference where we received so much information and so much more to learn post-conference.
-Paul Abels, UPS

SECURITY 517

Cutting-Edge Hacking Techniques - Hands On

6 CPE Credits

Computer attackers continue the relentless march in improving their tools and techniques. The simple scanning of yesteryear has given way to super-stealthy and very rapid scan technologies. Straightforward backdoors have evolved into powerful kernel-mode RootKits, manipulating the very hearts of our systems. Individual exploits are packaged together into highly effective exploitation engines, with your systems in the cross hairs. In all of these trends, thorough reconnaissance and deep subterfuge dominate the attackers' game.

If we don't keep up with their latest methods, our overall defenses and incident response practices will grow rusty. To help fight back, this action-packed one-day course describes these latest attack trends and what you can do to thwart the bad guys.

This session will provide you with up-to-date knowledge on the latest hacks developed over the last twelve to twenty-four months. In addition to detailed descriptions of how the attacks function, you'll get hands-on experience with the tools and their defenses.

This fast-paced, intermediate-to-advanced course is ideal for students who have taken a multi-day hacking course in the past (offered by other training organizations or SANS' own Track 4) and are looking to update their understanding and skills. Also, if you are preparing for that final push on your GCIH certification, this session can help you brush up and refresh your knowledge of computer attacks before completing your practical and taking the exam.

  • Who Should Attend This Course
    • Managers and professionals who have taken a multi-day hacking course seeking to update their understanding and skills.
    • Professionals preparing for the GCIH certification
  • Sampling of Topics
    • Using Google for reconnaissance
    • Newer scanning techniques, including idle scans and version scans - hands-on
    • Ultra-fast scanning techniques
    • The latest active and passive OS fingerprinting techniques - hands-on
    • Recent shattering Windows attacks - hands-on
    • The Metasploit Exploitation Framework - hands-on
    • Recent user-mode and kernel-mode RootKits for Windows and UNIX, including the SuperUser Control Kit and FU
    • The evolution of combo malware
    • The possibility of BIOS-based and microcode-level malicious code
    • Creating polymorphic code using Hydan - hands-on