iPad Air 2, Samsung Galaxy Tab A, or $350 Off with SANS Online Training Right Now!

Baltimore 2014

Baltimore, MD | Mon, Sep 22 - Sat, Sep 27, 2014
This event is over,
but there are more training opportunities.

DLP FAIL!!! Using Encoding, Steganography, and Covert Channels to Evade DLP and Other Critical Controls

  • Kevin Fiscus
  • Wednesday, September 24th, 8:15pm - 9:15pm

It's all about the information! Two decades after the movie Sneakers, the quote remains as relevant, if not more so. The fact that someone hacks into an environment is interesting but not that relevant. What is important is what happens after the compromise. If the data is destroyed or modified, organizations are negatively impacted but the benefits to an attacker for destruction or alteration are somewhat limited. Stealing information however, is highly profitable. Identity theft, espionage, and financial attacks involve the exfiltration of sensitive data. As a result, organizations deploy tools to detect and/or stop that data exfiltration. While these tools can be extremely valuable, many have serious weaknesses; attackers can encode, hide, or obfuscate the data, or can use secret communication channels. This session will talk about and demonstrate a range of these methods.


Bonus Sessions

The following bonus sessions are open to all paid attendees at no additional cost. There are many different types of events that fall into these categories:

  • SANS@Night: Evening presentations given after day courses have ended. This category includes Keynotes.
  • Special Events: SANS-hosted events and other non-technical recreational offerings. This category includes, but is not limited to, Receptions and Information Tables.
Monday, September 22
Session Speaker Time Type
General Session - Welcome to SANS Dr. Eric Cole Monday, September 22nd, 8:15am - 8:45am Special Events
SANS Technology Institute Open House Bill Lockhart, Executive Director, SANS Technology Institute Monday, September 22nd, 6:00pm - 7:00pm Special Events
APT: It is Time to Act Dr. Eric Cole Monday, September 22nd, 7:15pm - 9:15pm Keynote
Tuesday, September 23
Session Speaker Time Type
Extracting User Credentials using Memory Forensics Alissa Torres Tuesday, September 23rd, 7:15pm - 8:15pm SANS@Night
Debunking the Complex Password Myth Keith Palmgren Tuesday, September 23rd, 8:15pm - 9:15pm SANS@Night
Wednesday, September 24
Session Speaker Time Type
The 13 Absolute Truths of Security Keith Palmgren Wednesday, September 24th, 7:15pm - 8:15pm SANS@Night
DLP FAIL!!! Using Encoding, Steganography, and Covert Channels to Evade DLP and Other Critical Controls Kevin Fiscus Wednesday, September 24th, 8:15pm - 9:15pm SANS@Night
Thursday, September 25
Session Speaker Time Type
Continuous Ownage: Why you Need Continuous Monitoring Seth Misenar Thursday, September 25th, 7:15pm - 8:15pm SANS@Night
Friday, September 26
Session Speaker Time Type
From APT to AVT - Investigating the Latest Threats Jess Garcia Friday, September 26th, 7:15pm - 8:15pm SANS@Night