SANS Stay Sharp Training - Live Online: Quickly sharpen your skills with 2-day management courses. Register now.

Baltimore 2016

Baltimore, MD | Mon, Oct 10 - Sat, Oct 15, 2016
This event is over,
but there are more training opportunities.

Resolving Names to Pwned: A Journey to Compromise

  • Russel Van Tuyl
  • Wednesday, October 12th, 8:15pm - 8:55pm

NetBIOS is a legacy protocol that is silently broadcasting messages on your network in concert with the Link-Local Multicast Name Resolution (LLMNR) protocol. This presentation will walk through numerous attacks that take advantage of these protocols. The journey will start with message spoofing, move to situational awareness, and focus on performing subsequent attacks that can lead to complete domain compromise. Come and listen to be enlightened on one of the top ways a penetration tester will compromise your domain with no exploits by leveraging network traffic you weren't looking at.

Speaker Bio: Russel Van Tuyl is a security analyst for Sword & Shield Enterprise Security. His primary role is conducting network vulnerability assessments and penetration tests but also performs web application assessments, firewall configuration audits, wireless assessments, and social engineering. He has more than 10 years of experience in the technical field in roles such as database design, field device support, help desk, IT asset management, programming, and information security. He holds a Bachelor's degree in Information Technology and is a current SANS Master's degree student.


Bonus Sessions

The following bonus sessions are open to all paid attendees at no additional cost. There are many different types of events that fall into these categories:

  • SANS@Night: Evening presentations given after day courses have ended. This category includes Keynotes.
  • Special Events: SANS-hosted events and other non-technical recreational offerings. This category includes, but is not limited to, Receptions and Information Tables.
  • Master's Degree Presentation: Presentations given by SANS Technology Institute's Master's Degree candidates.
Monday, October 10
Session Speaker Time Type
General Session - Welcome to SANS Bryan Simon Monday, October 10th, 8:00am - 8:30am Special Events
Evolving Threats Paul Henry Monday, October 10th, 7:15pm - 9:15pm Keynote
Tuesday, October 11
Session Speaker Time Type
Women's CONNECT Event Hosted by SANS COINS program and ISSA WIS SIG Tuesday, October 11th, 6:00pm - 9:15pm Special Events
(Am)Cache Rules Everything Around Me Eric Zimmerman Tuesday, October 11th, 7:15pm - 8:15pm SANS@Night
Running Away from Security: Web App Vulnerabilities and OSINT Collide Micah Hoffman Tuesday, October 11th, 8:15pm - 9:15pm SANS@Night
Wednesday, October 12
Session Speaker Time Type
DLP FAIL!!! Using Encoding, Steganography, and Covert Channels to Evade DLP and Other Critical Controls Kevin Fiscus Wednesday, October 12th, 7:15pm - 8:15pm SANS@Night
The Labyrinth: Active Defense through Baselines, Configuration, and Deception Nathaniel 'Q' Quist Wednesday, October 12th, 7:15pm - 7:55pm Master's Degree Presentation
Resolving Names to Pwned: A Journey to Compromise Russel Van Tuyl Wednesday, October 12th, 8:15pm - 8:55pm Master's Degree Presentation