Register now for SANS Cyber Defense Initiative 2016 and save $400.

San Antonio 2015

San Antonio, TX | Mon, Aug 17 - Sat, Aug 22, 2015

DLP FAIL!!! Using Encoding, Steganography, and Covert Channels to Evade DLP and Other Critical Controls

  • Kevin Fiscus
  • Tuesday, August 18th, 7:15pm - 8:15pm

It's all about the information! Two decades after the movie Sneakers, the quote remains as relevant, if not more so. The fact that someone hacks into an environment is interesting but not that relevant. What is important is what happens after the compromise. If the data is destroyed or modified, organizations are negatively impacted but the benefits to an attacker for destruction or alteration are somewhat limited. Stealing information however, is highly profitable. Identity theft, espionage, and financial attacks involve the exfiltration of sensitive data. As a result, organizations deploy tools to detect and/or stop that data exfiltration. While these tools can be extremely valuable, many have serious weaknesses; attackers can encode, hide, or obfuscate the data, or can use secret communication channels. This session will talk about and demonstrate a range of these methods.

Bonus Sessions

The following bonus sessions are open to all paid attendees at no additional cost. There are many different types of events that fall into these categories:

  • SANS@Night: Evening presentations given after day courses have ended. This category includes Keynotes.
  • Special Events: SANS-hosted events and other non-technical recreational offerings. This category includes, but is not limited to, Receptions and Information Tables.
  • Lunch & Learn: Short presentations given during the lunch break.
Monday, August 17
Session Speaker Time Type
General Session - Welcome to SANS Johannes Ullrich, Ph.D Monday, August 17th, 8:15am - 8:45am Special Events
The Internet of Evil Things Johannes Ullrich, Ph.D Monday, August 17th, 7:15pm - 9:15pm Keynote
Tuesday, August 18
Session Speaker Time Type
Discover the Next Generation of Vulnerability Management Solutions Rich McCrohan, Regional Sales Manager and Andy Nickel, Systems Engineer - Core Security Tuesday, August 18th, 12:30pm - 1:15pm Lunch and Learn
DLP FAIL!!! Using Encoding, Steganography, and Covert Channels to Evade DLP and Other Critical Controls Kevin Fiscus Tuesday, August 18th, 7:15pm - 8:15pm SANS@Night
ICS/SCADA Cyber Attacks - Fact vs. Fiction Robert M. Lee Tuesday, August 18th, 8:15pm - 9:15pm SANS@Night
Wednesday, August 19
Session Speaker Time Type
Prevent - Detect - Respond Wednesday, August 19th, 12:30pm - 1:15pm Lunch and Learn
The 14 Absolute Truths of Security Keith Palmgren Wednesday, August 19th, 7:15pm - 8:15pm SANS@Night
Debunking the Complex Password Myth Keith Palmgren Wednesday, August 19th, 8:15pm - 9:15pm SANS@Night
Thursday, August 20
Session Speaker Time Type
Instant Expert: Legitimately and Ethically Ted Demopoulos Thursday, August 20th, 7:15pm - 8:15pm SANS@Night