Learning Tree International

Tel: 08-506 668 00
 

Önskar du mer information?

Förnamn*:

Efternamn*:

Funktion:

Internadress:

Företag*:

Adress*:

Ort*:

Postnummer*:

Land* :
   Landskoder

Telefonnummer*:

E-post*:

* = Obligatoriskt

Informationen du lämnar kommer att användas för att kommunicera med dig om Learning Tree-produkter som kan vara av intresse för dig. Sekretessregler

När vi tagit emot ditt formulär tar vi kontakt med dig via e-post eller telefon.

Tidsbegränsat erbjudande  – Spara upp till 40 % per kurs
 

Penetration Testing:
Tools and Techniques

Defending Your Network Using Hacking Techniques


Kurs: 5374 dagar

 Tipsa kollega   Skriv ut   Frågor och svar   Ladda ner PDF   Facebook   Twitter    View in English

Boka direkt

Denna kurs är schemalagd i England och USA, du kan välja mellan att resa dit eller delta live, online via AnyWare. Kursen går även att hålla företagsinternt på plats hos er. Ring 08-506 668 00 eller skicka oss en förfrågan genom att klicka här.

You Will Learn How To

  • Deploy ethical hacking to expose weaknesses in your organisation and select countermeasures
  • Gather intelligence by employing reconnaissance, published data and scanning tools
  • Probe and compromise your network using hacking tools to test and improve your security
  • Discover how malicious hackers exploit weaknesses to "own" the network
  • Protect against privilege escalation to prevent intrusions
  • Evade antivirus software, firewalls and IDS

Course Benefits

As network breaches become increasingly sophisticated, proactive defences are essential to counter malicious attacks. In this course, you learn to discover weaknesses in your network using the same mind-set and methods as hackers. You acquire the knowledge to systematically test and exploit internal and external defences. You learn countermeasures and how to reduce risk to your enterprise.

Who Should Attend

Security consultants, Information Assurance auditors, firewall/IDS personnel, programmers, PCI security testers and those involved in cybersecurity measures and implementation. Security knowledge at the level of Course 468, "System and Network Security Introduction", and strong TCP/IP experience is assumed.

Hands-On Training

Hands-on exercises model hacking methods and countermeasures, including:
  • Preparing the hacker toolkit
  • Executing advanced port scanning
  • Linking vulnerabilities and exploits
  • Determining the vulnerabilities of a network
  • Performing injection attacks
  • Predicting and hijacking Web sessions
  • Poisoning DNS to lure clients
  • Configuring and using the Metasploit Framework
  • Defeating stateless firewalls, IDS and antivirus software
  • Cloning a Web site and stealing passwords

Course Content

Introduction to Ethical Hacking

  • Defining a penetration testing methodology
  • Creating a security testing plan
  • Adhering to PCI standards
  • Assembling the hacking tools

Footprinting and Intelligence Gathering

Acquiring target information

  • Locating useful and relevant information
  • Scavenging published data
  • Mining archive sites

Scanning and enumerating resources

  • Identifying authentication methods
  • Analysing firewalls
  • Harvesting e-mail information
  • Interrogating network services
  • Scanning from the inside out with HTML

Identifying Vulnerabilities

Correlating weaknesses and exploits

  • Researching databases
  • Determining target configuration
  • Evaluating Vulnerability Assessment tools

Leveraging opportunities for attack

  • Discovering exploit resources
  • Attacking with Metasploit

Attacking Servers and Devices to Build Better Defences

Bypassing router access control lists (ACLs)

  • Discovering filtered ports
  • Manipulating ports to gain access
  • Connecting to blocked services

Compromising operating systems

  • Examining Windows protection modes
  • Analysing Linux/UNIX processes

Subverting Web applications

  • Injecting SQL and HTML code
  • Hijacking Web sessions by prediction and fixation
  • Bypassing authentication mechanisms

Manipulating Clients to Uncover Internal Threats

Baiting and snaring inside users

  • Poisoning DNS
  • Executing Cross-site scripting (XSS)
  • Gaining control of browsers

Creating custom malware

  • Harvesting client information
  • Enumerating internal data

Deploying the Social Engineering Toolkit

  • Cloning a legitimate site
  • Diverting clients by poisoning DNS
  • Delivering customised payloads to users

Exploiting Targets to Increase Security

Initiating remote shells

  • Selecting reverse or bind shells
  • Leveraging the Metasploit Meterpreter

Pivoting and island-hopping

  • Deploying portable media attacks
  • Routing through compromised clients
  • Forwarding and redirecting ports

Pilfering target information

  • Stealing password hashes
  • Extracting infrastructure routing, DNS and NetBIOS data

Uploading and executing payloads

  • Controlling memory processes
  • Utilising the remote file system

Testing Antivirus and IDS Security

Masquerading network traffic

  • Obfuscating vectors and payloads
  • Side-stepping perimeter defences

Evading antivirus systems

  • Falsifying file headers to inject malware
  • Discovering the gaps in antivirus protection

Mitigating Risk and Next Steps

  • Reporting results and creating an action plan
  • Managing patches and configuration
  • Recommending cybersecurity countermeasures
  • Staying current with tools, trends and technology

<< Tillbaka till Säkerhet
 

Liknande kurser

 
Penetration Testing: Tools and Techniques

Kursschema

Learning Tree AnyWare Du kan gå de överstrukna kurserna i klassrummet eller live, online via Learning Tree AnyWareTM.

Storbritannien

17 - 20 aprilLondon boka kurs

USA

21 - 24 febWashington boka kurs
2 - 5 aprilNew York boka kurs
17 - 20 aprilWashington boka kurs
24 - 27 aprilWashington boka kurs

När du ska gå en AnyWare-kurs bör du anmäla dig minst 10 dagar före kursstart.

Fler datum och platser.

Kurspriser

22 950 krOrd. Pris
kurspriser med
rabattprogram
14 300 krMed Treklöver
12 975 krMed Fyrklöver
17 350 krMed Företagskort -
10-kort
17 360 krMed ProPack 40
Alla priser i SEK, exkl moms.

Företagsintern &
anpassad utbildning

Denna och alla andra Learning Tree-kurser kan ges på plats hos er och/eller anpassas för er organisation.

Penetration Testing: Tools and Techniques

Course participants analysing browser security.


Kursdeltagarnas genomsnittsbedömning

De senaste 12 månadernas bedömningar

5 stjärnor:
87 %
4 stjärnor:
13 %
3 stjärnor:   0 %
2 stjärnor:   0 %
1 stjärna:   0 %

 
"The Learning Tree instructor I had was willing to come in early to work with you if you had questions or didn't grasp the material. That's a real plus".



 
Ten Questions to Ask Your Training Provider - Position Paper