| 08:30 |
WELCOME AND
INTRODUCTIONS - Fred Villella, Executive Director NDI |
| 08:40 |
CONFRONTING THE
SYSTEM CHALLENGE TO SECURE COMPUTING |
|
• |
Understanding
the Hacker Threat and Intrusions |
|
• |
Operating System
Vulnerabilities and Exploits |
|
• |
Updating
the Threat Analysis and Risk Assessment |
|
• |
Security
Database Technology |
|
• |
Integration
of Security Functions |
|
• |
The Next
Generation of Security Software |
| 09:15 |
INTRODUCTION
TO THE COMPUTER UNDERGROUND - Justin Lundy, Associate NDI Faculty |
| 10:15 |
ONLINE TOUR OF
COMPUTER SECURITY AND HACKER WEBSITES |
| 10:45 |
INTERNET RELAY
CHAT WITH MEMBERS OF THE COMPUTER UNDERGROUND |
| 11:30 |
SOCIAL
ENGINEERING VIDEO REPRESENTATION |
|
• |
Features
"route" in a 20/20 interview |
| 12:00 |
LUNCH |
| 13:00 |
SCANNERS /
RECONNAISSANCE TECHNIQUES - Justin Lundy & Marshall
Beddoe,Associate
NDI Faculty |
|
• |
Description
and Uses of Scanners |
|
• |
Installation
and Use of nmap, a Port Scanner |
|
• |
Installation
and Use of SAINT, a Vulnerability Scanner |
|
• |
Other
reconnaissance techniques |
| 14:00 |
EXTENDED LOGGING |
|
Installation
and use of extended logging tools and interpreting the results |
| 15:00 |
LOCAL/REMOTE
BUFFER OVERFLOWS |
|
Using Buffer
Overflows to Gain Root Access |
| 16:30 |
QUESTIONS AND
ANSWERS/ADJOURN |
| 08:30 |
PENETRATION
TESTING TOOLS - Associate NDI Faculty |
| 09:45 |
INTRODUCTION
TO BACKDOORS - Justin Lundy & Marshall Beddoe,Associate
NDI Faculty |
|
Types
of Backdoors, Methods of backdooring a system, Building a backdoor |
| 10:45 |
PASSWORD
CRACKERS |
|
• |
Uses of Password
Crackers and How Password Crackers Work |
|
• |
Installation
and Use of Crack 5.0, a UNIX Password Cracker |
| 11:15 |
SNIFFERS |
|
• |
Description
and Uses of Sniffers - Legal Implications |
|
• |
Installation
and Use of linsniff, a password Sniffer |
| 12:00 |
LUNCH |
| 13:00 |
TROJAN HORSES |
|
• |
Types
of Trojan Horses |
|
• |
Installing
Trojan Horses in Remote Systems |
|
• |
Detecting
Trojan Horses with MD5 Crypto Software |
| 13:30 |
TELNET
BOUNCE ATTACKS |
|
• |
Description
and uses of telnet bounce attacks |
|
• |
Installation
and use of telnet bounce software |
| 14:00 |
BO2K DEMONSTRATION |
|
• |
Demonstration of the
Windows Remote Administration Tool Back Orifice 2000 |
| 14:30 |
HANDS-ON
HACKING EXERCISE |
|
Use attack
methods and intrusion techniques learned in class to hack a victim server |
| 15:30 |
FIREWALL
PENETRATION DEMONSTRATION - Associate NDI Faculty |
| 16:30 |
QUESTIONS
AND ANSWERS / ADJOURN |