首页> 外文期刊>SC magazine >Advanced Penetration Testing,Exploit Writing, and Ethical Hacking
【24h】

Advanced Penetration Testing,Exploit Writing, and Ethical Hacking

机译:高级渗透测试,漏洞利用写作和道德黑客

获取原文
获取原文并翻译 | 示例
           

摘要

This course is designed as a logical progression point for those who have completed SEC560: Network Penetration Testing and Ethical Hacking, or for those with existing penetration testing experience. Students with the prerequisite knowledge to take this course will walk through dozens of real-world attacks used by the most seasoned penetration testers. The methodology of a given attack is discussed, followed by exercises in a real-world lab environment to solidify advanced concepts and allow for the immediate application of techniques in the workplace. Each day includes a two-hour evening bootcamp to allow for additional mastery of the techniques discussed and even more hands-on exercises. A sample of topics covered includes weaponizing Python for penetration testers, attacks against network access control (NAC) and VLAN manipulation, network device exploitation, breaking out of Linux and Windows restricted environments, IPv6, Linux privilege escalation and exploit-writing, testing cryptographic implementations, fuzzing, defeating modern OS controls such as ASLR and DEP, return-oriented programming (ROP),Windows exploit-writing, and much more!
机译:对于那些已经完成SEC560:网络渗透测试和道德黑客,或已有渗透测试经验的人,本课程旨在作为一个逻辑上的起点。具备必修知识的学生可以参加本课程,逐步学习最有经验的渗透测试人员使用的数十种实际攻击方法。讨论了给定攻击的方法,然后在实际实验室环境中进行练习,以巩固高级概念并允许在工作场所中立即应用技术。每天都有两个小时的夜间训练营,以便对所讨论的技术有更多的掌握,甚至可以进行更多的动手练习。涵盖的主题样本包括为渗透测试人员使用Python进行武器处理,针对网络访问控制(NAC)和VLAN操纵的攻击,网络设备利用,突破Linux和Windows受限环境,IPv6,Linux特权升级和漏洞利用编写,测试加密实现,模糊不清,击败了现代OS控件(如ASLR和DEP),面向返回的编程(ROP),Windows漏洞利用程序编写等等!

著录项

  • 来源
    《SC magazine》 |2015年第2suppla期|36-37|共2页
  • 作者

    James Lyne;

  • 作者单位
  • 收录信息
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号