Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | Re: Generating awareness amongst IT staff |
|---|---|
| Date: | Sat, 25 Nov 2006 18:59:47 -0700 |
Break out Nessus and show them what a vulnerability scan looks like on a test server. Then use Metasploit to show them how easy it is to compromise the box. Try wireshark/favorite packet capture tool and show them how much fun it is to capture unencrypted traffic (preferably their password, which is probably one from a dictionary). Then grab a clue banana then beat them over the head with it.
I am in the middle od preparing slides for security awareness presentation amongst IT staff (network admins/system/DBAs) etc.
Security awareness is quite low amongst these guys and they seem to believe that the way have done it all these years, can continue all the remaining years too.
Plan is, to create password hack using Ophcrack and run it during presentation. What else can I do to create real time engaging presentation so that these guys might sit up and take notice. How about doing a pen test on databases?
Anyone has any ideas to make this presentation to largely IT technical staff...as engaging as possible?
------------------------------------------------------------------------ This List Sponsored by: Cenzic
Need to secure your web apps? Cenzic Hailstorm finds vulnerabilities fast. Click the link to buy it, try it or download Hailstorm for FREE. http://www.cenzic.com/products_services/download_hailstorm.php?camp=701600000008bOW ------------------------------------------------------------------------
------------------------------------------------------------------------ This List Sponsored by: Cenzic
Need to secure your web apps? Cenzic Hailstorm finds vulnerabilities fast. Click the link to buy it, try it or download Hailstorm for FREE. http://www.cenzic.com/products_services/download_hailstorm.php?camp=701600000008bOW ------------------------------------------------------------------------
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Voip security, Mike Klingler |
|---|---|
| Next by Date: | RE: Windows 2003 - Dumping Service Passwords, Jessie Ling XX (MC/EPA) |
| Previous by Thread: | Generating awareness amongst IT staff, Faheem SIDDIQUI |
| Next by Thread: | RE: Default passwords dictionary, hugh_fraser |
| Indexes: | [Date] [Thread] [Top] [All Lists] |