Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | Re: Mile2 Training (Certifications) |
|---|---|
| Date: | Sun, 22 Jul 2007 11:24:49 +0200 |
Hi Ken,
I'm working with universities across the country and I think the faculty buy
into this idea. The best programs are trying to find experiential learning
opportunities. The academics know that even at the masters level, there's a
huge gap between theory and practice. At the same time, the basic
understanding of vulnerabilities such as buffer overflows are not adequately
addressed on the academic or the pragmatic side.
Buffer overflows make virtually all of our systems untrustworthy and most IT
management still don't understand this basic issue.
On the issue of certification - if we test for the right knowledge-base, like how does 802.1x authenticate, how are digital certificates safeguarded on typical pc's or how do buffer overflows work and then use this knowledge for better pen-testing, we would have a safer world.
How do we engage new members of the profession and of these forums to help take up the cause of education? I get tired of reading of the security failures - we need to promote and showcase the successes, which are always
based on strong human competencies. The trade journals need to sell protective technologies, so they amplify the failures - which we all know are rampant. But the good guys do win, most of the time, so maybe by profiling the good guys who are winning, we'll draw more attention to how they got to where they are, how they trained, how they stay current, etc. You were actually starting down this road in your posting.
In any case, I offer my strongest support for your efforts. We just need a
lot more focus on human capital in the security space!
Sincerely, -pete.
------------------------------------------------------------------------ This list is sponsored by: Cenzic
Need to secure your web apps NOW? Cenzic finds more, "real" vulnerabilities fast. Click to try it, buy it or download a solution FREE today!
http://www.cenzic.com/downloads ------------------------------------------------------------------------
| Previous by Date: | Code execution needed, dns compromised, Gisthre Nendjka |
|---|---|
| Next by Date: | Re: Something strange in my logs!!!, Siim PÃder |
| Previous by Thread: | RE: Mile2 Training (Certifications), Ken Kousky |
| Next by Thread: | Re: Mile2 Training (Certifications), Jamie Riden |
| Indexes: | [Date] [Thread] [Top] [All Lists] |