Context Security

Archive for February, 2009

SANS 542 Webcast: Build Your Own Army of Darkness: XSS Frameworks for Zombies and Profit

by seth on Feb.27, 2009, under SANS, SANS Teaching

Below is information regarding a webcast I will be leading for SANS on 03/18/2009 at 10 AM EST.  Should be fun.

Build Your Own Army of Darkness: XSS Frameworks for Zombies and Profit
Featuring: Seth Misenar

In this preview to the newly updated SEC542 Web Application Penetration Testing course being offered in Amsterdam, you will learn how build and control your very own zombie battalion/Army of Darkness. The discussion will start with a whizz|bang overview of the new 6 day version of SEC542, and quickly move to XSS Frameworks and, of course, zombies galore. Whether you are excited or petrified by the prospect of zombies, join Seth Misenar for this hour long webcast. As Bruce Campbell/Ash of Evil Dead fame would say, “Groovy”.

Speaker Bios:

Seth Misenar:

When not watching zombie films, Seth Misenar serves as Founder/Lead Consultant for Context Security, which provides information security though leadership, independent research, security training, and security consulting services. His background includes network and web application penetration testing, vulnerability assessment, regulatory compliance efforts, security architecture design, as well as general security consulting. He has previously served as both a physical and network security consultant for Fortune 100 companies as well as the HIPAA and Information Security Officer for a state government agency.

In his former life, Seth received a B.S. in Philosophy from Millsaps College where he was twice selected for a Ford Teaching Fellowship. Also, Seth is no stranger to certifications and thus far has achieved credentials which include, but are not limited to, the following: CISSP, GSEC, GCIA, GCIH, GCWN, GCFA, GHTQ, GWAS, and MCSE credentials. He has previously taught numerous SANS classes including SEC401: Security Essentials, SEC504: Hacker Techniques, and SEC542: Web Application Penetration Testing. In addition to serving SANS in an teaching capacity, Seth also serves as both Virtual Mentor and Technical Director for SANS OnDemand.

Leave a Comment :, , , , , , more...

SANS/Ed Skoudis Releases 3 Pen Testing Cheat Sheets

by seth on Feb.17, 2009, under Uncategorized

Thought some of you might be interested…

Ed Skoudis (of InGuardians and SANS 504/517/560 fame) twitted about the release of 3 new cheat sheets this morning.  The sheets are hosted on SANS website and links to them can be found on InGuardians (http://www.inguardians.com/pubs/articles.html).

Here is the description from InGuardians:

“Ed Skoudis releases 3 new cheat sheets for the most useful Windows command-line tools, Netcat, and other useful attack tools (Metasploit, Fgdump, and Hping). Get ‘em while their hot!”

Links:
Netcat: http://www.sans.org/resources/sec560/netcat_cheat_sheet_v1.pdf

Windows command line: http://www.sans.org/resources/sec560/windows_command_line_sheet_v1.pdf

Metasploit, Fgdump, Hping, etc.: http://www.sans.org/resources/sec560/misc_tools_sheet_v1.pdf

Seth Misenar

Leave a Comment :, , , , , , , , more...

Looking for something?

Use the form below to search the site:

Still not finding what you're looking for? Drop a comment on a post or contact us so we can take care of it!