Home
Calendar
Certifications
Columns
Features
Forum
Resources
Vitals
Latest Additions
April 2013 Free Giveaway Sponsor - eLearnSecurity
Human Intelligence to Navigate the Security Data Deluge
February 2013 Free Giveaway Winner of SANS CyberCon Training
Interview: Bugcrowd Founders on Herding Ninjas for Crowdsourced Bug Bounties
Network Forensics: The Tree in the Forest
March 2013 Free Giveaway Sponsor - Mile2
Book Review: Violent Python
February 2013 Free Giveaway Sponsor - SANS
Holiday 2012 Free Giveaway Winner of Metasploit Pro by Rapid7
Course Review: SANS FOR408 Computer Forensic Investigations Windows In-Depth
The Security Consulting Sugar High
Tutorial: Fun with SMB on the Command Line
Interview: Ilia Kolochenko, CEO of High-Tech Bridge
October 2012 Free Giveaway Winner of LearningGate Training
The Broken: Assessing Corporate Security in 2012 to Make a Better 2013
EH-Net Login
Welcome Guest.
Username:
Password:
Remember me
Lost Password?
No account yet?
Register
Who's Online
We have 38 guests online
You are here:
Home
Ethical Hacking Discussions and Related Certifications
Network Pen Testing
CEH - Certified Ethical Hacker
CEH @Infosec
EH-Net
May 22, 2013, 09:40:07 PM
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
News
: Go back to The Ethical Hacker Network Online Magazine
Home Page
Home
Help
Calendar
Login
Register
EH-Net
>
Ethical Hacking Discussions and Related Certifications
>
Network Pen Testing
>
CEH - Certified Ethical Hacker
(Moderator:
don
) >
CEH @Infosec
Pages: [
1
]
Go Down
« previous
next »
Print
Author
Topic: CEH @Infosec (Read 8527 times)
0 Members and 1 Guest are viewing this topic.
Dark_Knight
Sr. Member
Offline
Posts: 292
CEH @Infosec
«
on:
September 11, 2008, 08:33:33 PM »
I decided to do the CEH course at Infosec. The instructor will be Jeremy Martin. The course outline is shown below:
Day 1
Security testing methodologies
The Ethical Hacking Profession
Passive Intelligence Gathering 2007 Version
Network Sweeps
Stealthily Network Recon
Passive traffic identification
Identifying system vulnerabilities
IPv6 Vulnerabilities
Abusing Domain Name System (DNS)
Abusing Simple Network Management Protocol
(SNMP)
Some of the instructor-led hands-on lab exercises:
Network Sweeping
Scanning from spoofed IP addresses
Stealthy Recon
Injecting p0f for passive OS fingerprinting
Scanning through firewalls
IPv6 Scanning
Discover all subdomains owned by an
organization
Discover whois record changes over last 3 years
Windows 2003 Server & Vista DNS Cache
Poisoning Attacks
Pumping SNMP for data OID Dissection
Attacking SNMP
Capture the Flag exercises every night!
Day 2 include:
Remote buffer overflow exploit lab
Custom compiling Shellcode
Running payloads in RAM
Hiding exploit payloads in jpeg and gif image
files
Attacking email vectors (Lotus Notes and
Microsoft Exchange, and Outlook Web Access)
Registry manipulation
Client side IE & Firefox exploits
Using custom Trojans to circumvent Antivirus
Remote kernel overflows
RDP (Remote Desktop Protocol) Exploitation
Cracking Windows Passwords
Building Rainbow Tables
Cracking Windows 2003 native mode passwords
Brute forcing salted Unix passwords
Attacking Kerberos Pre-Auth Hashes
Cracking IOS and PIX passwords
Day 3
centers on extending access beyond the initial layer of
penetration. You will learn how to deploy trojan software
stealthily, attack through DMZs IDS & IPS, and deploy
cover channel keyloggers and kernel mode rootkits.
Trojan genres
Windows, Unix and Linux Trojans
Kernel Mode Windows Rootkits
System Call Hijacking vs. Direct Kernel Object
Modification
Kernel Mode Linux Rootkits
Covert communication channels
Spoofing endpoints of communication tunnels
Tunneling through IPSec VPNs by abusing ESP
Steganographic Tunnels
Remote command execution
Sniffing and hijacking SSL encrypted sessions
Installing sniffers on low privilege account in
Windows 2003 Server
Stealthy Remote keylogger installation
Circumventing Antivirus
Day 4: Attacking Network Infrastructure, Wireless
Attacks, and malicious evidence removal
After compromising and extending access to all
vulnerable systems at your target organization, you will
learn how to cover your tracks from even the most
vigilant defenders. The second half of Day 4 covers
attacking network infrastructure, including routers,
switches, IDS/IPS and firewalls. Some of the Day 4
lectures include:
Modifying syslog entries
Raw binary editing to prevent forensic
investigations
Editing the Windows Event Log
Abusing Windows Named Pipes for Domain
Impersonation
Impersonation of other Users- Hijacking kernel
tokens
Disguising network connections
Attacking Cisco IOS
Attacking STP & BGP protocols
Wireless Insecurity
Breaking Wireless Security WEP, WPA, WPA2
Blinding IDS & IPS
Attacking IDS & IPS
Some of the instructor-led hands-on lab exercises:
Malicious event log editing
Binary filesystem modification for anti-forensics
Named Pipe abuse
Kernel Token Hijacking
Attacking Border Gateway Protocol (BGP)
Attack WEP
Cracking WPA
Cracking WPA2
Cisco IOS Exploits
Breaking into Cisco routers
Blinding IPS
Attacking IPS
Day 5: Web Application Hacking
Day 5 is totally dedicated to the latest frontier in hacking
and information security -- web application hacking. You will
come to master the penetration of web applications and
web enabled devices.
Abusing Web Applications
Attacking Java Applets
Breaking web app authentication
SQL Injection techniques
Modifying form data
Attacking session IDs
Cookie stealing
Cross Site Scripting
Cross Site Request Forgery (CSRF) Attacks
Thoughts..................
Logged
CEH, OSCP, GPEN, GWAPT, GCIA
http://sector876.blogspot.com
BillV
Hero Member
Offline
Posts: 1892
Re: CEH @Infosec
«
Reply #1 on:
September 11, 2008, 10:19:13 PM »
Sounds like it will be a great course. Jeremy is very knowledgeable. Good luck and let us know how it goes.
BillV
Logged
don
Editor-In-Chief
Administrator
Hero Member
Offline
Posts: 4167
Editor-In-Chief
Re: CEH @Infosec
«
Reply #2 on:
September 12, 2008, 01:00:09 AM »
Jeremy is a great guy. He both instructed and spoke at the last ChicagoCon. Be sure to say hello, and let InfoSec know of your affiliation with EH-Net.
Don
Logged
CISSP, MCSE, CSTA, Security+ SME
Andrew Waite
Hero Member
Offline
Posts: 928
Re: CEH @Infosec
«
Reply #3 on:
September 12, 2008, 04:34:35 AM »
Looks like a nice course covering a lot of subjects, let us know how you get on.
Logged
--
http://www.infosanity.co.uk
--
http://blog.infosanity.co.uk
Dark_Knight
Sr. Member
Offline
Posts: 292
Re: CEH @Infosec
«
Reply #4 on:
September 12, 2008, 08:43:01 AM »
Quote from: don on September 12, 2008, 01:00:09 AM
Jeremy is a great guy. He both instructed and spoke at the last ChicagoCon. Be sure to say hello, and
let InfoSec know of your affiliation with EH-Net
.
Don
Will do and I will keep you guys informed.
Logged
CEH, OSCP, GPEN, GWAPT, GCIA
http://sector876.blogspot.com
Dark_Knight
Sr. Member
Offline
Posts: 292
CEH @Infosec Update
«
Reply #5 on:
September 27, 2008, 09:24:11 AM »
Guys the course ended yesterday and lemme tell you it was awesome. Its the best money I spent in a long while. The instructor was VERY good. So Don, Jeremy did live up to expectations. That guy knows so much its just down right scary
I also mentioned the site in class every opportunity I got. In fact when I introduced myself to Jeremy I told he comes highly recommended from the guys over @EH. Jeremy didnt just read from a script he regularly gave REAL world examples.
I sat 2 exams, CPT part 1 and the CEH v5. The CPT was held on Thursday and the CEH on Friday. The material in the course went by quickly and so I wasnt feeling 100% confident about doing either test. I felt the material was just too much to cover in the time frame. So I didnt do he CPT on Thursday instead I went back to my room to study. At one point I said it just wasnt gonna happen and I deceided to do the test at some other time.
Well guys on Friday morning I decided to just go balls out. So I did both tests back to back.I passed BOTH. So now I am CEH
For all the newbies thinking about doing the course Boot Camp style here's my 2cents. What you get out of the course will depend a lot on YOU. The material goes by like USAIN BOLT running the 100m. So if you can get material before hand that would go a far way.You also have to ask A LOT of questions. This is very important. You cannot be afraid to ask questions. Also talk to the instructor every opportunity you get. Utilize the break sessions etc.
Before I did the course I read several threads on this board stating what you needed to know before doing the course.Well they were spot on. Be comfortable with networking knowledge not necessarily a guru but comfy. This proved quite challenging for me because I am from a programming background. Also get comfy with the TCP/IP communication it goes a long way.
At the end of the day the CEH wont make u a hacker. It will open up your eyes to what is out there after which you can then choose the path your gonna take. I plan to do Web Application and Wireless track.
All in all it was a damn good course.
«
Last Edit: September 27, 2008, 09:28:44 AM by Dark_Knight
»
Logged
CEH, OSCP, GPEN, GWAPT, GCIA
http://sector876.blogspot.com
dalepearson
Sr. Member
Offline
Posts: 357
Re: CEH @Infosec
«
Reply #6 on:
September 27, 2008, 04:27:11 PM »
Dark_Knight, thanks for the write up, your opinions and insight, I am sure it will be of use to many of the forum considering the boot camp, and studying for the C|EH.
And congratulations.
Logged
:: Subliminal Hacking ::
/
:: Security Active Blog ::
BillV
Hero Member
Offline
Posts: 1892
Re: CEH @Infosec
«
Reply #7 on:
September 27, 2008, 09:17:26 PM »
Dark_Knight, congrats!! Well done
Quote
For all the newbies thinking about doing the course Boot Camp style here's my 2cents. What you get out of the course will depend a lot on YOU.
I just want to add a little to this... a successful course also depends on the instructor as well. Be sure to ask the training center for information about the instructor prior to attending the course. You'll want to make sure that the course material is reflected in their experience.
BillV
Logged
Dark_Knight
Sr. Member
Offline
Posts: 292
Re: CEH @Infosec
«
Reply #8 on:
September 27, 2008, 09:46:11 PM »
Quote from: BillV on September 27, 2008, 09:17:26 PM
Dark_Knight, congrats!! Well done
Quote
For all the newbies thinking about doing the course Boot Camp style here's my 2cents. What you get out of the course will depend a lot on YOU.
I just want to add a little to this... a successful course also depends on the instructor as well. Be sure to ask the training center for information about the instructor prior to attending the course. You'll want to make sure that the course material is reflected in their experience.
BillV
Spot on BillV. That is sooooo true. Jeremy Martin came highly recommended and believe me he lived up to and surpassed expectations
Logged
CEH, OSCP, GPEN, GWAPT, GCIA
http://sector876.blogspot.com
$w33p3R
Newbie
Offline
Posts: 30
Re: CEH @Infosec
«
Reply #9 on:
September 27, 2008, 10:54:32 PM »
Gratz on passing your test Dark Knight. I just completed the ECSA/LPT bootcamp yesterday and also had an amazing instructor, Larry Detar. The instructor can make a world of difference in how well a bootcamp can go, cause as you know, a bootcamp is like taking the full set of Encyclopedia Britannica, opening up the top of your head and trying to stuff the whole set in at once.
If an instructor is not skilled in covering that much information effectively, the bootcamp will always result in failure. Glad to hear you got a great instructor.
Any plans on other certs now?
Logged
MCP, CEH
Andrew Waite
Hero Member
Offline
Posts: 928
Re: CEH @Infosec
«
Reply #10 on:
September 28, 2008, 04:00:44 AM »
Dark_Knight,
congrats and thanks for the write-up, sounds like you had a great week.
Logged
--
http://www.infosanity.co.uk
--
http://blog.infosanity.co.uk
V0IDANC3
Guest
Re: CEH @Infosec
«
Reply #11 on:
September 29, 2008, 04:09:17 AM »
Hi Guys
Grats on the CEH certification
I got my CEH certification about two months ago and am really thinking about the ECSA. Just curiously (a) is the course interesting and well structured (b) Is there any chance that this cert will really take off as an industry recognised cert.
I'm really intent on getting the cert. Thanks for the help guys
Logged
Pages: [
1
]
Go Up
Print
« previous
next »
Jump to:
Please select a destination:
-----------------------------
EH-Net
-----------------------------
=> Calendar Of Events
===> ChicagoCon 2007
===> ChicagoCon 2008s
===> ChicagoCon 2008f
===> ChicagoCon 2009s
=> Ethical Hacktivism
=> News Items and General Discussion About EH-Net
===> Greetings
=> Special Events
-----------------------------
Ethical Hacking Discussions and Related Certifications
-----------------------------
=> General Certification
===> Networking
===> OS
===> Security
=> Compliance, Regulations & Standards
=> Control Systems
=> Cyber Warfare
=> Forensics
===> CCE / MCCE - (Master) Certified Computer Examiner
===> CHFI - Computer Hacking Forensic Investigator
===> EnCE - EnCaseฎ Certified Examiner
===> GCFA - GIAC Certified Forensics Analyst
=> Hardware
=> Incident Response
===> CSIH - Computer Security Incident Handler
===> GCIH - GIAC Certified Incident Handler
=> Malware
===> Advisories
=> Mobile
=> Network Pen Testing
===> CEH - Certified Ethical Hacker
===> CPTC - Certified Penetration Testing Consultant
===> CPTE - Certified Penetration Testing Engineer
===> CSTA - Certified Security Testing Associate
===> eCPPT - eLearnSecurity Certified Professional Penetration Tester
===> ECSA - EC-Council Certified Security Analyst
===> GPEN - GIAC Certified Penetration Tester
===> OSCP - Offensive Security Certified Professional
=> Physical Security
=> Programming
=> Social Engineering
=> Web Applications
=> Wireless
===> CWNP Certs
===> GAWN - GIAC Assessing Wireless Networks
===> OSWP - Offensive Security Wireless Professional
=> Other
-----------------------------
Columns
-----------------------------
=> Editor-In-Chief
=> Andress
=> Gates
=> Haddix
=> Hadnagy
=> Heffner
=> Hoffman
=> Linn
=> RichM
=> Murray
=> J. Peltier
=> Weidman
=> Wilson
-----------------------------
Features
-----------------------------
=> /root
=> Book Reviews
=> Opinions
=> Skillz
===> Examples
===> May 06 - Star Hacks, Episode V: The Empire Hacks Back
===> July 06 - Hack Bill!
===> Sept 06 - Netcat in the Hat
===> Nov 06 - Hitch-Hackers Guide to the Galaxy
===> Dec 06 - A Christmas (Hacking) Story
===> Feb 07 - Charlottes Web Site
===> April 07 - Microsoft Office Space
===> June 07 - Serenity Hack
===> Oct 07 - Worst. Ethical. Hacker. Challenge. Ever.
===> Dec 07 - Frosty the Snow Crash
===> March 2008 - It Happened One Friday
===> Oct 2008 - Scooby Doo and the Crypto Caper
===> Dec 08 - Santa Claus Is Hacking to Town
===> Feb 2009 - Brady Bunch Boondoggle
===> July 2009 - Prison Break
===> October 2009 - SSHliders
===> December 2009 - Miracle on Thirty-Hack Street
===> December 2010 - The Nightmare Before Charlie Browns Christmas
-----------------------------
Resources
-----------------------------
=> Career Central
===> Looking For Work
===> Looking To Hire
=> Links to cool sites.
=> Mass Media
=> News from the Outside World
=> Tools
=> Tutorials
===> Tutorial Requests
Loading...
Exclusive Deal
SANSFIRE 2013
June 15 - 22
5% Off
w/ Code
:
EHN_5
SANS Deals 4 EH-Netters
5% OFF
Any
SANS Course
in Any Format!
Coupon Code:
EHN_5
Including
SANS Rocky Mountain 2013
&
SANS Boston 2013
Polls
Compared to this year, 2013 will be:
Great!
Better.
About the same.
Little worse.
FUBAR!
Recent Forum Topics
News Items and General Discussion About EH-Net
: Change is Coming to EH-Net!!
(27) by
don
Greetings
: Hi from the UK
(2) by
n37sh@rk
Network Pen Testing
: AIX Vulnerability Assessments
(2) by
ras76
Tutorials
: Need guidance
(9) by
hanyhasan
Programming
: Finished Python Course in Codecademy now what?
(15) by
hanyhasan
Network Pen Testing
: Ruby on Rails Vulnerabilities / Attacks in BackTrack 5 r3
(0) by
SUdoctstudent
Network Pen Testing
: De-ICE 1.140 released!
(2) by
superkojiman
General Certification
: CPT Practical Submission
(1) by
UNIX
OSCP - Offensive Security Certified Professional
: Failed my first attempt at the OSCP exam
(94) by
azmatt
Tools
: Social-Engineer Toolkit (SET) Version 5.0 The Wild West Released
(2) by
m0wgli
Malware
: EICAR?
(3) by
UKSecurityGuy
Advisories
: HTB23154: Multiple Vulnerabilities in Exponent CMS
(0) by
AndyP
Advisories
: HTB23153: Multiple Vulnerabilities in Jojo CMS
(0) by
AndyP
Advisories
: HTB23151: Cross-Site Request Forgery (CSRF) in UMI.CMS
(0) by
AndyP
OSCP - Offensive Security Certified Professional
: Class Scheduled 6/8 - Linux n00b
(7) by
Taemyks
OSCP - Offensive Security Certified Professional
: OSCP exam scheduled
(6) by
gbhat
Incident Response
: LinkedIn Forensics
(0) by
AFENTIS_Forensics
General Certification
: Red Team/Blue Team
(1) by
ajohnson
Career Central
: Starter cert?
(3) by
Grendel
Network Pen Testing
: Beginner Ethical Hacker
(1) by
m0wgli
Web Applications
: Nessus and Nikto
(4) by
Seen
Network Pen Testing
: Cracking salted MD5 hash
(4) by
n37sh@rk
CEH - Certified Ethical Hacker
: Passed my C|EH
(3) by
n37sh@rk
Mass Media
: EC-council hacked, irony at his best?
(0) by
j0rDy
Web Applications
: SQL Injection into an INSERT statement.
(6) by
eyenit0
Network Pen Testing
: Solution for sipXtapi INVITE Message CSeq Field Header Remote Overflow
(1) by
m0wgli
EH-Net News Feeds
Latest Additions
Privacy Notice
for TDCC & All Properties
© 2013 The Ethical Hacker Network
Joomla!
is Free Software released under the GNU/GPL License.