Friday, July 1, 2011

EH-Net Newsletter - June 2011


Get More Info on Metasploit Pro by Rapid7



hacking_dojo.jpg
Over the past few years there has been a fairly steady increase in the amount of penetration testing classes available both in an online format as well as the classroom.  Thomas Wilhelm is no stranger to the infosec community as he has written several books within the past few years in contribution such as “Professional Penetration Testing: Creating a Formal Hacking Lab” and “Ninja Hacking: Unconventional Penetration Testing Tactics and Techniques” as well as the initial offering into the certification realm with Heorot.net.  He also has extensive experience within the information security field having worked in a penetration testing role as well as many others.  EnterHackingdojo.com.
Tom's intent with the Hacking Dojo class platform was to follow a traditional form of learning martial arts, take material covered with his already present Heorot.net certification programs, and mold it into a virtual environment.  He does so in a way that information sharing and direct cooperation between students and instructor(s) could take place, rather than Heorot.net's “learn on your own” style of learning.
Read on...

Don’t have the cash for a $2000 - 3000 penetration testing course? Don’t know which tools are outdated or relevant? Lost in the sea of Backtrack options? You learn better on your own anyway?
No problem!
BackTrack 4: Assuring Security by Penetration Testing (BASPT), authored by Shakeel Ali and Tedi Heriyanto, is a 12-chapter compendium on everyone’s favorite hacking distribution,Backtrack 4. Filling the need for a refresher to older titles on abandoned projects like Knoppix or Auditor (see somewhat outdated: Penetration Tester’s  Open Source Toolkit, Vol. 2), BASPT gives syntax and usage tips on a plethora of different tools included in the suite and is broken down into the generic pentesting methodology with which most people today are familiar. Not only that, but also the book itself reads like some of those intro to penetration testing classes we have all been to costing many more times the cost of a single book.
Intrigued? Let’s take a closer look.
Read on...

Course Review: The Hacker Academy Online Curriculum 

Review by Tony L Turner CISSP, CISA, GIACx4, OPSE, VCP, ITIL-F
hackeracademy_logo.jpg
The Hacker Academy (THA), with their online ethical hacking curriculum, fulfills an integral training need for security professionals. There are many training programs available today that teach tools and techniques for hacking. Some are better than others or suited to slightly different specializations such as web, network or wireless pen testing, but most of them are presenting very similar content. The problem is that most of these programs offer static content. By that I mean that the material does not change frequently, and the student is forced to find ways to stay current on new techniques. I think most of us would agree that it is a requirement in this field, but it can be very expensive and time consuming constantly going to conferences, trying to sift through Twitter or the hundreds of blogs for that useful tidbit. THA seeks to address that very problem with constant updates to the content by adding modules at an alarming rate. The cost is very reasonable at $95/month or $995/year with no contract required.
The format of the course includes web-based videos of the content, a lab component for each module, additional reading from external sources, comments sections for the module to interact with other students and instructors, and virtual machines for the attack platform using Backtrack 4 and various target VMs.  Instructors are real-world professionals such as EH-Net columnist Mike Murray, Mike Bailey, Daniel Frye and Jeremy Conway. THA’s Online Curriculum consists of two primary sections, Ethical Hacking and The Cutting Edge.
Read on...



Stay Tuned:
- Course Review: CSTA by 7Safe
- Oracle Web Hacking Part II by Chris Gates
- Course Review: eLearnSecurity Student
- Interviews with Courseware Developers and Instructors
- More Course & Book Reviews



Giveaway Corner
Win 1-Year Hacking Dojo Subscription = $1600!
hacking_dojo.jpgIf you've ever done martial arts and experienced learning in a dojo, then you're familiar with a teaching style that has succeeded for centuries. Thomas Wilhelm, author, instructor, speaker, professional penetration tester & all-around kewl guy, brings this concept to the security industry:
"The Hacking Dojo provides students with a long-term training and support system, with readily-available access to instructors. Students attend regularly-scheduled online meetings with their instructor, who teaches hacking concepts relative to students' skill level. When the students demonstrate proficiency in a set of skills, they are moved onto more difficult challenges and instruction."
Up for grabs this month is a full year of training in the dojo with one of the industry's most respected names. Also, for the month of June, Mr. Wilhelm is taking $50 off the first month's subscription (tell him EH-Net sent you). But to win the prize, all you have to do is become an EH-Net member & give back to the community in our discussion forums. It's that easy... well there will be competition, but it will be good practice before you get in the Hacking Dojo. Kia!!
May Winner!
event2011-us-skull-200px.pngEvery year, we seem to have to rush to make arrangements for the winner of the annualBlack Hat USA ticket. Not this year. EH-Net has chosen lorddicranius to be the winner this month of the Conference pass for the BlackHat Briefings (Aug 3 - 4) worth at least $2095. This year's event is described as, "The Black Hat Briefings have become the biggest and the most important security conference series in the world by remaining true to our core value: serving the information security community by delivering timely, actionable security information in a friendly, vendor-neutral environment." Or in plain words, it is THE event of the year for security professionals. With smart attendees, numerous sponsored parties, networking events, top training, expert presentations and DefCon starting the very next day, you'll have an unforgettable experience.
The event takes place in its normal location, Caesars Palace in Las Vegas, NV, with training from July 30 - August 2 followed by the Briefings on August 3 - August 4. Congratulations, and we'll see the rest of you in Vegas Baby!!

Upcoming Events
OWASP NZ Day 2011 July 7

DIMVA 2011 July 7 - 8

Recon 2011 July 8 - 10

SANSFIRE 2011 July 15 - 24

Black Hat USA 2011 July 30 - August 4

DFRWS 2011 August 1 - 3

BSidesLasVegas 2011 August 3 - 4

DEF CON 19 August 4 - 7

DEFCON Kids August 6 - 7

* Add your event to EH-Net's Global Calendar: events(at)ethicalhacker(.)net


No comments:

Post a Comment