SANS

/Tag:SANS

Information Security Events for February

. Here are the information security events in North America this month: 18th Annual Network & Distributed System Security Symposium: February 6 to 9 in San Diego BSides San Francisco: February 14 to 15 in San Francisco RSA Conference 2011: February 14 to 18 in San Francisco BSides Cleveland: February 18 in Cleveland SANS Phoenix: [...]

Northern Virginia Security Community

Each week, we’ll highlight a major city in the US and cover the places and events you can go to in that area to get your security information fix. This post is part of the information security communities. This northern Virginia houses the headquarters of several federal agencies and so it's not surprising that a [...]

Information Security Events for January

. Here are the information security events in North America this month: BSides MSP: January 7 in St. Paul BlackHat DC: January 16 to 19 in Arlington SANS Security East: January 20 to 27 in New Orleans DOD Cyber Crime Conference 2011: January 21 to 28 in Atlanta Shmoocon: January 28 to 30 in Washington, [...]

Phoenix Security Community

Each week, we’ll highlight a major city in the US and cover the places and events you can go to in that area to get your security information fix. This post is part of the information security communities. It doesn't get any hotter than Phoenix, in the literal sense. The intense climate is nothing to [...]

2017-03-12T17:40:01-07:00 December 29th, 2010|Local Meetings, Security Training|0 Comments

Week 51 in Review – 2010

Resources: Common Weakness Scoring System (CWSS) - cwe.mitre.org So for each weakness in the architecture, design, code or implementation that might be introduced into an application, which in some cases can contribute to a vulnerability within that software, we need to be able to reason and communicate about the relative importance of different weaknesses. Brief [...]

Week 50 in Review – 2010

Events Related: RSnake, Web Security and a few beers - andlabs.org Reminiscing Black Hat Abu Dhabi. DojoCon Follow-Up - novainfosecportal.com Although there was a formal CFP, everything else followed a traditional unconference format. SANS SEC660: Post Mortem - c22.cc The class is designed to cover the ground between the SEC560 Network Penetration Testing class and [...]

Week 48 in Review – 2010

Resources: Impersonating The Domain Administrator via SQL Server - commonexploits.com A recent presentation I gave for 7Safe. It demonstrates how it is possible to fully compromise the domain using a fully patched Microsoft SQL server that has a firewall enabled. RuxCon 2010 Materials - ruxcon.org.au Talk PDFs now posted. Nuff said. New SANS Course - [...]