OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Register Today For New Upcoming Webcasts: Tool Talk Webcast w/ Q1 labs, Hybrid Web Worm, Cold Boot Attack, ISC, Pen Testing, Eric Cole on Encryption, Ask the expert and more...

From: The SANS Institute (Webcastsans.org)
Date: Mon Mar 03 2008 - 11:07:37 CST


Please join us the upcoming weeks for the following informative, free
SANS webcasts that you won't want to miss!

WEBCAST 1

Tool Talk Webcast: The ABC's of Dealing with Unique Network Security Risks
in a World of Open Campus Networks
WHEN: Wednesday, March 5, 2008 at 1:00 PM EST (1800 UTC/GMT)
FEATURING: Brian Mehlman
http://www.sans.org/info/23034
Sponsored By: Q1 Labs http://www.q1labs.com/

Universities continue to face a challenge in the balancing act of two
diametrically opposed networking requirements. On one hand, IT services
must meet the requirements of delivering an open campus network with
minimal restriction on use. And, on the other hand, you have networks
and systems that maintain sensitive information that requires tight
security controls, often under the scrutiny of specific regulatory
mandates.

WEBCAST 2

SANS Special Webcast: The Little Hybrid Web Worm That Could
WHEN: Thursday, March 6, 2008 at 1:00 PM EST (1800 UTC/GMT)
FEATURING: Billy Hoffman
http://www.sans.org/info/24683
Sponsored By: HP http://www.hp.com/country/us/en/welcomeBC.html

The past year has seen several web worm attacks against various online
applications. While these worms have gotten more sophisticated and made
use of additional technologies like Flash and other media formats, they
all have had some basic limitations such as infecting new domains and
using new injection methods. These worms are fairly easily detected
using signatures, so they are annoying, but ultimately controllable.
This webcast examines the possibility of hybrid web worms which use
several methods to overcome the limitations of current web worms.
Specifically the authors examine how a hybrid web worm (1) mutates
itself to evade defenses; (2) updates itself with new attack vectors
while in the wild; and (3) finds and exploits targets regardless of
whether they are client web browsers or web servers.

WEBCAST 3

SANS Special Webcast: A Response to the "Cold Boot Attack" Announcement
WHEN: Thursday, March 6, 2008 at 1:00 PM EST (1800 UTC/GMT)
FEATURING: John Strand
https://www.sans.org/webcasts/show.php?webcastid=91884

A certified SANS instructor will host this webcast and provide attendees
with actionable advice on how to reduce their organization's risk
against the Cold Boot Attack using encryption tools and real-world best
practices. Hear responses from leading providers in the encryption
market to gain better understanding of how these solutions can help
mitigate or avoid the vulnerabilities associated with the Cold Boot
Attack. Attendees will walk away with actionable advice on how this
vulnerability can impact their organization and which encryption
solutions can provide best-in-class protection from this and other
security risks.

WEBCAST 4

ISC Threat Update: March 2008
WHEN: Wednesday, March 12, 2008 at 1:00 PM EDT (1700 UTC/GMT)
FEATURED SPEAKERS: Johaness Ullrich and Tony Magallanez
http://www.sans.org/info/24698
Sponsored By: F-Secure http://www.f-secure.com/

The SANS Internet Storm Center (ISC) uses advanced data correlation and
visualization techniques to analyze data collected from thousands of
sensors in over sixty countries. Experienced analysts constantly monitor
the Storm Center data feeds searching for trends and anomalies in order
to identify potential threats. When a threat is identified, the team
immediately begins an intensive investigation to gauge the threat's
severity and impact. This monthly webcast discusses recent threats
observed by the Internet Storm Center, and discusses new software
vulnerabilities or system exposures that were disclosed over the past
month. The general format is about 30 minutes of presentation by senior
ISC staff, followed by a question and answer period.

WEBCAST 5

WhatWorks Webcast: PaulDotCom's Penetration Testing Dojo: Core IMPACT Style
WHEN: Tuesday, March 18, 2008 at 1:00 PM EDT (1700 UTC/GMT)
FEATURED SPEAKERS: Alan Paller and Paul Asadoorian
http://www.sans.org/info/24703
Sponsored By: Core Security Technologies http://www.coresecurity.com/

When beginning a security process at a consortium of non-profits, senior
network security engineer, Paul Asadoorian of Pauldotcom began looking
for a penetration testing tool that did network, web application and
social engineering tests. The tool he purchased is low on manpower use,
mostly self-maintaining and reliably proves the existence of network
vulnerabilities. Please attend this webcast to find out why Paul
selected CORE IMPACT and learn how it can help you safely perform
network, web application and end-user penetration testing.

WEBCAST 6

SANS Special Webcast: Monthly Series: Security Insights with Dr. Eric Cole
This Month's Topic: Encryption
WHEN: Wednesday, March 19, 2008 at 1:00 PM EDT (1700 UTC/GMT)
FEATURING: Dr. Eric Cole
http://www.sans.org/info/24708

Based on first-hand experience, this talk will look at areas where
encryption should be used and how to avoid common mistakes. Dr. Cole
will also identify areas where encryption should not be deployed.
Overall, this talk will provide expert knowledge of the landscape of
encryption, proper uses and common pitfalls. Register now for this free
webcast!

WEBCAST 7

Ask the Expert: Malcode Analysis and Response: Proficiency vs. Complexity
WHEN: Thursday, March 20, 2008 at 1:00 PM EDT (1700 UTC/GMT)
FEATURED SPEAKERS: Matt Allen and Russ McRee
http://www.sans.org/info/24713
Sponsored By: Norman Data Defense Systems http://www.norman.com/

The threat landscape changes constantly, driven in part by the "bot
economy" and changing malcode techniques. In response, incident handler
techniques must keep pace. This presentation will cover the use of
RAPIER, a security tool built to facilitate first response procedures
for incident handling. It is designed to acquire commonly requested
information and samples during an information security event, incident,
or investigation. RAPIER automates the entire process of data collection
and delivers the results directly to the hands of a skilled security
analyst. From detection and discovery, capture and containment, count
on a useful discussion meant to further your incident response
practices.

WEBCAST 8

Tool Talk Webcast: Are You Naked? Why virtualization and service processors
are leaving traditional log management customers naked.
WHEN: Tuesday, March 25, 2008 at 1:00 PM EDT (1700 UTC/GMT)
FEATURED SPEAKER: Bill Johnson
http://www.sans.org/info/24714
Sponsored By: Tdi http://www.tditx.com/

Virtualization and on board service processors are making log management
systems obsolete and opening their customers to huge compliance issues.
All existing log management systems are based on an 'inside out' agent
based, SYSLOG and SNMP architecture. This model is obsolete in today's
datacenter. Traditional log management systems do not log all events or
watch the data center all the time, opening the door to Sarbanes Oxley,
HIPAA and other compliance risks.

*******************************************************************

Be sure to check out the following FREE SANS archived webcasts:

SANS Special Webcast: Beyond Security Basics: Emerging Defensive Strategies
You Shouldn't Miss
WHEN: Tuesday, February 19, 2008 at 1:00 PM EST (1800 UTC/GMT)
FEATURED SPEAKER: John Strand
http://www.sans.org/info/22954
Sponsored By: Core Security

SANS Special Webcast: Monthly Series: "Security Insights with Dr. Eric Cole"
WHEN: Wednesday, February 20, 2008 at 1:00 PM EST (1800 UTC/GMT)
FEATURING: Dr. Eric Cole
https://www.sans.org/webcasts/show.php?webcastid=91783

Ask the Expert: Security Needs a New Paradigm
WHEN: Thursday, February 21, 2008 at 1:00 PM EST (1800 UTC/GMT)
FEATURED SPEAKERS: Dave Shackleford and A.N. Ananth
http://www.sans.org/info/22959
Sponsored By: Prism MicroSystems

Tool Talk Webcast: A Practical Approach to Cyber Security within Control
System Environments
WHEN: Tuesday, February 26, 2008 at 1:00 PM EST (1800 UTC/GMT)
FEATURED SPEAKER: Brian Contos
http://www.sans.org/info/22964
Sponsored By: ArcSight

********************************************************************
SANS is pleased to announce our new Training and Events Calendar - an
easy way to see what opportunities are available to you during the
coming month! The current calendars are now available for download from
http://www.sans.org/info/7926.

To change your subscription, address, or other information, visit
http://portal.sans.org. If you wish to have your name removed from our
mailing list, visit the site above, click on "update your account" and
check the box "Do not send any email."