
In this class, you will learn how to force an attacker to take more moves to attack your network.
Course Length: 16 Hours
Includes a Certificate of Completion
Next scheduled date:
Notify me when available
Description
In this class, you will learn how to force an attacker to take more moves to attack your network.
Active Defenses have been capturing a large amount of attention in the media lately. There are those who thirst for vengeance and want to directly attack the attackers. There are those who believe that any sort of active response directed at an attacker is wrong. We believe the answer is somewhere in between.
These moves may increase your ability to detect them. You will learn how to gain better attribution as to who is attacking you and why. You will also find out how to get access to a bad guy’s system. And most importantly, you will find out how to do the above legally.
The current threat landscape is shifting. Traditional defenses are failing us. We need to develop new strategies to defend ourselves. Even more importantly, we need to better understand who is attacking us and why. Some of the things we talk about you may implement immediately, others may take you a while to implement. Either way, consider what we discuss as a collection of tools at your disposal when you need them to annoy attackers, attribute who is attacking you, and finally, attack the attackers.
This class is based on the DARPA funded Active Defense Harbinger Distribution live Linux environment. This VM is built from the ground up for defenders to quickly implement Active Defenses in their environments. This class is also very heavy with hands-on labs. We will not just talk about Active Defenses. We will be doing hands-on labs and through them in a way that can be quickly and easily implemented in your environment.
-
System Requirements
- A system with a browser and solid internet connection
FAQ
Lots of open-source tools that can be freely and easily configured in your environment
A better understanding of current legal landscapes
An approach for developing enterprise integrations
Website designers and architects
General security practitioners
Penetration testers
Ethical hackers
Web application developers
All!
A laptop (see “System Requirements”) and a smile
About the Instructor
John Strand
"Managing Intern for all things Black Hills Information Security"Bio
John Strand has both consulted and taught hundreds of organizations in the areas of security, regulatory compliance, and penetration testing. He is a coveted speaker and much-loved SANS teacher. John is a contributor to the industry-shaping Penetration Testing Execution Standard and 20 Critical Controls frameworks.
Register for Upcoming
Active Defense and Cyber Deception in the Age of AI
On-Demand John Strand
Attention: This is not a phish!
Antisyphon Training accounts have moved to learning.antisyphontraining.com. Training purchases will now be directed to that site. You can trust us.
Related products
-
Carrie RobertsLiveOD16 Hrs
PowerShell for InfoSec: What You Need to Know
View Course -
Multiple InstructorsLive16 Hrs
Security Defense and Detection TTX
View Course -
Joff ThyerLive16 Hrs
Enterprise Attacker Emulation and C2 Implant Development
View Course -
John StrandLiveOD16 Hrs
SOC Core Skills in the Age of AI
View Course This product has multiple variants. The options may be chosen on the product page

