SEC504: Hacker Tools, Techniques, and Incident Handling

Unlock industry insights and hands-on learning with upcoming SANS webcasts and workshops. View archived webcasts here.
The third webinar in this six-part series will feature application providers discussing the pros and cons of offering cloud-based solutions to NERC entities. These providers will share their decision-making processes, focusing on how they navigate cloud deployment while acknowledging their customers' need for NERC CIP compliance.
This talk will explore how corruption related to cybercrime works, how organized crime groups identify targets, and talk about a case study that the presenter was involved in, where a cybercrime group used corruption to pull off a major hack of several government departments.
Cybercrime continues to evolve, and as forensic analysts and incident responders, we often are in a virtual arms race with the criminals. While the best tool in both art and science is the amazing capacity of the human brain, and this is especially apparent in the field of digital forensics and incident response, where we match ourselves against the creative ingenuity of committed and capable criminals; we do need other tools to make our work possible. We need to make sure that we constantly look at the capabilities that are out there that give us the best weaponry to defend our environments.
The cybersecurity workforce has exploded in recent years, with more than 1 million available jobs posted in 2023 alone. Daunting is the fact that the demand for skilled employees more than doubles the currently available workforce.
Get ready to dive into the ultimate cloud security experience! Mark your calendars for SANS Cloud Security Exchange 2024 on Tuesday, August 27th, at 11:00 AM ET (15:00 UTC). Where else can you find top-notch experts from the world’s leading cloud security providers all on one virtual stage? Right here, of course!This event, completely free of charge, offers a rare chance to learn rom the best in the business. Don’t miss out! Register for FREE. Discover what’s working and what’s not working in cloud security design, identity modernization, and Generative AI (GenAI) security. Hear where to start your cloud security journey, how to evolve your cloud security controls, and adopt modern best practices straight from the cloud providers and world’s foremost cloud security experts.Last year, thousands from around the globe joined us, and this year promises to be even bigger and better. Hear from renowned experts representing SANS Institute, Amazon Web Services (AWS), Google Cloud, and Microsoft Azure. The success of our past events has paved the way for another remarkable exchange of knowledge.Even if your schedule doesn’t allow for live attendance, be sure to register anyway! This way, you’ll have first access to free recordings and materials.
SEC547 Mastering Supply Chain Security: A 3-Part Webcast Series. Part 2 supports content and knowledge from SEC547: Defending Product Supply Chains.
Cloud services rapidly evolve as the result of incessant agile software delivery, but so do cloud customers. Previous SANS surveys have identified mergers and acquisitions as a major reason that cloud customers have started using a new cloud service provider and use multiple single sign-on solutions. Leadership changes can create a lack of consistency. Lack of architectural guidance may also leave different teams within a company going off in different directions. On this webcast, SANS Certified Instructor Ken Hartman examines 2024 survey results to provide insight into:Reasons that certain cloud technologies or best practices are only partially adoptedThe influence of a cloud architecture strategy on choices made during implementationHow widely used and effective various third-party and cloud-native security tools, technologies, and services areRegister for this webcast now, and you will automatically receive the companion white paper upon publication.
Fighting the Impossible: Supply Chain Attacks with Bojan Zdrnja, SANS Certified Instructor and DFIR Kung Fu with Kevin Ripa, SANS Senior Instructor
Captain KubeAce Maverick and the Aviata team are still reeling from the Kubernetes attack that resulted in the theft of their valuable flight plan and pilot data.
Join Stephen Sims and Erik Van Buggenhout as they present, "The Always- On Purple Team: An Automated CI/CD for Detection Engineering", which they previously introduced at RSA Conference 2024. During this webcast, they will share tips on building the always-on purple team!
In an era where cybersecurity threats are escalating, the oversight of Industrial Control Systems (ICS) is more critical than ever. Join us for an exclusive panel discussion with SANS instructors Robert M. Lee, Tim Conway, Dean Parsons, and Jason Christopher, as they address cybersecurity leaders on the imperative of securing ICS.
Through a discussion of three cases, one criminal, and two civil, the presenter will show how digital forensic evidence presented by either an unqualified or biased digital forensic practitioner almost destroyed the lives of the parties in court, and how a proper scientific approach to digital forensics assisted in the courts in achieving justice.