November 8-10, 2004 - Marriott Wardman Park - Washington, DC
Maximiliano Caceres, Director of CORE IMPACT Product Management at Core Security Technologies, will hold the following sessions:
Session Title: TEC-7b An Evaluation of Publicly Available Exploit Code
Time/Date: Tuesday (November 9, 2004) 2:00pm - 3:15pm
Track: Technology (Double Track)
Format: Session (Standard)
Level: Technical
Description: Security practitioners evaluate vulnerability information, from a variety of sources, to make educated security-related decisions. However, most don’t assess publicly available exploit code, which is what most attackers use to deliver attacks. Professionals must now evaluate the distinguishing features as well as the quantity and quality of the tools attackers utilize, in order to more effectively secure their network. This presentation will address the results of a research project on the quality of publicly available exploit code for vulnerabilities in Windows, Linux and Solaris. We will propose guidelines to improve the security assessment process using the results of our evaluation.
Session Title: TEC-9b Attack Modeling: From the Attacker's Perspective
Time/Date: Wednesday (November 10, 2004) 9:15am - 10:30am
Track: Technology (Double Track)
Format: Session (Standard)
Level: Technical
Description: Existing models used to simulate attacks were developed with the goal of deploying effective countermeasures. However, these current models don’t take into consideration the goals and methods of a real-world attacker and subsequently provide little valuable insight. Any effective security model must take into account the attacker’s perspective. This presentation will present new attack models, introducing attacker-centric concepts such as stealth, traceability, effectiveness, execution time and attack novelty. Implementation scenarios and application to real-world penetration-testing will be discussed. We will also present models based on real-world attacker goals and provide examples of their application to security evaluation.
More info: https://www.cmpevents.com/csi31/a.asp?option=G&











