海纳百川

登录 | 登录并检查站内短信 | 个人设置 网站首页 |  论坛首页 |  博客 |  搜索 |  收藏夹 |  帮助 |  团队  | 注册  | RSS
主题: Ethical Hacking Is No Oxymoron  :)
回复主题   printer-friendly view    海纳百川首页 -> 众议院
阅读上一个主题 :: 阅读下一个主题  
作者 Ethical Hacking Is No Oxymoron  :)   
潜水木
[博客]
[个人文集]

游客









文章标题: Ethical Hacking Is No Oxymoron  :) (264 reads)      时间: 2004-6-28 周一, 下午1:00

作者:Anonymous众议院 发贴, 来自 http://www.hjclub.org

Ethical Hacking Is No Oxymoron

Reuters Page 1 of 1

09:51 AM Jun. 27, 2004 PT

LOS ANGELES -- Sporting long sideburns, a bushy goatee and black baseball cap, instructor Ralph Echemendia has a class of 15 buttoned-down corporate, academic and military leaders spellbound. The lesson: hacking.

The students huddled over laptops at a Los Angeles-area college have paid nearly $4,000 to attend “hacker college," a computer boot camp designed to show how people will try to break into network systems -- and how they will succeed.

Hackers are believed to cost global businesses billions of dollars every year, and the costs to defend against them are soaring. One study by Good Harbor Consulting showed that security now accounts for up to 12 percent of corporate technology budgets, up from 3 percent five years ago.

"This is definitely bleeding edge -- so bleeding edge in fact, sometimes, that it's frightening," said Loren Shirk, a student in the class at Mt. Sierra College who owns a small-business computer consulting company.

The course prepares students for an exam offered by the International Council of E-Commerce Consultants, or EC-Council. If they pass that test, they get the ultimate seal of approval: Certified Ethical Hacker.

The class is by no means easy. Instructors race through topics like symmetric versus asymmetric key cryptography (symmetric is faster), war dialing (hackers will always call late at night) and well-known TCP ports and services (be wary of any activity on Port 0).

"I can definitely say it's not for everyone," said Ben Sookying, director of network security services for the California State University's 23-campus system and another student in this week's class. "If you don't have discipline, you won't make it through this course."

But the work is practical, too. On the first day, students were taught basic free and legal research methods, mostly involving search engines and securities databases, so they could learn as much information as possible about companies, their executives and systems.

With relatively little effort, they found out that the chief executive of one public company maintained his own website dedicated to guitars, while another public company still uses a number of systems known to be easily exploited by hackers.

Intense School, the Florida-based company that runs the hacking boot camp, started in 1997 with a $35,000 investment, teaching Microsoft and Cisco software to systems engineers.

But after the Sept. 11, 2001, attacks on the World Trade Center and the Pentagon, the company expanded its focus to information security courses. It now offers around 200 classes a year, generating about $15 million in annual revenue.

"What we attempt to do in our classes is teach how the hackers think," said Dave Kaufman, president of Intense School. The only way to keep hackers out of major corporate systems, he said, is to know how they will be attacked in the first place.

Cal State's Sookying said, in his case, the problem is that the users of his systems know how to attack all too well.

"We teach students how to hack and how to code and here are the students applying what they've learned against us," he said.



http://www.wired.com/news/infostructure/0,1377,64008,00.html?tw=wn_story_top5

作者:Anonymous众议院 发贴, 来自 http://www.hjclub.org
返回顶端
    显示文章:     
    回复主题   printer-friendly view    海纳百川首页 -> 众议院 所有的时间均为 北京时间


     
    论坛转跳:   
    不能在本论坛发表新主题
    不能在本论坛回复主题
    不能在本论坛编辑自己的文章
    不能在本论坛删除自己的文章
    不能在本论坛发表投票
    不能在这个论坛添加附件
    不能在这个论坛下载文件


    based on phpbb, All rights reserved.
    [ Page generation time: 0.654978 seconds ] :: [ 22 queries excuted ] :: [ GZIP compression enabled ]