Awareness Products

Home

Online Training

Metrics

Newsletters

Live Training

Gaming

Awareness Art

Awareness Calendar

Awareness Materials

Free Stuff

Partners

Resources

Trusted Learning

Infowar.com

InfoWarCon

News

News Releases

 
.

LIVE CYBERWARS: RED-BLUE TEAMS


Over the course of 5 days (or less), two teams will square off against each other in a mutual exercise of network attack and defense. Each team will be provided with identical systems and will be responsible for penetrating their opponent's network while defending their own from the same.

This is the only attack/defend exercise of its kind that walks teams through every stage of a network attack from port scanning through system penetration. At each attack step along the way, teams will learn and practice the following:

1. What the attack is and how it works.
2. The digital footprints the attack leaves behind.
3. What countermeasures can be put in place to prevent or monitor future attacks.

What makes our Live CyberWar Gaming different?

Insight and White Wolf offer the only information war games of its kind. Using true production quality components, we provide a real time network "attack and defend" environment. Clients are able to connect to the war games lab from anywhere in the world over a secured VPN or the entire operation can be transported to your location for on-site training.

The system is available 24/7/365. Each system is built to a specific security guideline. This enables our clients to attack systems that represent portions of the public critical infrastructure. As part of the class, all information is logged and recorded. This log information is then sent to the clients to help hone their forensic and incident analysis.

Using sound educational concepts, students are taught new skills and concepts that are applicable to the real world. Our courses are a series of highly interactive and engaging modules which impart knowledge and experience in a safe networking environment.

  Day 1 Setup and Overview:

Rules of engagement
Systems overview
Windows 2000 Server
Red Hat Linux 7.3 Server


Network overview:

Router
Firewall
IDS
Wireless

Attack overview:

· Selection
· Reconnaissance
· Model building & tool testing
· Execution
· Manipulation
· Clean up and egress

Defense overview

· Follow the packet
· Protect
· Detect
· Respond
· Systems lockdown

  Day 2 Reconnaissance:

System scanning

· How it works
· Basic tools
· Advanced tools
· Footprints
· Countermeasures

Stealth scanning

· How it works
· Basic tools
· Advanced tools
· Footprints
· Countermeasures

Vulnerability mapping

· How it works
· Basic tools
· Advanced tools
· Manual tools
· Footprints
· Countermeasures

Wireless scanning

  Day 3 Remote Penetration:

Buffer overflows

· How they work
· Code selection
· Execution
· Footprints
· Countermeasures

Automated attack tools

· How they work
· Tools selection
· Execution
· Footprints
· Countermeasures

Virus/worms

· How they work
· Code selection
· Execution
· Footprints
· Countermeasures

Trojans

· How they work
· Code selection
· Getting to code
· Footprints
· Countermeasures

Web servers

· Vulnerabilities
· Exploits
· Execution
· Footprints
· Countermeasures

 

  Day 4 Additional Attacks:

Gaining user access

· FTP
· Telnet

Expanding access

· Rootkits
· Privilege escalation

Password cracking

· Where are the passwords
· Getting access to the files
· Cracking the passwords

Man in the middle attacks

· How they work
· Code selection
· Execution
· Footprints
· Countermeasures

Sniffing on a switch

· How it works
· Code selection
· Execution
· Footprints
· Countermeasures

 

  Day 5 After Action Review:

Incident response process

· Log files
· Where are they
· How to read them

Automated tools

· IDS monitoring

Review of the week's events

Complete team reviews

· Lessons learned
· Where to go from here

 

Forensic analysis

· Acquiring physical evidence
· Acquiring digital evidence
· Processing and handling digital evidence
· What to look for
· How to tell when you've found it

« Return to Gaming Index

 

© 2000 - 2008 Interpact, Inc. (727-393-6600)

Home   |   About Us   |   Our Founder    |   Contact