Friday, July 01, 2005

TechEd 2005 - SEC320

Jesper Johansson gave a good presentation on "The Anatomy of a Hack". He re-titled his presentation, "How to Get Your Network Hacked in 10 Easy Steps".

It was quite the eye opener as he proceeded to use tools readily available to hack into a SQL database, a local DC, and a corp DC. I was in such amazement that I was too glued to the screen to take too many notes. I'll have to look at the slide deck later to get some better notes on what he showed.

Bottom line, you should use the SCW in Windows Server 2003 and harden your servers and databases. DON'T accept the defaults and NEVER let your sa password be blank (but then again I'm preaching to the choir right....???)

No comments: