CanSecWest: Security Masters Dojo Vancouver
| Next Session Dates: | March 24/25 2008 |
| Venue: |
Mariott Renaissance Harbourside Vancouver, Canada |
| Duration: |
One Day Courses. Sessions begin at 10:00 a.m. and go to 6 p.m. |
|
Registration Maximum: |
10 Students per course session. |
| Price: | CAD$1800 Full day course |
Course: Network Vulnerability Scanning - Turning Nessus into Metasploit
Instructors:
Renaud Deraison & Nicolas Pouvesle
(Tenable Network Security)
Register For This Course
Description
Nessus is a distributed engine, which could do much more than network auditing. In this class, Nicolas Pouvesle and Renaud Deraison will detail the Nessus architecture, the scripting language API and available functions, and will show to the students how they can turn Nessus into a potentially more powerful and agressive tool.
PREREQUISITE WARNING Each class has prerequisites for software loads and a laptop is mandatory. These individual class guides will list material the students are expected have knowledge about coming in and software tools that need to be pre-installed before attending so you get the maximum benefit from the focused intermediate or advanced level course. Please pay particular attention to the prerequisites, as the material listed there will not be reviewed in the courses, and will be necessary to get the maximum benefit out of these educational programs.
The goal of this course is to explain the Nessus architecture and how can take advantage of it to tailor it to its needs -- whether it is network auditing, system monitoring, and a massive pen-test".
They will then teach to the students how they can write their own NASL scripts to perform their own network checks. In particular, the SMB and SSH APIs will be explained so that students can learn how to write scripts digging information from remote Windows and Unix hosts by using the APIs provided by Nessus.
Prerequisites
- The students should have a laptop running Nessus 2.2.7 or 3.0.x
- The students should be familiar with either perl, php or preferably NASL


















