Institute of Information Security
Imbibe, Inspire, Share
Login
Login
Password
 
Lessons
Search: Show all / Hide all
Categories Beginners
 
  CPH Sample Questionnairs
  CPHTr-1
 
Categories Certified Professional Hacker
 
  TCP IP Fundamentals
  System Fundamentals
  Programming & Database Fundamentals
  Advanced Google Hacking
  Fingerprinting
  Nmapping the network
  Footprinting
  Hacking networks
  Hacking servers
  Hacking databases
  Backdooring
  Hacking WLANs
  Web Application Hacking
  Advanced Web Hacking
  Buffer overflows
  Coding your own exploits
  Metasploiting the universe
  What is Social Engineering?
  Common Types of Attacks
  Social Engineering by Phone
  Dumpster Diving
  Online Social Engineering
  What is Honeypot?
  Types of Honey Pot
  SHA
  Reverse Social Engineering
  RC6
  Policies and Procedures
  Passive Brute Forcing
  MD5
  Introduction to Cryptography
  Honey net Project
  Honey Pot Replacement
  Hashing Algorithm
  Hacking Incidents
  Government Access Key - GAK
  Esoteric Hacking
  Encryption and Decryption
  Disk Based Forensics vs Network Based Forensics
  Digital Signature
  Digital Forensics Essentials – 6 A’s
  Defining the Forensics Process
  DES
  Cryptography Tools
  Cryptography Attacks
  Cryptographic Algorithms
  Corporate Espionage
  Code Breaking Methodologies
  Chain of Custody
  Botnets
  Blowfish
  Blackberry Hacking
  Basics of Digital Forensics
  Active Brute Forcing
  Assembly Language Tutorial
  Bluetooth Hacking
  Writing Virus Codes
  Windows Based Buffer Overflow Exploit Writing
  Web-Based Password Cracking Techniques
  VoIP Hacking
  Viruses and Worms
  Trojans and Backdoors
  Threats and Countermeasures
  Spying Technologies
  Spamming
  Software Piracy and Warez
  Smashing the Stack for Fun and Profit
  Reverse Engineering
  RFID Hacking
  Physical Security
  Phishing
  Hacking Web Servers
  Hacking Web Browsers (Firefox, IE)
  Hacking USB Devices
  Hacking Mobile Phones, PDA and Handheld Devices
  Hacking Email Accounts
  Hacking Database Servers
  Firewall Technologies
  Evading IDS, Firewalls and Detecting Honey Pots
  Data Loss Prevention
  Credit Card Frauds
  Covert Hacking
  Corporate Espionage- Hacking Using Insiders
  Introduction and Case Study
Categories Information Security Awareness
 
  What is Information Security
  What is Information Security Awareness
  Need For Information Security Awareness
  Common Threats
  Ways to Protect
Categories Certified Web Application Security Professional - Coming Soon!
 
  Test
Categories Developers
 
Categories Certified Web Application Security Professional - Coming Soon!!
 
  Course Overview and Objectives
  Case Studies
  Business Risks from Application Vulnerabilities
  Introduction to web application vulnerabilities
  OWASP Top Ten
  Flash Attacks
  IFrame Attacks
  AJAX Vulnerabilities
  Web 2.0
  Web Services
  Web Services Vulnerabilities
  Threat Modeling – Objectives
  Threat Modeling – Meaning and terminology
  Hacker’s Interest Area
  Threat Profiling
  Threat Modeling – Practical Considerations
  Threat Modeling – Case Study
  Functional testing
  Security testing
  Difference between functional & security testing
  Secure Coding Techniques
  Secure Coding Techniques - Best Practices
  Secure J2EE Programming
  Secure .NET Programming
  Secure PHP Programming
  Significant OWASP Projects
  OWASP Code Review Guide
  OWASP Development Guide
  OWASP Testing Guide
  OWASP List of Vulnerabilities
  Continuous security testing and assessments
  Risk based approach
  Risks from Outsourcing
  Conducting VAPT, Source code audits, Infrastructure reviews
  Test
Categories Certified Secured .NET Developer - Coming Soon!!
 
  Importance of Application Security
  OWASP Top Ten
  Application Security Best Practices
  Security Best Practices for Com+, SQL Server
  Service Account Selection and Management
  Authentication Mode
  Implementing Data Protection
  Validating Application Input
  Evaluating Canonicalization Issues
  Implementing CLR Security Mechanism
  Basic Role Based Security
  Role Based Security with Principal and Identity Objects
  Role Based Security with Permission Objects
  Overview of Code Access Security
  Basic Security Operations
  Adding Permission Requests
  Implementing Symmetric Cryptography
  Implementing Asymmetric Cryptography
  Implementing Authentication in ASP.NET Application
  Implementing Authorization in ASP.NET Application
  Implementing Impersonation in ASP.NET Application
  Securing Web Files and Folders
  Introducing .NET Application Security
  Implementing Authentication an d Authorization in .NET Remote Applications
  Introducing Web Service Security
  Managing Security Policies
  Managing Security Policy Levels
  Deploying .NET Application with appropriate Security Settings
Categories Certified Secure Java Developer - Coming Soon!!
 
  Threat Modeling
  Secure Designing
  Application Security Design Principles
  Introduction to Web Hacking
  Introduction to Java Framework - J2EE
  Introduction to Java Framework - Struts
  J2EE Framework Enforce Security
  JVM’s Role Byte Code and Type Safety
  Java Language Security and Sandbox Concept
  Authentication and Authorization API’s
  Java Access Control Features - java.security.AccessController
  Java Access Control Features - Inheritance of AccessControlContext
  Java Access Control Features - java.security.ProtectionDomain
  JAAS - Authentication Classes and Interfaces
  JAAS - Authorization Classes
  Java Cryptography Architecture
  Cryptography - Provider Class
  Cryptography - Security Class and the other related Classes
  Accessibility and Extensibility
  Data Validation
  Serialization and Deserialization and other related mistakes
  Vulnerabilities Exploited and Counter Measures
  Database Security - Oracle
  Database Security - MS SQL
Categories Evaluation
 
  CISC Test
  CPFA Test
Categories Free Demo !!
 
Categories Metasploit Framework
 
  Metasploit Framework
Categories Practitioners
 
  Network design and Network components
 
Categories Network Security Audit
 
  Introduction and Case Study
  TCP IP Fundamentals
  Honey pots or Honey Net
  Intrusion detection or prevention
  Network Active & Passive Attacks-Eavesdropping, sniffing, brute force, masquerading, man-in-middle attack or IP spoofing, phishing, message modification, Miniature fragment attack, source routing, Denial of service, (DOS), packet replay, session hijackin
  VPN & its implementation
  Access from Internet orThird parties site or other offices
  Admin access, lockdown rule, Internal use or External use
  Attacking routers - third party software used with Firewall as an additional service
  Bluetooth Technology, WEP (RC4), WPA, WPA2 (802.11I or 802.11g)
  Configuration access to routers, SNMP, configuration on Network components
  Configuration mgmnt. for security base-lining, policy & procedures, Bastion host
  Countermeasures for attacks
  DMZ configuration, hardening of OS parameters, networking authentication
  Data Centre issues
  Development & authorization of Network changes
  Encryption methodology, third party software used as an additional service
  Encryption or CRC Algorithm
  Filtering
  Firewall components
  Firewall failure mode - fail open or fail secure
  Full Network assessment reviews
  Hardening Operating system parameters and related issues
  IOS Version on the router
  IPSec - Encapsulation in transport or Tunnel mode
  Implementing Security policy & procedures
  Incident handling for detection of security breaches, response and containment
  Integrity and confidentiality of logs
  Internet security
  Introduction and Overview of Network types, components and security issues
  Live case study and scenarios
  Location of offline configuration files
  Log Analysis
  Log Rotation
  Log file location
  Network Auditing - Networking components &transmission media
  Network Change Control Mgmnt. system (rule based)
  Network Traffic Analysis & Monitoring Tools, securing Network gateways (encryption of password ordata)
  Network administration Roles & Responsibilities
  Network countermeasures
  Network logical security
  Network port and port-scanning
  Network protocols, network software standards & procedures, Network data issues, transmission media and techniques including last mile connectivity
  Network topology and Overview of LAN-WAN
  Networking Security Threats & Vulnerabilities
  Overview of Firewall, Types of Firewall and its
  Overview of IDS (NIDS & HIDS) or IPS and its components
  POP access to mail server or Network perimeter security
  Password strength for configuration users
  Periodic Network Penetration tests
  Protection from Internal attackers or Networking operation control
  Review of Secured Network design & topology, networking devices
  Router Security
  Scanning for virus, spyware, malware, Trojan, worm
  Unauthorized changes (access control list) and Audit logging
  VLAN implementation and authentication mechanism
  Verifying Firewall access rules, reviewing or monitoring logss
  Virus scanning, spyware, worms, Trojan, malware
  WLAN security, Access points or translational points, SSID, EAP
  Web server access
 
System news
There are no system announcements