prosvjoes - task 2016

9

Click here to load reader

Upload: haydn-johnson

Post on 12-Apr-2017

177 views

Category:

Technology


0 download

TRANSCRIPT

Page 1: ProsVJoes - Task 2016

@haydnjohnson @pathetiq

BSIDESLV - CTF - Red V Blue - Blue V Blue

https://twitter.com/dichotomy1 @dichotomy1 https://twitter.com/matir @matir http://prosversusjoes.net/

Page 2: ProsVJoes - Task 2016

@haydnjohnson @pathetiq

Average users try their hand at both offensive and defensive side of computer security.

Pros get hone their skills, help others to learn.

Joes are split up into teams with a Pro Captain, given a network to defend.

PvJ - Description

Windows Linux Firewall

Page 3: ProsVJoes - Task 2016

@haydnjohnson @pathetiq

ScoreBot● Services Up● Finding Flags● Keeping Red out● Killing beacons

● Having beacons● Losing flags● Services down

Page 4: ProsVJoes - Task 2016

@haydnjohnson @pathetiq

1st Day

PvJ - Defend all the things!

Firewall

Page 5: ProsVJoes - Task 2016

@haydnjohnson @pathetiq

PvJ - Defend & Attack2nd Day

Page 6: ProsVJoes - Task 2016

@haydnjohnson @pathetiq

Day 1- Red Team let loose● Beacons● Exploits● Post exploitation (backdoor)● Taking services down

● Understand own network● Drive the firewall● Harden boxes

Page 7: ProsVJoes - Task 2016

@haydnjohnson @pathetiq

Day 2- Blue Team let loose● Harden FASTER● Exploits● Taking services down● Removing unnecessary users● Attack team go!

Page 8: ProsVJoes - Task 2016

@haydnjohnson @pathetiq

Red Team Benefits● Hacks● Exploits● Mentoring Blue team

○ Recon, analysis, exploit, post-exploitation○ Metasploit○ SQL Injection to Shell

● Sharpening skillz

Page 9: ProsVJoes - Task 2016

@haydnjohnson @pathetiq

Blue Team Benefits● Hardening experience● Difficulty● Stress● WTFBBQ● Empathy for defenders