The R & D Initiative is executing the periodical gIntensive Practical Security Trainings,h as a part of the project of gDevelopment of Education Systems for Information Security,h sponsored by the Ministry of Education, Culture, Sports, Science and Technology (MEXT). These intensive courses include Windows Security, Unix Security, Secure Programming, etc. Among them, Windows Security course was held 4 times and earned some reputation among students.
This course is unique as a university class, in the respect of treating a specific commercial platform and including an exercise of using real malicious softwares including password cracking tools, BoF exploits, and rootkits. Making students use real hacking tools and MITM tools was really effective in realizing them of the danger of intrusion and sniffing, because it is widely accepted concept that IT security people should gthink like hackers.h Here I would like to report what kind of training is needed to security people and what effect was acquired from the class. Simultaneously I would like to supply a material for discussing what kind of experience of gmock hackingh is necessary and what, such as writing malwares themselves, is harmful.
Keywords: VDS virus detection

| Sponsors | |||||
| Platinum | Gold | ||||
![]() |
![]() |
||||
| Silver | Bronze | |||
![]() |
||||
Copyright 2004 AVAR. All right reserved
AVAR 2004 Conference Organizing Committee
E-mail :
avar2004@aavar.org
Tel: +81 54 283 5327Fax: +81 54 283 5328