TRAINING SESSION: SQL Injection Attack - Sep. 2, 2022 - 11 a.m. - 1 p.m.

Program Details

A public web server is hit with a SQL Injection attack.

In this scenario, the system attacks a known public web server using SQL injection. During the attack, the attacker enables the internally-stored SQL procedure xp cmdshell, which is later used to extract all of the users’ computer names and emails from the active directory (AD) using PowerShell scripts, and to stop the internal server’s services using the remote Service Control Manager. The attack is performed repeatedly until the trainees stop the attack.

  • Course Date and Time:
    • Friday, Sep. 2, 2022 - 11 a.m. to 1 p.m.

Stock number: