Ethical Hacking Essentials (EHE)

所在平台: Coursera

课程主页: https://www.coursera.org/learn/ethical-hacking-essentials-ehe

课程评论:没有评论

第一个写评论        关注课程

课程简介

**课程总结:伦理黑客基础(EHE)** 伦理黑客基础是一门入门级的网络安全课程,旨在介绍伦理黑客及渗透测试的基本概念,帮助学习者为网络安全职业做好准备。课程内容涵盖计算机和网络安全的基础知识,包括威胁与漏洞、密码破解、网络应用攻击、物联网和操作技术攻击、云计算、渗透测试基础等众多主题。 **课程大纲:** 1. **信息安全基础** 介绍攻击者如何及为何破坏系统,深入了解信息安全的不同要素。 2. **伦理黑客基础** 讨论伦理黑客的角色及其方法,通过模拟攻击帮助组织识别和修复安全漏洞。 3. **信息安全威胁与漏洞评估** 区分安全威胁和漏洞,深入分析网络安全中的风险和评估方法。 4. **密码破解技术与对策** 阐述密码破解的常见技术及相应的防御策略,帮助组织制定强密码政策。 5. **社会工程技术与对策** 介绍社会工程的各类技巧,以及如何通过人类行为加以防范。 6. **网络级攻击与对策** 学习各种网络攻击策略及其防御措施,包括嗅探、拒绝服务攻击等。 7. **网络应用攻击与对策** 深入了解网络应用程序的攻击方式及其防御措施,包括SQL注入等常见威胁。 8. **无线攻击与对策** 探讨无线网络的安全挑战及防护策略,避免无线网络被轻易攻破。 9. **移动攻击与对策** 讨论移动设备常见的安全威胁及安全使用指南,提升移动安全意识。 10. **物联网与操作技术攻击与对策** 介绍物联网及操作技术面临的安全威胁,并提供安全指导。 11. **云计算威胁与对策** 分析云计算的安全挑战,帮助组织了解云环境下的安全需求。 12. **渗透测试基础** 强调渗透测试在识别系统潜在漏洞中的重要性,探讨测试者的关键角色。 通过实践操作,学习者能够掌握以上概念与技术,为日后在网络安全领域的职业生涯打下坚实的基础。

课程大纲

Name:Information Security Fundamentals

Description:Attackers break into systems for various reasons. Therefore, it is important to understand how, and why, malicious hackers attack and exploit systems. This module provides an insight into the different elements of information security.

Name:Ethical Hacking Fundamentals

Description:Ethical hacking allows organizations to objectively analyze their current security posture. Nowadays, the role of an ethical hacker is gaining prominence. An ethical hacker intentionally penetrates the security infrastructure to identify and fix security loopholes. It provides an insight into cyber kill chain methodology, hacking concepts, and hacker classes.

Name:Information Security Threats and Vulnerability Assessment

Description:Recent trends in cyber security breaches illustrate that no system or network is immune to attacks. It is important to understand the difference between a security threat and a vulnerability. Security threats are incidents that negatively impact the organization’s IT infrastructure, whereas vulnerabilities are security gapsor flaws in a system or network that make threats possible, tempting hackers to exploit them. This module provides an insight into cyber security threats and vulnerability assessment.

Name:Password Cracking Techniques and Countermeasures

Description:Weak password selection has been the most common security weakness faced by organizations and individuals in recent times. Attackers use many sophisticated techniques and tools to crack passwords and gain access to critical systems and networks. This module provides an in-depth understanding of password cracking techniques and the corresponding defensive measures that can help individuals and organizations create strong password policies and protect personal or corporate information.

Name:Social Engineering Techniques and Countermeasures

Description:This module provides an overview of social engineering. Although it focuses on fallacies and advocates effective countermeasures, the possible methods of extracting information from another human being rely on attackers’ ingenuity. The features of these techniques make them an art, but the psychological nature of some of them makes them a science. The bottom line is that there is no ready defense against social engineering; only constant vigilance can circumvent the social engineering techniques used by attackers. This module provides an insight into human-based, computer-based, and mobile-based social engineering techniques.

Name:Network Level Attacks and Countermeasures

Description:Attackers use various attack strategies to compromise the security of a network, potentially causing disruption, damage, and loss to organizations and individuals. Therefore, it is important for security professionals to have an understanding of these attack strategies because such an understanding is essential for protecting the network from various attacks. It provides insight into various network-level attacks, such as sniffing, DoS attacks, session hijacking, etc. This module also familiarizes students with various network security countermeasures.

Name:Web Application Attacks and Countermeasures

Description:Web applications are becoming increasingly vulnerable to sophisticated threats and attack vectors. This module familiarizes students with web-server attacks and countermeasures. It discusses the web-application architecture and vulnerability stack. This module also familiarizes students with various web-application threats, attacks, and countermeasures. In addition, it discusses different types of structured query language (SQL) injection attacks and countermeasures.

Name:Wireless Attacks and Countermeasures

Description:Wireless networks are cheaper and easier to maintain than wired networks. An attacker can easily compromise a wireless network without proper security measures or an appropriate network configuration. Because high-security mechanisms for wireless networks may be expensive. This module describes wireless networks, wireless network standards, wireless encryption algorithms, wireless-network attack techniques, and countermeasures to protect wireless networks.

Name:Mobile Attacks and Countermeasures

Description:Believing that surfing the Internet on mobile devices is safe, many users fail to enable their existing security software. The popularity of smartphones and their moderately strong security mechanisms have made them attractive targets for attackers. This module explains the potential threats to mobile platforms and provides guidelines for using mobile devices securely.

Name:IoT and OT Attacks and Countermeasures

Description:The Internet of Things (IoT) has evolved from the convergence of wireless technology, microelectromechanical systems, micro-services, and the Internet. IoT has introduced a range of new technologies with associated capabilities into our daily lives. The main objective of this module is to explain the potential threats to IoT and OT platforms and to provide guidelines for securing IoT devices and OT infrastructure from evolving threats and attacks.

Name:Cloud Computing Threats and Countermeasures

Description:Cloud computing is an emerging technology that delivers computing services, such as online business applications, online data storage, and webmail over the Internet. Cloud implementation enables a distributed workforce, reduces organization expenses, provides data security, etc. This module provides insight into cloud computing concepts, container technology, cloud computing threats, and cloud computing security to meet the security requirements.

Name:Penetration Testing Fundamentals

Description:With the drastic increase in cyberattacks, it is important for organizations to conduct regular penetration tests to reveal hidden vulnerabilities and weaknesses in their IT infrastructure and to ensure the effectiveness of current cybersecurity controls. Penetration testing helps organizations in developing and implementing proactive security measures beforehand and in thwarting evolving threats. This module discusses the importance of penetration testing in an organization and explains the crucial role that a tester plays in identifying vulnerabilities.

课程评论(0条)

课程详情

Ethical Hacking Essentials is an introductory cybersecurity course that covers ethical hacking and penetration testing fundamentals and prepares learners for a career in cybersecurity. This course will introduce learners to computer and network security concepts such as threats and vulnerabilities, password cracking, web application attacks, IoT and OT attacks, cloud computing, pentesting fundamentals, and more. This course provides hands-on practical experience to learners thus giving them the

课程标签

0人关注该课程

主题相关的课程