|
所在平台: Coursera |
课程主页: https://www.coursera.org/learn/technical-deep-dive-with-incident-response-tools
课程评论:没有评论
课程名称:技术深度探索与事件响应工具 课程概述: “网络事件响应”课程旨在帮助学员了解高层次的事件响应过程,并通过实践实验和项目来建立重要的技术技能。课程开始时将讨论响应事件的各个阶段,随后深入探讨内存、网络和主机分析及取证领域的一些激动人心的部分。本课程适合希望将所学的取证与渗透知识(如道德黑客技术)应用于事件响应过程的任何人。 课程大纲: 1. **网络取证** - 描述:从响应者的角度观察事件响应过程,使用业内真实工具检测、遏制和调查网络事件,消除威胁。跟随讲师研究两个真实场景:一个是数据泄露,另一个是仍在进行中的事件。 2. **内存取证** - 描述:课程细节待定。 3. **事件响应场景 1:数据泄露/黑客攻击事件** - 描述:课程细节待定。 4. **事件响应场景 2:实时进行中的黑客攻击事件** - 描述:课程细节待定。 5. **事件响应场景 3:SolarWinds** - 描述:SolarWinds供应链攻击是网络安全领域的一次重大震撼。这是第一次我们在公共场合看到如此大规模执行的供应链攻击。本课程将深入探讨与该黑客攻击相关的一些妥协指标(IoC)的查找方式。课程需要完成实践练习以完成相关项目。建议在参加本课程之前,先完成路径中的其他课程,因为实践内容将建立在之前深度探索的基础上。
Name:Network Forensics
Description:Witness the incident response process from the perspective of a responder using real tools of the trade to detect, contain, and investigate cyber incidents, and eradicate threats. Follow the instructor as he examines two realistic scenarios: one of a data breach and the other of an incident that is still ongoing.
Name:Memory Forensics
Description:
Name:Incident Response Scenario 1: Data Breach/Hacking Incident
Description:
Name:Incident Response Scenario 2: Live Ongoing Hacking Incident
Description:
Name:Incident Response Scenario 3: SolarWinds
Description:The Solarwinds Supply Chain Attack was a significant and shocking punch to the cybersecurity world. It marked the first time we'd seen in a supply chain attack in public executed at such a large scale. One of the top cybersecurity firms in the world ended up being compromised due to this attack. In this course, we will take a technical deep dive into how to look for some of the IoC's or Indicators of Compromise associated with that hack. This course will require hands-on exercises to complete the associated project. We recommend you complete the rest of the courses in this path before attempting this one as the hands-on builds from the deep dives in the rest of this path.
The Cyber Incident Response course will give students an understanding of how incidents are responded to at a high level, as well as allow them to build important technical skills through the hands-on labs and projects. This course starts with a high-level discussion of what happens at each phase of responding to an incident, followed by a technical deep dive into some of the more exciting parts of memory, network, and host analysis and forensics. This course is for anyone wishing to apply learned forensics and offensive knowledge such as ethical hacking to the incident response process.