|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/adversary-emulation-101-mimicking-a-real-world-cyber-attack/
课程评论:没有评论
课程名称:对抗模拟:模拟真实世界的网络攻击 课程概述:本课程专注于红队对抗模拟,从真实对手的视角出发,评估组织的安全性。学员将进行一次现场对抗模拟练习,目标是窃取一家金融科技初创公司的客户数据。该公司的目标是在实际对手之前,识别和修复其网络安全漏洞。此模拟练习假定对目标网络没有任何先前了解。 在对抗模拟过程中,我们将模拟真实的网络攻击,设定特定目标(例如窃取客户数据或发起勒索攻击)。本课程遵循红队操作攻击生命周期,逐步进行,每个阶段都将详细介绍,并逐步构建攻击路径。我们将应用多种技术,包括: - 主动和被动信息收集 - 突入网络 - 主机发现 - 暴力破解 - 网络钓鱼 - 权限升级(Linux和Windows) - 自动化Active Directory域枚举 - 通过指挥与控制中心保持持久性 - Active Directory攻击 在完成练习后,学员将准备并提交一份报告给组织管理层。此外,课程还将涵盖若干工具的安装和使用,包括PoshC2、Mentalist、BloodHound、Mimikatz、Metasploit、PowerUp、icacls、PowerShell等。 本课程适合初学者,特别是刚刚进入进攻型网络安全领域或准备进行渗透测试考试的人员。如果你已经是一名具备数年经验的渗透测试员或红队成员,本课程中的大部分技术你可能已经熟悉,但欢迎你参与现场对抗模拟练习。
Red Team Adversary Emulation, focuses on approaching an organization's security from the view of a real-world adversary. In this course, we perform a live Adversary Emulation exercise and try to steal customer data of a FinTech startup. We are hired by a FinTech startup to conduct an adversary emulation exercise and steal their customer data (before an actual adversary). This exercise assumes zero knowledge about the target network.During an adversary emulation exercise we mimic a real world cyber attack with a specific objective, such as stealing customer data, launching a ransomware attack etc. This course follows the Red Team Operations Attack Lifecycle to conduct this exercise. We go through each phase in a step-by-step manner and build our attack path as we move ahead. We employee a variety of techniques, such asActive and passive information gatheringGaining foothold into the networkHost DiscoveryBrute-forcingPhishingPrivilege Escalation (Linux and Windows)Automated Active Directory domain enumerationPersistence via command and control centerActive Directory attacksto achieve our objective. Upon completion of the exercise, we will prepare and submit a report to the organization's management.This course also covers installation and usage of tools such as, PoshC2, Mentalist, BloodHound, Mimikatz, Metasploit, PowerUp, icacls, PowerShell etc.This is a beginner friendly course. If you have just started your career in offensive cybersecurity or are preparing for penetration testing exams then this course is for you. If you are already a penetration tester or a red teamer, with a few years of experience under your belt, then you would already know most of the above mentioned techniques. However, if you are interested in witnessing a live adversary emulation exercise, please feel free to follow along.