BotNet BootCamp - Types, Architectures, Attacks and Defense

所在平台: Udemy

课程主页: https://www.udemy.com/course/botnet-bootcamp-types-architecture-attacks-and-defense/

课程评论:没有评论

第一个写评论        关注课程

课程简介

课程名称:BotNet BootCamp - 类型、架构、攻击与防御 课程概述:近年来,从乌克兰到美国,国际秩序受到恶意意图的远程控制计算机网络——僵尸网络(Botnets)的严重影响。各种僵尸网络提供的病毒、勒索软件和破坏性服务具有多种独特后果和特征。因此,加强对它们的防御至关重要。为了有效应对僵尸网络,需要分析其代码、通信、攻击链及其他技术特征。此外,信息安全商业模型(BMIS)指出,除了技术特征外,僵尸网络的技能和行为还具有人的和组织的组成部分。该课程旨在描述各种攻击的要素,并提供一个分析僵尸网络技术和人类特征的框架。课程中使用了五个僵尸网络攻击作为案例研究,分别为ElectrumDoSMiner、Emote、Gamover Zeus、Mirani和VPNFilter。比较的重点集中在以下因素:动机、使用的商业模型、合作意愿、能力和攻击来源。 由于网络空间和僵尸网络行为的动态性,防御组织很难通过一次性开发来达到理想的防御能力。因此,本文研究中描述的方法应被用以构建网络防御并收集有关僵尸网络的威胁情报。根据BMIS范式,该框架将人类和技术特征结合起来,为防御者提供统一的分类系统。 这个入门课程旨在解释僵尸网络是什么,如何构建和操作,同时讨论僵尸网络是如何攻击并避免过去的反病毒解决方案的检测。课程从基础知识入手,逐步深入,最终展示僵尸网络的实例及如何检测客户端是否感染了僵尸网络。 通过本课程,学员将能够: - 解释什么是僵尸网络 - 描述僵尸网络的组成部分和架构 - 理解僵尸网络的生态系统 - 解释BotNet as a Service(BaaS) - 识别不同类型的僵尸网络 - 理解社交机器人与“普通”僵尸网络之间的区别 - 发现感染了僵尸网络的客户端 - 理解僵尸网络可能进行的不同类型的攻击 本课程旨在为参与者提供关键知识和技能,以理解僵尸网络对实体构成的独特威胁。

课程评论(0条)

课程详情

In recent years, the international order from the Ukraine to the United States has been seriously impacted by botnets, the remotely controlled networks of computers with nefarious intentions. The virus, ransomware, and disruptive services offered by various botnets have a variety of unique consequences and characteristics. Therefore, strengthening the defenses against them is crucial. To more or less successfully combat botnets, one should examine their code, communication, kill chain, and other technological characteristics. However, the Business Model for Information Security asserts that in addition to technology characteristics, their skills and behavior also have a human and organizational component. The purpose of this course is to describe the elements of various attacks and to give a framework for analysing the technical and human characteristics of botnets. Five botnet attacks were used as case studies for testing the specified framework. ElectrumDoSMiner, Emote, Gamover Zeus, Mirani, and VPNFilter were the botnets that were selected. The comparison concentrated on the following factors: motivation, the used business model, cooperation readiness, capabilities, and attack source. Due to the dynamic behavior of cyberspace and botnets, it is difficult for defending organizations to achieve the target level of defending capabilities with a one-time development. The methods described in this research should be used to construct cyber defense and gather threat intelligence on botnets. According to the BMIS paradigm, this framework combines human and technology characteristics, giving the defender a uniform classification system.This is a beginners course that is aimed at explaining what BotNets are, how they are built and operated. It also discusses how BotNets attack and have avoided detection in the past by Anti Virus solutions. This course starts with the basics then moves on to more details and then finally shows examples of BotNets and how to detect if clients are infected with BotNet clients.After the course you will be able to:Explain what a BotNet isExplain and describe the components and architecture of BotNetsExplain the ecosystem of BotNetsExplain BaaS (BotNet as a Service)Explain different types of BotNetsExplain the difference between SocialBots and "normal" BotNetsDiscover infected clients that are part of a BotNetUnderstand different types of attacks that BotNets can doThis course is meant to give any student that takes it critical knowledge and skills to understand the unique threats that BotNets pose to an entity.

课程标签

0人关注该课程

主题相关的课程