Certified Advanced Persistent Threat Analyst

所在平台: Udemy

课程主页: https://www.udemy.com/course/cyber-security-advanced-persistent-threat-defender/

课程评论:没有评论

第一个写评论        关注课程

课程简介

Coursera 课程《认证高级持续性威胁分析师》 本课程致力于帮助学员深入理解并应对日益复杂的网络安全威胁——高级持续性威胁(APT)。APT是指拥有能力和意图对特定目标发起持续性攻击的组织或个人。课程将剖析APT的攻击模式、技术手段以及对各类组织(包括中小型企业)造成的严重威胁。 课程将重点讲解: * **APT生命周期分析:** 学习结构化的方法来评估和分析固有的安全漏洞。 * **APT缓解与对策:** 掌握有效的方法和技术,防止攻击者渗透组织网络。 * **知名APT组织与案例:** 深入了解APT1组织,以及Stuxnet、Adwind和Poseidon等近年来的代表性APT攻击案例。 * **网络世界战争:** 探索APT攻击在更大范围内的演变和影响。 课程内容涵盖现代恶意软件的高级技术,如加密通信、内核级rootkit、规避检测能力、零日漏洞利用,以及APT攻击的隐蔽性、持久性和自我清理能力。此外,还将详细解析APT攻击的常见入口点,如鱼叉式网络钓鱼,以及攻击者如何通过禁用安全协议、修改安全设置或窃取密码来加固其立足点。本课程旨在培养学员分析和应对由高技能、高动机、高资金投入的攻击者所发起的、有明确目标和意图(如金融欺诈)的APT威胁的能力。

课程评论(0条)

课程详情

Cyber-attacks have become so sophisticated over the years, that a new term has emerged - Advanced Persistent Threat, which we will refer to as APT. An APT is a group of individuals that have both the means and the intent to launch persistent attacks against specific targets. Understanding these groups and their behavior is important when evaluating threats against any organization. Hackers have traditionally targeted large corporations, but today small to midsize businesses are being attacked with the same type of highly sophisticated malware. These new strains of advanced malware are often referred to as APTs Modern malware uses Advanced techniques such as encrypted communication channels, kernel-level rootkits, and sophisticated evasion capabilities to get past a network's defenses. More importantly, they often leverage zero day vulnerabilities - flaws for which no patch is available yet and no signature has been written. Modern malware is often Persistent and designed to stick around. It's stealthy and carefully hides its communications. It lives in a victim's network for as long as possible, often cleaning up after itself by deleting logs, using strong encryption, and only reporting back to its controller in small, obfuscated bursts of communication. Many attacks are now blended combinations of different techniques. A common tactic for hackers is to initiate an APT with spear phishing. This involves sending a carefully crafted email that appears to be in the from of a known individual or business with a link to a malicious website or an infected download. Once the initial breach is successful, attackers can further damage defenses by disabling security protocols, changing security settings or stealing passwords. Groups of highly skilled, motivated, and very well-funded attackers represent significant Threats because they have very specific targets and goals in mind - often financial gain from theft of credit cards and other valuable account information. Here are the topics that we will be covering in this course. We will begin by going over the APT Lifecycle and teach you a structured approach to analyze and assess inherent vulnerabilities. We will teach you mitigation and countermeasures that may prevent an attacker from gaining a foothold into an organization. Next, we will get you familiar with APT1 Group and some common ATPs we have seen in the last few years like Stuxnet, and two new ones, Adwind and Poseidon. Lastly, we will get you familiar with the Cyber World War.

课程标签

0人关注该课程

主题相关的课程