|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/cyber-security-incident-response-wannacry-ransomware/
课程评论:没有评论
课程名称:网络安全事件响应:Wannacry 勒索软件 课程概述:Wannacry 是计算机历史上最著名的勒索软件之一,这使我们能够调查它的工作原理并识别妥协的指标。该课程的主要目标并非保护用户免受 Wannacry 的攻击,而是为您提供一种方法论,以便快速评估计算机中可疑应用程序的行为。我们将在课程中使用的工具都是免费供个人使用的,但还有许多其他解决方案可以用于同样的目的。通过本课程的学习,您将对勒索软件的工作机制有深入的理解,并能够保护自己的环境。此外,您将能够使用这些工具识别和分析其他恶意工具。 需要注意的是,您不会成为恶意软件分析师,本课程并不针对这一目标。课程将提供快速响应事件的步骤,并帮助您识别需要通过其他课程进一步发展的领域。深入的恶意软件分析是一个非常有趣的领域,但不一定是事件响应团队的主要部分。专门从事恶意软件分析的公司或个人较多,而对于单个恶意软件的分析可能会耗费数小时、天、周或月。本课程旨在提供快速响应的能力。
Wannacry has been one of the most famous ransomware in computer history (so far) which allows us to investigate how it worked and identify indicators of compromise. The goal of the course is not to protect against Wannacry, but to provide you with a methodology to be able to quickly assess the behavour of a suspicious application in a computer. The tools we are using in this course are free for personal use, but there are way more other solutions you can use for the same purpose.At the end of this training you will have a solid understanding how the ransomware works and how to protect you environment, also you will be able to use the tools to identify and analyse other malicious tools. You will not be a malware analyst, this is not the course for that. This course will give you the steps to be able to do incident response in a quick manner and see what areas you need to develop yourself using other courses. Deep malware analysis is a very interesting area, but not necessarily the part of the incident response team. There are companies specialized in malware analysis, or people specializing in malware analysis. One can spend hours, days, weeks, months analyzing a single malware. This course aims for quick response.