|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/cyber-security-it-forensics-from-beginner-to-expert/
课程评论:没有评论
课程名称:数字取证与网络安全:从入门到专家 课程概述:本课程为您提供IT取证、操作系统工件分析及网络安全基础的全面介绍。您将学习恶意软件(如病毒、蠕虫、木马及其他类型的恶意软件)的工作原理,并获得关于网络攻击预防策略的宝贵见解。课程将详细解析钓鱼攻击、DDoS攻击、中间人攻击和欺骗等威胁,以便您能识别并有效防范这些攻击。 课程的一个核心重点是操作系统工件的分析。您将学习如何识别和评估Windows、Linux和macOS系统中的痕迹。内容包括注册表工件、事件日志、用户活动、USB痕迹以及云数据和内存工件的分析,如pagefile.sys、hiberfil.sys和卷影副本。这将帮助您深入了解可以在操作系统中找到的各种取证相关信息。 另一个关键方面是文件系统分析,特别是NTFS。我们将涵盖启动扇区的结构、主文件表(MFT)、关键属性(如$Data和$File_Name),以及备用数据流(ADS)。您还将探索FAT、exFAT、EXT和APFS,以建立对不同存储格式的理解和分析能力。 此外,您将熟悉与网络犯罪相关的最重要的法律法规。最后,您将学习如何安全配置加密技术,如BitLocker、VeraCrypt和FileVault。 通过本课程结束时,您将能够分析操作系统、识别工件、检测威胁以及应用预防策略。课程包括实践练习、备忘单和测验,使学习体验实用而全面。
This course offers you a comprehensive introduction to IT forensics, operating system artifact analysis, and the fundamentals of cyber security. You'll learn how malware like viruses, worms, trojans, and other types of malicious software work, and gain valuable insights into prevention strategies against cyberattacks. Threats such as phishing, DDoS attacks, man-in-the-middle attacks, and spoofing are explained in detail so you can identify and effectively prevent them.A central focus of this course is the analysis of operating system artifacts. You'll learn how to identify and evaluate traces in Windows, Linux, and macOS systems. Topics include registry artifacts, event logs, user activities, USB traces, cloud data, and the analysis of memory artifacts such as pagefile.sys, hiberfil.sys, and volume shadow copies. This will give you a thorough understanding of the various types of forensically relevant information that can be found on operating systems.Another key aspect is file system analysis, especially NTFS. We'll cover the structure of the boot sector, the Master File Table (MFT), key attributes like $Data and $File_Name, as well as alternate data streams (ADS). You'll also explore FAT, exFAT, EXT, and APFS to develop a solid foundation in understanding and analyzing different storage formats.In addition, you'll become familiar with the most important legal paragraphs related to cybercrime. Finally, you'll learn how to securely configure encryption technologies such as BitLocker, VeraCrypt, and FileVault.By the end of the course, you'll be able to analyze operating systems, identify artifacts, detect threats, and apply prevention strategies. Hands-on exercises, cheat sheets, and a quiz make this course a practical and well-rounded learning experience.