|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/intro-to-windows-digital-forensics-and-incident-response/
课程评论:没有评论
**课程名称:** Windows数字取证与事件响应导论 **课程概述:** 本课程由拥有超过100门IT课程经验的Robert McMillen教授讲授,旨在为希望进入数字取证和事件响应领域的学习者提供入门所需的工具、知识和演示。课程将展示如何使用Windows内置工具和第三方工具进行数据采集、分析和事件处理。 **学习内容:** * **数据保存与应急准备:** 学习如何妥善保存数字证据,并为突发事件做好应急响应准备。 * **合法专业的事件响应:** 掌握在事件发生时,如何合法、专业地进行响应。 * **识别攻击:** 通过检查注册表、杀毒软件和安全信息与事件管理(SIEM)日志聚合工具,判断系统是否遭受攻击。 * **数字取证实践:** * 使用Autopsy等工具创建案例。 * 利用免费工具捕获RAM中的当前进程,并了解如何在法庭上提供符合证据链要求的报告。 * **白帽黑客技术:** * 学习使用Zenmap和Wireshark等工具,理解数据包的发送和接收过程。 * **网络安全响应:** * 参与到应急响应团队中,理解发现恶意软件时的行动顺序。 * 运用取证技能定位攻击者并妥善处理事件。 **课程亮点:** * 包含实践操作演示。 * 提供可下载的命令和事件响应文档。 * 设有测验环节,检验学习成果。 * 教授内容可应用于实际法庭证据呈现。 **目标受众:** 所有对数字取证和事件响应感兴趣的学习者,以及希望在信息安全领域展开职业生涯的初学者。
Professor Robert McMillen has created over 100 IT courses for companies such as LinkedIn Learning, Pluralsight, The InfoSec Institute, and now Udemy.Intro to Windows Digital Forensics and Incident Response is an introduction course to all the tools, knowledge, and demonstrations needed to get started in a career as a digital forensics investigator and incident responder. View demonstrations using tools built into Windows as well as third party tools downloaded from the internet. Learn data preservation, emergency response preparedness, how to respond to an incident legally and professionally, how to know if you have been hacked by reviewing the registry, antimalware programs, and SIEM log aggregation tools. Included are commands, an incident response document to download, and a quiz to test your knowledge.Create a case with Autopsy and preserve current processes in RAM using free tools that can produce results produced into courtrooms with proper chain of custody. Learn how to be a white hat hacker using tools such asn Zenmap and Wireshark. You'll see like demonstrations of sending and receiving data packets in a way you'll understand. Learn to be part of an emergency response team and understand the order of action when malware is discovered on your network. You'll be the IT hero and use forensics skills to locate the attacker as well as properly respond to the incident.