Misconfigurations Management

所在平台: Udemy

课程主页: https://www.udemy.com/course/misconfigurations-defense-for-red-and-blue-teams/

课程评论:没有评论

第一个写评论        关注课程

课程简介

课程名称:错误配置管理 课程概述:本课程旨在为有志于成为红蓝团队成员、安全领导者、网络防御者,以及那些考虑转行进入网络安全领域的人士提供指导。即使是已经在信息安全领域工作的人,也能通过了解红蓝团队如何高效合作,从整体上提升安全保障。课程将重点讲解常见的导致网络攻击的错误配置,以及如何防止这些攻击的发生。学员将获得以下方面的知识和实用技能: - 中大型组织中最常见的十大网络安全错误配置,这些配置漏洞经常导致网络攻击。 - 在Windows云环境(如Azure)中建立安全基线,以缓解导致网络攻击的错误配置。 - 针对以下十大错误配置提供实际解决方案: 1. 软件和应用程序的默认配置 2. 用户/管理员权限划分不当 3. 内部网络监控不足 4. 缺乏网络分段 5. 维护补丁管理不善 6. 绕过系统访问控制 7. 弱或错误配置的多因素认证(MFA)方法 8. 网络共享和服务上访问控制列表(ACL)不足 9. 凭据管理不当 10. 无限制的代码执行 - 这些错误配置所带来的网络风险及其如何被攻击者利用。 - 针对这些错误配置的网络安全风险,提供最佳实践建议。 - 使用MITRE ATT&CK框架的技术推荐,以减轻由这些错误配置导致的攻击。 - 根本原因分析的介绍及其对网络安全思维的好处。 - 开源配置管理工具介绍,以缓解网络攻击的风险。 - 改进蓝队和网络管理员团队的网络监控和加固方法,防止网络攻击。 - 利用人工智能生成防御检查清单,为网络防御者提供指导,预防这些错误配置。 - 通过红队-Azure渗透测试,确保您的云(Azure)环境免受错误配置的影响。 课程所探讨的错误配置基于NSA和CISA团队对多个组织网络安全评估的综合分析,识别出十种常见的网络错误配置,这些都是导致系统安全漏洞的普遍问题。

课程评论(0条)

课程详情

This course is designed for aspiring Red & Blue Teamers, Security leaders, Network defenders and those thinking of transitioning into cybersecurity, or even those already into cybersecurity that needs that holistic view of how both red and blue teams can work together efficiently in keeping people, processes and technology infrastructures secure by understanding the most common misconfigurations that leads to cyber attacks and most importantly how to prevent these attacks from occurring. The learner will gain knowledge and practical skills where applicable in regards to the following:The Top 10 most common cybersecurity misconfigurations found in both mid to large size organizations that leads to cyber attacks. Establishing security baselines in Windows Cloud Environments (Azure) to mitigate misconfigurations leading to cyber attacks.How to practically address the following top 10 misconfigurations that leads to network/cyber attacks: 1-Default configurations of software and applications 2-Improper separation of user/administrator privilege 3-Insufficient internal network monitoring 4-Lack of network segmentation 5-Poor patch management 6-Bypass of system access controls 7-Weak or misconfigured multi-factor authentication (MFA) methods 8-Insufficient access control lists (ACLs) on network shares and services 9-Poor credential hygiene 10-Unrestricted code executionCyber risks associated with these misconfiguration and how they are exploited by attackers.Best Practice recommendations for mitigating these cyber risks associated with these misconfigurationsUse of MITRE ATT & CK Technical recommendations for Mitigating these attacks resulting from these misconfigurationIntroduction to root cause analysis and its benefits to a cybersecurity mindsetIntro to Open-Source Tools for Configurations Management to mitigate cyber attacksWays to Improve Monitoring and Hardening of Networks for Blue & Network Admin Teams against cyber attacksUse of AI to generate defense checklist that can be used as guides by network defenders to prevent these misconfigurations.Securing your cloud (Azure) environment from misconfigurations via Red Team-Azure Penetration TestingThe misconfigurations to be explored in this course are based on NSA and CISA teams conducting comprehensive security assessments of numerous network enclaves within various organizations and during these assessments, they identified the 10 most common network misconfigurations, which are systemic weaknesses across many networks leading to system compromises.

课程标签

0人关注该课程

主题相关的课程