|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/python-digital-forensics/
课程评论:没有评论
课程名称:Python数字取证 课程概述:Python作为编程语言,在网络调查和取证分析中具有独特优势。本课程将帮助您利用流行的Python库和工具,开展高效而全面的取证调查。课程内容涵盖网络取证、主机分析以及内存分析等关键领域。首先,您将学习网络取证,这是任何调查的重要方面,包括读取、排序和嗅探原始数据包,以及分析网络流量。这些技术将为您的主机分析奠定基础。 接下来,您将了解在Windows和GNU/Linux环境中进行完整调查所需的工具,并学习使用Python进行更高级的话题,例如查看PE和ELF二进制文件中的数据。在调查中,分析易失性内存至关重要,因为它提供有关系统中实际运行内容的详细信息。因此,课程将介绍获取和分析易失性内存映像的最佳工具。最后,您将学习如何利用Python以攻击者的思维进行思考,包括枚举、利用和数据外泄。 通过本课程,您将能够充分利用Python进程,解决各种具有挑战性的取证相关问题。快来加入课程,培养您的攻击者思维! 讲师简介:Daryl Bennett是美国空军网络威胁模拟团队的经理,他领导军事和民用成员进行进攻性安全操作,以审计网络基础设施的安全性。他专注于风险分析和网络安全系统的整体安全态势,拥有超过5年的开源社区工作经验,并在多种领域(包括GNU/Linux应用程序、Android移动应用和自主系统)担任开发专家。他热衷于维持、开发和实施当前及新技术,同时注重分析问题的解决能力,努力不断学习。
Python is uniquely positioned as a programming language to perform cyber investigations and perform forensics analysis. Unleash the power of Python by using popular libraries and Python tools to help you create efficient and thorough forensics investigations. This course will walk you through digital forensics on network traffic, host analysis, and memory analysis.The course starts with network forensics, an important aspect of any investigation. You will learn to read, sort, and sniff raw packets and also analyze network traffic. These techniques will help you drive your host analysis. You will learn about tools you'll need to perform a complete investigation with the utmost efficiency in both Windows and GNU/Linux environments with Python. Next, you will learn more advanced topics such as viewing data in PE and ELF binaries. It's vital to analyze volatile memory during an investigation as it provides details about what is actually running on a given system. So, you will learn the best tools to obtain and analyze volatile memory images. Finally, you will learn how to use Python in order to think like an attacker. You will complete enumeration, exploitation, and data exfiltration.By the end of the course, you will be able to make the most of Python processes and tackle varied, challenging, forensics-related problems. So, grab this course and think like an attacker!About the AuthorDaryl Bennett is a manager of a Cyberspace Threat Emulation team with the United States Air Force, where he leads military and civilian members in the employment and execution of offensive security on order to audit the security of network infrastructures. He is a key operator, focusing on risk analysis and the overall security posture of cyberspace systems. Additionally, he has 5+ years' experience working in the open-source community. He is a development specialist in a wide range of domains, including GNU/Linux applications, Android mobile, and autonomous systems. He is passionate about sustaining, developing, and implementing both current and new technologies, while practicing analytical problem-solving and learning as much as possible in the process.