Securing IoT: From Security to Practical Pentesting on IoT

所在平台: Udemy

课程主页: https://www.udemy.com/course/securing-iot-from-security-to-practical-pentesting-on-iot/

课程评论:没有评论

第一个写评论        关注课程

课程简介

课程名称:物联网安全:从安全到实践渗透测试 课程概述: 物联网(IoT)是一个由嵌入电子设备、软件、传感器和网络连接的实体物体所组成的网络,使这些物体能够收集和交换数据。而物联网渗透测试则像是在对堡垒的门进行猛烈攻击,试图找到一个隐秘的后门进入。该课程旨在通过实用的方式,让学习者深入了解常见的物联网组件和技术,以保护他们的系统和设备。课程将覆盖多个行业的物联网应用案例,包括联网车辆、微电网和企业无人机系统,同时关注物联网系统面临的威胁、攻击路径、现行安全法规和标准以及常见的安全架构。 课程内容包括两个完整的模块,旨在提供尽可能全面的培训。第一个模块《物联网安全基础》将介绍物联网的基本概念,包括各行业的应用案例,常见的物联网组件和技术,以及适用于物联网系统的安全架构、法规和标准。学习者将接触到物联网零部件,如硬件、实时操作系统(RTOS)、应用程序编程接口(APIs)、消息和通信协议以及后端服务。同时,将研究物联网系统的威胁、攻击路径和隐私设计(PbD)原则,学习如何进行隐私影响评估(PIA)。完成此模块后,学习者将能够识别自身物联网系统的威胁及所需的缓解措施。 第二个模块《实践物联网渗透测试》将从物联网设备架构入手,帮助学习者理解最常见的漏洞。课程将探索网络安全,发现漏洞,同时确保硬件设备和运行的软件没有安全漏洞。学习者将学习如何对先进的物联网设备进行渗透测试,包括亚马逊Echo、罗技摄像头、谷歌Nexus手机、Vyos网关、TP-Link智能开关和防火墙。完成此模块后,学习者将能够生成物联网渗透测试报告,并具备渗透最密集的物联网网络的能力。 作者介绍: 布莱恩·拉塞尔(Brian Russell)是专注于网络安全解决方案的首席工程师,负责Leidos公司的安全解决方案设计和实施。他在物联网安全方面有16年的经验,并担任云安全联盟(CSA)物联网工作组的主席及联邦通信委员会(FCC)技术顾问委员会网络安全工作组的成员。 苏尼尔·古普塔(Sunil Gupta)是一名认证的道德黑客,目前在150多个国家的在线教学中吸引了超过45,000名学生。他在漏洞评估、渗透测试和网络安全领域具有丰富的经验。

课程评论(0条)

课程详情

The Internet of things is the network of physical objects or things embedded with electronics, software, sensors, and network connectivity which enables these objects to collect and exchange data whereas IoT Pentesting is much like taking a battering ram to the door of a fortress. You keep pounding away but try to find a secret backdoor to enter through.With this practically oriented course, you will first start with deep dive into common IoT components and technologies to protect your systems and devices. Then you will explore some common IoT use cases across Industries for connected vehicles, microgrids and enterprise drone systems, along with this you will also be focusing on threats to IoT systems, attack vectors, current security regulations, and standards and common security architectures. Moving on, you will learn how to perform pentesting on advanced IoT Devices including Amazon Eco, Logitech Cameras, the Google Nexus phone, Vyos Gateways, TP-Link Smart Switches, and firewalls to ensure that the hardware devices and the software are free of any security loopholes.Contents and OverviewThis training program includes 2 complete courses, carefully chosen to give you the most comprehensive training possible.The first course, Fundamentals of IoT Security will cover fundamental aspects of the Internet of Things, to include a review of use cases across various industries, we will discuss common IoT components and technologies to provide a baseline understanding of the systems and devices that you need to protect. We will also review common security architectures that can be applied to IoT systems, and discusses regulations and standards that apply to secure IoT systems. We will study of IOT components such as the IoT (hardware, real-time operating systems (RTOS), Application Programming Interfaces (APIs), messaging and communication protocols and backend services. We will discuss threats to IoT systems, attack vectors, current security regulations, and standards and common security architectures. We will examine Privacy by Design (PbD) principles and walk through an example Privacy Impact Assessment (PIA). By the end of this course, you will understand the fundamentals of IoT systems and IoT security and be able to identify threats and required mitigations to their own IoT systems.The second course, Hands-On IoT Penetration Testing begins with the IoT device architecture to help you understand the most common vulnerabilities. You'll explore networks, sniffing out vulnerabilities while also ensuring that the hardware devices and the software running on them are free of any security loopholes. Moving on, you will learn how to perform pentesting on advanced IoT Devices including Amazon Eco, Logitech Cameras, the Google Nexus phone, Vyos Gateways, TP-Link Smart Switches, and firewalls. By the end of the course, you will be able to create IoT pentesting reports. After completion of the course, you will be able to penetrate even the most densely populated IoT networks.About the Authors:Brian Russell is a chief engineer focused on cybersecurity solutions for Leidos. He oversees the design and development of security solutions and the implementation of privacy and trust controls for customers, with a focus on securing the Internet of Things (IoT). Brian leads efforts that include security engineering for Unmanned Aircraft Systems (UAS) and connected vehicles and development security systems, including high assurance cryptographic key management systems. He has 16 years of information security experience. He serves as chair of the Cloud Security Alliance (CSA) Internet of Things (IoT) Working Group, and as a member of the Federal Communications Commission (FCC) Technological Advisory Council (TAC) Cybersecurity Working Group. Brian also volunteers in support of the Center for Internet Security (CIS) 20 Critical Security Controls Editorial Panel and the Securing Smart Cities (SSC) InitiativeSunil Gupta is a certified ethical hacker. Currently, he teaches 45,000+ students online in 150+ countries. He is a specialist in ethical hacking and cybersecurity.His strengths lie in vulnerability assessment, penetration testing, intrusion detection, risk identification, data analysis, reporting, and briefing.

课程标签

0人关注该课程

主题相关的课程