|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/use-kali-linux-like-a-hacker-with-red-team-tactics/
课程评论:没有评论
课程名称:像黑客一样使用Kali Linux:红队战术 课程概述: 本课程深入探讨了什么是道德黑客(ethical hacking),它涉及在授权的情况下尝试未授权访问计算机系统、应用程序或数据。道德黑客通过模拟恶意攻击者的策略和行动,帮助识别安全漏洞,并在恶意攻击者有机可乘之前解决这些问题。通常被称为“白帽子”的道德黑客是执行这些评估的安全专家,他们的主动工作有助于提高组织的安全态势。 红队的定义: 红队由模拟对手的安全专业人员组成,旨在克服网络安全控制。红队通常由独立的道德黑客组成,客观评估系统安全。红队利用各种可用技术寻找人在流程和技术方面的弱点,以达到未授权访问资产的目的。通过这些模拟攻击,红队会提出建议和计划,以增强组织的安全态势。 红队的工作方式: 红队在进行攻击之前,花费大量时间进行攻击规划。他们使用多种方法获取网络的访问权限,例如社交工程攻击,利用侦察和研究提供有针对性的鱼叉式网络钓鱼攻击。进行渗透测试之前,红队还会使用数据包嗅探器和协议分析器扫描网络,尽可能多地收集有关系统的信息。 蓝队的定义: 蓝队是对组织内部有深入了解的安全专业人员,负责保护组织的关键资产免遭各种威胁。他们非常清楚业务目标和组织的安全策略,因此他们的任务是加强防御,确保没有入侵者能突破防线。 蓝队的工作方式: 蓝队首先收集数据,明确需要保护的内容,并进行风险评估。接着,他们会通过引入更严格的密码政策和员工安全意识教育等方式,强化系统的访问控制。此外,蓝队通常使用监控工具记录和检查系统访问的异常活动,定期进行DNS审计、网络漏洞扫描及网络流量分析等检查。 本课程将使学员掌握如何利用Kali Linux进行道德黑客的基本技能,并深入理解红队和蓝队的运作方式,为提升网络安全防护做出贡献。
What is ethical hacking?Ethical hacking involves an authorized attempt to gain unauthorized access to a computer system, application, or data. Carrying out an ethical hack involves duplicating strategies and actions of malicious attackers. This practice helps to identify security vulnerabilities which can then be resolved before a malicious attacker has the opportunity to exploit them.Also known as "white hats," ethical hackers are security experts that perform these assessments. The proactive work they do helps to improve an organization's security posture. With prior approval from the organization or owner of the IT asset, the mission of ethical hacking is opposite from malicious hacking.What Is A Red Team?A red team consists of security professionals who act as adversaries to overcome cyber security controls. Red teams often consist of independent ethical hackers who evaluate system security in an objective manner.They utilize all the available techniques to find weaknesses in people, processes, and technology to gain unauthorized access to assets. As a result of these simulated attacks, red teams make recommendations and plans on how to strengthen an organization's security posture.How Does A Red Team Work?You might be surprised to learn that red teams spend more time planning an attack then they do performing attacks. In fact, red teams deploy a number of methods to gain access to a network.Social engineering attacks, for example, rely on reconnaissance and research to deliver targeted spear phishing campaigns. Likewise, prior to performing a penetration test, packet sniffers and protocol analyzers are used to scan the network and gather as much information about the system as possible.What Is A Blue Team?A blue team consists of security professionals who have an inside out view of the organization. Their task is to protect the organization's critical assets against any kind of threat.They are well aware of the business objectives and the organization's security strategy. Therefore, their task is to strengthen the castle walls so no intruder can compromise the defenses.How Does A Blue Team Work?The blue team first gathers data, documents exactly what needs to be protected and carries out a risk assessment. They then tighten up access to the system in many ways, including introducing stronger password policies and educating staff to ensure they understand and conform to security procedures.Monitoring tools are often put in place, allowing information regarding access to the systems to be logged and checked for unusual activity. Blue teams will perform regular checks on the system, for example, DNS audits, internal or external network vulnerability scans and capturing sample network traffic for analysis.