首页> 外文期刊>SC magazine >FOR572: Advanced Network Forensics: Threat Hunting, Analysis, and Incident Response
【24h】

FOR572: Advanced Network Forensics: Threat Hunting, Analysis, and Incident Response

机译:FOR572:高级网络取证:威胁搜寻,分析和事件响应

获取原文
获取原文并翻译 | 示例
           

摘要

This course will help you take your system-based forensic knowledge onto the wire, enabling you to incorporate network evidence into your investigations, provide better findings, and get the job done faster. It is exceedingly rare to work any forensic investigation that doesn't have a network component. Endpoint forensics will always be a critical and foundational skill for this career, but overlooking a perpetrator's network communications is akin to ignoring security camera footage of a crime as it was committed. Whether you handle an intrusion incident, data theft case, or employee misuse scenario, or are engaged in proactive adversary discovery, the network often provides an unparalleled view of the incident. Its evidence can provide the proof necessary to show intent, uncover attackers that have been active for months or longer, or even prove useful in definitively proving a crime actually occurred.
机译:本课程将帮助您将基于系统的法证知识带到网络上,使您能够将网络证据纳入调查中,提供更好的发现,并更快地完成工作。进行没有网络组件的法医调查极为罕见。端点取证一直是该职业的关键和基础技能,但是忽略犯罪者的网络通信类似于忽略犯罪时使用的安全摄像机录像。无论您是处理入侵事件,数据失窃案,还是员工滥用情况,还是参与主动的对手发现,网络通常都可以提供无与伦比的事件视图。它的证据可以提供必要的证据,以表明意图,发现已经活动了几个月或更长时间的攻击者,甚至可以证明对确定实际发生的犯罪有用。

著录项

  • 来源
    《SC magazine》 |2020年第1suppla期|58-58|共1页
  • 作者

    Philip Hagen;

  • 作者单位
  • 收录信息
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号