首页> 美国政府科技报告 >Identifying and Embedding Common Indicators of Compromise in Virtual Machines for Lab-Based Incident Response Education.
【24h】

Identifying and Embedding Common Indicators of Compromise in Virtual Machines for Lab-Based Incident Response Education.

机译:识别和嵌入虚拟机中的妥协常见指标,用于基于实验室的事件响应教育。

获取原文

摘要

Though typical malware delivery vectors, behaviors, and general "attack craft" can be verbally explained and even illustrated, greater familiarity and confidence is imbued in the cyber defender when such theoretical explanations are followed by guided practical exercises that provide realistic scenarios. To demonstrate this, we created seven scenarios utilizing common attack types combined with prominent artifacts for indicators of compromise and prominent incident investigative tools. These scenarios will help facilitate the educational experience for students as well as instill confidence, resulting in more proficient incident response across the field. Should this type of education become a part of the NPS curriculum, additional research can be conducted to reaffirm its true capacity.

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号