SFr. 60.90
€ 65.77


bestellen

Artikel-Nr. 28991009


Diesen Artikel in meine
Wunschliste
Diesen Artikel
weiterempfehlen
Diesen Preis
beobachten

Weitersagen:



Autor(en): 
  • Steve Anson
  • Applied Incident Response 
     

    (Buch)
    Dieser Artikel gilt, aufgrund seiner Grösse, beim Versand als 3 Artikel!


    Übersicht

    Auf mobile öffnen
     
    Lieferstatus:   Auf Bestellung (Lieferzeit unbekannt)
    Veröffentlichung:  März 2020  
    Genre:  EDV / Informatik 
     
    computer science / Computer Security & Cryptography / Computersicherheit / Computersicherheit u. Kryptographie / cybersecurity analysis / cybersecurity malware / cybersecurity readiness / cybersecurity tools
    ISBN:  9781119560265 
    EAN-Code: 
    9781119560265 
    Verlag:  Wiley 
    Einband:  Kartoniert  
    Sprache:  English  
    Dimensionen:  H 231 mm / B 188 mm / D 28 mm 
    Gewicht:  658 gr 
    Seiten:  464 
    Bewertung: Titel bewerten / Meinung schreiben
    Inhalt:

    Incident response is critical for the active defense of any network, and incident responders need up-to-date, immediately applicable techniques with which to engage the adversary.  Applied Incident Response details effective ways to respond to advanced attacks against local and remote network resources, providing proven response techniques and a framework through which to apply them.  As a starting point for new incident handlers, or as a technical reference for hardened IR veterans, this book details the latest techniques for responding to threats against your network, including:

    • Preparing your environment for effective incident response
    • Leveraging MITRE ATT&CK and threat intelligence for active network defense
    • Local and remote triage of systems using PowerShell, WMIC, and open-source tools
    • Acquiring RAM and disk images locally and remotely
    • Analyzing RAM with Volatility and Rekall
    • Deep-dive forensic analysis of system drives using open-source or commercial tools
    • Leveraging Security Onion and Elastic Stack for network security monitoring
    • Techniques for log analysis and aggregating high-value logs
    • Static and dynamic analysis of malware with YARA rules, FLARE VM, and Cuckoo Sandbox
    • Detecting and responding to lateral movement techniques, including pass-the-hash, pass-the-ticket, Kerberoasting, malicious use of PowerShell, and many more
    • Effective threat hunting techniques
    • Adversary emulation with Atomic Red Team
    • Improving preventive and detective controls

      



    Wird aktuell angeschaut...
     

    Zurück zur letzten Ansicht


    AGB | Datenschutzerklärung | Mein Konto | Impressum | Partnerprogramm
    Newsletter | 1Advd.ch RSS News-Feed Newsfeed | 1Advd.ch Facebook-Page Facebook | 1Advd.ch Twitter-Page Twitter
    Forbidden Planet AG © 1999-2026
    Alle Angaben ohne Gewähr
     
    SUCHEN

     
     Kategorien
    Im Sortiment stöbern
    Genres
    Hörbücher
    Aktionen
     Infos
    Mein Konto
    Warenkorb
    Meine Wunschliste
     Kundenservice
    Recherchedienst
    Fragen / AGB / Kontakt
    Partnerprogramm
    Impressum
    © by Forbidden Planet AG 1999-2026