Agenda
攻防基礎觀念 101
Network Topology
OSI 7-layer
TCP/IP
攻擊目標基礎架構介紹
CIA triad
Confidentiality
Integrity
Availability
攻擊/評估工具介紹
Kali Linux
Information Gathering Tools
Vulnerability Analyses Tools
Wireless Attacks
Website Penetration Testing
Exploitation Tools
Forensics Tools
Social Engineering
Stressing Tools
Sniffing & Spoofing
Password Cracking Tools
Maintaining Access
Reverse Engineering
Reporting Tools
Toolkits
Web application security scanner.
Acunetix Scanner
WebInspect
網頁基礎語法、框架介紹
跨站腳本攻擊介紹
攻擊工具介紹
XSS
BeEF
業界PT實作觀念
滲透測試(PT)
SQL Injection
XSS
Hacker Game 闖關 Workshop
Target Site: http://www.hackertest.net/
實作Security Operation Center(SOC)
網路安全設備
防火牆(Fortinet、Juniper…etc.)
IDP(Fortinet、Juniper…etc.)
伺服器服務建構
入侵足跡的鑑識回溯(Splunk、ELK…etc.)
資安弱掃(VA)
Server and End-point 建構
Nessus
資安事件回應(Incident Response,IR)
攻擊報告
防守報告