[Reprint] how to carry out grille action

How to carry out care network operations

https://blog.csdn.net/sunxingstar/article/details/100036145

 


Original tomato manor Posted on 2019-08-23 13:54:31 read the number 1211 collection
launched
First, the attack team (Blue Team) classification
arms dealer level: master 0day vulnerabilities, the ability to write tools. There are even vpn vulnerabilities. Attack Features: direct attacks, such as missiles, artillery general, violent attack, the effect is very strong.
Spy class: long whale fishing APT attack, infiltrate the red team, by Trojans control user terminal is important to control the target server. System administrator for work of interest is extremely difficult to be found.
Street vendor level: using attack tools exploit existing vulnerabilities to attack, against the general effect.
Second, the offensive and defensive teams contrast
blue side 600-member, 12 million people participated in the red side need defense.

Scoring criteria:
Blue Team: Get permission to penetrate a network isolation, the accused was found clues.
Red Team: find Trojans, phishing, traceability, emergency response.
Third, the Red Raiders square
convergence attack surface
vulnerability patched
established system of defense in depth
security equipment redundancy, it has multiple configurations
to deploy high-interaction honeypots
retrospective analysis
Fourth, focus on defense
APT attack
zero-day vulnerabilities
violation outreach
V. reflect the problems
weak passwords, password reuse.
VPN, mail system 0day vulnerabilities.
Domain controller, fortress machine, cloud platforms, antivirus background.
Host zero common defense.
Illegal outreach.
Third-party access.
Supply chain security.
Phone app security.

Sixth, the defensive measures
the DMZ protection: whitelist anti 0day.
Isolated
totalitarian type of equipment: the key recognition APT attacks.
Threat intelligence sharing, collective defense.
Outreach illegal surveillance.
----------------
Disclaimer: This article is CSDN bloggers' tomato estate "in the original article, follow the CC 4.0 BY-SA copyright agreement, reproduced, please attach the original source and this link statement.
Original link: https: //blog.csdn.net/sunxingstar/article/details/100036145

Guess you like

Origin www.cnblogs.com/jinanxiaolaohu/p/12163221.html