• 9. Ethics and Threats

    •  

      Intro

      In this lesson you are going to:

      learn about attacking networks and systems. You will also learn about defending networks as well as strategies and techniques that companies use.

    • Threatgen Red vs Blue

      A Cybersecurity Incident 

      Companies use computer networks every day, which makes them constant targets for hackers trying to steal sensitive information. To stay safe, security teams must always monitor their systems, fix weak spots, and block threats in real time. Watch this video to see how real-world defenses work, then get ready to test your tactical skills in ThreatGen: Red vs. Blue!

       
       

      A Cybersecurity Simulation Game

    • Go to Steam and start ThreatGen Red vs Blue

      ThreatGEN Red vs. Blue is an educational game-based cybersecurity simulator. The game allows players to assume the roles of either the red team (hackers) or the blue team (defenders). Players can engage in the game either as a single player or in online matches against colleagues. By playing it, you learn and practice hacking and defending techniques and terminology.

      Red Team - Attack

      Blue Team - Defend

      1. Gather Information
        • OPEN-SOURCE INTELLIGENCE (OSINT) - Get information about the network
      2. Search for Targets
        • HOST SCANNING - Find computers in the area
      3. Identify Weaknesses (Attack Vectors)
        • PORT SCANNING - Find what kind of computer it is
        • SERVICE ENUMERATION - Find out what the computer can do
        • FINDING VULNERABILITIES - Find out if the computer has issues
        • SOCIAL ENGINEERING
      4. Formulate the Attack
      5. Execute the Attack
        • Password Attack
        • Pilfering
        • Malware
        • Ransomware
      6. Gain a Foothold
      • Cybersecurity Program Governance - Who is looking after the system
      • Cybersecurity Architecture and Controls - How are they looking after the system
      • Vulnerability Management - How do you manage any issues
        • Vulnerability Identification - What are the issues?
        • Risk Analysis - How bad are the issues?
        • Vulnerability Remediation - How can you fix the issues?
      • Threat Monitoring - Who is trying to get in?
      • Incident Response - What do you do when they are in?