Apply Tools to Identify Malicious Activity
Goals
- Explore techniques used to identify malicious activity
- Learn about command line tools used for domain analysis
- Explore attack frameworks
- Explore methods used in email analysis
- Learn about frequently abused command line tools
Identify Malicious Activity
- Packet Capture Tools
- Endpoint Detection and Response (EDR)
- Common Analysis Tools
- Sandboxing for Malware Analysis
- Security Information and Event Management (SIEM)
- Security Orchestration, Automation, and Response (SOAR)
Attack Methodology Frameworks
- Cyber Kill Chain
- MITRE ATT&CK Framework
- Diamond Model of Intrusion Analysis
- Open Source Security Testing Methodology Manual (OSSTMM)