Adversary Emulation with Mitre Att&ck: Bridging the Gap Between the Red and Blue Teams (Paperback)
暫譯: 利用 Mitre Att&ck 進行對手模擬:縮短紅隊與藍隊之間的差距 (平裝本)
Selmanaj, Drinor
- 出版商: O'Reilly
- 出版日期: 2025-06-03
- 定價: $2,200
- 售價: 9.0 折 $1,980
- 語言: 英文
- 頁數: 399
- 裝訂: Quality Paper - also called trade paper
- ISBN: 1098143760
- ISBN-13: 9781098143763
-
相關分類:
Penetration-test
立即出貨 (庫存=1)
2026-english-2-80 詳見活動內容 »
-
90折
$2,484Comptia Linux+ Study Guide: Essential Exam Prep -
90折
$2,520Video Generation with AI: Working with Diffusion Transformers and Multimodal Learning (Paperback) -
90折
$1,890Mapping Experiences: A Complete Guide to Activating Customer-Centered Collaboration 3/e -
90折
$2,493Databricks Certified Generative AI Engineer Associate Study Guide: Generative AI with Databricks -
90折
$2,502Ai-Assisted Statistics for Data Scientists: 50+ Essential Concepts Using R and Python -
90折
$2,268Observability Engineering: Achieving Production Excellence, 2/e (Paperback) -
90折
$1,935Soccer Analytics with Machine Learning: Learning Predictive Modeling Techniques with Sports Data -
90折
$1,980The C4 Model: Visualizing Software Architecture (Paperback) -
90折
$1,935Learning Cloud Security: Cloud Computing and Security Architecture Essentials -
90折
$2,502Vision Language Models: Building Vlms with Hugging Face (Paperback) -
90折
$2,106High Performance Spark: Best Practices for Scaling and Optimizing Apache Spark 2/e -
90折
$1,944Python for Excel: A Modern Environment for Automation and Data Analysis -
90折
$1,440Managing AI Projects: Drive Innovation and Successfully Navigate the Full AI Project Lifecycle (Paperback) -
90折
$2,520AI-Ready Data Blueprints: From Raw Data to Ai-Driven Innovation (Paperback) -
90折
$1,917Certified Kubernetes Application Developer (Ckad) Study Guide: In-Depth Guidance and Practice (Paperback) -
90折
$2,484Large Language Models: The Hard Parts: Open Source AI Solutions for Common Pitfalls (Paperback) -
90折
$1,917Real-Time Intelligence with Microsoft Fabric: Empowering Data-Driven Decisions in the Era of AI (Paperback) -
90折
$2,484Rag with Python Cookbook: Practical Recipes from Data Preprocessing to LLM Agents (Paperback) -
90折
$2,448Hands-On LLM Serving and Optimization: Hosting Llms at Scale (Paperback) -
90折
$2,205Vector Databases: A Practical Introduction (Paperback) -
90折
$2,205Generative AI on Microsoft Azure: From Large Language Models to Advanced Multi-Agent Systems (Paperback) -
90折
$1,890Learning Generative AI Tools for Excel: Speed Up Your Everyday Tasks with Microsoft Excel, Copilot, Chatgpt, and Beyond (Paperback) -
90折
$2,520Learning Automl: Automating ML Pipelines with Autogluon, Leading Frameworks, and Real-World Integration (Paperback) -
90折
$2,520Transformers: The Definitive Guide: Applications Beyond NLP (Paperback) -
90折
$1,809UX Skills for Business Strategy: Articulating Impact for Product, User, and Business Outcomes
商品描述
By incorporating cyber threat intelligence, adversary emulation provides a form of cybersecurity assessment that mimics advanced persistent threat (APT) tactics, techniques, and procedures (TTPs). This comprehensive guide introduces an empirical approach with strategies and processes collected over a decade of experience in the cybersecurity field. You'll learn to assess resilience against coordinated and stealthy threat actors capable of harming an organization.
Author Drinor Selmanaj demonstrates adversary emulation for offensive operators and defenders using practical examples and exercises that actively model adversary behavior. Each emulation plan includes different hands-on scenarios, such as smash-and-grab or slow-and-deliberate. This book uses the MITRE ATT&CK knowledge base as a foundation to describe and categorize TTPs based on real-world observations and provides a common language that's standardized and accessible to everyone.
You'll learn how to:
- Map cyber threat intelligence to ATT&CK
- Define adversary emulation goals and objectives
- Research adversary emulation TTPs using ATT&CK knowledge base
- Plan adversary emulation activity
- Implement adversary tradecraft
- Conduct adversary emulation
- Communicate adversary emulation findings
- Automate adversary emulation to support repeatable testing
- Execute FIN6, APT3, and APT29 emulation plans
商品描述(中文翻譯)
透過整合網路威脅情報,對手模擬提供了一種模仿先進持續威脅(APT)戰術、技術和程序(TTPs)的網路安全評估形式。本綜合指南介紹了一種經驗性的方法,包含了在網路安全領域十多年來收集的策略和流程。您將學會如何評估對抗能夠對組織造成傷害的協調和隱秘威脅行為者的韌性。
作者 Drinor Selmanaj 使用實際範例和練習,展示了對手模擬對於攻擊者和防禦者的應用,這些範例積極模擬對手行為。每個模擬計畫都包括不同的實作情境,例如快速搶奪或緩慢而深思熟慮的行動。本書以 MITRE ATT&CK 知識庫為基礎,描述和分類基於現實觀察的 TTPs,並提供一種標準化且對所有人都可接觸的共同語言。
您將學會如何:
- 將網路威脅情報映射到 ATT&CK
- 定義對手模擬的目標和目的
- 使用 ATT&CK 知識庫研究對手模擬的 TTPs
- 計畫對手模擬活動
- 實施對手的技術手段
- 進行對手模擬
- 溝通對手模擬的發現
- 自動化對手模擬以支持可重複測試
- 執行 FIN6、APT3 和 APT29 模擬計畫