
Explore the rise of sophisticated, targeted attacks, define advanced persistent threat (APT), and examine notable cases from moonlight maze to aurora, highlighting nation-state and cybercrime roles.
Explore why detecting advanced malicious activity is increasingly difficult as attackers hide footprints, erase evidence, and use obfuscated techniques such as ICMP, DNS abuse, encrypted C2 channels, and steganography.
Explore how zero-day vulnerabilities drive a lucrative, dark market among governments, researchers, and vendors, with escalating bug bounty payouts and ethical questions around responsible disclosure.
Detect and mitigate attacks by building secure architectures with network segmentation, analyzing flows and systems, and deploying a SIEM with IoC and threat intelligence for automated detections and dashboards.
Through this course, we will give you a comprehensive introduction to Cyber Security.
If you already have computer prerequisites, this will undoubtedly be useful, but it is not mandatory.
Indeed, we will explain all the technical concepts, the level will therefore always be accessible to all.
In the first chapter, we first discuss the landscape and share some real-world observations.
We will highlight the rise of sophisticated and targeted attacks and we will see that well-funded states are capable of compromising any system.
It will also be noted that the theft and resale of data are also on the rise and that it is, in addition, more complex to detect malicious activity.
Next, we will discuss the about the zero-days business and what cyber criminals are currently doing for profit.
In the second chapter, we will analyze the threats.
Then we will explain who the attackers are, what their motivations are and their targets.
We will analyze how the attackers carry out their attacks against you, or your organization in the fourth chapter.
To this intend, we will introduce two important model, the first one is the “Cyber Kill Chain” and the second is the MITRE ATT&CK framework.
Through the fifth chapter, we will study real world attack scenarios, to understand how organizations are compromised by attackers.
Understanding these typical scenarios is crucial to learn how to defend your organization, or yourself as an individual, but it is also useful for testing your actual level of security and the reactions to these attacks, for evaluating the detection and response capabilities.
We will also study a real APT case, the attack campaign named "Epic Turla", in this chapter.
Then we will end this chapter by discussing detection and mitigation techniques, so that you can prevent or at least detect these attacks.
Finally, we will look back and draw conclusions on everything we have learned in this course, and we will discuss the perspectives for the future.