Black Hills Information Security 09月29日
远程红队演练信息泄露与应对
index_new5.html
../../../zaker_core/zaker_tpl_static/wap/tpl_guoji1.html

 

本文探讨了远程红队演练中常见的信息泄露途径,以及红队人员如何采取措施消除或伪装泄漏,并从防守者角度审视攻击,以应用于新技术。



























During remote red team exercises, it can be difficult to keep from leaking information to the target organization’s security team. Every interaction with the target’s website, every email sent, and every network service probed leaves some trace that the red team was there.



Mature blue teams can correlate those pieces of information to identify red team actions and infrastructure, and use that information to either block the red team outright or execute deception operations to frustrate further attacks.



In this Black Hills Information Security (BHIS) webcast, Michael will discuss common sources of data leakage during remote red team exercises and steps red teamers can take to eliminate or disguise the leakage outright, or to compartmentalize their actions and keep the blue team from connecting the dots.



He’ll also discuss how red teamers can see the attack from the defender’s point of view so that these concepts can be applied to new tools and technologies in the future.



Join the BHIS Community Discord: https://discord.gg/bhis



0:00:00​ – PreShow Banter™ — It’s Not Delivery, Its Frozen



0:09:36​ – PreShow Banter™ — One Rural to Rule Them All



0:11:51​ – PreShow Banter™ — Proudly Sucking at Charity



0:13:08​ – PreShow Banter™ — SPECIAL GUEST: Rural Tech Fund



0:20:39​ – PreShow Banter™ — Meth Lab For Computers



0:25:41​ – FEATURE PRESENTATION: OPSEC Fundamentals for Remote Red Teams



0:27:00​ – WHOAMI



0:30:42​ – Why OPSEC is Important For Red Teams



0:34:01​ – Possible Countermeasures



0:36:37​ – Other Red Team Threats



0:38:06​ – Assessing Red Team Actions



<a href="https://www.youtube.com/watch?v=AHwfV3NFlno&amp;t=2366s" target="_blank" rel="noreferrer noopene...

Fish AI Reader

Fish AI Reader

AI辅助创作,多种专业模板,深度分析,高质量内容生成。从观点提取到深度思考,FishAI为您提供全方位的创作支持。新版本引入自定义参数,让您的创作更加个性化和精准。

FishAI

FishAI

鱼阅,AI 时代的下一个智能信息助手,助你摆脱信息焦虑

联系邮箱 441953276@qq.com

相关标签

红队演练 信息泄露 应对策略 防御视角 新技术应用
相关文章