**
MORE TIPS...
Laravel predavanja...
Minimum:
- Basic understanding of TCP/IP (https://en.wikipedia.org/
wiki/Internet_protocol_suite)
- Concept of packets
- Handshake (Syn, Ack + Syn, Ack)
- IP/TCP/UDP (just very basic information about them)
- Basic understanding of Active Directory (https://docs.microsoft.com/
en-us/windows-server/identity/ ad-ds/get-started/virtual-dc/ active-directory-domain- services-overview)
- Users, Group, Computer objects
- Passwords
- Group Policy
- Basic understanding of DNS protocol
- What is used for
- Type of Records (A, PTR, SRV …)
- Basic understanding of HTTP(S) protocol
- Certificates (just connect of public and private key)
- Common Cybersecurity Terminology, https://niccs.us-cert.gov/
about-niccs/glossary
- Not important to know all of them
- Basic concept of Audit Logs, https://docs.microsoft.com/en-
us/windows/security/threat- protection/auditing/advanced- security-audit-policy-settings
- How to enable them and where they are recorded
- Basic understanding of SIDs (security identifier) and ACLs (access control lists) (https://docs.microsoft.com/
en-us/windows/desktop/ secauthz/security-identifiers)
Recommended:
- Understanding Windows authentication
- Using Network capture with WireShark or Microsoft Message Analyzer (On training we will use WireShark)
- Hash function and Windows specific implementation (NTLM Hash)
- Pass the hash concepts, http://aka.ms/ptH
- LAPS solution, https://blogs.technet.
microsoft.com/askpfeplat/2015/ 12/28/local-administrator- password-solution-laps- implementation-hints-and- security-nerd-commentary- including-mini-threat-model/ - EDR solutions
No comments:
Post a Comment
Коментар: