TGViewer
Channel Public Channel
EsecurityCo

EsecurityCo

@esecurityco

کانال رسمی سایت Esecurity.ir

رایگان ببینید و بیاموزید،
از دوره های حضوری مطلع شوید،
در کلاس ها شرکت کنید،
و حرفه ای شوید...

مرکز تربیت متخصص امنیت سایبری

با ما در ارتباط باشید:
@Forensics

ادمین تبادل:
@Forensics
Subscribers
2.72K
Photos
1.2K
Videos
303
Links
1K

Showing posts older than #3220 · Back to latest

Older Posts 20 shown
Post #3212 1.33K

Forwarded from امنیت سایبری | Cyber Security

#CIS Controls v8 Mapping to #NIST CSF

دانلود فایل نگاشت (آخرین نسخه) CIS Controls v8 با NIST Cybersecurity Framework (CSF)
مستند CIS Controls با ارائه به‌روش‌های امنیتی به سازمان‌ها در دفاع از دارایی‌ها کمک شایانی می‌کند.

👁 @intsec
Post #3210 1.93K
ابزار جامع برای کنترل ماشین قربانی
بهره مندی از کالی لینوکس
لینک ابزار و آموزش آن:
https://b2n.ir/f04714
@ٍEsecurityCo
Post #3206 1.86K
برای علاقمندان به مباحث شکار تهدید
این بار با الستیک
The Elastic Guide to Threat Hunting

👇👇👇👇👇👇
Post #3205 1.84K
Post #3204 2.22K
برای علاقمندان به حوزه تست نفوذ

Commando VM: The First of Its Kind Windows Offensive Distribution
برخی از ابزارهای داخل این ویرچوال ماشین
Information Gathering:

ADACLScanner
ADExplorer
ADOffline
ADRecon
BeRoot
BloodHound
BloodHound-Custom-Queries (Hausec)
dnsrecon
FOCA
Get-ReconInfo
GoBuster
GoWitness
Net-GPPPassword
NetRipper
Nmap

Vulnerability Analysis:

AD Control Paths
Egress-Assess
Grouper2
NtdsAudit
PwnedPasswordsNTLM
zBang

Web Applications:

Burp Suite
Fiddler
Firefox
OWASP Zap
Subdomain-Bruteforce
Wfuzz

لینک دانلود:
https://github.com/fireeye/commando-vm
Post #3202 1.72K
برای علاقمندان به حوزه شکار تهدیدات

ThreatPursuit VM: A Threat Intelligence and Hunting Virtual Machine

ThreatPursuit Virtual Machine (VM) is a fully customizable, open-sourced Windows-based distribution focused on threat intelligence analysis and hunting designed for intel and malware analysts as well as threat hunters to get up and running quickly. The threat intelligence analyst role is a subset and specialized member of the blue team. Individuals in this role generally have a strong impetus for knowing the threat environment. Often their traits, skills and experiences will vary depending on training and subject matter expertise.
Here are some of the tools, but there are many more:
MISP
OpenCTI
Elasticsearch, Kibana, Logstash
Splunk
Threat Hunter Playbook
CSIRO Data61 Constellation
Maltego
RStudio
MITRE CALDERA
Jupyter Notebook
Python
SilkETW

لینک دانلود ماشین مجازی
https://github.com/fireeye/ThreatPursuit-VM
GitHub GitHub - mandiant/ThreatPursuit-VM: Threat Pursuit Virtual Machine (VM): A fully customizable, open-sourced Windows-based distribution… Threat Pursuit Virtual Machine (VM): A fully customizable, open-sourced Windows-based distribution focused on threat intelligence analysis and hunting designed for intel and malware analysts as wel...
Post #3201 1.53K
معرفی یک ابزار در حوزه DFIR
با نام DFIRTriage
ارائه : مهندس سعید حسینی
زمان تقریبی: 12 دقیقه
https://esecurity.ir
Post #3199 1.45K
زمانی که ما متوجه حادثه (Incident) در سطح شبکه، سیستم ها و سرورها می شویم با توجه به dwell Time که در استاندارد جهانی 90 روز اعلام شده است، بررسی از جنس Incident Response با مباحث سطح Triage آغاز میگردد. اما نکته همینجاست خیلی موقع اطلاعاتی در خصوص اینکه حادثه چیست و یا اینکه چه اتفاقاتی افتاده و چه خسارتهای بواسطه نفوذ یا از دست دادن اطلاعات و یا سرقت داده متوجه سازمان شده است، فقط آنچه در اختیار داریم حدس بازه زمانی حادثه احتمالی است. مثلا در هفته گذشته.

لذا در این مواقع متخصص جرم یابی (Investigator) باید به استخراج اطلاعات زمانی فعالیت ها (TimeStamp) مشغول گردد.

در این ویدیو که قسمت اول این بحث می باشد با کلیتی از موضوع آشنا می شویم

زمان تقریبی ویدیو 13 دقیقه است

مدرس: مهندس سید سعید حسینی


👇👇👇👇👇👇
Post #3197 1.37K
🔔تور آموزشی رایگان ابزارهای DFIR
😳قسمت اول : LECmd.exe
از مجموعه ابزارهای Zimmerman
💠مدرس: مهندس سید سعید حسینی

مشاهده بفرمایید
👇👇👇👇👇👇
Post #3195 1.36K
🔔برگزاری یک دوره حرفه ای تست نفوذ وب
💯با تدریس مهندس منصف
🔷لابراتوار اختصاصی وب
🔆لینک ثبت نام و کسب اطلاعات
https://b2n.ir/k67292
👇👇👇👇👇
Post #3193 1.57K
این روزها همه صحبت از آسیب پذیری روی ویندوز رو میکنند
حالا ما هم یک ابزار معرفی میکنیم
A collection of Windows print spooler exploits containerized with other utilities for practical exploitation.
لینک دانلود:
https://github.com/BeetleChunks/SpoolSploit
👇👇👇👇👇
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →