Get in Touch

Course Outline

Introduction

Defining Malware

  • Categories of malware
  • The progression of malware development

Overview of Malware Attack Vectors

  • Self-propagating threats
  • Non-propagating threats

ATT&CK Matrix Variants

  • Enterprise ATT&CK
  • Pre-ATT&CK
  • Mobile ATT&CK

Introduction to MITRE ATT&CK

  • The 11 core tactics
  • Specific techniques
  • Adversary procedures

Configuring the Development Environment

  • Establishing a version control repository (GitHub)
  • Retrieving a sample project featuring a to-do list data system
  • Installing and configuring ATT&CK Navigator

Monitoring Compromised Systems (WMI)

  • Deploying command-line scripts to execute lateral movement attacks
  • Using ATT&CK Navigator to detect the intrusion
  • Evaluating the compromise via the ATT&CK framework
  • Conducting process monitoring
  • Documenting vulnerabilities and remediating gaps in the defense structure

Monitoring Compromised Systems (EternalBlue)

  • Deploying command-line scripts to execute lateral movement attacks
  • Using ATT&CK Navigator to detect the intrusion
  • Evaluating the compromise via the ATT&CK framework
  • Conducting process monitoring
  • Documenting vulnerabilities and remediating gaps in the defense structure

Summary and Wrap-up

Requirements

  • Fundamental knowledge of information system security

Target Audience

  • Information systems analysts
 7 Hours

Number of participants


Price per participant

Testimonials (2)

Upcoming Courses

Related Categories