HW藍(lán)隊(duì)防護(hù)手冊(cè)(精選版),很全面
零.認(rèn)知紅隊(duì)
-
護(hù)網(wǎng)紅隊(duì)作戰(zhàn)手冊(cè)
-
https://cloud.tencent.com/developer/article/1647861
-
從攻擊者角度解讀防護(hù)思路
-
https://www.77169.net/html/256393.html
-
紅藍(lán)對(duì)抗淺談
-
https://he1m4n6a.github.io/2020/04/30/%E7%BA%A2%E8%93%9D%E5%AF%B9%E6%8A%97%E6%B5%85%E8%B0%88/
一.安全意識(shí)
-
護(hù)網(wǎng)行動(dòng)及注意事項(xiàng)
-
https://www.jianshu.com/p/bd16e0b1bf95
二.自我排查
資產(chǎn)收集
-
安全護(hù)網(wǎng)前信息收集
-
https://www.jianshu.com/p/0a26d9c98ef7
-
安全護(hù)網(wǎng)前信息收集
-
https://blog.csdn.net/Chenamao/article/details/107675331
-
企業(yè)安全之做好這三點(diǎn),護(hù)網(wǎng)沒(méi)在怕!
-
https://www.cnblogs.com/Security-X/p/11245237.html
-
全流程信息收集方法總結(jié)
-
https://www.freebuf.com/articles/database/195169.html
安全加固
-
護(hù)網(wǎng)行動(dòng),2020年具體防護(hù)措施
-
https://blog.csdn.net/panshi5188/article/details/108594514
-
Windows安全加固手冊(cè)
-
https://www.cnblogs.com/skkip/p/10040743.html
-
Linux安全加固手冊(cè)
-
https://www.cnblogs.com/skkip/p/10074096.html
三.安全運(yùn)營(yíng)
-
我理解的安全運(yùn)營(yíng)
-
https://zhuanlan.zhihu.com/p/39467201
-
安全運(yùn)營(yíng)三部曲:概念篇
-
https://www.secrss.com/articles/14225
-
安全運(yùn)營(yíng)三部曲:安全響應(yīng)中心與企業(yè)文化
-
https://www.secrss.com/articles/14453
-
安全運(yùn)營(yíng)三部曲:安全生態(tài)與運(yùn)營(yíng)國(guó)際接軌
-
https://www.secrss.com/articles/15416
-
從運(yùn)營(yíng)角度看安全團(tuán)隊(duì)的成長(zhǎng)
-
https://www.secrss.com/articles/17524
-
認(rèn)識(shí)安全設(shè)備
-
https://zhuanlan.zhihu.com/p/37304834
-
WAF如何配置
-
https://help.aliyun.com/document_detail/85047.html?spm=a2c4g.11186623.6.641.4553daa6j9BszL
-
以攻促防:企業(yè)藍(lán)軍建設(shè)思考(甲方可參考,項(xiàng)目經(jīng)理/安全顧問(wèn)可參考)
-
作者:[TSRC &騰訊藍(lán)軍]Mark4z5(小五)
- https://security.tencent.com/index.php/blog/msg/133
-
網(wǎng)絡(luò)安全實(shí)戰(zhàn)攻防演練丨防守方案經(jīng)驗(yàn)分享(廠商視角)
-
https://m.k.sohu.com/d/512435641?channelId=13557&page=1
-
護(hù)網(wǎng)Linux應(yīng)急處置操作手冊(cè)-Tools篇
-
https://cloud.tencent.com/developer/article/1706274
-
護(hù)網(wǎng)之Linux應(yīng)急處理操作手冊(cè)
-
https://www.bugfor.com/vuls/6751.html
-
應(yīng)急響應(yīng)總結(jié)
-
https://he1m4n6a.github.io/2020/03/30/%E5%BA%94%E6%80%A5%E5%93%8D%E5%BA%94%E6%80%BB%E7%BB%93/
四.日志分析
-
CTF-MISC-日志分析
-
https://www.jianshu.com/p/bb5b4c31f4f5
-
流量分析
-
網(wǎng)絡(luò)流量數(shù)據(jù)包分析工具Brim
-
https://www.sohu.com/a/387864935_490113
-
流量分析在安全攻防上的探索實(shí)踐
-
https://www.secrss.com/articles/18924
-
日志審計(jì)系統(tǒng)的基本原理與部署方式
-
https://blog.csdn.net/qq_38265137/article/details/106790419
-
企業(yè)安全日志分析系統(tǒng)建設(shè)
-
https://www.secrss.com/articles/3082
五.溯源
-
安全分析--追蹤溯源的找人思路
-
https://www.cnblogs.com/KevinGeorge/p/8402190.html
-
淺談攻擊溯源的一些常見(jiàn)思路
-
https://blog.csdn.net/momo_sleet/article/details/95737288 -
調(diào)查Web應(yīng)用攻擊事件:如何通過(guò)服務(wù)器日志文件追蹤攻擊者
-
https://www.anquanke.com/post/id/86391
-
藍(lán)隊(duì)實(shí)戰(zhàn)溯源反制手冊(cè)分享
來(lái)源于TimelineSec,作者璠淳 -
https://www.77169.net/html/267618.html
-
追蹤?quán)]件發(fā)送者的地理位置
SilentAssassin -
https://blog.csdn.net/yao5hed/article/details/81050422
-
紅藍(lán)演習(xí)對(duì)抗之溯源篇
nini_boom
-
https://blog.csdn.net/nini_boom/article/details/106578723
-
安全攻擊溯源思路及案例
-
https://www.cnblogs.com/xiaozi/p/13817637.html
-
攻擊溯源手段
-
https://www.eumz.com/2020-09/2000.html
-
紅藍(lán)對(duì)抗中的溯源反制實(shí)戰(zhàn)
-
https://www.secrss.com/articles/27611
-
紅藍(lán)對(duì)抗-反制
-
https://blog.csdn.net/qq_41874930/article/details/110178462
六.匯報(bào)機(jī)制
-
HW總結(jié)報(bào)告模板之一
-
https://www.eumz.com/2020-09/2058.html
-
HW總結(jié)報(bào)告模板之二
-
https://www.eumz.com/2020-09/2054.html
七.總結(jié)篇
-
2020護(hù)網(wǎng)期間公布漏洞總結(jié)-附部分漏洞Poc,Exp
-
https://cloud.tencent.com/developer/article/1764324
-
2020hw漏洞匯總
-
http://www.saltor.cn/posts/71
-
2019護(hù)網(wǎng)行動(dòng)防守總結(jié)
-
http://www.liuhaihua.cn/archives/690787.html
-
關(guān)于HW護(hù)網(wǎng)行動(dòng)的一些知識(shí)(廠商/銷售/售前視角)
-
https://www.pianshen.com/article/16881740503/
-
我眼中的云護(hù)網(wǎng)
-
https://www.4hou.com/posts/Lnnv
-
護(hù)網(wǎng)演習(xí),攻與防的總結(jié)
-
https://www.freebuf.com/column/237828.html
-
紅藍(lán)對(duì)抗的一些感想
-
https://blog.csdn.net/nini_boom/article/details/106749452
-
一次攻防實(shí)戰(zhàn)演習(xí)復(fù)盤總結(jié)很詳細(xì)
-
https://nosec.org/home/detail/2673.html
-
近些年的護(hù)網(wǎng)行動(dòng)都有哪些騷操作?
-
https://www.geekmeta.com/article/1855725.html
-
從資產(chǎn)梳理到內(nèi)網(wǎng)橫向滲透,網(wǎng)絡(luò)安全紅藍(lán)對(duì)抗“防坑”總結(jié)
-
https://www.sohu.com/a/359379551_472906
-
攻防演練實(shí)戰(zhàn)中的若干Tips
-
https://www.ershicimi.com/p/59ad52c5a817ae89f9fcf2ab1c8f10bc
-
我的hw2019總結(jié)
本文作者: M09ic -
https://m09ic.top/posts/44974/
-
實(shí)踐分享|紅隊(duì)視角下的防御體系突破
來(lái)源:奇安信安全服務(wù) -
http://cn-sec.com/archives/145972.html
-
護(hù)網(wǎng)行動(dòng)防守小總結(jié)
-
https://my.oschina.net/u/4290910/blog/4501175
-
移動(dòng)端
-
https://www.sohu.com/a/236572713_744135
-
2020年“護(hù)網(wǎng)行動(dòng)”紅方漏洞利用總結(jié)-1
-
https://www.cxthhhhh.com/2020/09/18/summary-of-red-vulnerability-utilization-of-network-protection-action-in-2020-1.html
-
藍(lán)隊(duì)視角下的“HVV利劍”-釣魚(yú)攻擊案例分享與總結(jié)
-
https://cloud.tencent.com/developer/article/1777977
八.其他項(xiàng)目
-
windows提權(quán)項(xiàng)目合集
-
該項(xiàng)目是Windows特權(quán)提升項(xiàng)目。除了未通過(guò)測(cè)試的EXP之外,還有詳細(xì)的說(shuō)明和演示GIF圖片。
-
https://github.com/Ascotbe/Kernelhub
-
https://github.com/fabacab/awesom
e-cybersecurity-blueteam
九.紅藍(lán)隊(duì)視頻
https://ke.qq.com/course/119808?mmticket=#term_id=100204746
文章來(lái)源:LemonSec,如有侵權(quán)請(qǐng)聯(lián)系刪除