What's new

Welcome to Free download educational resource and Apps from TUTBB

Join us now to get access to all our features. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, and so, so much more. It's also quick and totally free, so what are you waiting for?

DeTT&CT Mapping Blue Team to ATT&CK

TUTBB

Active member
Joined
Apr 9, 2022
Messages
186,470
Reaction score
18
Points
38
35096690bc0010c474db2effdb50fd04.jpeg

Published 12/2022
Created by Vipul Dabhi
MP4 | Video: h264, 1280x720 | Audio: AAC, 44.1 KHz, 2 Ch
Genre: eLearning | Language: English | Duration: 5 Lectures ( 1h 2m ) | Size: 550 MB

DeTT&CT Framework
What you'll learn
Understanding How to use DeTT&CT framework Theory & Hands on Implementation
Understand how to Map Your Blue Team To MITRE ATT&CK
MITRE ATT&CK Framework
Why we need DeTT&CT framework
Requirements
Zeal to Learn and Understand DeTT&CT framework
Description
Building detection is a complex task, especially with a constantly increasing amount of data sources. Keeping track of these data sources and their appropriate detection rules or avoiding duplicate detection rules covering the same techniques can give a hard time to detection engineers.For a SOC, it is crucial to have an good overview and a clear understanding of its actual visibility and detection coverage in order to identify gaps, prioritize the development of new detection rules or onboard new data sources.DeTT&CT stands for Detect Tactics, Techniques & Combat Threats. This framework has been created at the Cyber Defence Center of Rabobank and is developed and at the time of writing maintained by Marcus Bakker and Ruben Bouman.The purpose of DeTT&CT is to assist blue teams using MITRE ATT&CK to score and compare data log source quality, visibility coverage and detection coverage. By using this framework, blue teams can quickly detect gaps in the detection or visibility coverage and prioritize the ingest of new log sources.DeTT&CT delivers a framework than can map the information you have on the entities available in ATT&CK and help you manage your blue teams data, visibility, and detection coverage.Data Sources:Data sources are the raw logs or events generated by systems, e.g., security appliances, network devices, and endpoints. ATT&CK has over 30 different data sources which are further divided into over 90 data components. All those data components are included in this framework. These data sources are administered within the data source administration YAML file. For each data source, among others, the data quality can be scored. Within ATT&CK, these data sources are listed within the techniques themselves (e.g. T1003 in the Detection section).
Who this course is for
Cyber Security Professionals, Incident Responders, Threat Hunter, Cloud Security Professional
Homepage
Code:
https://www.udemy.com/course/dettct-mapping-blue-team-to-attck/

Recommend Download Link Hight Speed | Please Say Thanks Keep Topic Live
Code:
Download From 1DL 
https://1dl.net/xzw4hn983aen/uftmp.DeTTCT.Mapping.Blue.Team.to.ATTCK.rar
Rapidgator
https://rapidgator.net/file/4562cb7794077328d1e79e621b912e79/uftmp.DeTTCT.Mapping.Blue.Team.to.ATTCK.rar.html
Uploadgig
https://uploadgig.com/file/download/3df1B79c3d66c3Ae/uftmp.DeTTCT.Mapping.Blue.Team.to.ATTCK.rar
NitroFlare
https://nitroflare.com/view/5DF8ADF1D2183AF/uftmp.DeTTCT.Mapping.Blue.Team.to.ATTCK.rar
Links are Interchangeable - No Password - Single Extraction
 
Top Bottom