kompozit · edukator režim · za predavanje i PDF
Logging & Monitoring
Odbrana u centru, pretnje koje suzbija levo, tehnike koje neutrališe desno. Ispod kartice — profil odbrane: šta presreće i koliko košta.
← Threats it reduces60
Threats it reduces. Klik vodi na stranicu pojma.
- Ransomware→
- Supply Chain Attack→
- Spear Phishing→
- Account Takeover→
- Phishing→
- Business Email Compromise→
- Backdoor→
- Insider Threat→
- Zero-Day Exploitation→
- Remote Code Execution→
- Trojan→
- Accidental Data Leak→
- Privilege Escalation→
- Credential stuffing→
- Shadow IT→
- Whaling→
- SMS phishing - Smishing→
- Remote access trojan - RAT→
- Botnet Attacks→
- Authentication Bypass→
- Loader / Dropper→
- Fileless malware→
- SQL Injection→
- Token Theft→
- Brute-force attack→
- Cryptominer→
- IoT Device Compromise→
- Session Hijacking→
- Spyware→
- API Abuse→
- Password spraying→
- Third-Party Compromise→
- Malvertising→
- SSRF→
- Shared Account Abuse→
- Pass-the-Hash→
- Cross-Site Scripting→
- Insecure Deserialization→
- MFA Fatigue→
- Ransom DDoS→
- Privilege Misuse→
- Model theft / extraction→
- Prompt injection→
- Contractor Abuse→
- DNS Amplification→
- Deepfake Attack→
- Denial of Service / DoS→
- Distributed Denial of Service / DDoS→
- Pretexting→
- Service Abuse→
- voice phishing - Vishing→
- Resource Exhaustion→
- SCADA/OT Attack→
- Kerberoasting→
- Physical Access Attack→
- BGP Hijacking→
- Cross-Site Request Forgery→
- DNS Poisoning→
- Dependency Confusion→
- Path Traversal→
defense · № 016 · monitoring / response
Logging & Monitoring
Logging and monitoring involves the systematic recording of activities and events on systems, networks, and applications, along with regular analysis of those records to detect anomalies and security incidents.
→ profil odbrane · šta presreće i koliko košta
tip kontroleDetektivna
domenPraćenje i odgovor
napor ↔ uticajSrednji napor / Srednji uticaj
alat · standardElastic Stack, Graylog, Grafana Loki, syslog, CIS Controls
← Techniques it neutralizes41
Techniques it neutralizes. Klik vodi na stranicu pojma.
- Credential Abuse→
- Data Exfiltration→
- Malware Delivery→
- Social Engineering→
- Phishing→
- Lateral Movement→
- Command & Control→
- Configuration Abuse→
- Privilege Escalation→
- Reconnaissance→
- Impair Defenses→
- Persistence→
- AiTM→
- Double Extortion→
- Automation & Scripting→
- Resource Exhaustion→
- Brute Force→
- Cloud lateral movement→
- Encrypted C2 Channels→
- Living off the Land→
- OSINT→
- Process Injection→
- Service Abuse→
- Website Defacement→
- Pass-the-Hash→
- DNS Tunneling→
- In-Memory Execution→
- DLL Sideloading→
- Supply Chain Compromise→
- Data Destruction→
- Indicator Removal→
- Network Sniffing→
- Domain Account Discovery→
- Log Tampering→
- Physical Access→
- Fast-Flux DNS→
- Forge Kerberos Tickets→
- Timestomping→
- Access Token Manipulation→
- Domain Fronting→
- Watering Hole→