SGAP (Cyber Security Leadership)
813 subscribers
1.56K photos
180 videos
342 files
921 links
SGAP cyber security leadership
مرکز امنیت سایبری SGAP
ارائه خدمات فنی شبکه و امنیت سایبری
آموزش دوره های تخصصی هک و امنیت
آخرین اخبار شبکه و امنیت و دانلود منابع آموزشی
ارتباط با ما :
@sgapsec
www.sgap.co
09158000468
05136029870
Download Telegram
🖥درس آموخته ای از حادثه‌ی اخیر Crowdstrike و استفاده از تجربه آن در امنیت سایبری شبکه های OT

1️⃣ اهمیت آزمایش هرگونه به‌روزرسانی در محیط آزمایشی قبل از استقرار در محیط اجرایی مطابق با گزارش فنی استاندارد ISA/IEC 62443-2-3. آزمایش Patchها در حوزه OT بسیار حیاتیست چون عدم دسترسی به ایستگاه های کاری اپراتورها یا سرورهای کنترلی می‌تواند به پیامدهای نامطلوبی منجر شود.
2️⃣ اهمیت مفهوم Secure Product Development Lifecycle هست که در استاندارد ISA/IEC 62443-4-1 به آن پرداخته شده است تا اطمینان حاصل شود که تأمین‌کننده محصول امنیت را در طول توسعه محصول در نظر می‌گیرد.

گروه امنیت سایبری SGAP
www.sgap.co
@sgapsec
Malware Development, Analysis and DFIR Series
PART I
Introduction

This will be a series focussed on developing Malwares for ethical purposes only, The author is not liable for any damages caused.

before we begin, let’s know about a few things
what is a malware?

Malwares are malicious softwares, that are a nefarious class of software meticulously engineered to compromise the integrity, confidentiality, or availability of computer systems. These pernicious programs are often cloaked in deceit, masquerading as legitimate software to trick unsuspecting users into granting them access. A malware can perform harmful actions such as stealing sensitive data, causing system disruptions, or even taking control of the system.

Malwares can also be used by red/purple teamers and pentesters for ethical and authorized purposes like Assessment of Defenses, Simulation of Threat Actors, Testing Incident Response Plans, Validation of Security

گروه امنیت سایبری SGAP
www.sgap.co
@sgapsec
Channel photo updated