VTG Bundle

VTG Ch3 - Endpoint Defenses (VTG103)


Description
Chapter 3 of 5-Part VTG Bundle
60 day lab access included with bundle, see details below*

The Fortiphyd Virtual Training Grounds series equips you with the practical experience needed to secure ICS networks. Practice launching real attacks, see their physical consequences, and learn how to defend against them all in realistic 3D simulated plants.

In the previous two chapters we put on our “black hat” and thought like a hacker, finding multiple vulnerabilities and poor security practices in both the DMZ and the main ICS network, culminating in causing an outage at the power plant. Now we will use all this knowledge to learn how to better defend these networks, focusing first on the endpoints themselves. After completing this chapter, users will be able to:

• Investigate Windows event logs, and set up audit policies
• Use the Windows powershell command line (ps, select-string, netstat)
• Use intermediate level Linux commands (ps, grep, netstat)
• Investigate Linux logs
• Write basic Linux host firewall rules

COMING SOON - secure PLC programming

*Professional users get 60 days of lab access starting during the next available time slot. Once purchased, Fortiphyd support will contact you to coordinate the start date. Academic user pricing and duration of lab access dependent on agreement with school.

Content
  • LAB ENVIRONMENT
  • Introduction
  • Introduction
  • Key Terms Review
  • HMI Input Validation
  • 3.1
  • Exercise Review
  • HMI User Privileges
  • 3.2
  • Exercise Review
  • PLC and HMI Programming
  • 3.3
  • Video Walkthrough
  • Exercise Review
  • Windows Logs
  • 3.4
  • Exercise Review
  • Windows Powershell
  • 3.5
  • Exercise Review
  • Scanning for ICS Malware with YARA
  • 3.6
  • Exercise Review
  • Linux Logs
  • 3.7
  • Exercise Review
  • Linux Command Line
  • 3.8
  • Exercise Review
  • Linux SSH Configuration
  • 3.9
  • Exercise Review
  • Linux Host Firewall
  • 3.10
  • Exercise Review
  • Chapter 3 Feedback
  • Discussion and Q&A
Completion rules
  • All units must be completed
  • Leads to a certification with a duration: 3 years