Google, IBM & Meta Certificates – 40% Off
One plan covers every Professional Certificate on Coursera.
Unlock All Certificates
The Practical Incident Handling course will cover how you can prepare and defend against each stage of the cyber kill chain. The goal of this is to first educate you on the techniques, tactics, and procedures that modern adversaries use and then, make you capable of preparing and defending against them, using a variety of detection techniques, tools, logs, and events. Specifically, you will learn how to detect information gathering activities such as Google/Shodan “hacking”, DNS interrogation and reconnaissance through exposed OWA or JavaScript injection, scanning activities such as war dialing, war driving, nmap/nessus scans and WebRTC-based scans, exploitation activities such as passive/Active sniffing, DNS cache poisoning, remote/web attacks and misusing/brute-forcing Microsoft authentication and post-exploitation attacks such as RATs, possible attack path identification attempts, credential reuse, privilege escalation attempts, covert communication channels, persistence attempts and Kerberos attacks (overpass-the-hash, kerberoasting, golden tickets etc.)
This course is part of the Incident Handling & Response Professional Learning path which prepares you for the eCIR exam and certification