In 2019, the Qi'an Security Service team published the popular science book "Emergency Response—Cyber Security Prevention, Discovery, Disposal and Recovery", aiming to improve the organizational building capabilities of institutions and enterprises in network security emergency response. In 2020, we wrote this book to help front-line security personnel handle network security emergency response incidents more efficiently and with high quality by leveraging the practical experience of handling thousands of network security emergency response incidents accumulated by the Qi'an Security Service team over the years. This book has 10 chapters in total. Chapters 1 to 3 cover the basic theories, basic skills and common tools that network security emergency response engineers need to master. Chapters 4 to 10 cover the seven common handling scenarios of current network security emergency response, namely ransomware, mining Trojans, Webshells, webpage tampering, DDoS attacks, data leaks and traffic hijacking network security emergency response. Through studying this book, front-line network security emergency response engineers can master network security emergency response processing ideas, skills, and the use of related tools to achieve new security requirements for rapid response. This book is suitable for use by security operations personnel in institutions and enterprises, and can also be used as a training material for students majoring in network security in colleges and universities.
Reader comments
This book is very practical! It introduces various network security emergency response scenarios and solutions in detail through real cases, which is very helpful to improve the emergency response capabilities of security personnel. And the content is easy to understand, even non-professionals can understand it. I think it is not only suitable for security operations personnel, but also for people who are interested in network security.
This book is very practical! It introduces various network security emergency response scenarios and solutions in detail through real cases, which is very helpful to improve the emergency response capabilities of security personnel. And the content is easy to understand, even non-professionals can understand it. I think it is not only suitable for security operations personnel, but also for people who are interested in network security.