Stock Abbreviation : Topsec      Stock Code : 002212
7*24 hour service: 400-777-0777

Attack and defense drill project of a government department

Presenting the customer's existing security status | Improving the headquarters' supervision ability over branches

Background

The purpose and starting point of the project is to prepare for the national attack and defense drills and major activities, investigate the risk status of the headquarters and branches of the government department across the country, find security vulnerabilities and potential risks, effectively identify, analyze and control security risks of the information system, and improve personnel's security awareness, security emergency handling ability and network security prevention ability and level.

Activity & Announcement
Solution architecture

Based on the actual requirements and current status of the customer, Topsec has worked out the following solution from the perspective of attacker:

1) Collect Information.

Sort out the customer's assets exposed on the Internet, identify the boundaries and asset data, and provide effective support for the next attack.

2) Break through the boundary.

Break through the protection boundary of the target system by means of social work, fishing, and vulnerability utilization.

3) Expand the achievements.

Maintain the availability of border entrances through backdoors and other means, and use vulnerabilities to move laterally, thus expanding the achievements.

4) Review and summarize the process.

Discuss the problems in the attack and defense process, summarize the attack means and achievements of the attacker and monitoring and protection achievements of the defender, provide optimization suggestions in combination with the actual protection means, and consolidate the achievements of confrontation between the red and blue teams.

Value to customer
Improve the headquarters' supervision ability over branches

Enable the headquarters to fully grasp the cybersecurity shortcomings of each branch, form an overall understanding, and improve the headquarters' supervisory control and post-supervision capabilities.

Present the existing security status

Test the effectiveness of the existing security protection methods and strategies, and show the customer's current security status.