Stock Abbreviation : Topsec      Stock Code : 002212
7*24 hour service: 400-777-0777

Attack and Defense Confrontation Service - Team Red and Blue

Promote defense through attacks, find problems through drills, and guide enterprises and institutions to carry out cybersecurity construction.

Background

In recent years, network attacks have become increasingly serious. There are numerous cyber security incidents. The national information infrastructure has been damaged, which has a serious impact on politics and economy. The subject of attacks has evolved from individuals to organizations. Based on the current cyber security situation, the country carries out actual attack and defense drills for key information infrastructure every year, promotes defense through attacks, finds problems through drills, and guides enterprises and institutions to carry out cyber security construction.

Activity & Announcement

Service Introduction

Drawing on the concept of military confrontation drills, Topsec Attack and Defense Confrontation Service - Team Red and Blue is a professional technical service tailored for the designated information facilities and systems of the enterprise. It adopts the form of teams red and blue confrontation to conduct network attack and defense drills under the unified design and supervision of the commander.

Advantages
Red/blue/purple all-around service

Topsec can provide comprehensive services for the commander (purple), attacker (red) and defender (blue).

Capability built through 9 years of actual attack experience

The Topsec security service attack team is composed of hundreds of senior attackers from Topsec Chixiao laboratory and business centers across the country. Among them, Topsec Chixiao laboratory focuses on the research of attack techniques and tactics in the field of cyber security, research of network actual attacks, and production and modification of forward-looking attack weapons. It has made outstanding achievements in many important national activities and provincial and ministerial level attack and defense drills.

Attack capability

Accumulation of attack knowledge base: The Topsec security service team accumulates and continuously updates attack knowledge base, including the vulnerability database, fingerprint database, and 0Day database.

Defense capability

Detection-analysis capabilities: The security knowledge bases accumulated by the security service team include the vulnerability database, rule database, and analysis and judgment database. Security experts can quickly read and judge an attack behavior and its degree of harm through the knowledge base.

Disposal capability: The security service team designs a "security script" based on the customer's security environment and security equipment to realize basic security disposal and automation. With the help of the emergency response platform, the team can quickly locate security incidents and shorten the disposal time.

Traceability: Based on rich practical experience, the security service team can trace the source of the attacker's attack information to provide strong support for defense work.

Intelligence capability: The security service team has built an intelligence data production system with a complete life cycle (including threat intelligence collection, analysis, application and feedback), and used this system in many scenarios, such as attack detection and defense, incident response and disposal, threat hunting, and intelligence-driven vulnerability management.

Value to Customers
  • Test whether the customer's organization and management measures are sound and whether the customer has the ability of coordinated operation in the face of an attack.
  • Evaluate the effectiveness of the existing cybersecurity policies and security means, and accurately locate the security weaknesses.
Success Case