Shadowing Practice: MITRE ATT&CK® Framework - Learn English Speaking with Video

Les maken...
1
It's been reported that once an organization is breached, adversaries typically lurk on networks for months before being detected.
2
How did they get in?
3
How are they moving around?
4
What are they doing?
5
So where do you start?
6
MITRE's ATT&CK framework describes how adversaries penetrate networks and then move laterally, escalate privileges, and generally evade your defenses.
7
ATT&CK looks at the problem from the perspective of the adversary, what goals they are trying to achieve, and what specific methods they use.
8
ATT&CK organizes adversary behaviors into a series of tactics, specific technical objectives that an attacker wants to achieve.
9
Some examples of tactics include defense evasion, lateral movement, and exfiltration.
10
Within each tactic category, attack defines a series of techniques.
11
Each technique describes one way an adversary may try to achieve that objective.
12
There are multiple techniques within each tactic
13
because adversaries may use different methods based on their own expertise
14
or things like the availability of tools or how your systems are configured.
15
Each technique defined in attack includes a description of the method used by the adversary, the systems or platforms it applies to,
16
and where known, what specific adversary groups use this technique.
17
Techniques also describe ways to mitigate the behavior, along with any published references to the technique being employed.
18
ATT&CK helps you understand how adversaries might operate so you can plan how to detect or stop that behavior.
19
Armed with this knowledge, you can better understand the different ways an adversary prepares for, launches, and executes their attacks.
20
Another important use of ATT&CK is to help you detect an adversary's actions.
21
The ATT&CK framework includes resources designed to help you develop analytics that detect the techniques used by an adversary.
22
ATT&CK also maintains a library of information about selected adversary groups and the campaigns they have conducted.
23
And since ATT&CK is based on real-world observations, it allows you to correlate specific adversaries and the techniques they've used.
24
Because adversaries often use different techniques to attack different platforms and technologies, the ATT&CK framework is divided into a series of technology domains.
25
currently covered by ATT&CK include enterprise networks with Windows and Linux operating systems and mobile devices.
26
The ATT&CK framework can help your organization better understand the techniques specific adversaries are likely to use,
27
information you can use to evaluate your defenses and strengthen them where it matters most.
28
MITRE is building a community around ATT&CK so that experts in different domains
29
and technologies can come together to refine and extend the knowledge contained in the framework.
30
And because MITRE is a not-for-profit organization operating in the public interest, we can provide a conflict-free environment to create,
31
collect, share, and manage this information, making it available to everyone.
32
Learn more about ATT&CK and what else we're doing in cyber threat intelligence.
33
MITRE.
34
We solve problems for a safer world.

Woordenschat en spreektips bij deze les

Deze video bevat 34 zinnen en 490 woorden om na te spreken. Het gesproken deel duurt 3:35. De spreker praat in een gelijkmatig tempo van ongeveer 137 woorden per minuut, prettig om te shadowen. Slechts 74% van de woorden hoort bij de 3.000 meest gebruikte Engelse woorden, dus de woordenschat is pittig.

Belangrijke woorden in deze video

15 woorden uit de video die het leren waard zijn, met uitspraak en betekenis:

WoordUitspraakBetekenis
technique zelfstandig naamwoord/tɛkˈniːk/techniek
framework zelfstandig naamwoord/ˈfɹeɪm.wɜːk/geraamte
detect werkwoord/dɪˈtɛkt/detecteren
objective zelfstandig naamwoord/ɒbˈd͡ʒɛk.tɪv/object
define werkwoord/dɪˈfaɪn/bepalen, determineren
domain zelfstandig naamwoord/ˌdəʊˈmeɪ̯n/domein
tactics zelfstandig naamwoord/ˈtæktɪks/tactiek
tactic zelfstandig naamwoord/ˈtæktɪk/tactiek, gevechtsleer
select werkwoord/sɪˈlɛkt/uitkiezen, selecteer
solve werkwoord/sɒlv/oplossen
resource zelfstandig naamwoord/ɹɪˈzɔːs/bron, hulpbron
enterprise zelfstandig naamwoord/ˈɛntəˌpɹaɪz/onderneming
collect werkwoord/ˈkɑlɪkt/verzamelen, opstapelen
extend werkwoord/ɛkˈstɛnd/uitbreiden
privilege zelfstandig naamwoord/ˈpɹɪv.(ɪ.)lɪd͡ʒ/voorrecht, privilege

Uitspraak om op te letten

  • De klanken “sh” en “zh”: observation /ˌɑbzɚˈveɪʃn̩/, evasion /ɪˈveɪʒən/
  • Lange woorden — let op de klemtoon: availability /əˌveɪ.ləˈbɪl.ɪ.ti/, analytics /ˌæn.əˈlɪt.ɪks/, adversary /ˈæd.vəɹˌsɛɹi/, laterally /ˈlæ.tə.ɹə.li/

Zo oefen je met deze video

  1. Luister de hele video één keer zonder te spreken en noteer de woorden die je niet kent.
  2. Spreek zin voor zin na op normale snelheid en herhaal elke zin tot je ritme gelijk is aan dat van de spreker.
  3. Neem jezelf op en vergelijk met het origineel; let daarbij op woorden als technique, framework, detect.

Wat is de Shadowing-techniek?

Shadowing is een wetenschappelijk onderbouwde taalleermethode die oorspronkelijk is ontwikkeld voor professionele tolkentraining en gepopulariseerd door polyglot Dr. Alexander Arguelles. De methode is eenvoudig maar krachtig: je luistert naar native Engelse audio en herhaalt het onmiddellijk hardop — als een schaduw die de spreker volgt met slechts 1–2 seconden vertraging. In tegenstelling tot passief luisteren of grammaticadrills, dwingt shadowing je hersenen en mondspieren om echte spraakpatronen tegelijkertijd te verwerken en te reproduceren. Onderzoek toont aan dat het de uitspraaknauwkeurigheid, intonatie, ritme, verbonden spraak, luisterbegrip en spreekvaardigheid aanzienlijk verbetert — waardoor het een van de meest effectieve methoden is voor IELTS Speaking-voorbereiding en echte Engelse communicatie.

Shadowing-techniek: lees de volledige stap-voor-stap-gids →