Defensive Python Course

This course demonstrates the use of Python for network analytics to detect and hijack suspicious connections.

1 hour, 48 minutes

Course description

In this course, you'll explore defensive Python. This includes brute-force detection, detecting SSH brute force with scapy, feature selection for traffic analysis, detecting anomalous network traffic and more.

Syllabus

Connection hijacking with scapy

Video - 00:21:00

This video shows how to hijack and terminate a FTP session, using scapy.
Detecting anomalous network traffic with scapy

Video - 00:10:00

This video uses basic statistical analysis to identify anomalous network packets.
Feature selection for traffic analysis

Video - 00:17:00

This video discusses how to select good features from network traffic for data analytics.
Detecting SSH brute force with scapy

Video - 00:17:00

This video demonstrates how to detect brute-force password attacks against SSH servers, using network traffic analysis with scapy.
Detecting FTP brute force with scapy

Video - 00:14:00

This video demonstrates how to detect brute-force password attacks against FTP servers using network traffic analysis with scapy.
Brute-force detection with Windows Events

Video - 00:17:00

This video describes how to detect brute-force password-guessing attacks using the Windows event log.
Introduction to defensive Python

Video - 00:12:00

This video introduces the concept of defensive Python and discusses how Python can be applied to defensive goals.

Meet the author

Howard Poston

Howard Poston is a copywriter, author, and course developer with experience in cybersecurity and blockchain security, cryptography, and malware analysis. He has an MS in Cyber Operations, a decade of experience in cybersecurity, and over five years of experience as a freelance consultant providing training and content creation for cyber and blockchain security. He is also the creator of over a dozen cybersecurity courses, has authored two books, and has spoken at numerous cybersecurity conferences. He can be reached by email at howard@howardposton.com or via his website at https://www.howardposton.com.

Unlock 7 days of free training

  • 1,400+ hands-on courses and labs
  • Certification practice exams
  • Skill assessments

Plans & pricing

Infosec Skills Personal

$299 / year

  • 190+ role-guided learning paths (e.g., Ethical Hacking, Threat Hunting)
  • 100s of hands-on labs in cloud-hosted cyber ranges
  • Custom certification practice exams (e.g., CISSP, Security+)
  • Skill assessments
  • Infosec peer community support

Infosec Skills Teams

$799 per license / year

  • Team administration and reporting
  • Dedicated client success manager
  • Single sign-on (SSO)
    Easily authenticate and manage your learners by connecting to any identity provider that supports the SAML 2.0 standard.
  • Integrations via API
    Retrieve training performance and engagement metrics and integrate learner data into your existing LMS or HRS.
  • 190+ role-guided learning paths and assessments (e.g., Incident Response)
  • 100s of hands-on labs in cloud-hosted cyber ranges
  • Create and assign custom learning paths
  • Custom certification practice exams (e.g., CISSP, CISA)
  • Optional upgrade: Guarantee team certification with live boot camps

Learn about scholarships and financing with

Affirm logo

Award-winning training you can trust