Gemini Google Cloud APP Muridzi Manual
Gemini Google Cloud APP

Gemini chishandiso chine simba cheAI chinogona kushandiswa kubatsira Google Security Operations uye Google Threat Intelligence vashandisi. Gwaro iri rinokupa ruzivo rwaunoda kuti utange neGemini uye gadzira zvinobudirira zvinokurudzira.

Kugadzira zvinokurudzira neGemini

Paunenge uchigadzira kukurumidza, iwe uchafanirwa kupa Gemini neruzivo runotevera:

  1. Mhando yekukurumidza iwe yaunoda kugadzira, kana iripo (semuenzaniso
    "Gadzira mutemo")
  2. Mamiriro ezvinhu ekukurumidza
  3. Kubuda kwaidiwa

Vashandisi vanogona kugadzira zvakasiyana-siyana zvekukurudzira, kusanganisira mibvunzo, mirairo uye pfupiso.

Maitiro akanakisa ekugadzira zvirevo

Paunenge uchigadzira kukurudzira, zvakakosha kuchengeta anotevera maitiro akanaka mupfungwa:

Icon Shandisa mutauro wechisikigo: Nyora sokunge uri kutaura murairo uye taura pfungwa dzakakwana mumitsara yakazara.

Icon Ipa mamiriro: Sanganisira ruzivo rwakakodzera kuti ubatsire Gemini kunzwisisa chikumbiro chako, senge nguva yakatarwa, yakatarwa zvinyorwa, kana ruzivo rwemushandisi. Kuwanda kwechirevo chaunopa, ndiko kuwedzera kwakakodzera uye kubatsira mhedzisiro inova.

Icon Iva akananga uye muchidimbu: Taura zvakajeka ruzivo rwauri kutsvaga kana basa raunoda kuti Gemini iite. Tsanangura chinangwa, chinokonzeresa, chiito, uye mamiriro (s).
For example, bvunza mubatsiri: "Ndizvo here izvi (file zita, zvichingodaro) anozivikanwa kuva ane utsinye?” uye kana zvichizivikanwa kuti ndizvo, unogona kukumbira "Tsvaga izvi (file) munzvimbo yangu."

Icon Batanidza zvinangwa zvakajeka: Tanga nechinangwa chakajeka uye tsanangura zvinokonzeresa zvinomutsa mhinduro.

Icon Shandisa maitiro ese: Shandisa in-line yekutsvaga basa, mubatsiri wekutaura, uye jenareta rebhuku rekutamba kune zvaunoda zvakasiyana.

Icon Mareferensi ekubatanidza (yekugadzira bhuku rekutamba chete): Kumbira uye tsanangura kubatanidzwa kwawakatoisa uye kugadzirisa munharaunda yako sezvo ine chekuita nematanho anotevera mubhuku rekutamba.

Icon Dzokorora: Kana mhinduro dzekutanga dzisingagutsi, natsa kukurumidza kwako, ipa rumwe ruzivo, uye bvunza mibvunzo yekutevera kutungamira Gemini kune mhinduro iri nani.

Icon Sanganisira zvisungo zvekuita (zvekugadzira mabhuku ekutamba chete): Iwe unogona kusimudzira kushanda kwekukurumidza paunenge uchigadzira bhuku rekutamba nekukumbira mamwe matanho akadai sekupfumisa data.

Icon Simbisa chokwadi: Rangarira kuti Gemini chishandiso cheAI, uye mhinduro dzayo dzinofanira kugara dzakasimbiswa zvichipesana neruzivo rwako uye mamwe masosi aripo.

Kushandisa zvinokurudzira muSecurity Operations

Gemini inogona kushandiswa nenzira dzakasiyana-siyana muSecurity Operations, kusanganisira kutsvaga-in-line, rubatsiro rwekutaura, uye kugadzirwa kwebhuku rekutamba. Mushure mekugamuchira AI-yakagadzirwa nyaya pfupiso, Gemini inogona kubatsira varapi ne:

  1. Kutyisidzira uye kuongorora
  2. Q&A ine chekuita nezvekuchengetedza
  3. Playbook chizvarwa
  4. Threat intelligence muchidimbu

Google Security Operations (SecOps) yakafumiswa nehungwaru hwemberi kubva kuMandiant, uye hungwaru hwechaunga kubva kuVirusTotal iyo inogona kubatsira zvikwata zvekuchengetedza:

Icon Kurumidza kuwana uye ongorora kutyisidzira kungwara: Bvunza mibvunzo yemutauro wechisikigo nezvevatambi vekutyisidzira, mhuri dzine malware, kusasimba, uye maIOC.

Icon Kurumidza kuvhima nekuona kutyisidzira: Gadzira mibvunzo yekutsvaga yeUDM uye mitemo yekuona zvichienderana nekutyisidzira kwehungwaru data.

Icon Isa pamberi njodzi dzekuchengetedza: Nzwisisa kuti ndedzipi tyisidziro dzinonyanya kukosha kusangano ravo uye tarisa pane zvakanyanya kunetsa.

Icon Pindura zvinobudirira kune zviitiko zvekuchengetedza: Pfumisa zviziviso zvekuchengetedza nekutyisidzira hungwaru mamiriro uye tora kurudziro dzekugadzirisa zviito.

Icon Kuvandudza ruzivo rwekuchengetedza: Gadzira zvinhu zvekudzidzisa zvinobatika zvichibva pane chaiyo-yenyika kutyisidzira njere.

Shandisa makesi eSecurity Operations

Security Operations

Kutyisidzira uye kuongorora

Gadzira mibvunzo, gadzira mitemo, tarisa zviitiko, ongorora zviziviso, tsvaga data (gadzira UDM mibvunzo).
Detection Investigation

Icon Mamiriro ezvinhu: Muongorori wekutyisidzira ari kuongorora yambiro nyowani uye anoda kuziva kana paine humbowo mumhoteredzo yeimwe murairo unoshandiswa kupinza zvivakwa nekuzviwedzera kune registry.

Icon Sample prompt: Gadzira mubvunzo kuti uwane chero zviitiko zvekugadzirisa registry pa [hostname] munguva yapfuura [nguva].

Icon Chikumbiro chekutevera: Gadzira mutemo wekubatsira kuona kuti maitiro mune ramangwana.
Detection Investigation

Icon Mamiriro ezvinhu: Muongorori anoudzwa kuti mudzidzi aiita “zvinhu” zvinonyumwira uye aida kunzwisisa zviri nani zviri kuitika.

Icon Sample prompt: Ndiratidze zviitiko zvekubatanidza network zve userid kutanga netim. smith (case insensitive) kwemazuva matatu apfuura.

Icon Chikumbiro chekutevera: Gadzira mutemo weYARA-L wekuona chiitiko ichi mune ramangwana.
Detection Investigation

Mamiriro ezvinhu: Muongorori wezvekuchengetedza anogashira yambiro nezve chiitiko chinofungidzirwa paaccount yemushandisi.

Sample prompt: Ndiratidze zviitiko zvakavharirwa mushandisi zvekupinda nekodhi yechiitiko ye4625 uko src.
hostname haisi null.

Chikumbiro chekutevera: Vangani vashandisi vanosanganisirwa mumhedzisiro seti?

Q&A ine chekuita nezvekuchengetedza

Q&A ine chekuita nezvekuchengetedza

Icon Mamiriro ezvinhu: Muongorori wezvekuchengetedza ari kupinda mubasa idzva uye anocherechedza kuti Gemini akapfupikisa nyaya ine matanho anokurudzirwa ekuferefeta uye mhinduro. Vanoda kudzidza zvakawanda nezve malware anoonekwa muchidimbu chenyaya.

Icon Sample prompt: Chii chinonzi [zita remalware]?

Icon Chikumbiro chekutevera: [zita remalware] rinoramba riripo sei?
Q&A ine chekuita nezvekuchengetedza

Icon Mamiriro ezvinhu: Muongorori wezvekuchengetedzwa kwenyika anogashira chenjedzo pamusoro pezvingangove zvakaipa file hash.

Icon Sample prompt: Ndizvo here izvi file hash [insert hash] inozivikanwa kuva ine utsinye?

Icon Chikumbiro chekutevera: Nderupi rumwe ruzivo rwuripo pamusoro peizvi file?

Icon Mamiriro ezvinhu: Munhu anopindura chiitiko anofanirwa kuona kunobva hutsinye file.

Icon Sample prompt: Chii chinonzi file hashi yezvinoitwa "[malware.exe]"?

Icon Zvikumbiro zvekutevera:

  • Pfumisa nehungwaru hwekutyisidzira kubva kuVirusTotal kune ruzivo nezve izvi file hash; zvinozivikanwa kuti zvakaipa here?
  • Izvi zvakaonekwa munharaunda yangu here?
  • Ndezvipi zvinokurudzirwa kuchengetedza uye kugadzirisa zviito zveiyi malware?

Playbook chizvarwa

Tora chiito uye uvake mabhuku ekutamba.
Playbook Generation

Icon Mamiriro ezvinhu: Injiniya yekuchengetedza inoda kuita otomatiki maitiro ekupindura kune phishing emails.

Icon Sample prompt: Gadzira bhuku rekutamba rinotanga kana email yagamuchirwa kubva kune anozivikanwa phishing sender. Iyo playbook inofanirwa kuisa iyo email yega uye kuzivisa timu yekuchengetedza.
Playbook Generation

Icon Mamiriro ezvinhu: Nhengo yechikwata cheSOC inoda kuzvigadzika yega zvine hutsinye files.

Icon Sample prompt: Nyora bhuku rekutamba rekuzivisa nezve malware. Bhuku rekutamba rinofanira kutora file hash kubva kuchenjedzo uye kuipfumisa nehungwaru kubva kuVirusTotal. Kana iyo file hashi ine hutsinye, gara wega file.
Playbook Generation

Icon Mamiriro ezvinhu: Muongorori wekutyisidzira anoda kugadzira bhuku idzva rekutamba iro rinogona kubatsira kupindura kune ramangwana chenjedzo dzine chekuita neregistry kiyi shanduko.

Icon Sample prompt: Vaka bhuku rekutamba kune avo registry kiyi shanduko chenjedzo. Ini ndinoda iro bhuku rekutamba rakafumiswa nemhando dzese dzemasangano kusanganisira VirusTotal uye Mandiant kutyisidzira kumberi kwenjere. Kana paine chinhu chinofungidzirwa kuti chazivikanwa, gadzira nyaya tags wozoisa pamberi penyaya yacho.

Threat intelligence muchidimbu

Wana ruzivo nezve kutyisidzira uye kutyisidzira vatambi.

Icon Mamiriro ezvinhu: Maneja wemabasa ekuchengetedza anoda kunzwisisa maitiro ekurwisa emumwe mutambi wekutyisidzira.

Icon Sample prompt: Ndeapi maitiro anozivikanwa, maitiro, uye maitiro (TTPs) anoshandiswa neAPT29?

Icon Chikumbiro chekutevera: Pane here zvakacherechedzwa zvinoonekwa muGoogle SecOps zvinogona kubatsira kuona chiitiko chine chekuita neTTPs idzi?

Icon Mamiriro ezvinhu: Muongorori wehungwaru anotyisidzira anodzidza nezve rudzi rutsva rwemalware ("emotet") uye anogovera mushumo kubva mukutsvagisa kwavo nechikwata cheSOC.

Icon Sample prompt: Ndezvipi zviratidzo zvekukanganisika (IOCs) zvakabatana neiyo emotet malware?

Icon Zvikumbiro zvekutevera:

  • Gadzira mubvunzo wekutsvaga weUDM kuti utsvage maIOC aya mumatanda esangano rangu.
  • Gadzira mutemo wekuona unozondizivisa kana chero yeaya maIOC akaonekwa mune ramangwana.

Icon Mamiriro ezvinhu: Muongorori wezvekuchengetedza aona mauto ari munharaunda yavo achitaurirana nevanozivikanwa kuraira-uye-kutonga (C2) maseva ane hukama nemumwe munhu anotyisidzira mutambi.

Icon Sample prompt: Gadzira mubvunzo kuti undiratidze ese anobuda network ekubatanidza kune IP kero nemadomasi ane chekuita ne: [zita rekutyisidzira mutambi].

Nekushandisa Gemini zvinobudirira, zvikwata zvekuchengetedza zvinogona kukwidziridza kugona kwavo kutyisidzira uye kugadzirisa yavo yese kuchengetedza kumira. Aya angori maex mashomaampmashoma ekuti Gemini inogona kushandiswa sei kuvandudza mashandiro ekuchengetedza.
Sezvo iwe uchiwedzera kujairana nechishandiso, iwe unowana dzimwe nzira dzakawanda dzekuishandisa kune yako advantage. Mamwe mashoko anogona kuwanikwa paGoogle SecOps chigadzirwa zvinyorwa peji.

Kushandisa zvinokurudzira muThreat Intelligence

Nepo Google Threat Intelligence inogona kushandiswa zvakafanana kune yechinyakare yekutsvaga injini ine mazwi ega, vashandisi vanogona zvakare kuwana zvakanangwa mhedzisiro nekugadzira chaiyo yekukurudzira.
Gemini zvinokurudzira zvinogona kushandiswa nenzira dzakasiyana muThreat Intelligence, kubva pakutsvaga mafambiro akafara, kusvika pakunzwisisa kutyisidzira chaiko uye zvimedu zvemalware, zvinosanganisira:

  1. Kutyisidzira kungwara kuongororwa
  2. Proactive kutyisidzira kuvhima
  3. Kutyisidzira actor profiling
  4. Kuisa pamberi penjodzi
  5. Kuvandudza chenjedzo dzekuchengetedza
  6. Kushandisa MITER ATT&CK

Shandisa makesi eThreat Intelligence

Kutyisidzira kungwara kuongororwa

Threat Intelligence Analysis

Icon Mamiriro ezvinhu: Muongorori wehungwaru anotyisidzira anoda kudzidza zvakawanda nezve ichangobva kuwanikwa mhuri yemalware.

Icon Sample prompt: Chii chinozivikanwa nezve malware "Emotet"? Ndeapi masimba ayo uye anopararira sei?

Icon Related kukurumidza: Ndezvipi zviratidzo zvekukanganisika (IOCs) zvakabatana neiyo emotet malware?Threat Intelligence Analysis

Icon Mamiriro ezvinhu: Muongorori arikuferefeta boka idzva rerudzikinuro uye anoda kukurumidza kunzwisisa maitiro avo, matekiniki, uye maitiro (TTPs).

Icon Sample prompt: Pfupisa maTTP anozivikanwa eboka rerudzikinuro "LockBit 3.0." Sanganisira ruzivo nezve nzira dzavo dzekutanga dzekuwana, nzira dzekufamba kwemashure, uye nzira dzekupamba dzakasarudzika.

Icon Zvinoenderana

  • Ndezvipi zviratidzo zvakajairika zvekukanganisa (IOCs) zvine chekuita neLockBit 3.0?
  • Pave paine zvichangobva kuitika zveruzhinji mishumo kana kuongororwa kweLockBit 3.0 kurwiswa?

Proactive kutyisidzira kuvhima

Proactive Threat Hunting

Icon Mamiriro ezvinhu: Muongorori wehungwaru anotyisidzira anoda kunyatsotsvaga zviratidzo zveimwe mhuri ine malware inozivikanwa kunanga indasitiri yavo.

Icon Sample prompt: Ndezvipi zviratidzo zvakajairika zvekukanganisa (IOCs) zvine chekuita neiyo "Trickbot" malware?

Icon Mamiriro ezvinhu: Muongorori wezvekuchengetedza anoda kuona chero mauto ari munharaunda mavo achitaurirana nevanozivikanwa kuraira-uye-kutonga (C2) maseva ane hukama nemumwe anotyisidzira mutambi.

Icon Sample prompt: Ndeapi anozivikanwa C2 IP kero uye madomasi anoshandiswa neanotyisa mutambi [Zita]?

Kutyisidzira actor profiling

Kutyisidzira Actor Profileing

Icon Mamiriro ezvinhu: Chikwata chehungwaru chekutyisidzira chirikutevera zviitiko zveanofungidzirwa kuti APT boka uye inoda kugadzira yakazara pro.file.

Icon Sample prompt: Gadzira nyanzvifile yemutambi wekutyisidzira "APT29". Sanganisira mazita avo anozivikanwa, nyika yavanofungirwa kwavakabva, zvinokurudzira, zvinotarisirwa, uye maTTP anodiwa.

Icon Related kukurumidza: Ndiratidze nguva yekurwisa kwakanyanya kweAPT29 campaign uye timeline.

Kuisa pamberi penjodzi

Icon Mamiriro ezvinhu: Chikwata chekutarisira njodzi chinoda kukoshesa kuedza kwekugadzirisa zvichienderana nemamiriro ekutyisidzira.

Icon Sample prompt: Ndedzipi Palo Alto Networks kusagadzikana kuri kushandiswa nesimba nevatambi vekutyisidzira musango?

Icon Related kukurumidza: Pfupikidza zviitiko zvinozivikanwa zveCVE-2024-3400 uye CVE-2024-0012.

Icon Mamiriro ezvinhu: Chikwata chekuchengetedza chakaremerwa nemhedzisiro yekuongorora kwenjodzi uye chinoda kukoshesa kuedza kwekugadzirisa zvichienderana nehungwaru hwekutyisidzira.

Icon Sample prompt: Ndechipi chekusagadzikana kunotevera kwakataurwa mumishumo yehungwaru yekutyisidzira: [rondedzero yakaonekwa kusasimba]?

Icon Zvinoenderana

  • Pane here zviitwa zvinozivikanwa zviripo kune zvinotevera kusasimba: [rondedzero yakaonekwa kusasimba]?
  • Ndeupi wekusagadzikana kunotevera kungango shandiswa nevatambi vekutyisidzira: [rondedzero yakaonekwa kusasimba]? Zviise pamberi zvichienderana nekuoma kwavo, kushandiswa, uye kukosha kune indasitiri yedu.

Kuvandudza chenjedzo dzekuchengetedza

Icon Mamiriro ezvinhu: Muongorori wezvekuchengetedza anogashira yambiro nezve kuyedza kupinda mukati kubva kune isingazivikanwe IP kero.

Icon Sample prompt: Chii chinozivikanwa nezve IP kero [ipa IP]?

Kushandisa MITER ATT&CK

Icon Mamiriro ezvinhu: Chikwata chekuchengetedza chinoda kushandisa iyo MITER ATT & CK chimiro kuti vanzwisise kuti mutambi wekutyisidzira angangonanga kusangano ravo sei.

Icon Sample prompt: Ndiratidze maitiro eMITER ATT&CK ane hukama neanotyisidzira mutambi APT38.

Gemini chishandiso chine simba chinogona kushandiswa kugadzirisa Chengetedzo Operations uye Threat Intelligence. Nekutevera maitiro akanakisa atsanangurwa mugwaro rino, unogona kugadzira zvirevo zvinoshanda zvinokubatsira kuwana zvakanyanya kubva kuGemini.

Cherechedza: Gwaro iri rinopa mazano ekushandisa Gemini muGoogle SecOps uye Gemini muThreat Intelligence. Haisi rondedzero inoperera yemakesi ese anogona kushandiswa, uye iwo chaiwo masimba eGemini anogona kusiyana zvichienderana nechigadzirwa chako edition. Iwe unofanirwa kubvunza zviri pamutemo zvinyorwa kuti uwane ruzivo rwechizvino-zvino.

Icon
Gemini
muSecurity Operations

Icon
Gemini
muTreat Intelligence

Zvinyorwa / Zvishandiso

Gemini Google Cloud APP [pdf] Bhuku reMuridzi
Google Cloud APP, Google, Cloud APP, APP

References

Siya mhinduro

Yako email kero haizoburitswa. Nzvimbo dzinodiwa dzakamakwa *