[1] Apache Struts2 S2-045, Retrieved from https://cwiki.apache.org/confluence/display/WW/S2-045. Accessed 23 June 2018.
[2] Burpsuite, Retrieved from https://portswigger.net/burp/help/suite_gettingstarted. Accessed 23 June 2018.
[3] Chromepass, Retrieved from https://www.nirsoft.net/utils/chromepass.html. Accessed 23 June 2018.
[4] Cyberbit(2016),Cyberbit Range, Retrieved from https://www.cyberbit.com/wp-content/resources/uploads/2016/12/27062048/Cyberbit-Range_Datasheet.pdf. Accessed 23 June 2018.
[5] E.M. Hutchins, M.J. Cloppert and R.M Amin PH.D., "Intelligence-Driven Computer Network Defense Informed by Analysis of Adversary Campaigns and Intrusion Kill Chains", Proc. 6th Int''l Conf. Information Warfare and Security (ICIW 11), Academic Conferences Ltd., 2010, pp. 113–125, Retrieved from https://learningnetwork.cisco.com/servlet/JiveServlet/downloadBody/34123-102-1-145988/LM-White-Paper-Intel-Driven-Defense.pdf. Accessed 23 June 2018.
[6] Eva Mendis(2017), "Forensic Ways to Retrieve Saved Password in Google Chrome", Retrieved from http://blog.jobbole.com/30922/. Accessed 23 June 2018.
[7] Hacking Tools, Retrieved from https://wikileaks.org/ciav7p1/cms/page_20251107.html. Accessed 23 June 2018.
[8] HITCON CTF, Retrieved from http://ctf.hitcon.org/. Accessed 23 June 2018.
[9] MANDIANT(2015), "M-Trends 2015 Threat Report", Retrieved from https://www2.fireeye.com/rs/fireye/images/rpt-m-trends-2015.pdf. Accessed 23 June 2018.
[10] Metasploit, Retrieved from https://www.rapid7.com/products/metasploit/. Accessed 23 June 2018.
[11] MS17-010, Retrieved from https://docs.microsoft.com/en-us/security-updates/SecurityBulletins/2017/ms17-010. Accessed 23 June 2018.
[12] Nmap, Retrieved from https://nmap.org/. Accessed 23 June 2018.
[13] noVNC, Retrieved from URL: https://github.com/novnc/noVNC. Accessed 23 June 2018.
[14] OpenNebula, Retrieved from https://opennebula.org/. Accessed 23 June 2018.
[15] Paul Qiu(2015), "Cisco Cyber Range Service", Retrieved from https://www.cisco.com/c/dam/global/en_hk/assets/event/cisco_connect_2015/pdf/4-3.pdf.
[16] Root Me, Retrieved from https://www.root-me.org/?lang=en. Accessed 23 June 2018.
[17] Sean T Malone (2016) Using an Expanded Cyber Kill Chain Model to Increase Attack Resiliency. Black hat USA 2016. Retrieved from https://www.blackhat.com/docs/us-16/materials/us-16-Malone-Using-An-Expanded-Cyber-Kill-Chain-Model-To-Increase-Attack-Resiliency.pdf. Accessed 23 June 2018.
[18] TrendMicro TrendLabs(2014), "Targeted Attack Trends -2014 Annual Report", Retrieved from https://www.trendmicro.de/cloud-content/us/pdfs/security-intelligence/reports/rpt-targeted-attack-trends-annual-2014-report.pdf. Accessed 23 June 2018.
[19] TRY2HACK, Retrieved from http://www.try2hack.nl/. Accessed 23 June 2018.
[20] 安全外殼協定, Retrieved from https://zh.wikipedia.org/zh-tw/Secure_Shell. Accessed 23 June 2018.
[21]伺服器訊息區塊, Retrieved from https://zh.wikipedia.org/wiki/%E4%BC%BA%E6%9C%8D%E5%99%A8%E8%A8%8A%E6%81%AF%E5%8D%80%E5%A1%8A. Accessed 23 June 2018.
[22] 使用者帳戶控制, Retrieved from https://zh.wikipedia.org/wiki/%E4%BD%BF%E7%94%A8%E8%80%85%E5%B8%B3%E6%88%B6%E6%8E%A7%E5%88%B6. Accessed 23 June 2018.
[23] 許清雄、潘怡倫、葉永信,「應用國網中心Ezilla建置資安教學環境(Cyber Defense Exercise) 」,TANET 2016 臺灣網際網路研討會,第1001~1004頁,民國一零五年十一月一日。
[24] 結構化查詢語言, Retrieved from https://en.wikipedia.org/wiki/SQL. Accessed 23 June 2018.
[25] 黃柏清,「網路攻擊鏈為基礎之搶旗攻防賽CTF平台」健行科技大學,碩士論文,民國一百零五年。[26] 跳脫字元, Retrieved from https://zh.wikipedia.org/wiki/%E8%BD%AC%E4%B9%89%E5%AD%97%E7%AC%A6. Accessed 23 June 2018.
[27] 網域名稱系統, Retrieved from https://zh.wikipedia.org/zh-tw/%E5%9F%9F%E5%90%8D%E7%B3%BB%E7%BB%9F. Accessed 23 June 2018.
[28] 遠端桌面協定, Retrieved from https://zh.wikipedia.org/wiki/%E9%81%A0%E7%AB%AF%E6%A1%8C%E9%9D%A2%E5%8D%94%E5%AE%9A. Accessed 23 June 2018.
[29] 暴力破解法, Retrieved from https://zh.wikipedia.org/zh-tw/%E6%9A%B4%E5%8A%9B%E7%A0%B4%E8%A7%A3%E6%B3%95. Accessed 23 June 2018. Accessed 23 June 2018.