Fill in Order Details

  • Submit paper details for free using our simple order form

Make Payment Securely

  • Add funds to your account. There are no upfront payments. The writer will only be paid once you have approved your paper

Writing Process

  • The best qualified expert writer is assigned to work on your order
  • Your paper is written to standard and delivered as per your instructions

Download your paper

  • Download the completed paper from your online account or your email
  • You can request a plagiarism and quality report along with your paper

Devising an attack plan for the target network using the CYB 608 scans

Title

Your Name

Your Institution name

Devising an attack plan for the target network using the CYB 608 scans

For an attack plan to work, the attacker must have the knowledge of the target network (like the operating systems assets, TCP connectivity features and the nature of the server in use) (Sarraute, 2009, p. 11). The attacker, armed with this knowledge, and the aims and objectives for his/her attack, must devise the actions of his/her attack as outlined below.

Target the IP address through the control of his/her machine (box) by using a set of exploits and IG tools.

Carry out port probing (testing if given ports are open)

Start with port 80/tcp first and as soon as it is discovered that it is open carry out an exploit on it, and if the exploit fails keep probing other ports trying the exploit until it succeeds.

Exploit ssh and Wu-ftpd on an OpenSSH and linux respectively

A list of vulnerabilities that the target machine might be susceptible to

Vulnerability is a weakness on the target machine that an attacker can exploit to gain access to the system. In this case, only one IP address was scanned and below is a list of the possible vulnerabilities identifiable from the CYB 608 scan:

System specifications vulnerability (like the type and version of operating system in use-linux telnet, the type of server-apache httpd 2.2.8 and version of mySQL 5.0.51a-3ubuntu5 in use) which enables the attacker to carry out background study on the system prior to attack execution.

Race condition/Validity period/Time-of-check-to-time-of-use vulnerability at for RSA algorithm.

Specifying the programs and their versions that can be used to support Remote Procedural Calls (RPC) to the system through port 80/tcp and also Java-Remote Innovation Methods (RMI) at port 1099/tcp, hence offering homogeneous programming interface vulnerability to the system.

Specifying the authentication (login) port at port 21/tcp (FTP code 230) and making visible to the attacker (Authentication vulnerability)

Specifying the encryption algorithms (DSA and RSA) in use and even going a step further to specify the type of key for RSA algorithm type (public key type) and its bit as 1024, and even specifying the host keys for DSA and RSA () Encryption vulnerability)

Graphical User Interface (GUI) errors at open port 8009/tcp (ajp-auth: ERROR: Failed to connect to AJP server ajp-methods: ERROR: Failed to connect to server) and port 6000/tcp (access denied).

The CVE or OSVDB number for the vulnerabilties, the metasploit exploit name (if available) and the mitigation which would correct the vulnerability.

Name: Authentication vulnerability, CVE Number: CVE-1999-0014-Caused by unauthorized privileged access or denial of service and can be rectified through hiding the authentication port and GUI from the public network

Name: Explicit system specification vulnerability in telnet, CVE Number: CVE-1999-0073- “Telnet allows a remote client to specify environment variables including LD_LIBRARY_PATH, allowing an attacker to bypass the normal system libraries and gain root access.” (CVE Organisation, 2014) It can be avoided by hiding the system specification in the network or declaring them implicitly in relation to the network the system is in.

Name: Race condition in Linux mailx, CVE Number: CVE-1999-0123- allows local users to read user files. It can be mitigated by hiding the validity period of all the software in use win the system.

References

Sarraute, C. (2007). Probabilistic Attack Planning in Network and WebApps Scenarios. Core

Security Technologies

Kak, A. (2014). Port and Vulnerability Scanning, Packet Sniffing, Intrusion Detection, and

Penetration Testing. Lecture Notes on “Computer and Network Security”, Purdue University

CVE Organisation. (2014). Common Vulnerabilities and Exposure. Retrieved from

http://cve.mitre.org/data/downloads/allitems.html

WHAT OUR CURRENT CUSTOMERS SAY

  • Google
  • Sitejabber
  • Trustpilot
Zahraa S
Zahraa S
Absolutely spot on. I have had the best experience with Elite Academic Research and all my work have scored highly. Thank you for your professionalism and using expert writers with vast and outstanding knowledge in their fields. I highly recommend any day and time.
Stuart L
Stuart L
Thanks for keeping me sane for getting everything out of the way, I’ve been stuck working more than full time and balancing the rest but I’m glad you’ve been ensuring my school work is taken care of. I'll recommend Elite Academic Research to anyone who seeks quality academic help, thank you so much!
Mindi D
Mindi D
Brilliant writers and awesome support team. You can tell by the depth of research and the quality of work delivered that the writers care deeply about delivering that perfect grade.
Samuel Y
Samuel Y
I really appreciate the work all your amazing writers do to ensure that my papers are always delivered on time and always of the highest quality. I was at a crossroads last semester and I almost dropped out of school because of the many issues that were bombarding but I am glad a friend referred me to you guys. You came up big for me and continue to do so. I just wish I knew about your services earlier.
Cindy L
Cindy L
You can't fault the paper quality and speed of delivery. I have been using these guys for the past 3 years and I not even once have they ever failed me. They deliver properly researched papers way ahead of time. Each time I think I have had the best their professional writers surprise me with even better quality work. Elite Academic Research is a true Gem among essay writing companies.
Got an A and plagiarism percent was less than 10%! Thanks!

ORDER NOW

CategoriesUncategorized

Consider Your Assignments Done

“All my friends and I are getting help from eliteacademicresearch. It’s every college student’s best kept secret!”

Jermaine Byrant
BSN

“I was apprehensive at first. But I must say it was a great experience and well worth the price. I got an A!”

Nicole Johnson
Finance & Economics

Our Top Experts

See Why Our Clients Hire Us Again And Again!


OVER

10.3k
Reviews

RATING
4.89/5
Average

YEARS
13
Mastery

Success Guarantee

When you order form the best, some of your greatest problems as a student are solved!

Reliable

Professional

Affordable

Quick

Using this writing service is legal and is not prohibited by any law, university or college policies. Services of Elite Academic Research are provided for research and study purposes only with the intent to help students improve their writing and academic experience. We do not condone or encourage cheating, academic dishonesty, or any form of plagiarism. Our original, plagiarism-free, zero-AI expert samples should only be used as references. It is your responsibility to cite any outside sources appropriately. This service will be useful for students looking for quick, reliable, and efficient online class-help on a variety of topics.