00:01
In this question we will firstly introduce what are authenticated and unauthenticated attacks.
00:09
So, we will first see what they are.
00:30
So, these terms describe the level of access and privilege that is mostly level of access and privilege that other person has that means some attacker.
00:48
So, the access and privilege the attacker will have when he possesses when attempting to breach the system.
01:05
So, when he tries to breach the system.
01:14
So, in this question in this solution we will delve into the definitions of authenticated and unauthenticated attacks along with providing two examples for each type.
01:28
So, understanding these attack types will help us develop effective security measures to provide our systems.
01:36
So, first we will see what are unauthenticated attacks.
01:53
So, here an unauthenticated attack also known as a remote attack it is also called as a remote attack.
02:06
So, this attack refers to a security breach attempt where the attacker does not possess the valid credentials or privileges to access a target system means when the attacker does not have any credential password or anything they do not possess any kind of any valid credentials of the person credentials.
02:42
So, when they try to access the system that is when they try to breach the system they do not possess any valid attack.
02:53
So, what these attackers do then these attackers are generally launched from an external network.
03:00
So, we can say that they are launched from external network.
03:08
So, the external network and they aim to exploit vulnerabilities that do not require authentication.
03:22
So, they aim at the vulnerabilities that do not need authentication.
03:30
So, this is why it is called as an unauthenticated attack as the attacker is launching the attack from an external network and they aim to such organizations or such accesses where the authentication is only not required.
03:53
So, these are first offline offense for malicious actors seeking to gain unauthorized access to a compromise a system.
04:04
So, we will see the examples for unauthenticated attacks.
04:10
So, first our example is denial of service attack that is denial of service attack.
04:34
Now, what does this mean that is also said as dos attack what does this attack mean? in this attack the attacker floods the target system with a high volume of requests.
04:49
They flood the target system with a lot of high volume requests.
05:13
So, because of this what happens is it is overwhelming that its resources and cause it causes to become available to legitimate users.
05:27
So, this attack does not require authentication since it aims to exhaust the system's capacity rather than gain any unauthorized access of it.
05:39
So, the perfect example would be launching a large -scale botnet powered attack.
05:47
So, this is like a literal example that is launching a botnet attack botnet powered attack with on a popular e -commerce site that is very much into a use or it is very much famous.
06:21
So, something like that.
06:22
So, this is how the rendering it becomes then unreachable for the users.
06:29
So, next we will see what is the second example of this attack that is dos that is unauthentication it is network scanning.
06:50
So, we will see what this is network scanning involves systematically probing a target network to discover vulnerabilities and potential entry points.
07:02
So, it is more of a systematic probing a target.
07:09
So, it is basically systematically probing a target till you get the network which is which you discover vulnerabilities and potential entry points for it.
07:27
So, unauthenticated network scanning can be performed using many tools.
07:33
So, these tools are nmap that is used for network scanning which helps to identify open ports which helps to identify open ports...