What is the name of the scheduled task created by the attacker?
Added by James R.
Step 1
The question is asking for the name of a scheduled task created by an attacker. This implies that there is a scenario where an attacker has created a scheduled task on a system. Show more…
Show all steps
Your feedback will help us improve your experience
Akash M and 61 other AP CS educators are ready to help you.
Ask a new question
Labs
Want to see this concept in action?
Explore this concept interactively to see how it behaves as you change inputs.
Key Concepts
Recommended Videos
On a Tuesday night, a database administrator performs some off-hours maintenance on several production database servers. The administrator notices some unfamiliar and unusual directory names on one of the servers. After reviewing the directory listings and viewing some of the files, the administrator concludes that the server has been attacked and calls the incident response team for assistance. The team's investigation determines that the attacker successfully gained root access to the server six weeks ago.
Akash M.
Background: A Vandaly server is also experiencing brute force attacks into their administrator account. Management would like you to set up monitoring to notify the SOC team if a brute force attack occurs again. Task: Analyze administrator logs that document a brute force attack. Then, create a baseline of the ordinary amount of administrator bad logins and determine a threshold to indicate if a brute force attack is occurring. Upload the administrator login logs. Admin Logins When did the brute force attack occur? Hints: - Look for the name field to find failed logins. - Note that the attack lasted several hours. - Determine a baseline of normal activity and a threshold that would alert if a brute force attack is occurring. - Design an alert to check the threshold every hour and email the SOC team at SOC@vandalay.com if triggered.
Texts: University Cyber Attack Course-End Project 1 DESCRIPTION You are a cybersecurity officer and a member of the Incident Response Team. During the summer vacation, one of the teaching staff members, Samantha, reports to the Dean about abusive and threatening messages received over email. The Dean collects the following details from her: Complete Name: Samantha R. Collen Personal Email ID: [email protected] Official Email ID: [email protected] Samantha also reported that during the term examination, she observed one of the students, Tony Lee, engaging in unfair means. As an investigator, your task is to identify the following: Task 1: Obtain a scanning report of the entire network and identify how many terminals are connected with the Windows operating system and the Linux-based systems. Note: Learners can use any platform like Kali Linux. Task 2: Identify the CVE score of the victim's vulnerability. Note: Learners can use any open-source data sets for vulnerability like NVD (National Vulnerability Database). Task 3: Identify whether the victim's terminal is affected by a MiTM attack or not and submit the incident report for the same. Note: Learners can orchestrate any attacks like Denial-of-Service attack and create reports based on it. Task 4: Use email forensics analysis and identify the sender's IP address. Note: Learners can create a dummy email ID, perform this task, or send an email to anyone. They can identify the sender's IP address.
Recommended Textbooks
Computer Science and Information Technology
Introduction to Programming Using Python
Computer Science - An Overview
Transcript
Watch the video solution with this free unlock.
EMAIL
PASSWORD