• Home
  • Southern New Hampshire University
  • Network Defense CYB-310-T5690
  • Denial of Service Attack and Network Defense Techniques

Denial of Service Attack and Network Defense Techniques

Southern New Hampshire University CYB 310 Module Three Lab Worksheet Complete this worksheet by replacing the bracketed phrases in the Response column with the relevant information. Lab: Performing a Denial of Service Attack from the WAN Prompt In the lab section, "TCP Flood," Step 11, include your name after the command prompt and take a screenshot of your name with the output from running the tcpdump command. 1 Response File Edit View Search Terminal Help RX bytes : 81329 (79.4 KiB) TX bytes: 36893 (36.0 KiB) Lo Link encap:Local Loopback inet addr: 127.0.0.1 Mask : 255. 0.0.0 inet6 addr: : : 1/128 Scope : Host UP LOOPBACK RUNNING MTU: 65536 Metric : 1 RX packets : 157 errors: 0 dropped: 0 overruns: 0 frame : 0 TX packets : 157 errors: 0 dropped: 0 overruns: 0 carrier : 0 collisions: 0 txqueuelen: 0 RX bytes: 8079 (7.8 KiB) TX bytes: 8079 (7.8 KiB) root@kali2:# tcpdump -- help tcpdump version 4.6.2 Libpcap version 1.6.2 OpenSSL 1.0.1k 8 Jan 2015 Usage: tcpdump [-aAbdDefhHIJKLLnNOpqRStuUvxx#] [ -B size ] [ -c count ] [ -C file_size ] [ -E algo:secret ] [ -F file ] [ -G seconds ] [ -i interface ] [ -j tstamptype ] [ -M secret ] [ -- number ] [ -Q in |out | inout ] [ -r file ] [ -s snaplen ] [ -- time-stamp-precision precision ] [ -T type ] [ -- version ] [ -V file ] [ -w file ] [ -W filecount ] [ -y datalinktype ] [ -z command ] [ -Z user ] [ expression ] root@kali2 :- # Southern New Hampshire University Lab: Performing a Denial of Service Attack from the WAN Prompt In the lab section, "HTTP2 Flood," Step 16, add your name at the command prompt after you run the capinfos HTTP2capture.cap command. Take a screenshot of your name and the output for the total number of packets captured in the Number of packets data. How can the Low Orbit Ion Cannon (LOIC) tool be used in the daily work an analyst would do? What are two examples of information the LOIC tool could retrieve? 2 Response 1. Select your target URL 2. Ready? Lock on Lock on IMMA CHARGIN MAH LAZER IP 203.0.113.100 Selected target 203.0.113.100 3. Attack options Timeout HTTP Subste 9001 TCP / UDP message A cat is fine too. Desudesudesu~ 80 TCP . 10 Wait for reply Port Method Threads <= faster Speed slower => Attack status Connecting Requesting Downloading Downloaded Requested Faled 19470954 LOIC can be used daily to see how your system would hold up in the chances of being attacked with a DDOS attack. The information that the LOIC tool could retrieve is the strength or weakness of the network against a DDOS attack; however, can also show any possible limitations or vulnerabilities. Southern New Hampshire University Lab: Implementing NAT and Allowing Remote Access Prompt In the lab section, "Understanding NAT," Step 27, take a screenshot of the display of