Virtual Labs: Sniffing Consider what you have learned so far

 

Virtual Labs: Sniffing

Consider what you have learned so far about Sniffing as you review the objectives and scenario below.  Complete the lab that follows on EC-Council’s website using the link below.

Objective

Sniffing is performed to collect basic information from the target and its network. It helps to find vulnerabilities and select exploits for an attack. It determines the network, system, and organizational information.

The objective of this lab is to make students learn to sniff a network and analyze packets for any attacks on the network. The primary objectives of this lab are to:

  • Sniff the network
  • Analyze incoming and outgoing packets
  • Troubleshoot the network for performance
  • Secure the network from attacks

Scenario

“Sniffing” is the process of monitoring and capturing data packets passing through a given network using software or hardware devices. There are two types of sniffing: passive and active. Passive sniffing refers to sniffing on a hub-based network; active sniffing refers to sniffing on a switch-based network.

Although passive sniffing was predominant in earlier days, proper network-securing architecture has been implemented (switch-based network) to mitigate this kind of attack. However, it contains a few loopholes in switch-based network implementation that can open doors for an attacker to sniff network traffic.

Attackers hack the network using sniffers, where he/she mainly targets the protocols vulnerable to sniffing. Some of the protocols vulnerable to sniffing include HTTP, FTP, SMTP, POP, and so on. The sniffed traffic comprises FTP and Telnet passwords, chat sessions, email and web traffic, DNS traffic, and so on. Once attackers obtain such sensitive information, they might attempt to impersonate target user sessions.

Thus, it is essential to assess the security of the network’s infrastructure, find the loopholes in it and patch them up to ensure a secure network environment. So, as an ethical hacker/penetration tester, your duties include:

  • Implementing network auditing tools such as Wireshark, and Cain & Abel, etc. in an attempt to find loopholes in the network.
  • Using security tools such as PromqryUI to detect attacks on the network, and so on.

The lab this week will provide you with real-time experience in sniffing.

Week 6 Lab Assignment 1: Sniffing Passwords Using Auditing Tools

Lab Task:

The objective of this lab is to demonstrate sniffing to capture traffic from multiple interfaces and collect data from any network topology.

In this lab, you will learn how to:

  • Capture Passwords of Local Interface and
  • Capture traffic from Remote Interface

Lab Description:

Data traversing an HTTP channel is prone to MITM attacks, as it flows in plain-text format. Network administrators can use sniffers to troubleshoot network problems, examine security problems, and debug protocol implementations. However, an attacker can use tools such as Wireshark and sniffs the traffic flowing between the client and the server. This traffic obtained by the attacker might contain sensitive information such as login credentials, which can be used to perform malicious activities such as user-session impersonation.

As an ethical hacker, you need to perform network security assessments and suggest proper troubleshooting techniques to mitigate attacks. This lab gives you hands-on experience of how to use Wireshark to sniff network traffic and capture it on a remote interface.

Password sniffing uses various techniques to monitor networks to obtain user passwords. Networks use broadcast technology to send data. Data transmits through the broadcast network, which can be read from another computer present on the network. Usually, all the computers except that of the recipient will notice that the message is not meant for them and ignore them.

Many computers are programmed to look at every message on the network. If someone misuses the facility, they can view messages not intended for them.

decorative image

Access the lab here: EC-Council | iLabs (Links to an external site.)

Submit proof of this assignment completion by uploading and submitting a screenshot of the graded lab from EC-Council Labs. Refer to the Course Projects page for more information on project submissions. 

Share This Post

Email
WhatsApp
Facebook
Twitter
LinkedIn
Pinterest
Reddit

Order a Similar Paper and get 15% Discount on your First Order

Related Questions

Mistakes like SQL server association bombed SQLState 08001 can truly

   Mistakes like SQL server association bombed SQLState 08001 can truly irritate. The SQL server association fizzled 08001 happens while making an ODBC association on the Microsoft SQL. At Bobcares, we frequently get demands from our clients in regards to the SQL cut off association blunder as a feature of

the Big Letdown by Kimberly Seals Aller 1. A short

    the Big Letdown by Kimberly Seals Aller 1. A short summary of the text.  What was covered, what information was given, who was it written for, how is it useful? 2. A critical assessment of the text.  How did you respond to what you read?  What was provided in the

You will be creating a fictional business of your choice

You will be creating a fictional business of your choice (choose an industry or idea that you’re interested in). You will then create a mission statement and two SMART goals/objectives for your business. The mission statement is created as part of the strategic planning process and is intended to describe

I am planning to open my own homecare agency business

I am planning to open my own homecare agency business to starting serving medical facilities, home care facilities, nursing homes, residential settings and hospital in Pennsylvania, New Jersey, New York and Delaware. Since this is new business and in order to secure a agency license and Medicaid, I will need

Nurses are pivotal members of the health care team, and

  Nurses are pivotal members of the health care team, and knowledgeable of the overall concepts and potential strategies for success can assist nurses at all levels to provide leadership throughout the process. What key strategies should nurses and nurse leaders develop to ensure a successful merger or acquisition occurs

Analyze the neurophysiological underpinnings of diseases and disorders

Select a neurological, psychological, or neurodevelopmental disorder. Write a paper comparing and contrasting three therapeutic interventions used to treat this disorder. Compare measures of effectiveness, such as validity, efficacy, symptom and behavior management, and recidivism. One therapy should be cognitive in nature, one should be pharmacological in nature, and the

INSTRUCTIONS Main task Critical thinking and analysis on negotiation topics

INSTRUCTIONS Main task Critical thinking and analysis on negotiation topics guided through questions. Individual written report including 5 short-answers questions available on the last page under additional information. Answers will be based on the ideas and theories which have been examined in the course, but also personal research. ADDITIONAL INFORMATION

The relationship between the exercise of power and influence

Do diverse leaders exercise power and influence differently? That is, do leaders from Asia exercise power and influence differently from leaders in South America? What are American expectation for the exercise of power and influence compared to African expectations for the exercise of power and influence? How does diversity impact

The COVID-19 pandemic has a created a worldwide and largely

 The COVID-19 pandemic has a created a worldwide and largely unexpected shock for all businesses large and small.  Some firms have fared very well while others are struggling or have closed.  However, significant disruptions, such as the COVID-19 pandemic, also create a fertile ground for innovation (creating new or improved

Belhaven University Health & Medical Worksheet Nursing Assignment Help

Expert Solution Preview Introduction: As a medical professor responsible for creating assignments and evaluating students’ performance, my primary goal is to facilitate comprehensive learning and ensure students acquire the necessary knowledge and skills to excel in their medical careers. I meticulously design lectures, assessments, examinations, and assignments that test their

identify the elements of classical conditioning in your colleague’s advertisement

identify the elements of classical conditioning in your colleague’s advertisement (i.e., unconditioned and conditioned stimulus, unconditioned and conditioned response). Then, determine whether or not you have been persuaded to buy the product and what persuaded you. __________________________________________________________________________________ Classical conditioning describes the phenomenon that elicits an emotional response is repeatedly paired

Assignment 8 – Summative – Legal Plan (PO4, PO5, CO6, ILO.SK1, BIS2,

For your final summative assignment, you complete the legal section of a business plan. Include the following: 1.    A defense for the form of business entity for the company you’ve chosen, the number of owners, and other factors. 2.    An explanation of liability with federal, state, and local taxes and