Instructions
After collecting enough information about the target during Deliverable 2 (Reconnaissance and Scanning Plan), you will describe how to use that information to gain access to Haverbrook’s systems. Your one- to two-page plan on gaining access should include:
details of the gaining access process in regards to the techniques commonly used to exploit low-privileged user accounts by cracking passwords through techniques such as brute-forcing, password guessing, and social engineering, and then escalate the account privileges to administrative levels, to perform a protected operation.
an implementation outline of any software that will be used in gaining access to the network(s) or system(s) You may include open source and commercial tools available to execute the actual exploit: Burp Suite, Cain and Abel, Core Impact, John the Ripper, Metasploit, and others. You can also use some programming languages, such as Javascript, Perl, Python, Ruby, or C++, if you choose to develop custom exploits.
As you are developing the Gaining Access Plan, keep these questions in mind:
How would you escalate your privileges?
How would you establish a command and control communication channel?
Deliverable 3: Gaining Access Plan
Name:
Course Number and Section:
Instructor:
Date:
Gaining Access
Overview
Provide a summary of the Gaining Access phase.
Vulnerable Resources
Identify the resources where vulnerabilities can be located and include a brief description of those resources. Be sure to include a reference to the vulnerability, i.e., NVD.
Techniques and Software
Provide the techniques and any software, applications, or scripts that will be used in gaining access to the network(s) or system(s) along with a description of each technique. Refer to Chapter 6 in the textbook for additional information.
References
Penetration
Test Proposal
Deliverable 2: Topic
Name:
Course Number and Section:
Instructor:
Date:
Topic
Overview
Privilege Escalation is a threat vector which permits hackers to enter into the infrastructure of organizations to gain access to sensitive information and steal from organizations.
Scope
Privilege escalation becomes easy when organizations do not have an adequate security system to keep hackers from entering into their systems easily.
Privileges can be escalated using the following techniques
Checklist
Access token handling: In this technique Hackers can gain access tokens by stealing them, creating process with them or by making and impersonating them. By the use of Duplicate Token(Ex), a new token can be created that can duplicate an already existing token.
Bypassing the user access control: The UAC (User Account Control) often has security gaps and if the protection level is not set to the highest level, hackers can often gain access to personal information.
Valid Accounts:
Users can hack into various systems and gain access to valid user accounts which helps them look authorized users on the internet, through these valid accounts they can contact companies and ask for confidential information without being detected.
Ethical Considerations
I would establish my command and control communication channel by choosing from connection proxy, data encoding, commonly used port, multi-hip proxy, data obfuscation or fallback channels. My first choice would be connection proxy because it evades any direct connection that could link me to my infrastructure. It also helps in building trusted communications by riding over existing paths that sidestep doubt between targets.
References
Banach, Z. (2019, August 2). What Is Privilege Escalation and Why Is It Important? Retrieved February 20, 2020, from https://www.netsparker.com/blog/web-security/privilege-escalation/
.
We provide professional writing services to help you score straight A’s by submitting custom written assignments that mirror your guidelines.
Get result-oriented writing and never worry about grades anymore. We follow the highest quality standards to make sure that you get perfect assignments.
Our writers have experience in dealing with papers of every educational level. You can surely rely on the expertise of our qualified professionals.
Your deadline is our threshold for success and we take it very seriously. We make sure you receive your papers before your predefined time.
Someone from our customer support team is always here to respond to your questions. So, hit us up if you have got any ambiguity or concern.
Sit back and relax while we help you out with writing your papers. We have an ultimate policy for keeping your personal and order-related details a secret.
We assure you that your document will be thoroughly checked for plagiarism and grammatical errors as we use highly authentic and licit sources.
Still reluctant about placing an order? Our 100% Moneyback Guarantee backs you up on rare occasions where you aren’t satisfied with the writing.
You don’t have to wait for an update for hours; you can track the progress of your order any time you want. We share the status after each step.
Although you can leverage our expertise for any writing task, we have a knack for creating flawless papers for the following document types.
Although you can leverage our expertise for any writing task, we have a knack for creating flawless papers for the following document types.
From brainstorming your paper's outline to perfecting its grammar, we perform every step carefully to make your paper worthy of A grade.
Hire your preferred writer anytime. Simply specify if you want your preferred expert to write your paper and we’ll make that happen.
Get an elaborate and authentic grammar check report with your work to have the grammar goodness sealed in your document.
You can purchase this feature if you want our writers to sum up your paper in the form of a concise and well-articulated summary.
You don’t have to worry about plagiarism anymore. Get a plagiarism report to certify the uniqueness of your work.
Join us for the best experience while seeking writing assistance in your college life. A good grade is all you need to boost up your academic excellence and we are all about it.
We create perfect papers according to the guidelines.
We seamlessly edit out errors from your papers.
We thoroughly read your final draft to identify errors.
Work with ultimate peace of mind because we ensure that your academic work is our responsibility and your grades are a top concern for us!
Dedication. Quality. Commitment. Punctuality
Here is what we have achieved so far. These numbers are evidence that we go the extra mile to make your college journey successful.
We have the most intuitive and minimalistic process so that you can easily place an order. Just follow a few steps to unlock success.
We understand your guidelines first before delivering any writing service. You can discuss your writing needs and we will have them evaluated by our dedicated team.
We write your papers in a standardized way. We complete your work in such a way that it turns out to be a perfect description of your guidelines.
We promise you excellent grades and academic excellence that you always longed for. Our writers stay in touch with you via email.