Intro Cyber Security Labs on GENI Xenia Mountrouidou (Dr. X)
Outline Start reserving your topology Intro Labs: DDoS, Passwords, Ransomware Learning Goals Audience Background Variations
Reserve topology All labs can be found in: http://blogs.cofc.edu/cyberpaths/modules/ Go to: https://goo.gl/OuDw8M Use RSpec http://mountrouidoux.people.cofc.edu/Cyb erPaths/files/denialOfServiceLevel1.txt Change Clemson to some other aggregate
Learning Goals Apply IT components knowledge Produce network traffic - DDoS Hypothesize about effects of network attack- DDoS Create and analyze a network attack- DDoS Understand password complexity - passwords Apply password cracking tools – passwords Experience the effects of ransomware – ransomware Reverse engineer a simple ransomware script
Audience Freshmen, Sophomores Non-CS and CS majors Some background work is needed
Background IT Components Computer Networks Command Line GENI DDoS Password Theory Ransomware & Malware
Denial of Service Lab for non-CS Majors Pre-installed topology ping - verification iperf - performance Hping3 - DoS Hypothesis testing Experiments on GENI GENI: Virtual laboratory for networking and distributed systems research and education
DDoS TCP SYN Flood Insights: Traffic pattern Spoofed IPs Send Spoofed SYN Send SYN-ACK Resend SYN-ACK Attacker Server Spoofed Client Insights: Traffic pattern Spoofed IPs
Passwords Scenario based exercise Pivot through VMs Crack passwords Using online tools Use Linux tools – hydra, John the Ripper Instructor may need to setup topologies
Ransomware Reverse engineer python script Instructor sets up topologies wget the zip file linked in the page and and unzip
Questions? Let’s experiment!
Useful source: FYE Security 101 site: http://mountrouidoux.people.cofc.edu/fye_cysec/index.html