CS6262 Final Exam Study Guide with Complete Solutions Random Scanning - Correct Answers Each comprised computer probes random addresses Permutation Scanning - Correct Answers All comprised computers share a common psuedo-random permutation of the IP address space Signpost Scanning - Correct Answers Uses the communication patterns of the comprised computer to find a new target Hit List Scanning - Correct Answers A portion of a list of targets is supplied to a comprised computer Subnet Spoofing - Correct Answers Generate random addresses within a given address space Random Sppofing - Correct Answers Generate 32-bit numbers and stamp packets with them Fixed Spoofing - Correct Answers The spoofed address is the address of the target Server Application - Correct Answers The attack is targeted to a specific application on a server Network Access - Correct Answers The attack is used to overload or crash the communication mechanism of a network Infrastructure - Correct Answers The motivation of this attack is a crucial service of a global internet operation, for example core router DoS Bug (Amplification Attack) - Correct Answers Design flaw allowing one machine to disrupt a service DoS Flood (Amplification Attack) - Correct Answers Command botnets to generate flood of requests UDP-based NTP - Correct Answers -Particularly vulnerable to amplification attacks 1 / 2
-Small command can generate a large response -Vulnerable to source IP spoofing -Difficult to ensure computers only communicate with legitimate NTP servers IP Header Format - Correct Answers -Connectionless -Unreliable -No authentication SYN Flood - Correct Answers A type of DoS where an attacker sends a large amount of SYN request packets to a server in an attempt to deny service.SYN Flood Mitigations - Correct Answers Syn Cookies - remove state from server, but incur performance overhead Crowdturfers - Correct Answers - Crowdsource to create, verify, and manage fake accounts
- Solve CAPTCHAs
- Interception of requests or compromise of DNS servers
- Few use DNSsec
- Cache poisining
- / 2
Penetration Testing - Correct Answers Footprinting, Scanning, Enumeration, Gaining Access, Escalating Privileged, Pilfering (steal data), Covering Tracks, Creating Backdoors NS Record - Correct Answers Points to other server A Record - Correct Answers Contains IP Address MX - Correct Answers Address in charge of handling email TXT - Correct Answers Generic text; distribute site public keys DNS vulnerabilities - Correct Answers - Users/hosts trust the host-address mapping provided by DNS