Reference no: EM133773058
Introduction to Cyber Security
Assessment - Protocol Presentation and Evaluation
Your Task
In this assessment, you will undertake an individual task focused on conducting a comprehensive protocol analysis using Wireshark. Your objective is to thoroughly examine the network protocol traffic captured in the dump file, delving into its various aspects to gain valuable insights. Building upon your analysis, you will create a compelling presentation that not only highlights your findings but also establishes connections to the key concepts covered in class, showcasing your understanding of learning outcome LO1. This assessment serves as a means to evaluate your proficiency in network protocol analysis and your ability to apply this knowledge in practical scenarios. Additionally, it provides an excellent opportunity for you to demonstrate your skills in analysing real-world network traffic and effectively presenting your findings.
Furthermore, this assessment requires you to defend your recommendations to diverse stakeholders, which involves articulating your proposed strategies, mitigations, and solutions in a manner that addresses the concerns and priorities of various stakeholders. Moreover, it expects you to contextualise the terminology associated with cybersecurity in a way that is accessible and understandable for diverse stakeholders in the business environment. By effectively communicating the significance of your analysis and recommendations, you will demonstrate your ability to bridge the gap between technical jargon and the practical implications of cybersecurity for different stakeholders within a business setting.
Contextualise the terminology associated with cyber security for diverse stakeholders in business.
Assessment Description Situation:
In the ever-evolving and intricate realm of the internet, characterised by an array of sophisticated threats and the constant presence of cybercriminals, your role as a cybersecurity professional takes on paramount significance. With the network protocol traffic Wireshark dump file, which captured a pivotal event, your mission is to meticulously examine its intricacies. Your objective is to unravel the technical complexities inherent in this event, leaving no stone unturned. Armed with a comprehensive analysis, you will embark on the critical task of presenting your meticulously gathered findings, bridging the gap between technical jargon and the practical implications of cybersecurity. This includes contextualising the terminology associated with cyber security in a manner that resonates with diverse stakeholders in the business landscape. Moreover, as an esteemed professional operating at the highest level of expertise, you are expected to engage in a profound discourse on robust defense mechanisms. By doing so, you will equip organisations with the knowledge and strategies needed to fortify their defenses against this specific form of attack.
Assessment Instructions
Read the scenario on the previous page, to understand the context of the event.
Go to MyKBS and download the Wireshark dump file (it will be in the form of
<student_ID>.pcap).
For example, if your student ID is 12345, the .pcap file will be 12345.pcap.
As covered in the Network Traffic Analysis workshop, you must download and install Wireshark.
Open your .pcap file using Wireshark to perform traffic analysis to answer the following questions.
How many packets were captured?
What is the destination IP address?
What is the Chrome version number?
What is the request URI?
How many TCP packets were captured?
How many HTTP packets were captured?
What is the relative percentage of HTTP packets that have been captured?
Before finalising and submitting your answers, head over to MyKBS to process your input of the above questions, to receive real-time feedback, to ensure your answers are correct.
Prepare and create your presentation, which must include 5 references and the following slide headings:
Introduction
Introduce yourself and the subject.
Background
Provide a brief summary of the situation.
Traffic Analysis
Provide answers and explanations to the above questions, alongside the Wireshark filters you used.
Identified Attack
Discuss which attack you believe occurred during this event.
Defence Proposal
Propose and defend two defences you believe would mitigate the risk of the identified attack.
Non-technical Explanation
Explain the situation, identified attack, and defence proposal to an audience of diverse stakeholders.
Conclusion.