How to recognize any attack signature in packets you analyze

Assignment Help Computer Engineering
Reference no: EM133571202

Assignment

You are hired by an organization to analyze packet captures from a wireless network. You are looking to assess if the captures pose a threat.

Analyze the packet captures provided by Wireshark by doing the following:

Visit the Gitlab SampleCaptures webpage to download the following:

1. wpa-Induction.pcap.gz Wi-Fi 802.11 WPA traffic
2. wpa-eap-tls.pcap.gz WiFi 802.11 WPA-EAP/Rekey sample
3. nb6-hotspot.pcap Someone connecting to SFR's wireless community network
4. ciscowl.pcap.gz (libpcap) Cisco Wireless LAN Context Control Protocol (WLCCP) version 0x0
5. wap_google.pcap contains two WSP request-response dialogs

Note: Only download these sample captures. Other captures may set off your computer's system defenses.

Use Wireshark to view and analyze the sample captures.

Create a 1 to 2 pages table that ranks the packet captures from the highest to lowest threat. In your table, provide the following for each packet capture:

1. Description of the traffic
2. Description of the risks, if any, the traffic poses to the wireless network
3. Countermeasures to take to secure the network from any threat

Write a 2 to 3 pages memo to management as a network security specialist, and ensure you do the following:

Question 1. Explain how to distinguish hostile packet data from normal packet data.
Question 2. Explain how to recognize any attack signatures in the packets you analyze.
Question 3. Provide a rationale for ranking the packets as you did.

Reference no: EM133571202

Questions Cloud

Discuss how the human factor affects cybersecurity : CSSS 5000- Discuss how the human factor affects Cybersecurity. What is Social Engineering? What are some techniques to implement Social Engineering?
What are the elements of snoubar prima facie case : What are the elements of Snoubar's prima facie case? Do you think that playing radio broadcasts of offensive characterizations alone would be sufficient
What is the industry that you see this opportunity exists in : What is the industry that you see this opportunity exists in? Please describe the industry in detail such as the current state, major players
What you believe to be the goal of the intervention phase : Describe what you believe to be the goal of the intervention phase and the role of a social worker in this phase
How to recognize any attack signature in packets you analyze : Explain how to distinguish hostile packet data from normal packet data. Explain how to recognize any attack signatures in the packets you analyze.
Do you agree with your peer argument to either invest : Do you agree with your peer's argument to either invest or not invest in their company? Explain why or why not. Make sure to include information not previously
Sociological social vs. psychological social psychology : What is the difference between sociological social psychology vs. psychological social psychology.
How the action would impact the financial statements : Provide reasonable and specific projections of how this action would impact the financial statements or figures you selected in the first bullet point.
Specific activities in the areas of collaboration : Specific activities in the areas of collaboration, consultation, and program planning, to meet the 120 indirect hours.

Reviews

Write a Review

Computer Engineering Questions & Answers

  Mathematics in computing

Binary search tree, and postorder and preorder traversal Determine the shortest path in Graph

  Ict governance

ICT is defined as the term of Information and communication technologies, it is diverse set of technical tools and resources used by the government agencies to communicate and produce, circulate, store, and manage all information.

  Implementation of memory management

Assignment covers the following eight topics and explore the implementation of memory management, processes and threads.

  Realize business and organizational data storage

Realize business and organizational data storage and fast access times are much more important than they have ever been. Compare and contrast magnetic tapes, magnetic disks, optical discs

  What is the protocol overhead

What are the advantages of using a compiled language over an interpreted one? Under what circumstances would you select to use an interpreted language?

  Implementation of memory management

Paper describes about memory management. How memory is used in executing programs and its critical support for applications.

  Define open and closed loop control systems

Define open and closed loop cotrol systems.Explain difference between time varying and time invariant control system wth suitable example.

  Prepare a proposal to deploy windows server

Prepare a proposal to deploy Windows Server onto an existing network based on the provided scenario.

  Security policy document project

Analyze security requirements and develop a security policy

  Write a procedure that produces independent stack objects

Write a procedure (make-stack) that produces independent stack objects, using a message-passing style, e.g.

  Define a suitable functional unit

Define a suitable functional unit for a comparative study between two different types of paint.

  Calculate yield to maturity and bond prices

Calculate yield to maturity (YTM) and bond prices

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd