SIT703 - Advanced Digital Forensics Assignment

Assignment Help Other Subject
Reference no: EM132445004

SIT703 - Advanced Digital Forensics Assignment - Deakin University, Australia

Assessment - Technical Report

Unit Learning Outcome (ULO) -

1: Apply knowledge of security on Windows network domain and follow standard procedure to investigate different types of cyber-crime.

2: Investigate the usefulness of various forensic techniques and apply relevant methods to gain access and recover computer crime data.

Purpose - Students should demonstrate their ability to review literature on shellcode and develop knowledge in technical exploits and their impacts on the Windows network domain. Students will be required to compare different techniques and generate their own shellcode based on the requirements provided and implement a fully functional shellcode. Students will be assessed on their ability to perform the required tasks of synthesizing knowledge from research papers, video demonstrations, and technical tutorials and present a technical report.

Instructions -

Students are required to put together a technical report of approximately 2000 words as well as exhibits to support findings and a bibliography. This report should consist of:

An overview of shellcode.

Comparison of different methods used to generate shellcode.

Analysis and reflection on the technical exploitations and their impact to the Windows network domain.

Implementation of a shellcode.

Problem Statement -

Part A - Shellcode In Literature

Students are required to answer research questions based on three academic papers:

"The Shellcode Generation"

"Evasion Techniques"

"English Shellcode"

"Automatic Shellcode Transplant"

There should be at least four additional references from recent academic (IEEE or ACM) research papers or white papers from IT companies. Students must perform their own research for additional references.

1. In the paper "The Shellcode Generation", what is the development bottom-line for an exploit? List and give detailed explanations to the three components for a usable exploit.

2. Read the paper "Evasion Techniques", and explain how a piece of shellcode can bypass an intrusion detection system. more information about the shellcode issues related to computer forensic investigations

3. Read the paper "English Shellcode", explain the concept of program counter and its importance to an attacker who uses shellcodes.

4. In the paper "Automatic Shellcode Transplant", what are the two challenges of the transplanted shellcode?

Part B - Shellcode in Practice

Suppose you are working for an IT security company which is subcontracted by Deakin University to test the system security of the campus network. Your manager wants you to attempt to write shellcode which takes a user's account name and his/her password and stores the information as plain text in a text file called user.dat in the user's current directory.

Requirements -

1. You should implement a C program to ask a user to type his username and password one a command line input (i.e., from the standard input channel).

2. Your program should demand at least two user attempts of inputting the passwords. That is, your program should only terminate when the user has entered two identical passwords.

3. Your program should store the username and password pair into a text file called "user.dat" in the current directory.

4. You should package your C code into a shellcode by using ShellMe (A tutorial of using ShellMe is presented in the second week's practical class).

Identify the two pieces of shellcode (attached) by describing their designed actions.

Part C - Shellcode in Application

You need to write a short report to demonstrate your level of understanding about shellcode and its application on hacking platforms, operating systems vulnerability, penetration testing and exploitation. Your report should consist of the following parts:

1. List and explain every command used in the metasploit demo.

2. Identify the name of the shellcode used in the demo, reproduce its contents in hex and provide a screen capture of it in your report, and explain what this shellcode is capable of doing.

3. Find and list at least five different shellcode-generating approaches. Then compare the advantages and disadvantages from the viewpoint of attackers.

4. Describe the concept of polymorphic shellcode. And discuss the impact of misusing penetration toolkits such as Metasploit for malicious purposes.

Attachment:- Advanced Digital Forensics Assignment File.rar

Reference no: EM132445004

Questions Cloud

What is the equation of brad budget line : 1. What is the equation of Brad's budget line? 2. Solve for Brad's optimal bundle
Review the security life cycle and configuration management : Develop recommendations for how biometrics can be used for authentication. Review the security life cycle and configuration management.
Find the profit maximizing level of output for the firm : Suppose a firm sells in a highly competitive market where the going price is $15 per unit. Its cost equation is C=$25+.25Q^2.
Calculate optimal output and price : A. If War Game wants to maximize profit, calculate optimal output and price.
SIT703 - Advanced Digital Forensics Assignment : SIT703 - Advanced Digital Forensics Assignment Help and Solution, Deakin University, Australia. Assessment - Technical Report
Develop realistic job preview for flight attendants : You are the HR manager for a commercial airline. You have been assigned to develop a realistic job preview for flight attendants.
Tax cut under fixed and flexible exchange rates : What is the impact of a tax cut in an economy operating under a flexible exchange rate regime on household spending, interest rates, investment spending
Test the assumption that consultant a : Test the assumption that Consultant A has higher satisfaction ratings at the 5% significance level. Show all the steps.
Calculated under the family and medical leave act : How much leave is entitled to under the Family and Medical Leave Act? How is the 12-month period calculated under the Family and Medical Leave Act?

Reviews

Write a Review

Other Subject Questions & Answers

  Describe someone you consider to be an authentic leader

Describe someone you consider to be an authentic leader. Discuss what impact this person has had on followers and his/her organization.

  Describe the foundational principles of each approach

As you begin this course, it is important to understand the foundation for each of these theories and how they differ from each other. As you come to understand these two perspectives, consider which of these is a good fit for your perspective on ..

  What you learn in course in your current or future position

Assess how your perception of health services human resource management have matured or changed since the beginning of this course.

  Blood pressure and the physiological basis of the response

describe the anticipated effect on blood pressure and the physiological basis of the response:

  Discuss the different aspects of technology

In your opinion, discuss the different aspects of technology required by a health plan.

  Discuss world trend away from capital punishment

There is a clear world trend away from capital punishment. What do you see as the most important reasons for this trend

  Explain the physiological mechanisms involved

people who are hyperventilate may get dizzy (due to cerebral vasoconstriction), causing anxiety and further hyperventilation. Such people are sometimes urged to breathe into a paper bag. What good would this do? Explain the physiological mechanisms i..

  Patient malnutrition is a very real and serious matter it

to support your work use your course and text readings and also use outside sources. as in all assignments cite your

  Analyze your primary source and ?nd quotations

Analyze your primary source Death of a Salesman and ?nd quotations that support your assertion

  Explain the behavioral observation scales

Define the following tests and include the attributes (length, versions, languages, price, etc.).

  New baggage handling system so important to united

Why was the new baggage handling system so important to United? What appears to be the single greatest risk in the decision to build DIA? What impact do the rating agencies (i.e. Moody’s and Standard & Poor’s) have in the financing of the airport?

  What is your greatest fear

What do you look forward to, as you begin this educational experience and your personal search for purpose?

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd