Closing Security Holes

CompTIA Security+ (SY601) Domain:
Domain 3.0: Implementation

CompTIA Security+ (SY601) Objective Mapping:
Objective 3.2: Given a scenario, implement host or application security solutions

CEH Exam Domain
Domain 1: Background
Domain 2: Analysis/Assessments
Domain 4: Tools/Systems/Programs

CEH Objective Mapping
Objective 1.2 Information Security Threats and Attack Vectors
Objective 1.3 Information Security Technologies
Objective 2.2 Information Security Assessment Process
Objective 4.3 Information Security Tools

Overview

In this lab, you will exploit a vulnerable system over the network and then patch and secure it. You will practice ethical hacking techniques by using Armitage to compromise a Windows Server and cybersecurity defensive techniques of closing ports and installing patches to prevent attackers from compromising systems. 

OUTCOMES:

In this lab, you will learn to:

  1. Attack a vulnerable Windows Server with Armitage
  2. Close a port on a Windows Server using the Windows Firewall
  3. Patch a system with Windows Update

Key terms and descriptions

nmap
a command line scanning tool that will allow you to determine open ports
Windows Server
Microsoft has several server operating systems such as Server 2003, 2008, 2012, and 2016.
exploit
a program takes advantage of a weakness or flaw in software code
patching
the process of removing a vulnerability from a system
firewall
can be used to open and blocks or allows programs