Identifying Indicators of a Network Attack

Welcome to the Identifying Indicators of a Network Attack practice lab. In this module, you will be provided with the instructions and devices needed to develop your hands-on skills.

Overview

Learning Outcomes:

In this module, you will complete the following exercises:

  • Exercise 1 – Wireless
  • Exercise 2 – Domain Name System (DNS)
  • Exercise 3 – Other Types of Attacks
  • Exercise 4 – Malicious Code or Script Execution

After completing this module, you should be able to:

  • Verify domain reputation.
  • Perform SYN flooding attack.
  • Switch off the Windows Firewall on PLABWIN10.
  • Perform an ICMP flood attack.
  • Perform the ping of death attack.
  • Conduct an Address Resolution Protocol (ARP) poisoning attack.

After completing this module, you should have further knowledge of:

  • Evil twin
  • Rogue access points
  • Threats to Bluetooth devices
  • Jamming
  • Radio Frequency Identifier (RFID)
  • Near Field Communication (NFC)
  • Initialization Vector (IV)
  • Domain hijacking
  • DNS poisoning
  • DNS spoofing attack
  • Universal Resource Locator (URL) redirection
  • Distributed Denial-of-Service (DDoS)
  • Man-in-the-browser
  • Man-in-the-middle (MITM)
  • MAC cloning or spoofing
  • PowerShell
  • Python
  • Bash
  • Virtual Basic for Applications (VBA) and macros

Exam Objectives:

The following exam objective is covered in this lab:

1.4 Given a scenario, analyze potential indicators associated with network attacks.

  • Wireless
  • Man in the middle
  • Man in the browser
  • Layer 2 attacks
  • Domain Name System (DNS)
  • Distributed Denial of Service (DDoS)
  • Malicious code or script execution
Note: Our main focus is to cover the practical, hands-on aspects of the exam objectives. We recommend referring to course material or a search engine to research theoretical topics in more detail.