Academic Integrity: tutoring, explanations, and feedback — we don’t complete graded work or submit on a student’s behalf.

PLEASE SEND THE ANSWERS TO MY EMAIL. PLEASE DONT SEND ME COPY AND PASTE WORK. In

ID: 3585673 • Letter: P

Question

PLEASE SEND THE ANSWERS TO MY EMAIL.

PLEASE DONT SEND ME COPY AND PASTE WORK.

Infrastructure Defense


1. In the context of attack reconnaissance, briey describe Footprinting and Fingerprinting
2. List three things we would like to know about a network in order to best decide how to attack it. For each thing, briey describe why it is signicant.
3. What is “banner grabbing?”
4. One methodology for defending a network is to attempt to “misinform” an attacker. What ways might you be able to misinform an intruder on your network? Hint: Say the attacker was banner grabbing
5. What is the difference between intrusion detection and intrusion prevention?
6. How does sensor placement effect the performance of intrusion detection/prevention systems?
7. How does sensor placement effect the performance of the network they are monitoring?
8. In intrusion prevention which is better, a false positive or a false negative? Why? What about intrusion detection

Explanation / Answer

As you have mentioned above that send answers to your mail it is not possible because i have posted question here so i acn only answer here,

1.Footprinting is the blueprinting of the security profile of an organization which is undertaken in a methodological manner. It is one of the three pre-attack phases and the others are scamming and enumeration. Footprinting results in a unique organizational profile with respect to networks and system involved ,i.e. Internet,Intranet,Extranet,wireless,etc. Fingerprinting is of generally two basic types, 1-Active Stack Fingerprinting this technique is also known as OS fingerprinting, this type of fingerprinting is done to determine the remote OS it allows an attacker to leave smaller footprint and have greater chance to succeed. 2-Passive Fingerprinting, it is also based on the differential implantation of the stack and various ways an OS responds to it. This type of fingerprinting is less accurate then the active fingerprinting.

2.The three thing which we have to know about a network in order to best decide how to attack are as follows :-

3. Banner Grabbing is generally the act of capturing information provided by the banners that generally displays system information. Banner Grabbing is often used for white hat hacking endeavors like vulnerability analysis and penetration testing as well as gray hat activities and black hat hacking. Or it is technique used to glean information about a computer system on a network and the services running on its openn ports.

5. A Basic difference between intrusion detection and intrusion prevention is that intrusion detection products are designed to inform you that something is trying to get into your system where intrusion prevention products actually attempt to prevent access.Both of these products are designed for different purposes but their technologies are similar.

6. The performance of the intrusion detection/prevention systems effected because each sensor is strategically positioned to monitor traffic for particular network segments. Organizations used to depoy a sensor for each network segment, but now a single sensor can monitor several network segments simultaneously.

7. The sensor placement effect the performance of the network they are monitoring because when the senor is placed then the sensor needs constant attention and custom tuning to reduce the number of alerts about the legitimate traffic so it affects.

8. One of the most common problems with an IPS is the detection of false positive or false negative, so i think that false positives are more better because they are generally generated by systems that rely on a single detection method, and by ones that cannot be configured at different levels to fit into the operational environment so these are better and same in the case of IDS.

Hope you like the anwser, Please give me a Thumbs up.Thank you :)

Hire Me For All Your Tutoring Needs
Integrity-first tutoring: clear explanations, guidance, and feedback.
Drop an Email at
drjack9650@gmail.com
Chat Now And Get Quote