Week 04
Week 04
SECURITY:
ESSENTIALS
Daniel
Medina
[email protected]
ADMINISTRATION
NEWS
RECAP
NETWORKS
THE
INTERNET
IS
A
network
of
networks
A
series
of
tubes
Made
of
cats
(Google
suggested
that
last
one)
THE
INTERNET
IS
ATT
Verizon
L3
Sprint
THE INTERNET IS
THE INTERNET IS
PROTOCOLS
OSI
Model
Real world
Devices
ApplicaHon
JS
App Firewalls
PresentaHon
HTML
Proxies
Session
HTTP
Load Balancers
Transport
TCP
Firewalls
Network
IP
Routers
Data
Ethernet, WiFi
Switch
Physical
Radio, Copper
Repeater, Hub
hEp://standards.ieee.org/develop/regauth/oui/
hEp://whois.arin.net
IP
ADDRESSES
Pre-CIDR
Classful
Addresses
Class
A:
0.0.0.0
-
127.255.255.255,
16,777,216
addresses
Class
B:
128.0.0.0
-
191.255.255.255,
65,536
addresses
Class
C:
192.0.0.0
-
223.255.255.255,
256
addresses
TRACEROUTE
NETSTAT
PROCESS LISTING
WIRESHARK
WIRESHARK
NETWORK PERIMETERS
PERIMETER WEAKNESSES
UNTRUSTED/MANAGED HOSTS
REMOTE ACCESS
INBOUND
MAIL
Viruses,
Spam,
Phishing
FBI:
Spear-Phishing
MSFT:
Blocked
A*achments
RFC5598:
Internet
Mail
Architecture
EXTERNAL WEBSITES
EXTERNAL-FACING WEBSITES
EXTERNAL-FACING WEBSITES
DENIAL
OF
SERVICE
Bandwidth-based:
UDP / ICMP-based
Distributed
Reflected
Amplified
CPU / State-based:
TCP SYN Floods
More Subtle:
Application Layer