recreating the nsa s mitm attack
play

Recreating the NSA's MITM Attack 1 Why Should This Topic be Chosen? - PowerPoint PPT Presentation

create your own exercise Christoph Schmidt, Team 1 Recreating the NSA's MITM Attack 1 Why Should This Topic be Chosen? Goal 1: Understanding how the NSA uses its access to the Backbone Goal 2: Understanding how MITM attacks can be done


  1. create your own exercise Christoph Schmidt, Team 1 Recreating the NSA's MITM Attack 1

  2. Why Should This Topic be Chosen? • Goal 1: Understanding how the NSA uses its access to the Backbone • Goal 2: Understanding how MITM attacks can be done in practice (and in large scale) 2

  3. Learning Goals The Following Learning Goals are Covered in the Lecture PreLab Lab Understand how the NSA's MITM attack works X X X Understanding why the NSA uses this attack X X Understanding the relations between NSA and telcoms X X 3

  4. create your own exercise Janosch Maier & Christoph Schmidt, T eam 1 Evil Twins Wii SSID Spooing & More 1

  5. Why Should This T opic be Chosen? Attacking Wiis can be so easy: • Spoof SSIDs • Create Evil T wins • Deliver Google yourself 2

  6. What Will Your Students Learn? The Following Learning Goals are Covered Lectu PreLa Lab in the re b Get to know SSID spooing X X Understand how evil twins work X X Spoof requested SSIDs X X Create an evil twin X X Reroute web traic X X Develop counter measures X 3

  7. Evil T win at work Wii AP Evil T win Unsuspicious User 4

  8. create your own exercise Kshitija Nagaraj (Team2) MULTIPATH TCP 1

  9. Why Should This Topic be Chosen? • Multipath TCP enables to use more than one available path for a TCP/IP session. • Get to understand how using multiple paths, throughput increases and failure can be handled. • We have been using TCP in lab,MPTCP is extension of it. 2

  10. What Will Your Students Learn? The Following Learning Goals are Covered in the Lecture PreLab Lab An overview of Multipath TCP X X Create � subflows � for all available paths X X X Understand the transfer of data in Multipath TCP X X X Scenario if a subflow fails X X X Understanding the security concerns X X 3

  11. Teaser Practical Part 4

  12. create your own exercise T anmay Chaudhry – T eam 2 Traditional vs Software Deined Networking 1

  13. Why Should This T opic be Chosen? • Primarily about learning how Software Deined Networking works • Students will : – T wo parallel topologies : One Traditional, One using an SDN enabled device. – Develop a simple SDN application. – Observe advantages on both sides (Possibly measure performance trade of). • My background : Worked primarily with the Ryu SDN Controller Framework in my IDP . 2

  14. What Will Your Students Learn? The Following Learning Goals are Covered Lectu PreLa Lab in the lab re b Understand the Basic Diference X X X SDN introduction X X Creating a simple SDN application X X X Examine advantages and disadvantages X X Some performance measurement to compare X 3

  15. T easer Practical Part SDN T opology T raditional T opology SDN Controller VS 4

  16. create your own exercise David Gaßmann, Marco Eggersmann || Team 3 RADIUS - One Service to rule them all 1

  17. Why Should This Topic be Chosen? • Use same credentials for WLAN and VPN • Use RADIUS for central authentication management • Setup OpenVPN, FreeRADIUS and hostapd • Combine them 2

  18. What Will Your Students Learn? The Following Learning Goals are Covered in the Lecture PreLab Lab Understand what RADIUS is used for X X Understand WPA2-Enterprise X X X Configure RADIUS on a PC X X Configure hostapd and OpenVPN to use RADIUS X X Examine security aspects X X X Configure a complex scenario X X 3

  19. Bind them! RADIUS-Server VPN-Client Access-Point WLAN-Client VPN-Server 4

  20. create your own exercise Marco Eggersmann & David Gaßmann (T eam 3) VLAN – Let your switch have fun with multiple partners! 1

  21. Choose this topic!!! • Connect separated LANs to a single switch • Learn about diferent ways to achieve this • Learn about things you normally wouldn't care about because they don't sound as awesome as 'Evil Blackhat Network Hacking like NSA' 2

  22. Learn a lot!!!! The Following Learning Goals are Covered Lectu PreLa Lab in the re b Understand what VLANs are used for X X Conigure multiple VLANs on a single switch X X Understand diferent types of VLAN X X X Examine security aspects X X X Increase experience with switches X X X 3

  23. Do something!!! VLAN 1 VLAN 2 VLAN 3 4

  24. create your own exercise Johannes Straßer, Team 4 IPv6 Multicast or How to save bandwidth 1

  25. Why Should Stundents Learn About IPv6 Multicast? • Ipv6 is the future • Ipv6 features are commonly not well known • IPv6 Multicast saves bandwidth – Is used by IPTV providers – Can also be used for private streaming, file transfer, bittorrent-like networks, ... 2

  26. What Will Students Learn In This Lab? The Following Learning Goals are Covered in the Lecture PreLab Lab Understand how IPv6 Multicast works X X Learn about PIM X X Configure PIM on the cisco routers X X Use sockets for subscribing / providing multicast streams X Test IPv6 Multicast in a probable secnario X Examine security aspects X X 3

  27. Teaser Practical Part Streaming Viewer Group 2 Source Viewer Group 1 4

  28. create your own exercise Dominique d’Argent, Team 4 Build your own Content Delivery Network (CDN)! 1

  29. Why should you learn about CDNs? • CDNs power high-profile web sites (Facebook, etc.) • Variety of CDN providers (Akamai, CloudFlare, etc.) • CDNs boost performance and save money • distribute load • save bandwidth • reduce existing hosting costs 2

  30. What will you learn? The Following Learning Goals are Covered in the Lecture PreLab Lab Understand what CDNs are used for X X Get to know different CDN providers X X Understand how CDNs work X X X Learn about caching and request routing mechanisms X (X) Configure a complex scenario X X 3

  31. Lab Setup Webserver PoP 1 PoP 2 Client 1 Client 2 4

  32. create your own exercise Alexander Güssow and François Blondel - Team 5 AIRHOPPER : BRIDGING THE AIR-GAP 1

  33. Why Should This Topic be Chosen? • Leaking data out of isolated (or not) systems • Use radio frequencies and simple hardware – EM radio : FM/AM, etc. – Passive listening – Sound waves or Light waves • Using common software and get aware of risks • Our backgrounds : SDR 2

  34. What will YOU learn? The Following Learning Goals are Covered in the Lecture PreLab Lab Some physics: different physical channels and their ranges X X Learn the actual state of the art: what is already possible X X X Leaking data in a nonconventional way: audio transmission X X Protection : How to detect and prevent this ? X X 3

  35. Teaser Practical Part 4

  36. create your own exercise Alexander Güssow and François Blondel - Team 5 CONFIGURATION MANAGEMENT SYSTEMS : MANAGE YOUR MACHINE HERD 1

  37. Why Should This Topic be Chosen? • Configuration management Tools - Goal : easily manage lots of machines - Puppet, SaltStack, Ansible • Using configuration management tools and understang why and when they are usable • Use of Active Directory group policies 2

  38. What Will Your Students Learn? The Following Learning Goals are Covered in the Lecture PreLab Lab Understand why it is needed and when X X Set up a CMS (puppet, SaltStack) server and clients X X Concrete use-case: scalable architecture and load-balancer X X X Security aspects: What if a server get compromised ? X X X Configure a complex scenario X X 3

  39. Teaser Practical Part Clients and load-balanced web servers CMS repository Web Client load-balancer 4

  40. create your own exercise Christoph Hielscher ‐ Team 7 REDUNDANT SERVERS 1

  41. Why Should This Topic be Chosen? • What is the topic about? – 2 servers, 1 client – Client sends/receives messages from servers – Client does not know the IP‐addresses of the servers – Router should duplicate incoming packets and forward them to the servers 2

  42. Why Should This Topic be Chosen? • What content will your students learn? – Concept of redundant systems – Configure the servers and the client – Configure a Cisco router 3

  43. Why Should This Topic be Chosen? • What is your background in the topic? – Similar scenario in my company of light control – Therefore: Improve the used setup by working on a new setup 4

  44. What Will Your Students Learn? The Following Learning Goals are Covered in the Lecture PreLab Lab Understand what the scenario is used for X X Configure the client & the servers on PCs X X Configure a Cisco router X X What happens if one server becomes inoperaQve X X 5

  45. PracQcal Part PC6 PC2 Monitoring Server 2 PC1 Cisco Router PC4 Server 1 Remote Client 6

  46. create your own exercise Pranav Jagdish Team 7 POISONING NETWORKS 1

  47. Why Should This Topic b e Chosen? • What is the topic about? – Poisoning a Network or Hosts for MITM, Session Hijacking and other attacks. – ARP, DNS and DHCP Poisoning 2

  48. Why Should This Topic be Chosen? • What content will your students learn? – How to poison a network using ARP Spoofing – How to perform known attacks by spoofing to a host as a target system. – Redirecting user traffic to your system or routing it through you – Use of the efficient python based tool called ZARP – Securing against these attacks using various methods 3

Download Presentation
Download Policy: The content available on the website is offered to you 'AS IS' for your personal information and use only. It cannot be commercialized, licensed, or distributed on other websites without prior consent from the author. To download a presentation, simply click this link. If you encounter any difficulties during the download process, it's possible that the publisher has removed the file from their server.

Recommend


More recommend