3809ICT Ethical Hacking Assignment 2 Specification | GU
Category | Assignment | Subject | Computer Science |
---|---|---|---|
University | Griffith University | Module Title | 3809ICT Ethical Hacking |
3809ICT Assignment Aim
This assignment aims to enhance knowledge and understanding of attacks on Active Directory systems through a penetration testing practice. This understanding will be demonstrated by submitting a report of the penetration test. The assignment also contains several questions for which you need to answer and provide details that support your answers.
3809ICT Task
There are three main tasks:
1. Performing Attacks on the Target VM and Composing a Testing Report.
Your report must include a step-by-step demonstration of how you performed the attack, using both text explanations and screenshots. You are also required to provide answers to the relevant questions. The demonstration should be fully reproducible—another person following your documented steps should be able to replicate the attack exactly as described. Please note that marks will be deducted for any steps that are unclear, incomplete, or not reproducible.
2. Capturing The TWO Flags and Displaying the Flag Content.
As in Assignment 1, the flag text strings start with a prefix “FLAG – “.
3. Answer the Following Questions:
- Question 1: What are the SMB directory shares open on the Active Directory Server? Document them. (Hint: Use Nmap SMB discovery scripts)
- Question 2: What does the Active Directory structure look like? List the groups (a.k.a., Organisational Units) under the domain songbirds.snakes.
- Question 3: Identify two Active Directory user accounts that each use a different easily guessable password. For each account, provide the username and its associated weak password.
Achieve Higher Grades with 3809ICT Assignment Solutions
Order Non-Plagiarised Assignment
Submission
Please submit your assignment via the Canvas course site’s 3809ICT Assignment 2 Submission point. The quality of the presentation of a formal technical report is as important as the quality of the technical content of the report in the profession