recreating the nsa s mitm attack
play

Recreating the NSA's MITM Attack 1 Why Should This Topic be Chosen? - PowerPoint PPT Presentation

create your own exercise Christoph Schmidt, Team 1 Recreating the NSA's MITM Attack 1 Why Should This Topic be Chosen? Goal 1: Understanding how the NSA uses its access to the Backbone Goal 2: Understanding how MITM attacks can be done


  1. create your own exercise Christoph Schmidt, Team 1 Recreating the NSA's MITM Attack 1

  2. Why Should This Topic be Chosen? • Goal 1: Understanding how the NSA uses its access to the Backbone • Goal 2: Understanding how MITM attacks can be done in practice (and in large scale) 2

  3. Learning Goals The Following Learning Goals are Covered in the Lecture PreLab Lab Understand how the NSA's MITM attack works X X X Understanding why the NSA uses this attack X X Understanding the relations between NSA and telcoms X X 3

  4. create your own exercise Janosch Maier & Christoph Schmidt, T eam 1 Evil Twins Wii SSID Spooing & More 1

  5. Why Should This T opic be Chosen? Attacking Wiis can be so easy: • Spoof SSIDs • Create Evil T wins • Deliver Google yourself 2

  6. What Will Your Students Learn? The Following Learning Goals are Covered Lectu PreLa Lab in the re b Get to know SSID spooing X X Understand how evil twins work X X Spoof requested SSIDs X X Create an evil twin X X Reroute web traic X X Develop counter measures X 3

  7. Evil T win at work Wii AP Evil T win Unsuspicious User 4

  8. create your own exercise Kshitija Nagaraj (Team2) MULTIPATH TCP 1

  9. Why Should This Topic be Chosen? • Multipath TCP enables to use more than one available path for a TCP/IP session. • Get to understand how using multiple paths, throughput increases and failure can be handled. • We have been using TCP in lab,MPTCP is extension of it. 2

  10. What Will Your Students Learn? The Following Learning Goals are Covered in the Lecture PreLab Lab An overview of Multipath TCP X X Create � subflows � for all available paths X X X Understand the transfer of data in Multipath TCP X X X Scenario if a subflow fails X X X Understanding the security concerns X X 3

  11. Teaser Practical Part 4

  12. create your own exercise T anmay Chaudhry – T eam 2 Traditional vs Software Deined Networking 1

  13. Why Should This T opic be Chosen? • Primarily about learning how Software Deined Networking works • Students will : – T wo parallel topologies : One Traditional, One using an SDN enabled device. – Develop a simple SDN application. – Observe advantages on both sides (Possibly measure performance trade of). • My background : Worked primarily with the Ryu SDN Controller Framework in my IDP . 2

  14. What Will Your Students Learn? The Following Learning Goals are Covered Lectu PreLa Lab in the lab re b Understand the Basic Diference X X X SDN introduction X X Creating a simple SDN application X X X Examine advantages and disadvantages X X Some performance measurement to compare X 3

  15. T easer Practical Part SDN T opology T raditional T opology SDN Controller VS 4

  16. create your own exercise David Gaßmann, Marco Eggersmann || Team 3 RADIUS - One Service to rule them all 1

  17. Why Should This Topic be Chosen? • Use same credentials for WLAN and VPN • Use RADIUS for central authentication management • Setup OpenVPN, FreeRADIUS and hostapd • Combine them 2

  18. What Will Your Students Learn? The Following Learning Goals are Covered in the Lecture PreLab Lab Understand what RADIUS is used for X X Understand WPA2-Enterprise X X X Configure RADIUS on a PC X X Configure hostapd and OpenVPN to use RADIUS X X Examine security aspects X X X Configure a complex scenario X X 3

  19. Bind them! RADIUS-Server VPN-Client Access-Point WLAN-Client VPN-Server 4

  20. create your own exercise Marco Eggersmann & David Gaßmann (T eam 3) VLAN – Let your switch have fun with multiple partners! 1

  21. Choose this topic!!! • Connect separated LANs to a single switch • Learn about diferent ways to achieve this • Learn about things you normally wouldn't care about because they don't sound as awesome as 'Evil Blackhat Network Hacking like NSA' 2

  22. Learn a lot!!!! The Following Learning Goals are Covered Lectu PreLa Lab in the re b Understand what VLANs are used for X X Conigure multiple VLANs on a single switch X X Understand diferent types of VLAN X X X Examine security aspects X X X Increase experience with switches X X X 3

  23. Do something!!! VLAN 1 VLAN 2 VLAN 3 4

  24. create your own exercise Johannes Straßer, Team 4 IPv6 Multicast or How to save bandwidth 1

  25. Why Should Stundents Learn About IPv6 Multicast? • Ipv6 is the future • Ipv6 features are commonly not well known • IPv6 Multicast saves bandwidth – Is used by IPTV providers – Can also be used for private streaming, file transfer, bittorrent-like networks, ... 2

  26. What Will Students Learn In This Lab? The Following Learning Goals are Covered in the Lecture PreLab Lab Understand how IPv6 Multicast works X X Learn about PIM X X Configure PIM on the cisco routers X X Use sockets for subscribing / providing multicast streams X Test IPv6 Multicast in a probable secnario X Examine security aspects X X 3

  27. Teaser Practical Part Streaming Viewer Group 2 Source Viewer Group 1 4

  28. create your own exercise Dominique d’Argent, Team 4 Build your own Content Delivery Network (CDN)! 1

  29. Why should you learn about CDNs? • CDNs power high-profile web sites (Facebook, etc.) • Variety of CDN providers (Akamai, CloudFlare, etc.) • CDNs boost performance and save money • distribute load • save bandwidth • reduce existing hosting costs 2

  30. What will you learn? The Following Learning Goals are Covered in the Lecture PreLab Lab Understand what CDNs are used for X X Get to know different CDN providers X X Understand how CDNs work X X X Learn about caching and request routing mechanisms X (X) Configure a complex scenario X X 3

  31. Lab Setup Webserver PoP 1 PoP 2 Client 1 Client 2 4

  32. create your own exercise Alexander Güssow and François Blondel - Team 5 AIRHOPPER : BRIDGING THE AIR-GAP 1

  33. Why Should This Topic be Chosen? • Leaking data out of isolated (or not) systems • Use radio frequencies and simple hardware – EM radio : FM/AM, etc. – Passive listening – Sound waves or Light waves • Using common software and get aware of risks • Our backgrounds : SDR 2

  34. What will YOU learn? The Following Learning Goals are Covered in the Lecture PreLab Lab Some physics: different physical channels and their ranges X X Learn the actual state of the art: what is already possible X X X Leaking data in a nonconventional way: audio transmission X X Protection : How to detect and prevent this ? X X 3

  35. Teaser Practical Part 4

  36. create your own exercise Alexander Güssow and François Blondel - Team 5 CONFIGURATION MANAGEMENT SYSTEMS : MANAGE YOUR MACHINE HERD 1

  37. Why Should This Topic be Chosen? • Configuration management Tools - Goal : easily manage lots of machines - Puppet, SaltStack, Ansible • Using configuration management tools and understang why and when they are usable • Use of Active Directory group policies 2

  38. What Will Your Students Learn? The Following Learning Goals are Covered in the Lecture PreLab Lab Understand why it is needed and when X X Set up a CMS (puppet, SaltStack) server and clients X X Concrete use-case: scalable architecture and load-balancer X X X Security aspects: What if a server get compromised ? X X X Configure a complex scenario X X 3

  39. Teaser Practical Part Clients and load-balanced web servers CMS repository Web Client load-balancer 4

  40. create your own exercise Christoph Hielscher ‐ Team 7 REDUNDANT SERVERS 1

  41. Why Should This Topic be Chosen? • What is the topic about? – 2 servers, 1 client – Client sends/receives messages from servers – Client does not know the IP‐addresses of the servers – Router should duplicate incoming packets and forward them to the servers 2

  42. Why Should This Topic be Chosen? • What content will your students learn? – Concept of redundant systems – Configure the servers and the client – Configure a Cisco router 3

  43. Why Should This Topic be Chosen? • What is your background in the topic? – Similar scenario in my company of light control – Therefore: Improve the used setup by working on a new setup 4

  44. What Will Your Students Learn? The Following Learning Goals are Covered in the Lecture PreLab Lab Understand what the scenario is used for X X Configure the client & the servers on PCs X X Configure a Cisco router X X What happens if one server becomes inoperaQve X X 5

  45. PracQcal Part PC6 PC2 Monitoring Server 2 PC1 Cisco Router PC4 Server 1 Remote Client 6

  46. create your own exercise Pranav Jagdish Team 7 POISONING NETWORKS 1

  47. Why Should This Topic b e Chosen? • What is the topic about? – Poisoning a Network or Hosts for MITM, Session Hijacking and other attacks. – ARP, DNS and DHCP Poisoning 2

  48. Why Should This Topic be Chosen? • What content will your students learn? – How to poison a network using ARP Spoofing – How to perform known attacks by spoofing to a host as a target system. – Redirecting user traffic to your system or routing it through you – Use of the efficient python based tool called ZARP – Securing against these attacks using various methods 3

Recommend


More recommend