Ethical Hacking Assignment
Task -> Given a “Company Name” Now HACK!!
1) HTTRACK – Clone a Website for Offline Analysis
First locate and copy website locally using a Website Copier called HTTRACK, this enable you to conduct offline analysis and searches on the multitude of webpages comprising the website.
Download and Install HTTRACK at http://www.httrack.com/
Note: If you are trying to find information about a particular company for social engineering or trying to spoof a website or login, HTTrack is an excellent tool for both tasks. To create a clone website for dnsspoof or grab credentials for an Evil Twin, now you have the tool to do so! We will see this later
Clone this website: URL -> http://web.eng.fiu.edu/aperezpo
Then, using your favorite web browser open enter
Navigate and explore the website looking for information that can be used in this phase, such as phone numbers, email addresses, business relationships, employee names, social media connections etc.
Makes a list of any of this information you find and submit it as part of this assignment.
2) Exhaustive web search engine using Google Hacking or Dorks (Smart searches):
a) Search only the FIU website looking for cybersecurity and record the number of hits, compare this number to just typing cybersecurity.
site:fiu.edu cybersecurity compared to cybersecurity
b) Search to find how many FIU webpages contain admin in the URL (hint: must combine multiple directives) Record how many hits found and explain why this would be valuable in conducting reconnaissance, what do we learn or find out? Try.
inURL:admin and then site:fiu.edu inURL:admin
c) To reduce your digital footprint search the cache webpages instead of the live webpages for cybersecurity, use the following link to find a cached version of the page:
http://web.eng.fiu.edu/aperezpo Has anything changed?
Google has recently changed the ability to search the cached webpage, in the past we could do:
to search all cached fiu.edu webpages for the term cybersecurity, now we must specify a specific webpage as in this exercise to get the cached version of a webpage. This was a great way to conduct passive reconnaissance, since the actual website is not searched, but instead the cached versions.
c) Use the following website to explain the latest http://www.exploit-db.com google hack, please record it and explain what it does.
3) The Email Harvester -> Discovery Emails Associated with a Domain
Using Kali, run the harvester tool on the website: fiu.edu, Show the results?
./theharvester.py –d fiu.edu –l 10 –b google
Pick two companies, one large and one not so large, like sears.com and gilbertsbakery.com with these two company domains use the tools identified on Linux (Kali) or Windows to get as much information as possible. Submit a report with the information you have learned and are there any differences between the two company reports. Be aware that doing is legal, since these are public databases that maintain all of this information; we are not accessing any information on these specific domains. Show the results for each company and the results obtained after running these tools. Describe what you have learned?
You can use the GUI or CLI tools or one of these websites or you can use any means you like
A netblock is a range of IP addresses. ISP’s must be assigned addresses in blocks, and the larger the block that can be assigned to someone the better because that makes for less entries in the Internet routing tables for information on how to get to those addresses.
5) Maltego –An Intelligent Information Gathering Tool
a) Go to https://www.paterva.com/web6/ and download and install the community version for your platform. You need to register with your email and password to use it for a limited amount of time. This is a tools used by law enforcement to discovery relationships among various entities. The way it works is that it accesses various available data repositories, Whois, DNS, social media, etc. to discovery associations. For example, we could determine what DNSs are associated with a website or what domains are associated with a specific IP address, which friends do these people have in common, remember just about everything is linked or known through your email on the Internet.
Please see videos below to see how to perform many of the activities with this tool.
Tutorial 1: https://www.youtube.com/watch?v=3zlbUck_BLk
Tutorial 2: https://www.youtube.com/watch?v=ibtwjPJ5PGs
Tutorial 4: https://www.youtube.com/watch?v=FceN0T_a_uM
Tutorial 5: https://www.youtube.com/watch?v=42KhnNQS8AU
Do tutorials 1, 2, 4 and view tutorial 5. Please submit a print screen of tutorials 1 and 2, and then provide one or two paragraphs discussing the tutorials 4 and 5.
Why Work with Us
Top Quality and Well-Researched Papers
We always make sure that writers follow all your instructions precisely. You can choose your academic level: high school, college/university or professional, and we will assign a writer who has a respective degree.
Professional and Experienced Academic Writers
We have a team of professional writers with experience in academic and business writing. Many are native speakers and able to perform any task for which you need help.
Free Unlimited Revisions
If you think we missed something, send your order for a free revision. You have 10 days to submit the order for review after you have received the final document. You can do this yourself after logging into your personal account or by contacting our support.
Prompt Delivery and 100% Money-Back-Guarantee
All papers are always delivered on time. In case we need more time to master your paper, we may contact you regarding the deadline extension. In case you cannot provide us with more time, a 100% refund is guaranteed.
Original & Confidential
We use several writing tools checks to ensure that all documents you receive are free from plagiarism. Our editors carefully review all quotations in the text. We also promise maximum confidentiality in all of our services.
24/7 Customer Support
Our support agents are available 24 hours a day 7 days a week and committed to providing you with the best customer experience. Get in touch whenever you need any assistance.
Try it now!
How it works?
Follow these simple steps to get your paper done
Place your order
Fill in the order form and provide all details of your assignment.
Proceed with the payment
Choose the payment system that suits you most.
Receive the final file
Once your paper is ready, we will email it to you.
No need to work on your paper at night. Sleep tight, we will cover your back. We offer all kinds of writing services.
No matter what kind of academic paper you need and how urgent you need it, you are welcome to choose your academic level and the type of your paper at an affordable price. We take care of all your paper needs and give a 24/7 customer care support system.
Admission Essays & Business Writing Help
An admission essay is an essay or other written statement by a candidate, often a potential student enrolling in a college, university, or graduate school. You can be rest assurred that through our service we will write the best admission essay for you.
Our academic writers and editors make the necessary changes to your paper so that it is polished. We also format your document by correctly quoting the sources and creating reference lists in the formats APA, Harvard, MLA, Chicago / Turabian.
If you think your paper could be improved, you can request a review. In this case, your paper will be checked by the writer or assigned to an editor. You can use this option as many times as you see fit. This is free because we want you to be completely satisfied with the service offered.