Hands-On Ethical Hacking and Network Defense, 3e, ISBN 9781285454610
Ch. 8 Solutions-1
Chapter 8 Solutions
Review Questions
1. MBSA performs which of the following security checks? (Choose all that apply.)
2. In Windows 2016, the administrator must enable IIS manually to use it?
True
3. Windows OSs are vulnerable to the Conficker worm because of which of the
following?
4. Which of the following is a well-known SMB hacking tool? (Choose all that apply.)
5. Which ports should be filtered out to protect a network from SMB attacks?
6. For a Windows computer to be able to access a *nix resource, CIFS must be enabled
on at least one of the systems. True or False?
7. Applications written in which programming language are especially vulnerable to
buffer overflow attacks? (Choose all that apply.)
8. Which of the following programs includes several buffer overflow exploit plug-ins?
9. Which of the following is the most efficient way to determine which OS a company
is using?
10. List three measures for protecting systems on any network.
11. Employees should be able to install programs on their company computers as long as
the programs arent copyrighted. True or False?
12. Which of the following is an OS security mechanism that enforces access rules based
on privileges for interactions between processes, files, and users?
Hands-On Ethical Hacking and Network Defense, 3e, ISBN 9781285454610
Ch. 8 Solutions-2
13. A good password policy should include which of the following? (Choose all that
apply.)
14. Linux antivirus software can’t detect backdoor Trojans. True or False?
15. Which program can detect rootkits on *nix systems?
16. Which organization offers free benchmark tools for Windows and Linux?
Activities
Activity 8-2
Step 3: Answers will vary, but password vulnerabilities will probably be reported, as weak
password are common in classroom network settings. Other vulnerabilities MBSA find depend on
the Windows configuration and when the system was last patched.
Activity 8-3
Step 13: OS vulnerabilities are discovered regularly, and many new ones will likely have been
reported since this book was published. Having half a dozen high-risk vulnerabilities on a
Activity 8-4
Step 2: Exploit code and vulnerabilities has been published for Wireshark 1.6.8 and earlier.
Step 5: Students should be running version greater than 1.8.0 .
Activity 8-5
Step 3: Possible answers include chfn, chsh, crontab, du, find, ifconfig, inetd, killall, linsniffer,
Case Projects
Case Project 8-1: Securing an Older Linux OS
This project requires students to do Internet research to determine whether vendor support for
security patches is available. Searching on the keywords “Red Hat support lifecycle” in Google,
Hands-On Ethical Hacking and Network Defense, 3e, ISBN 9781285454610
Ch. 8 Solutions-3
for example, returns the www.redhat.com/security/updates/errata/ link in the results; this page
states that patching support for RHEL 5 ends on March 31st, 2017 unless the company pays for
Case Project 8-2: Detecting Unauthorized Applications
Answers will vary. Students might suggest a better training program for employees that addresses
the issues of “strange” software, for example, and discuss what damage the program might cause
the company. For example, did the buffer overflow give anyone access to information he or she
wasn’t authorized to have?
Case Project 8-3: Validating Password Strength for Alexander Rocco
Corporation