Web server and application vulnerability testing

Assignment Help Computer Networking
Reference no: EM133969470

Penetration Testing and Countermeasures

Web Server and Application Vulnerability Testing

Objective: To practice identifying basic vulnerabilities in web servers and web applications, and to explore simple tools used for testing.

Task 1: Identifying Web Server Vulnerabilities
1. Open a browser and research common IIS vulnerabilities (IIS 8.5).
- Example search: "IIS 8.5 vulnerabilities OWASP" or "IIS 8.5 security risks."
2. Write down two possible vulnerabilities that could exist in IIS 8.5.
- Example: outdated modules, weak authentication settings.
3. For each vulnerability, note one simple recommendation to improve security.

Deliverable: Short bullet list with 2 vulnerabilities and 2 recommendations.

Task 2: Exploring Web Application Attack Tools
1. In Kali Linux (or through research if Kali is unavailable), search for Wapiti (a web application vulnerability scanner).
- Command: sudo apt-get install wapiti (if not installed). Get dependable, budget-friendly assignment help-starting today!
- Run a help command: wapiti --help to see its options.
2. In your notes, answer briefly:
- What does Wapiti do?
- How would a tester use it to find vulnerabilities?
3. If time allows, identify one more tool (e.g., Burp Suite, Nikto, OWASP ZAP) and briefly state its purpose.

Reference no: EM133969470

Questions Cloud

Could you elaborate on the specific warning signs : Could you elaborate on the specific warning signs that should be included in the discharge instructions to aid in early detection of potential complications?
Utilize temporary or contingent employees instead : Employers would utilize temporary or contingent employees instead of hiring permanent full-time employees because of several benefits such as cost savings,
Which is the formula for determining pack years : A patient history notes that an 80-year-old patient has a cigarette smoking history of 93 pack-years. Which is the formula for determining pack years?
Identify health issue that was prevalent during that decade : Choose a decade after 1900 and identify a health issue that was prevalent during that decade. Using a reputable journal find an article about this health issue.
Web server and application vulnerability testing : Web Server and Application Vulnerability Testing and How would a tester use it to find vulnerabilities - To practice identifying basic vulnerabilities in web
Which changes in upper respiratory tract should be included : A training program for new nurses in a long-term care facility includes common anatomic. Which changes in the upper respiratory tract should be included?
Trends influencing human resource management : Discuss and briefly illustrate important trends influencing human resource management. Define strategic human resource management and give an example of strateg
Which is the priority patient problem for the patient : The postoperative nursing care plan for a patient who had a total laryngectomy 24 hours ago. Which is the priority patient problem for this patient?
Discuss some of reasons why people want to have children : Discuss some of the reasons why people want to have children and why others opt to be child-free.

Reviews

Write a Review

Computer Networking Questions & Answers

  Networking and types of networking

This assignment explains the networking features, different kinds of networks and also how they are arranged.

  National and Global economic environment and ICICI Bank

While working in an economy, it has a separate identity but cannot operate insolently.

  Ssh or openssh server services

Write about SSH or OpenSSH server services discussion questions

  Network simulation

Network simulation on Hierarchical Network Rerouting against wormhole attacks

  Small internet works

Prepare a network simulation

  Solidify the concepts of client/server computing

One-way to solidify the concepts of client/server computing and interprocess communication is to develop the requirements for a computer game which plays "Rock, Paper, Scissors" using these techniques.

  Identify the various costs associated with the deployment

Identify the various costs associated with the deployment, operation and maintenance of a mobile-access system. Identify the benefits to the various categories of user, arising from the addition of a mobile-access facility.

  Describe how the modern view of customer service

Describe how the greater reach of telecommunication networks today affects the security of resources which an organisation provides for its employees and customers.

  Technology in improving the relationship building process

Discuss the role of Technology in improving the relationship building process Do you think that the setting of a PR department may be helpful for the ISP provider? Why?

  Remote access networks and vpns

safekeeping posture of enterprise (venture) wired and wireless LANs (WLANs), steps listed in OWASP, Securing User Services, IPV4 ip address, IPV6 address format, V4 address, VPN, Deploying Voice over IP, Remote Management of Applications and Ser..

  Dns

problems of IPV, DNS server software, TCP SYN attack, Ping of Death, Land attack, Teardrop attack, Smurf attack, Fraggle attack

  Outline the difference between an intranet and an extranet

Outline the difference between an intranet and an extranet A programmer is trying to produce an applet with the display shown in Figure 1 below such that whenever one of the checkboxes is selected the label changes to indicate correctly what has..

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd