Message from @Spooky Melon

Discord ID: 599382894682832896


2019-07-12 23:31:40 UTC  

Yeah it's testing for vulnerabilities on machines

2019-07-12 23:31:43 UTC  

ok

2019-07-12 23:31:47 UTC  

so what is the assignment

2019-07-12 23:32:00 UTC  

what is it *ur doin*

2019-07-12 23:32:02 UTC  

`testing for vulnerabilities` too vague

2019-07-12 23:32:07 UTC  

^

2019-07-12 23:32:29 UTC  

I have to exploit a web server and get the credentials on it as well as defacing the site hosted on the server

2019-07-12 23:32:37 UTC  

easy

2019-07-12 23:32:37 UTC  

Cybersecurity is vague lol

2019-07-12 23:32:44 UTC  

very easy

2019-07-12 23:32:45 UTC  

I highly suggest not doing your assignment on a network connected to the internet.

2019-07-12 23:32:48 UTC  

become fat

2019-07-12 23:32:53 UTC  

wear a polo

2019-07-12 23:32:55 UTC  

start balding

2019-07-12 23:33:01 UTC  

walk in and say you need to work on the server

2019-07-12 23:33:04 UTC  

The assignment is done in a VM lab created by the school

2019-07-12 23:33:05 UTC  

take it and go home

2019-07-12 23:33:07 UTC  

in short terms

2019-07-12 23:33:13 UTC  

you need to have absolutely no life 😛

2019-07-12 23:33:26 UTC  

also

2019-07-12 23:33:38 UTC  

this doesnt sound like a cyber security assignment at all

2019-07-12 23:33:42 UTC  

Then you’re good. As a fellow major I’m sure you know that ISPs will report suspicious data transmission regardless of the reason

2019-07-12 23:33:45 UTC  

why are you the one trying to get into it

2019-07-12 23:33:56 UTC  

That literally is cyber security.

2019-07-12 23:34:06 UTC  

Part of knowing how to stop something is knowing how to get in.

2019-07-12 23:34:10 UTC  

Because to do penetration testing you have to show that a system is vulnerable

2019-07-12 23:34:18 UTC  

hmph

2019-07-12 23:34:24 UTC  

did they not teach you?

2019-07-12 23:34:30 UTC  

That's what they are doing

2019-07-12 23:34:44 UTC  

That's why I'm assigned the lab

2019-07-12 23:34:57 UTC  

then they should've taught you how :p

2019-07-12 23:35:06 UTC  

That's not how it works lol

2019-07-12 23:35:13 UTC  

You’re being quite obstinate Tim

2019-07-12 23:35:20 UTC  

ye

2019-07-12 23:35:47 UTC  

so you're trying to get gud? stackoverflow is probably where you should be lol

2019-07-12 23:36:02 UTC  

I'm just trying to do this assignment for now

2019-07-12 23:36:12 UTC  

@EndangeredProdigy what specifically are you tasked with doing? You weren’t given any sort of idea?

2019-07-12 23:36:59 UTC  

One sec I'll paste the instructions

2019-07-12 23:37:16 UTC  

all you've told us is "get in some server and get some credentials"

2019-07-12 23:37:29 UTC  

Objective
The objective of this scenario is to deface the corporate web server. In order to accomplish this objective, you need to complete a series of tasks designed to test your ability to enumerate and identify potential system and network vulnerabilities, exploit systems and/or networks based on vulnerability discoveries, recover system user credentials, use recovered credentials to pivot onto other information systems in the network(s) and establish a connection to deface the corporate web server.
Each task in this scenario builds upon the task before it. There may be a situation where a solution exists outside the proposed task methodology. You are NOT penalized for using a different solution – please use whatever means necessary to achieve the final objective – Deface the Web Server.

2019-07-12 23:37:52 UTC  

Scenario
You were recently hired for a Pentration Tester position. You are responsible for pentration testing information systems located in the Local Area Network (LAN) and the Demilitarized Zone (DMZ).
A new web server was recently installed in the DMZ and you are tasked with attempting to compromise this server as a simulated external (WAN/Internet) threat. For the purposes of this exercise you have access to a Kali Linux virtual machine.
Notes:
The IP address of the external router is 198.51.100.1/32.
The IP address of the corporate web server resides somewhere on the 120.38.48.0/24 network.