This lab demonstrates penetration testing techniques against Windows systems using Kali Linux and the Metasploit framework. The exercise includes scanning with Nmap, exploiting the MS08-067 SMB vulnerability on Windows XP, testing EternalBlue against Windows Server 2022, and generating a Meterpreter payload for Windows 7. The assignment highlights how legacy vulnerabilities, misconfigurations, and outdated systems can expose networks to remote exploitation.
Category: Penetration Testing
Sword vs. Shield: Network Scanning and Firewall Security
This lab assignment covers network scanning techniques using Nmap and firewall configuration with pfSense. It explores the vulnerabilities discovered through the scanning process, such as open ports and potential exploitation, and demonstrates how configuring firewall rules can mitigate these risks. The exercise also evaluates the advantages and disadvantages of blocking ICMP traffic for network defense and operational efficiency.