From def699940545db0795ebc414979683eada9fcf21 Mon Sep 17 00:00:00 2001 From: "Z. Cliffe Schreuders" Date: Mon, 23 Sep 2019 16:19:46 +0100 Subject: [PATCH] lab updates --- .../wordlists/top-20-common-SSH-passwords | 21 +++ .../secgen_metadata.xml | 2 +- .../bases/kali_light_msf/secgen_metadata.xml | 4 +- .../introducing_attacks/1_intro_linux.xml | 159 ++++++++++++++++++ 4 files changed, 183 insertions(+), 3 deletions(-) create mode 100644 lib/resources/wordlists/top-20-common-SSH-passwords create mode 100644 scenarios/labs/introducing_attacks/1_intro_linux.xml diff --git a/lib/resources/wordlists/top-20-common-SSH-passwords b/lib/resources/wordlists/top-20-common-SSH-passwords new file mode 100644 index 000000000..d3f83350a --- /dev/null +++ b/lib/resources/wordlists/top-20-common-SSH-passwords @@ -0,0 +1,21 @@ +root +toor +raspberry +dietpi +test +uploader +password +admin +administrator +marketing +12345678 +1234 +12345 +qwerty +webadmin +webmaster +maintaince +techsupport +letmein +logon +Passw@rd diff --git a/modules/bases/debian_stretch_desktop_kde/secgen_metadata.xml b/modules/bases/debian_stretch_desktop_kde/secgen_metadata.xml index 2e18ccb6d..845d9e52d 100644 --- a/modules/bases/debian_stretch_desktop_kde/secgen_metadata.xml +++ b/modules/bases/debian_stretch_desktop_kde/secgen_metadata.xml @@ -15,7 +15,7 @@ Debian 9.5.0 Stretch amd64 https://app.vagrantup.com/secgen/boxes/debian_stretch_desktop_kde/versions/1.2/providers/virtualbox.box https://app.vagrantup.com/redwiz666/boxes/debian_stretch_desktop_kde/versions/1.0.0/providers/vmware.box - stretch_desktop_kde_140319 + stretch_desktop_kde_20190923 https://atlas.hashicorp.com/puppetlabs various diff --git a/modules/bases/kali_light_msf/secgen_metadata.xml b/modules/bases/kali_light_msf/secgen_metadata.xml index bd1c772ec..561a21e15 100644 --- a/modules/bases/kali_light_msf/secgen_metadata.xml +++ b/modules/bases/kali_light_msf/secgen_metadata.xml @@ -16,8 +16,8 @@ Kali Linux 2018.3 https://app.vagrantup.com/secgen/boxes/kali_light_msf/versions/1.0/providers/virtualbox.box - kali_linux_msf - + kali_linux_msf_20190923 + https://app.vagrantup.com/secgen various diff --git a/scenarios/labs/introducing_attacks/1_intro_linux.xml b/scenarios/labs/introducing_attacks/1_intro_linux.xml new file mode 100644 index 000000000..184a9bef3 --- /dev/null +++ b/scenarios/labs/introducing_attacks/1_intro_linux.xml @@ -0,0 +1,159 @@ + + + + + Introduction to Linux and Security lab + Z. Cliffe Schreuders + +# Introduction +This topic covers lots of ground regarding fundamentals of Linux and free open source software (FOSS). + +# Lecture +[Slides here](http://z.cliffe.schreuders.org/presentations/slides/DSL_DS_OSPT_Lectures_1_Intro_to_Unix_FOSS_and_Linux.html) + +# Reading +[Chapters 1 "Introduction" and 2 "Unix History and Lineage": Garfinkel, S. and Spafford, G. and Schwartz, A. (2003), Practical Unix and Internet Security, O'Reilly. (ISBN-10: 0596003234)](http://www.dawsonera.com.ezproxy.leedsbeckett.ac.uk/depp/reader/protected/external/AbstractView/S9781449310325) + +Suggested: + +Chapter 1 "An Overview of Computer Security": Bishop, M. (2005), Introduction to Computer Security, Addison-Wesley. (ISBN-10: 0321247442) + +# Lab +[Lab sheet here](https://docs.google.com/document/d/1vA_Ev_GPqPg3cGZblgVclWmTU-sUEEBqwYpFH09mQjg/edit?usp=sharing). + + + ctf-lab + lab-sheet + easy + + + desktop + + + + + 172.16.0.2 + + 172.16.0.3 + + + + + + + + + + + mythical_creatures + + + + + tiaspbiqe2r + + + false + + + + + + victim + + + + + top-20-common-SSH-passwords + + + + + true + + + flag + + + + + + + + bystander + + + + + + false + + + flag + + + + + + + + + + + + + + + user_accounts_desktop + + + + + + user_accounts_desktop + + + user_accounts_desktop + + + true + + + + + + + desktop_root_password + + + + + + IP_addresses + + + + + + kali + + + + {"username":"root","password":"toor","super_user":"","strings_to_leak":[],"leaked_filenames":[]} + + + + + + + + + + IP_addresses + + + + +