Question

In: Computer Science

What is a covert channel and how is it useful to conceal pentest activity?

What is a covert channel and how is it useful to conceal pentest activity?

Solutions

Expert Solution

Solution:

Covert channel:

A covert channel can be defined as a hidden communication mechanism.

It is a means of communication that is not part of the original design of the system.

It could even be said that a covert channel is a security flaw.

It is a part of a program or system that can cause the system to violate its security requirements.

It can be an electronic means of sending and hiding messages.

how is it useful to conceal pentest activity?

A covert channel is a hidden communication connection that allows hackers to remain stealthy. Mostly used for concealing activities and extracting data from a company, covert channels are created by installing a backdoor on a compromised machine inside the network.

Once installed, a reverse shell can be created to establish a connection with the outside machine belonging to the hacker. One way of doing this is with the use of the popular hacking platform Metasploit.

To test whether establishing a covert channel is doable, the penetration tester will identify firewall rules with the help of Firewalk, attempt to reach systems behind the firewall and examine the response of the arriving packets.


Related Solutions

What are the ways to conceal theft and what are the principles of internal control?
What are the ways to conceal theft and what are the principles of internal control?
Discuss what limited partnerships are. How did Enron use them to conceal its debt? At least...
Discuss what limited partnerships are. How did Enron use them to conceal its debt? At least 300 words
Discuss what limited partnerships are. How did Enron use them to conceal its debt? At least...
Discuss what limited partnerships are. How did Enron use them to conceal its debt? At least 300 words DO NOT COPY AND PASTE, use your own words.
What is docking and how is it useful?
What is docking and how is it useful?
What is behaviour? Give examples of overt and covert behaviour.
What is behaviour? Give examples of overt and covert behaviour.
How is activity-based costing useful for pricing decisions Answer in ur own words
How is activity-based costing useful for pricing decisions Answer in ur own words
What is mycorrhiza? How it is useful to plants?
What is mycorrhiza? How it is useful to plants?
What is the empirical rule? How is it useful?
What is the empirical rule? How is it useful?
What is mycorrhiza? How it is useful to plants?
What is mycorrhiza? How it is useful to plants?
Question is, is this activity a fraudulent one, ie stuffing the channel to pull in sales....
Question is, is this activity a fraudulent one, ie stuffing the channel to pull in sales. You all know the answer. It depends, there is nothing necessarily wrong about pulling in a sale, if there is a good business reason, and offering sales prices to do so is acceptable. But, if it is material and will create unnatural deficit in sales in the next quarter, as the customer will obviously not need more goods, it would be a problem if...
ADVERTISEMENT
ADVERTISEMENT
ADVERTISEMENT