You are on page 1of 8

Course: SCS-101

(OJT-CS2):
Practical part:

1) Using a suitable tool demonstrate brute force and dictionary attacks. You are required to
demonstrate the given attacks for a lists of users and a list of possible passwords (dictionary).
You can use a service of your own choice to demonstrate the attacks. 30 points

Using Hydra

Add New user in kali


Start SSH Services
Single Username/Password Attack with Hydra

Password Spraying Attack with Hydra


Dictionary Attack with Hydra
2) Demonstrate “Password stealing” using social engineering attacks by using a suitable scenario of
your own choice.

30 points

Social Engineering Toolkit


Login and Password details
are visible

You might also like