
π‘οΈ qub-network-security-cve-2023-20198 Analysis, detection, and mitigation of CVE-2023-20198 exploitation in Cisco IOS XE π Queenβs University Belfast β CSC3064 Network Security Assessment π Assessment Overview This project involves analyzing PCAP files provided by Fox-IT to: β Identify Indicators of Compromise (IOCs) β Demonstrate exploitation using custom-crafted packets β Apply Snort IDS/IPS and iptables-based network security countermeasures π Repository Structure Slides/ β Presentation slides used in the video submission IOC Summary/ β Detailed breakdown of all network-level Indicators of Compromise Snort Rules/ β Alert and drop rules implemented in Snort, with visual proof Assessment PDF/ β Official CSC3064 assessment instructions from QUB Video/ β Demo presentation video (uploaded separately and linked below) Final IOC Summary | IOC Type | IOC Observed | What It Confirms | |ββββββ-|βββββββββββββββββββββββββ|βββββββββββββββββββ-| | IP Patterns | Attacker: 10.10.1.1, 10.10.0.1Victims: 10.10.1.69, 10.10.1.42 | Attack source and target devices identified | | Headers | User-Agent: Mozilla/5.0β¦Priv-Level: 15 | Browser impersonation and privilege escalation | | Protocols | TCP, HTTP (port 80),β¦Read More
Exploit for Unprotected Alternate Channel in Rockwellautomation Allen-Bradley Stratix 5200 Firmware

