CYBER.ORG: AP Cybersecurity – Lesson 2.4.11 – Lab Activity – Pass the Hash

Objective:

  • Students will analyze potential indicators associated with application attacks.

Standards:

CompTIA Security+ SYO-701 Objective:
2.4 – Given a scenario, analyze indicators of malicious activity

  • Application Attacks
    • Replay
    • Privilege escalation
    • Directory traversal

Guiding Question:

What are some common application attacks including replay, privilege escalation and directory traversal and how can you defend against them?

Resources:

  • Lesson 2.4.11 – Application Attacks Part 1.pptx and Lab – Pass the Hash.pptx Presentations available on Google Classroom

Assignment:

  1. Review the Lesson 2.4.11 – Application Attacks Part 1.pptx presentation, if necessary.
  2. Complete the Lab – Pass the Hash.pptx Activity in class using the materials provided in Google Classroom.
  3. To confirm completion the lab activity, upload a screenshot displaying your successful administrative login in the Meterpreter session on the Kali Linux machine to today’s Google Classroom post.
    • Note: You will need to complete yesterday’s Privilege Escalation lab to locate the Windows Password Hashes for use in this lab!

Assigned: November 20th, 2025
Teacher Pacing Due Date: November 21st, 2025