
End-to-end cybersecurity project demonstrating detection and mitigation of CVE-2024-38063 using IDS, host-based monitoring, and virtual lab attack simulation.
Author: Rohit Malik | Domain: Cybersecurity | Type: Group Academic Project | Purpose: Portfolio & Educational
This project is a group-based cybersecurity implementation focused on detecting and mitigating a real-world critical vulnerability -CVE-2024-38063 -in a controlled virtual environment.
The work demonstrates how security engineers analyse vulnerabilities, design detection mechanisms, and apply layered mitigation strategies when immediate patches are not available or practical to deploy.
Group Project -3 Members
The objective of this project was to:
CVE-2024-38063 -Windows TCP/IP Remote Code Execution
| Property | Details |
|---|---|
| CVE ID | CVE-2024-38063 |
| Severity | Critical |
| CVSS Score | 9.8 |
| Attack Vector | Network-based, exploiting IPv6 packet handling |
| Impact | System crash or unauthenticated remote code execution |
| Affected Systems | Windows OS with IPv6 enabled |
| Stage | Description |
|---|---|
| Topic Proposal | Initial vulnerability analysis and proposed approach |
| Design Report | Detection and mitigation system architecture and design |
| Implementation Report | Lab setup, simulation results, and testing outcomes |
| Category | Tools |
|---|---|
| Intrusion Detection | Suricata IDS |
| Host Monitoring | Sysmon |
| Attack Platform | Kali Linux |
| Target Systems | Windows OS, Ubuntu |
| Virtualisation | VirtualBox |
| Network Analysis | Network Monitoring Tools |
| Concept | Application |
|---|---|
| Vulnerability Assessment | Analysing CVE-2024-38063 root cause, attack vector, and impact |
| Intrusion Detection | Deploying and configuring Suricata IDS for network-level detection |
| Host-Based Monitoring | Using Sysmon to capture system-level indicators of compromise |
| Log Correlation | Combining network and host logs to confirm exploitation attempts |
| Mitigation Design | Applying layered controls including firewall rules and IPv6 restriction |
| Lab-Based Testing | Simulating real attack conditions in a controlled virtual environment |
| Threat Detection | Validating detection mechanisms before and after mitigation |
This project was conducted entirely in a controlled virtual lab environment for educational and academic purposes only. No real-world systems were targeted or affected.
This project is shared for portfolio and educational purposes. If you use or reference this work, please provide appropriate credit to the author.
Rohit Malik Email: [email protected] GitHub: RohitMalik7 Location: Dubai, UAE