What it is
A CSE 468 Computer Network Security project. Operating systems disagree about how to reassemble IP fragments that overlap: some keep the data from the first fragment, others keep the last. That difference is visible from outside, so it can identify the OS on a remote host.
What I built
Overlapping IP fragment sequences crafted in Scapy, sent to probe each target’s reassembly behavior (first fragment wins or last fragment wins). I used the results to fingerprint remote operating systems.
Alongside it, I analyzed DNS, traceroute and PCAP captures, and worked through problem sets on RSA, AES, entropy, FFT and birthday attacks.