Describe how an attacker might conduct this type of attack

Assignment Help Computer Engineering
Reference no: EM133473133

Assignment: Cyberlaws and Ethical Hacking Project- SQL Injection Response

Scenario

Aim Higher College just learned that sensitive information has been stolen from a student information system and posted on the Web. After reviewing web server and database logs, the Aim Higher IT security team believes that the source of the problem is a SQL injection vulnerability. The vulnerability appears to exist in a web application used by students to register for courses. As part of the incident response report to be submitted to Aim Higher College's management staff, your supervisor asks you to provide details about this type of vulnerability, how an attacker might exploit it, and methods of detection and removal.

Task

Research SQL injection attacks on the Internet to supplement your existing knowledge. Using the information you discovered during this research, in conjunction with what you learned in class, write an incident response report for Aim Higher College's management detailing the following information:

I. A non-technical description of SQL injection vulnerabilities intended for a college management audience.

II. The threat that SQL injection poses to the college's data. Include three possible scenarios that describe how an attacker might conduct this type of attack, the information that they may be able to obtain, and how they might use it maliciously.

III. An implementation plan to fortify the college's web applications against SQL injection attacks

IV. A monitoring plan that will provide:

1. Early warning to developers and security administrators that a SQL injection vulnerability exists in a web application

2. Detection of successful and unsuccessful attempts to conduct SQL injection attacks against college systems

Reference no: EM133473133

Questions Cloud

What do you think this statement means : What do you think this statement means? Bring in at least two artists that were covered in this course to back up your argument
How has engagement with david brooks : How has engagement with David Brooks The Road to Character influenced how to think about your own life journey and the society that is the context
What is he saying about african americans in the navy : I had to kick their law into their teeth in order to save them," what is he saying about African Americans in the Navy and his heroic act
What is krebs relationship with his sister like : How does the vision of Germany and the Rhine in the second paragraph contrast with the description in the first paragraph? What does this tell you
Describe how an attacker might conduct this type of attack : Describe how an attacker might conduct this type of attack, the information that they may be able to obtain, and how they might use it maliciously.
What does olaudah equiano''s experience of the middle passage : What does Olaudah Equiano's experience of the Middle Passage reveal about the lived experience of the Atlantic Slave trade? , Use some specific evidence
Consider for example that the number one job of a legislator : Consider for example that the number one job of a legislator is to be reelected. Cost can be measured in votes as well as dollars.
How did global exchange create new patterns : How did global exchange create new patterns of consumption and social interaction and what ways did those new patterns shape understandings and displays
How are you doing now that you finished the book : How are you doing now that you finished the book? Are there any other questions you would suggest to help students get to the heart of this book

Reviews

Write a Review

Computer Engineering Questions & Answers

  Mathematics in computing

Binary search tree, and postorder and preorder traversal Determine the shortest path in Graph

  Ict governance

ICT is defined as the term of Information and communication technologies, it is diverse set of technical tools and resources used by the government agencies to communicate and produce, circulate, store, and manage all information.

  Implementation of memory management

Assignment covers the following eight topics and explore the implementation of memory management, processes and threads.

  Realize business and organizational data storage

Realize business and organizational data storage and fast access times are much more important than they have ever been. Compare and contrast magnetic tapes, magnetic disks, optical discs

  What is the protocol overhead

What are the advantages of using a compiled language over an interpreted one? Under what circumstances would you select to use an interpreted language?

  Implementation of memory management

Paper describes about memory management. How memory is used in executing programs and its critical support for applications.

  Define open and closed loop control systems

Define open and closed loop cotrol systems.Explain difference between time varying and time invariant control system wth suitable example.

  Prepare a proposal to deploy windows server

Prepare a proposal to deploy Windows Server onto an existing network based on the provided scenario.

  Security policy document project

Analyze security requirements and develop a security policy

  Write a procedure that produces independent stack objects

Write a procedure (make-stack) that produces independent stack objects, using a message-passing style, e.g.

  Define a suitable functional unit

Define a suitable functional unit for a comparative study between two different types of paint.

  Calculate yield to maturity and bond prices

Calculate yield to maturity (YTM) and bond prices

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd