Examine a known vulnerability present in software

Assignment Help Computer Network Security
Reference no: EM132622290

CTEC5803 Host and Network Security - De Montfort University

Vulnerability Investigation

Learning outcome 1: Design and maintain a defensible computer host.
Learning outcome 2: Apply relevant computer security principles, tools and techniques.
Learning outcome 3: Explain, critically analyse and evaluate host-based security principles, tools and techniques.
Learning outcome 4:
Solve problems systematically.

Tasks to be undertaken:

In this coursework you are expected to:

Part 1. Examine a known vulnerability present in software running on a host-machine or network component. The vulnerability should be chosen from one of the topic areas covered in the module. For example:

• Host-based security: software security, flaws in programs (buffer overflows, stack smashing), access control mechanisms (ACLs, UNIX file permissions, MAC, DAC, RBAC), authentication technologies (passwords, password management, biometrics, tokens, multi-factor)

• Network security: security protocols, cryptography (e.g., AES, RSA, digital signatures, key management (PKI, x.509)), link-layer security (e.g., ARP cache poisoning), transport-layer security (e.g., TLS), application-layer security (e.g., DNS/DNSSEC, firewalls, intrusion detection systems, wireless and mobile security)

Part 2. Analyse the underlying flaw, including describing technical details and making appropriate reference to the academic literature, the CVE and CWE databases.

Part 3. Find an exploit for this vulnerability and demonstrate how a successful attack can be launched in a virtual environment.

Part 4. Investigate how this particular attack can be detected, for example by a system administrator.

Part 5. Critically analyse countermeasures that can prevent or at least mitigate the risk of this attack, making appropriate reference to security design principles.

You will be given opportunity to find a suitable vulnerability during the lecture week and can ask advice from your tutor as to the feasibility of your choice.

Attachment:- Vulnerability Investigation.rar

Reference no: EM132622290

Questions Cloud

Advantages and disadvantages r programming language : Why are statistical programming languages important to data scientists? What are some advantages and disadvantages the R programming language
What are central values and beliefs set forth by theorist : What are the central values and beliefs set forth by the theorist? Which of the four metaparadigm concepts are included in the model?
What is the good forensic accountant : In the reading "What is the 'Good' Forensic Accountant? A Virtue Ethics Perspective", the author supports the use of a 'Virtue Ethics' approach
What is Dan s assessable income in the current tax year : Dan received a cheque for the net amount of $3600. In relation to the payment, what is Dan s assessable income in the current tax year
Examine a known vulnerability present in software : Examine a known vulnerability present in software running on a host-machine or network component. The vulnerability should be chosen from one of the topic areas
Three key attributes of human attackers : There are three key attributes of human attackers, What are your thoughts on this topic?
Find the depreciation for the current fiscal year : Equipment acquired, Determine the depreciation for the current fiscal year and for the following fiscal year by the double-declining-balance method.
Explain the capm concept : Explain the CAPM concept and discuss the interrelationship of its three components in accounting for systematic and unsystematic risk.
How do you encourage and ensure your team works together : How do you encourage and ensure your team works together, and how do you support that structure? Give an example with your explanation.

Reviews

Write a Review

Computer Network Security Questions & Answers

  An overview of wireless lan security - term paper

Computer Science or Information Technology deals with Wireless LAN Security. Wireless LAN Security is gaining importance in the recent times. This report talks about how vulnerable are wireless LAN networks without any security measures and also talk..

  Computer networks and security against hackers

This case study about a company named Magna International, a Canada based global supplier of automotive components, modules and systems. Along with the company analysis have been made in this assignment.

  New attack models

The Internet evolution is and is very fast and the Internet exposes the connected computers to attacks and the subsequent losses are in rise.

  Islamic Calligraphy

Islamic calligraphy or Arabic calligraphy is a primary form of art for Islamic visual expression and creativity.

  A comprehensive study about web-based email implementation

Conduct a comprehensive study about web-based email implementation in gmail. Optionally, you may use sniffer like wireshark or your choice to analyze the communication traffic.

  Retention policy and litigation hold notices

The purpose of this project is to provide you with an opportunity to create a document retention policy. You will also learn how to serve a litigation hold notice for an educational institute.

  Tools to enhance password protection

A report on Tools to enhance Password Protection.

  Analyse security procedures

Analyse security procedures

  Write a report on denial of service

Write a report on DENIAL OF SERVICE (DoS).

  Phising email

Phising email It is multipart, what are the two parts? The HTML part, is it inviting the recepient to click somewhere? What is the email proporting to do when the link is clicked?

  Express the shannon-hartley capacity theorem

Express the Shannon-Hartley capacity theorem in terms of where is the Energy/bit and is the psd of white noise.

  Modern symmetric encryption schemes

Pseudo-random generators, pseudo-random functions and pseudo-random permutations

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd