Examine a known vulnerability present in software running

Assignment Help Computer Networking
Reference no: EM132511032

Assignment Tasks - In this coursework you are expected to:

1. Examine a known vulnerability present in software running on a host-machine or network component. The vulnerability should be chosen from one of the topic areas covered in the module. For example:

- Host-based security: software security, flaws in programs (buffer overflows, stack smashing), access control mechanisms (ACLs, UNIX file permissions, MAC, DAC, RBAC), authentication technologies (passwords, password management, biometrics, tokens, multi-factor)

- Network security: security protocols, cryptography (e.g., AES, RSA, digital signatures, key management (PKI, x.509)), link-layer security (e.g., ARP cache poisoning), transport-layer security (e.g., TLS), application-layer security (e.g., DNS/DNSSEC, firewalls, intrusion detection systems, wireless and mobile security)

2. Analyse the underlying flaw, including describing technical details and making appropriate reference to the academic literature, the CVE and CWE databases.

3. Find an exploit for this vulnerability and demonstrate how a successful attack can be launched in a virtual environment.

4. Investigate how this particular attack can be detected, for example by a system administrator.

5. Critically analyse countermeasures that can prevent or at least mitigate the risk of this attack, making appropriate reference to security design principles.

You will be given opportunity to find a suitable vulnerability during the lecture week and can ask advice from your tutor as to the feasibility of your choice.

A report that includes:

An executive summary that summarizes the report, including a clear description of the achievements as well as the personal developments achieved.

A technical analysis of the vulnerability and the underlying flaw as well as detection, mitigation and countermeasures for the attack.

A step-by-step guide for setting up the system for the attack scenario (in a Virtual Machine environment to avoid affecting real systems) as well as execution, detection and mitigation of the attack scenario. This guide should be sufficient to reproduce the attack in the GH 5.53 forensic lab environment.

A short critical reflection on the work undertaken and the personal development achieved.

The report must make appropriate references to the academic literature to substantiate the findings.

Reference no: EM132511032

Questions Cloud

What do the investment criteria say about accepting project : What do the investment criteria say about accepting or rejecting the project? What is the discounted payback period? What is the Profitability Index?
Response to Claims-Counter-Claims : Find a current research article (published within the last 4 years) on a topic that is related to Response to Claims: Counter-Claims.
What is the weighted average contribution margin ratio : Saldina Hardware places an advertisement in the local paper each week. All else equal, which department would you emphasize in the advertisement?
Calculate total manufacturing overhead costs : Calculate Direct material used, Total manufacturing overhead costs, Cost of goods manufactured, Cost of goods sold, Total conversion costs.
Examine a known vulnerability present in software running : Examine a known vulnerability present in software running on a host-machine or network component. Find an exploit for this vulnerability
Identify a structure or substance that affords : Choose a plant from any of the different phyla you have studied and identify a structure or substance that affords it some distinct benefit
Determine the incremental income or loss : Determine the incremental income or loss that Bradley Toys would realize by accepting the special order. Bradley Toys produces giant stuffed bears.
What is similar about the chromosomes : What is similar about the chromosomes that each parent passes on to their offspring in humans, juncos, and pigeons?
Pedigree of the inheritance of the genetic disorder mecp2 : What would a pedigree of the inheritance of the genetic disorder MECP2 Duplication Syndrome look like?

Reviews

Write a Review

Computer Networking Questions & Answers

  Networking and types of networking

This assignment explains the networking features, different kinds of networks and also how they are arranged.

  National and Global economic environment and ICICI Bank

While working in an economy, it has a separate identity but cannot operate insolently.

  Ssh or openssh server services

Write about SSH or OpenSSH server services discussion questions

  Network simulation

Network simulation on Hierarchical Network Rerouting against wormhole attacks

  Small internet works

Prepare a network simulation

  Solidify the concepts of client/server computing

One-way to solidify the concepts of client/server computing and interprocess communication is to develop the requirements for a computer game which plays "Rock, Paper, Scissors" using these techniques.

  Identify the various costs associated with the deployment

Identify the various costs associated with the deployment, operation and maintenance of a mobile-access system. Identify the benefits to the various categories of user, arising from the addition of a mobile-access facility.

  Describe how the modern view of customer service

Describe how the greater reach of telecommunication networks today affects the security of resources which an organisation provides for its employees and customers.

  Technology in improving the relationship building process

Discuss the role of Technology in improving the relationship building process Do you think that the setting of a PR department may be helpful for the ISP provider? Why?

  Remote access networks and vpns

safekeeping posture of enterprise (venture) wired and wireless LANs (WLANs), steps listed in OWASP, Securing User Services, IPV4 ip address, IPV6 address format, V4 address, VPN, Deploying Voice over IP, Remote Management of Applications and Ser..

  Dns

problems of IPV, DNS server software, TCP SYN attack, Ping of Death, Land attack, Teardrop attack, Smurf attack, Fraggle attack

  Outline the difference between an intranet and an extranet

Outline the difference between an intranet and an extranet A programmer is trying to produce an applet with the display shown in Figure 1 below such that whenever one of the checkboxes is selected the label changes to indicate correctly what has..

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd