Total processing speed of microprocessors

Assignment Help Basic Computer Science
Reference no: EM13936477

Task Part A : 1. The total processing speed of microprocessors (based on clock rate and number of circuits) is doubling roughly every year. Today, a symmetric session key needs to be 100 bits long to be considered strong. How long will a symmetric session key have to be in 30 years to be considered strong?

2. How do NIST criteria for selection of DES and AES relate to Shanon's original standards of a good cryptographic system? What are the significant differences? How do these standards reflect a changed environment many years after Shannon wrote his standards? -

3. A program is written to compute the sum of the integers from 1 to 10. The programmer, well trained in reusability and maintainability, writes the program so that it computes the sum of the numbers from k to n. However, a team of security specialists scrutinizes the code. The team certifies that this program properly sets k to 1 and n to 10; therefore, the program is certified as being properly restricted in that it always operates on precisely the range 1 to 10.

(a) Explain different ways that this program can be sabotaged so that during execution it computes a different sum, for example, 3 to 20. -

(b) One means of limiting the effect of an untrusted program is confinement: controlling what processes have access to the untrusted program and what access the program has to other processes and data. Explain how confinement would apply to the above example. - 15.

The distinction between a covert storage channel and a covert timing channel is not clear-cut. Every timing can be transformed into an equivalent storage channel. Explain how this transformation could be done. - 

Part B :

1. Research the TJX data breach case on the web and answer the following questions.

a. Was the TJX break-in due to a single security weakness or multiple security weaknesses? Explain.

b. Suggest a set of measures which probably would have prevented the TJX data breach. Justify your answer.

c. Which of the CIA goals did TJX fail to achieve in this attack? Rationale This assessment task is based on the following topics discussed in the subject: the overview of Information security fundamentals, security threats, cryptography, malicious software and its countermeasures, operating system security and software security . The assessment task is aligned with the following learning outcomes of the subject: On successful completion of this subject, students will be able to justify security goals and the importance of maintaining the secure computing environment against digital threats; be able to explain the fundamental concepts of cryptographic algorithms; be able to examine malicious activities that may affect the security of a computer program and justify the choice of various controls to mitigate threats. Marking criteria Assessment criteria

PART A :

Assessable Components HD 100% - 85% DI 84% - 75% CR 74% - 65% PS 64% - 50% FL 49% - 0 Q.1 (5 marks) - Correct length of symmetric session key along with detailed explanation. Correct length of symmetric key along with in depth explanation. Supporting reference/(s); fluent writing style appropriate to assignment with proper in text citation. Correct length of symmetric key along with reasonable level of explanation. Very minor omissions only.

Supporting reference/(s); fluent writing style appropriate to assignment with proper in text citation. Correct length of symmetric key along with reasonable level of explanation; Minor omissions in the explanation.

Supporting reference/(s); fluent writing style appropriate to assignment with proper in text citation. Minor omissions. Correct length of symmetric key along with limited explanation.

Supporting reference/(s); writing style appropriate to assignment with proper in text citation. Some omissions. Major omissions or incorrect answers. Either no evidence of literature being consulted or cited references irrelevant to the assessment set. Major errors in referencing style. Possible marks 5.0 - 4.25 4.2 - 3.75 3.7 - 3.25 3.2 - 2.5 2.45 - 0 Q.2

- Relationship between NIST criteria for selection of DES and AES and Shanon's original standards.

- Their significant differences.

- How do these standards reflect a changed environment many years after Shannon wrote his standards? Comprehensive knowledge and in depth explanation of the three assessable components.

Supporting reference/(s); fluent writing style appropriate to assignment with proper in text citation. Reasonable knowledge and in depth explanation of the three assessable components. Very minor omissions only. Supporting reference/(s); fluent writing style appropriate to assignment with proper in text citation. Good knowledge of the three assessable components along with appropriate explanation. Some omissions.

Supporting reference/(s); fluent writing style appropriate to assignment with proper in text citation. Minor omissions. Addressed the three assessable components mostly correctly along with limited explanation.

Supporting reference/(s); writing style appropriate to assignment with proper in text citation. Some omissions. Major omissions or incorrect answers. Either no evidence of literature being consulted or cited references irrelevant to the assessment set. Major errors in referencing style. Possible marks 15.0 - 12.75 12.6 - 11.25 11.10 - 9.75 9.60 - 7.5 7.35 - 0 Q.3(a) 

- Listing of different ways that the program can be sabotaged so that during execution it computes a different sum. - Explanation for each. Multiple (more than three) possible ways have been listed along with in depth explanation.

Supporting reference/(s); fluent writing style appropriate to assignment with proper in text citation. Multiple (minimum three) possible ways have been listed along with in depth explanation. Very minor omissions only.

Supporting reference/(s); fluent writing style appropriate to assignment with proper in text citation. Multiple possible (minimum three) ways have been listed along with explanation. Some omissions.

Supporting reference/(s); fluent writing style appropriate to assignment with proper in text citation. Minor omissions. At least two ways have been listed correctly along with limited explanation.

Supporting reference/(s); writing style appropriate to assignment with proper in text citation. Some omissions. Major omissions or incorrect answers. Either no evidence of literature being consulted or cited references irrelevant to the assessment set. Major errors in referencing style. Possible marks 10.0 - 8.5 8.4 - 7.5 7.4 - 6.4 6.4 - 5 4.9 - 0

Q.3(b) 

- Understanding of the concept of confinement.

- Explanation of how confinement would apply to the given example. Demonstrated clear understanding of the concept of confinement; comprehensive knowledge and in depth explanation of how this concept can be applied to the given example. Supporting reference/(s); fluent writing style appropriate to assignment with proper in text citation. Demonstrated clear understanding of the concept of confinement; comprehensive knowledge and in depth explanation of how this concept can be applied to the given example. Minor omissions only.

Supporting reference/(s); fluent writing style appropriate to assignment with proper in text citation. Demonstrated clear understanding of the concept of confinement; good explanation of how this concept can be applied to the given example. Some omissions.

Supporting reference/(s); fluent writing style appropriate to assignment with proper in text citation. Minor omissions. Mostly correct explanation of how the concept of confinement can be applied to the given example. Some omissions. Supporting reference/(s); writing style appropriate to assignment with proper in text citation.

Some omissions. Major omissions or incorrect answers. Either no evidence of literature being consulted or cited references irrelevant to the assessment set. Major errors in referencing style. Possible marks 15.0 - 12.75 12.6 - 11.25 11.10 - 9.75 9.60 - 7.5 7.35 - 0 Q.4 (15 marks) - Understanding of the concept of covert storage channel.

- Understanding of the concept of covert timing.

- Detailed explanation of how timing can be transformed into an equivalent storage channel. Comprehensive knowledge of covert storage channel and covert timing; in depth explanation of how timing can be transformed into an equivalent storage channel.

Supporting reference/(s); fluent writing style appropriate to assignment with proper in text citation. Comprehensive knowledge of covert storage channel and covert timing; in depth explanation of how timing can be transformed into an equivalent storage channel. Minor omissions only. Supporting reference/(s); fluent writing style appropriate to assignment with proper in text citation. Good knowledge of covert storage channel and covert timing;correct explanation of how timing can be transformed into an equivalent storage channel. Some omissions.

Supporting reference/(s); fluent writing style appropriate to assignment with proper in text citation. Minor omissions. Mostly correct explanation of how timing can be transformed into an equivalent storage channel. Some omissions. Supporting reference/(s); writing style appropriate to assignment with proper in text citation. Some omissions.

Major omissions or incorrect answers. Either no evidence of literature being consulted or cited references irrelevant to the assessment set. Major errors in referencing style. Possible marks 15.0 - 12.75 12.6 - 11.25 7.4 - 6.4 9.60 - 7.5 7.35

- 0 PART B: 20 marks Q.1 (20 marks) - Was the TJX break-in due to a single security weakness or multiple security weaknesses? Explain.

- Suggest a set of measures which probably would have prevented the TJX data breach. Justify your answer.

- Which of the CIA goals did TJX fail to achieve in this attack? Evidence of high level of research. Comprehensive knowledge and in depth explanation of the three assessable components.

Supporting reference/(s); fluent writing style appropriate to assignment with proper in text citation. Evidence of high level of research. Reasonable knowledge and in depth explanation of the three assessable components. Very minor omissions only. Supporting reference/(s); fluent writing style appropriate to assignment with proper in text citation. Reasonable level of research. Good knowledge of the three assessable components along with appropriate explanation. Some omissions.

Supporting reference/(s); fluent writing style appropriate to assignment with proper in text citation. Minor omissions. Addressed the three assessable components mostly correctly along with limited explanation.

Supporting reference/(s); writing style appropriate to assignment with proper in text citation. Some omissions. Major omissions or incorrect answers. Either no evidence of literature being consulted or cited references irrelevant to the assessment set. Major errors in referencing style. Possible marks 20.0 - 17 16.9 - 15 14.9 - 13 12.9 - 10 9.4 - 0 Presentation Submit the assignment in ONE word or pdf file on EASTS. Please do not submit *.zip or *.rar or multiple files. Follow the referencing guidelines for APA 6 as specified in Referencing Guides.

Reference no: EM13936477

Questions Cloud

Network requirements of the user and design : Create the designed file and folder structure using appropriate administration and system tools. Document the file system using a security matrix.
Infrastructure as a service (iaas) from a cloud service : An organization is planning to use Infrastructure as a Service (IaaS) from a cloud service provider to host their web site and e-commerce applications. This will consist of an appropriate number of suitably sized Linux Virtual Servers and Virtual ..
Why alcoholic acidity is determined : Why alcoholic acidity is determined and ash content is important factor in wheat flour?
What is probability of observing five operational risk event : What is the probability of observing five operational risk events in a single year for the 2000-2007 period?
Total processing speed of microprocessors : Task Part A : 1. The total processing speed of microprocessors (based on clock rate and number of circuits) is doubling roughly every year. Today, a symmetric session key needs to be 100 bits long to be considered strong. How long will a symmetric..
Explain about enterprise architecture of automotive industry : Explain a bit further. When we talk about enterprise architecture, we strategically consider the alignment of business, applications, data, and technologies. How does this fit with your thoughts on the automotive industry
Gluconeogesis and glycogenesis : What is the difference between gluconeogesis and glycogenesis?
Parallel ß-strands : Parallel β-strands:-running in the same N- to C-terminal direction)-hydrogen bonds are NOT perpendicular
Reflect the assumed transactions of a sole proprietorship : Reflect the assumed transactions of a sole proprietorship for each of twelve months and prepare books of accounts for each of the month then balance the accounts on quarterly basis and prepare the: Quarterly trial balances;

Reviews

Write a Review

Basic Computer Science Questions & Answers

  Security being a top concern for any organisation

Task Task: Security being a top concern for any organisation, choosing the correct security solutions is of utmost importance. Consider an area of information technology (IT) security, such as, network security, e-mail security, database security ..

  What specific data about the entities will need to be stored

The system will need to record data about what entities? What specific data about the entities will need to be stored?

  Write a house class that has the following properties

Total number of rooms ( calculated: number of bedrooms + formal dining room if present + 1 for kitchen)Number of baths (house can have any number of 1/2 bath or 1/4 of a bath in addition to a full bath - example 1.5, 1.75 or 1.25 bath)

  Describe how to develop users for sales organization unit

Describe how you would develop users for sales organization unit and how you can set up work groups in this particular situation.

  Describe the risks associated with not fulfilling activities

Describe the risks associated with not fulfilling the activities outlined within your maintenance plan. Indicate specific activities, personnel / resources required, and frequency of execution.

  Assume you are the it manager for an organization tasked wit

Assume you are the IT manager for an organization tasked with evaluating whether or not to deploy internal wireless access for employees. Discussing the advantages and disadvantages of deploying a WLAN in an organization. Compare the benefits and ris..

  Write same program in same language without using structs

Write the same program in the same language without using structs. Your program should input three elements into the array.Write the same program in the same language without using structs. Your program should input three elements into the array.

  What is chained exceptions in java

What is chained exceptions in java? Explain different layout manager in Java.

  Calculation for programming and machine independency

Assume f is a function that returns the result of reversing string of symbols given as its input, and g is a function that returns concatenation of the 2-strings given as its input. If x is the string abcd,

  Expressions to a minimum sop or pos

Simplify each of the subsequent expressions to a minimum SOP or POS and sketch the circuit using AND, OR, and NOT gates.

  Why do you need to run both zenmap gui and nessus

Why do you need to run both Zenmap GUI and Nessus to perform the first three steps of the hacking process

  Notes on lyt2

seabreeze is a fictional, midsize city in southern California. Once prosperous due to its enviable location on the coastline, the city has undergone a change in fortune.

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd