Was the tjx break-in due to a single security weakness

Assignment Help Computer Network Security
Reference no: EM13336743

Answer the following questions :

1. The total processing speed of microprocessors (based on clock rate and number of circuits) is doubling roughly every year. Today, a symmetric session key needs to be 100 bits long to be considered strong. How long will a symmetric session key have to be in 30 years to be considered strong?

2. How do NIST criteria for selection of DES and AES relate to Shanon's original standards of a good cryptographic system? What are the significant differences? How do these standards reflect a changed environment many years after Shannon wrote his standards?

3. A program is written to compute the sum of the integers from 1 to 10. The programmer, well trained in reusability and maintainability, writes the program so that it computes the sum of the numbers from k to n. However, a team of security specialists scrutinizes the code. The team certifies that this program properly sets k to 1 and n to 10; therefore, the program is certified as being properly restricted in that it always operates on precisely the range 1 to 10.

(a) Explain different ways that this program can be sabotaged so that during execution it computes a different sum, for example, 3 to 20.

(b) One means of limiting the effect of an untrusted program is confinement: controlling what processes have access to the untrusted program and what access the program has to other processes and data. Explain how confinement would apply to the above example.

4. The distinction between a covert storage channel and a covert timing channel is not clear-cut. Every timing can be transformed into an equivalent storage channel. Explain how this transformation could be done.

Part B :

1. Research the TJX data breach caseon the web and answer the following questions.
a. Was the TJX break-in due to a single security weakness or multiple security weaknesses? Explain.
b. Suggest a set of measures which probably would have prevented the TJX data breach. Justify your answer.
c. Which of the CIA goals did TJX fail to achieve in this attack?

Reference no: EM13336743

Questions Cloud

Find the mass flow rate : Refrigerant-22 enters a turbine at 300 psi, 280°F, 2000 ft3/hr. The exit is at 15 psi, 10°F. Find the mass flow rate
Explain place drying tube filled with cacl2 on condenser : Place drying tube filled with CaCl2 on condenser. Heat to reflux at 190 C for 25 minutes then cool. Add 0.5mL tolulene and petroleum ether 0.5-0.75 mL until slight cloudiness remains. Reheat until clear and cool in ice bath. Collect product and wa..
Determine the moment of inertia of the pulley : Two blocks, one of 50 g and the other of 46 g, are connected by a string and hung over a frictionless pulley which has a radius of 5 cm. What is the moment of inertia of the pulley
Evaluate the value of ksp for pbf2 : One liter of water will dissolve 2.15* 10^-3 mol of PbF2 at 25 degrees c. Calculate the value of ksp for PbF2.
Was the tjx break-in due to a single security weakness : Explain different ways that this program can be sabotaged so that during execution it computes a different sum, for example, 3 to 20.
What is its angular velocity and its total kintetic energy : A 20 kg piece of steel pipe that is 20 cm in diameter, 80 cm long, What is its angular velocity and its total kintetic energy
Define the heat capacity of the bomb : Its volume has been accurately determine to be 3226.7kj/m. 2.5127 gm benzoic acid are burned in a carorimter the temperatuer rises from 20.84 to 25.67degree. What is the heat capacity of the bomb.
Explain the hybridization of the central atom : Predict the electron-domain geometry, the molecular geometry, and the hybridization of the central atom. For each non ionic species, state whether it will be polar or nonpolar. a) SeO2 b) XeF4 c) PCL5 d) BrF2-
Calculate thickness of layer between 1000 and 500mb : Calculate the thickness of the layer between the 1000- and 500mb pressure surfaces (a) at a point in the tropics where the mean virtual temp of the layer is 9C and (b) at a point in the polar regions

Reviews

Write a Review

Computer Network Security Questions & Answers

  How many bits is the encrypted message

Based on the understanding of Q4 of Bart B, use the generated keys of Q2 - Part C to encrypt the message of Q1 - Part C using the Simplified DES algorithm.

  Explaining ethical issues and the abuse of privacy

Search the Internet for good examples of cases that involve ethical issues and the abuse of privacy. Provide a review and analysis of your findings.

  Is protocol secure for sharing secrets on server computer

Suppose that Alice shares secret with her company's server computer. When Alice is on trip, she tries to store important message in CEO's account directory. Is this protocol secure? If not, how do you feel it could be modified to make it so?

  What category information is collected by the site

Information has many facets: value, confidentiality, integrity, privacy, legality, and so on. All information is not the same and hence its protection requirements may vary.

  Explain the difference between the client and the server

What is the difference between the client and the server. What is the difference between server-side and client-side scritping? Why are they separate

  Discuss the steps necessary to make electronic evidence

Identify and discuss the steps necessary to make electronic evidence admissible in court and identify various crimes and incidents that are involved in electronic forensic investigations.

  Encryption and decryption of the vigenere cipher

Implement both encryption AND decryption of the Vigenere cipher with 26 English letters and 1 space character "_" in its tableau as shown in class.

  Explain why you were unable to complete this part

Modify the attached code to include a exportToJSON method within the Cave object. This method should output the JSON version of our Cave, which should be identical to the JSON within Cave.dat for that particular Cave.

  Discuss any threats to priva

Companies would share. sign-on Information for any Weh user Mb 0 agree to participate. They would also share personal Information such as call card dela, billing addresses, and personal preferences.

  Cryptography assignment

cryptography assignment:  Consider the following problems: (P1) computing the output p from an input n; (P2) computing the output phi(n) from an input n. Which one of the following statements is true?

  Explain the concepts of information systems security

Explain the concepts of information systems security as applied to an IT infrastructure and describe how malicious attacks, threats, and vulnerabilities impact an IT infrastructure.

  What will be the minimal length of the key

If Encrypt-It-Rite would like to increase the average cracking time to at least 100 years, what will be the minimal length of the key?

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd