Question

In: Computer Science

Part 1: In each of the following scenarios, tell whether there is a violation of confidentiality,...

Part 1: In each of the following scenarios, tell whether there is a violation of confidentiality, integrity, or availability, or some combination of the three. In addition, for each item, write a two- or three-sentence paragraph explaining why your answer is correct.

Alex disables Barbara's router by logging in remotely with the manufacturer's default password.

Mallory builds a WiFi jammer using plans she found on the Internet and jams wireless signals over a large part of her apartment building.

Charlene uses a key logger to capture Darla's banking password.

Eve rewrites the magetic stripe on a gift card to change the amount from $10 to $100.

(Adapted from an exercise in Bishop, Matt, Introduction to Computer Security.)

Part 2: Distinguish among vulnerability, exploit, threat, risk, and control mechanism (called "countermeasure" in chapter one of the text) in five brief paragraphs. If you do any research outside the textbook, which you are encouraged to do, be sure to cite your sources. You can see how to do that in An Example of Proper Writing in the "Required Reading" section.

Part 3: Using the tool at http://www.fileformat.info/tool/hash.htm, compute the SHA-256 checksum of the MS-Word file that is your work on this assignment so far, or some similar file if you don't have that one available. Copy the calculated cryptographic hash into Windows Notepad or word processing document to save it temporarily. Now change one character from a capital to a lowercase letter or vice-versa in the original document, re-save, and recompute the the cryptographic hash. Paste the old and new cryptographic hashes into your homework document. Be sure to identify which one is before and which is after.

Using the information from the textbook, explain at least two uses for a cryptographic hash, and explain how the experiment you just performed confirms those uses.

Do some research and explain in a paragraph or so what a "hash collision" is. Be sure to cite your research.

Part 4: Explain in a couple of paragraphs how public key encryption can be used to implement a digital signature. Be sure you are very clear on when a private key is used and when a public key is used.

Part 5: Generally, a digital signature involves encrypting a cryptographic hash, or digest, generated from the message. Explain why we do we not encrypt the message itself. You can answer this question in one sentence.

Part 6: For each of the following scenarios below, tell what type of encryption is most appropriate and in a sentence or two explain the reasoning for your choice.

Alice wants to send a confidential message to Bill, whom she has never met and who lives in a distant country.

Charlie wants to be sure that no one but he can see the financial and medical records he has stored on his computer.

David needs a way to check that large computer files stored on corporate servers have not been modified.

Eddard uses a "cloud" backup service; he wants to be sure the operators of the service cannot read his files.

Frank needs to send a message to George. The message need not be confidential, but George must be assured that it actually came from Frank.

Solutions

Expert Solution

Part 1:

a.) When Alex disables Barbara's root, it results in violation of availability as she is not able to connect her system to outside network till router is disabled.

b.) While using jammer, it causing violation of confidentiality as now she can see the data that is not intended to her.

c.) Similarly, key logger is used to get the private data such passwords therefore it also cause violation of confidentiality.

d.) Rewriting the rate results in violation of integrity as data is getting tampered in this case.

Part 4:

In digital signature, user digitally signed the data or encrypted the data using his private keywhile receiver verifies the signature using user's public key.

Part 5:

Possible reason for encrypting hash function rather than message itself is message is very large in size in comparison of hash key.

Part 6:

a.) In that case, Alice can public key encryption method. He can use Bill's public key to encrypt the message and send to him. We know message can be decrypted using Bill's private key and since only Bill has access to its private key, only he can decrypt the message.

b.) Charlie can use one-key encryption method as only he has access to that key then no one other than himself can see the actual data.

c.) In order to preserve integrity of the data, David can use hash function to convert the whole data into a message digest.

d.) In order to ensure that message is came from the intended person, Frank can digitally sign the message using his private key and at the receiving end George can verify it using Frank's public key.


Related Solutions

tell whether each of the following 4 scenarios represents more an efficiency or equity problem 9....
tell whether each of the following 4 scenarios represents more an efficiency or equity problem 9. A free market advocate asks why a government healthcare mandate should require all people to purchase health insurance equivalent to a “fully loaded Lexus.” 10. A man with headaches, caused by stress at work, wants an MRI because he thinks he may have a tumor. The doctor says that there is almost zero probability that he has a tumor, and she warns him that...
For each of the following three (3) scenarios, state two (2) violation of the Rules of...
For each of the following three (3) scenarios, state two (2) violation of the Rules of Professional Conduct: a) Bill Williams, CPA, began a telephone campaign to grow his client base. He began calling companies listed in the telephone directly within twenty (20) kilometres advising them of his accounting services. After making several phone calls, Bill finally landed a new audit client, Big Bob Autos. In order to secure this new business, Bill entered into an agreement with Bob whereby...
For each of the following scenarios, state whether there is or is not a contract, and...
For each of the following scenarios, state whether there is or is not a contract, and why: 1. Bob and Mary were talking at a bar on Thursday night. Bob wrote the following on coaster and handed it to Mary: “I promise to pay you $1,000 to dance with man at the bar in the Gray Shirt” Mary read the coaster, signed it, and danced with the man in the gray shirt. 2. Mr. Wilson said to 18 year old...
In each of the following scenarios, tell if the researcher has committed a Type I error,...
In each of the following scenarios, tell if the researcher has committed a Type I error, a Type II error, or made a correct decision. a. A researcher is testing to determine if .31 of all families own more than one car. His null hypothesis is that the population proportion is .31. He randomly samples 600 families and obtains a sample proportion of .33 that own more than one car. Based on this sample data, his decision is to fail...
Part 1: Please read the following scenarios. For each scenario, answer the following questions: a) what...
Part 1: Please read the following scenarios. For each scenario, answer the following questions: a) what is the independent variable, b) what is the dependent variable, and c) is this a between-subjects or within-subjects design? A child psychologist wants to determine the effects of cloth versus paper diapers on toilet training. Day-old infants will be used to begin the project. The age at which diapers are no longer needed (to the nearest week) will be determined. A researcher wants to...
1. For each of the following scenarios, graph the original and new equilibrium. Also, indicate whether...
1. For each of the following scenarios, graph the original and new equilibrium. Also, indicate whether the effect on the equilibrium price would be to increase it or decrease it. Likewise, indicate whether the equilibrium quantity would increase or decrease. Be sure to answer any additional questions that are included. a. The U.S. government finally stops making pennies (made mostly of copper) because consumers don’t want them and throw them in the trash. What would happen in the copper market?...
For this assignment, in each of the following five scenarios, indicate whether you consider the following...
For this assignment, in each of the following five scenarios, indicate whether you consider the following individual's behavior to be normal or abnormal. After deciding if the individual's behavior is normal or abnormal, defend your response by referencing the "4 D's" 1) A person drinks approximately three beers and three shots of liquor per day and sometimes has trouble remembering daily events in his life. 2) You see your neighbor trim his hedges with a pair of scissors and scrub...
For each of the following scenarios indicate whether they are an example of Newton's First Law...
For each of the following scenarios indicate whether they are an example of Newton's First Law or Netwon's Second Law and justify your choice. 1. A car travels down a staright highway at a constant velocity. 2. A bus driver suddenly hits the brakes. Passengers who were standing continue to move to the front of the bus and fall over each other. 3. A driver increases speed to pass another on the highway. 4. A comet moving through space suddenly...
For each of the following scenarios, identify whether or not process is random (e.g. random or...
For each of the following scenarios, identify whether or not process is random (e.g. random or non-random) and, if random, what distribution can be used to describe it (binomial, poisson, hyper-geometric, uniform, normal, exponential, or none of the listed before): 1. Counting the number of car accidents on Hamburg Turnpike between 8 and 9 AM on Mondays 2. Counting the number of houses in each block in the city 3. Recording scores from consecutive SAT test attempts 4. Counting the...
Gross Domestic Product Assignment : For each of the following scenarios determine whether or not it...
Gross Domestic Product Assignment : For each of the following scenarios determine whether or not it should be included in the U.S. GDP calculation. How much would each situation increase GDP by (you should be able to give me an exact number)? If a transaction does not count towards GDP give me an explanation on the definition requirement it does not satisfy and why. Unless otherwise stated, assume that all transactions are completed domestically, within a one year time period....
ADVERTISEMENT
ADVERTISEMENT
ADVERTISEMENT