Is there a flaw in this scheme

Assignment Help Computer Engineering
Reference no: EM13311393

Assignment 1 consists of 2 parts:
• Part A
• Part B

Part A:

Part A of this assignment will comprise 5 quizzes to be conducted within the first hour of each of your allocated tutorial classes held in weeks 2 to 6 (both inclusive). Each quiz consists of true/false, multiple-choice and short-answer questions. The lecture material covered in the week prior to the quiz will be the topic of the quiz. For example, LN1- Introduction will be the topic of quiz 1 held in week 2.

 

PART B: Assignment Questions
1. Assuming you can do 220 encryptions per second, and key size is 40 bits:
a. How long would a brute force attack take?
b. Give a scenario where this brute force attack would be practical and another where it wouldn't.
c. What happens if you double the key size? [1+2.5+1.5= 5]

2. Alice and Bob agree to communicate privately via email using a scheme based on RC4, but they want to avoid using a new secret key for each transmission. Alice and Bob privately agree on a 128-bit key k. To encrypt a message m consisting of a string of bits, the following procedure is used:
i. Choose a random 80-bit value v
ii. Generate the ciphertext c=RC4(v⊕k)⊕ m
iii. Send the bit string (v⊕c)
Where (a⊕b) is the concatenation of a and b bits; and
a⊕ b= a XOR b;
Answer the following:
a. Suppose Alice uses this procedure to send a message to Bob. Describe how Bob can recover the message m from (v⊕c) using k.
b. If an adversary observes several values of (v1⊕c1), (v2⊕c2), ... transmitted between Alice and Bob, how can he/she determine when the same key stream has been used to encrypt two messages?
c. If Alice and Bob agree to use 16-bit Cipher Feedback (CFB) mode instead of RC4, and a bit error occurs in the transmission of a ciphertext; how far does the error propagate?

3. Suppose John suggests the following way to confirm that the two of you are both in possession of the same secret key of length 128 bits. You create a random bit string whose length is the same as the length of the key, XOR it with the key, and send the result over the communication channel. John XORs the incoming block with the key (which should be same as your key) and sends it back. You check, and if what you receive is your original random string, then you have verified that John has the same secret key, yet neither of you has transmitted the key.
a. Is there a flaw in this scheme?
b. Illustrate your answer with an example.

4. In this problem we shall compare the security services that are provided by digital signatures (DS) and message authentication codes (MAC). We assume that Oscar is able to observe all messages sent from Alice to Bob and vice versa. Oscar has no knowledge of any keys but the public one in case of DS. State whether and how DS and MAC protect against each attack. The value auth (x) is computed with a DS or a MAC algorithm, respectively.

a. (Message Integrity) Alice sends a message x = "Transfer $1000 to Mark" in clear text and also sends auth (x) to Bob. Oscar intercepts the message and replaces "Mark" by "Oscar". Will Bob detect this?
b. (Replay) Alice sends a message x = "Transfer $1000 to Oscar" in clear text and also sends auth (x) to Bob. Oscar observes the message and signature and sends them 100 times to Bob. Will Bob detect this?
c. (Sender Authentication with cheating third party) Oscar claims that he sent some message x with auth (x) to Bob, but Alice claims the same. Can Bob clear the question in either case?
d. (Authentication with Bob cheating) Bob claims that he received a message x with a valid signature auth (x) from Alice (e.g., "Transfer $1000 from Alice to Bob") but Alice claims she has never sent it. Can Alice clear this question in either case?

5. Users A and B use the Diffie-Hellman algorithm to exchange a shared key and generate public keys of their own. Consider a common prime number q=71 and α (a primitive root of q) =7. Determine the following:
a. If user A has private key=5, what is A's public key?
b. If user B has private key=12, what is B's public key?
c. What is the shared key?
Show the full working process of your work in at least three steps in both encryption and decryption.

6. Answer the following in relation to a scenario where Bob and Alice use Kerberos for mutual authentication:
a. When Bob receives a ticket from Alice, how does he know it is genuine?
b. When Bob receives a ticket from Alice, how does he know it came from
Alice?
c. Alice receives a reply; how does she know it came from Bob (and that it is not a reply of an earlier message from Bob)?
d. What does the ticket contain that allows Alice and Bob to talk securely?


Attachment:- Assignment-1-Specification.pdf

Reference no: EM13311393

Questions Cloud

Explain a galvanic (voltaic) cell consists of an electrode : 5 Stars for showing work. A galvanic (voltaic) cell consists of an electrode composed of zinc in a 1.0 M zinc ion solution and another electrode composed of gold in a 1.0 M gold(III) ion solution
The formulation of accounting standards : Why should share prices have a greater reaction to the profit announcements released by small firms compared with those released by large firms? Do you think this research has any implication for 'measurement' issues in accounting or for the f..
Calculate elaine''s current basis in her partnership interest : Calculate Elaine's current basis in her partnership interest.
Explain bond reactions in a complete methane combustion : How do you estimate energy change using bond reactions in a complete methane combustion
Is there a flaw in this scheme : Information & Network Security. Alice and Bob agree to communicate privately via email using a scheme based on RC4, but they want to avoid using a new secret key for each transmission.
How to calculate the heat of fusion of this solid : You take 306.5 g of a solid at 30.0 C and let it melt in 400. g of water. The water temperature decreases from 85.1 C to 30.0 C. Calculate the heat of fusion of this solid.
Find the spacing between the planes of the crystal : An x-ray beam with wavelength 0.210nm is directed at a crystal. As the angle of incidence increases, find the spacing d between the planes of the crystal
Why are ethics such an important part of business : 1. Why are ethics such an important part of business?
Estimate the change in entropy of the room : Suppose you make a cup of tea with boiling water straight from a kettle, but then the phone rings, Estimate the change in entropy of the room during the cooling of the tea

Reviews

Write a Review

Computer Engineering Questions & Answers

  Explain how css are used in developing websites

explain how CSS are used in developing websites.

  Writing program for rectangle

Write down a program that asks for the length L and the width W of a rectangle, then compute the perimeter and area of the rectangle. Perimeter = (length + width) * 2

  What are the types of new ethernet equipment

An older network using 10baseT technology needs an upgrade. The network contains a total of 220 workstations and 10 servers and has a network diameter of 300 meters. What type of new Ethernet equipment would you suggest be purchase to modernize th..

  Powerpoint 2010

Which among the following statement is TRUE regarding the PowerPoint 2010? Provide the answer providing the reson:Any PowerPoint presentation is saved with a .ptt extension after filename.

  Determinining possible roots of equation

Utilize the Bisection Method in order to determine the first possible root of the following given functions: execute in fifteen (10) iterations/cycle. Present your tabulated solution or spread.

  Cellular network

Calculate how many users a cell may support for a 5% call blocking rate. Suppose that each user generates 35mE of load in the busy hour.

  Which sort of graphic is the right choice, vector or bitmap

When your boss or client hands you a job, how would you make the determination which type of graphic is the right choice, Vector or Bitmap, in your response, define what parameter you would use and what variable you would have to weigh in your dec..

  A college course can have one or more scheduled sections

A college course might have one or more scheduled sections, or may not have a scheduled section. Attributes of COURSE include Course_ID, Course_Name, and Units.

  Program is internet based and it is expected to boost sale

Sunnyville Inc. is in the business of selling home appliances. Sunnyville Inc. has over 50 sales agents all over the country. The management at Sunnyville Inc. has decided to implement an online sales program. The new sales program is Internet bas..

  Give description on wireless communication

As an IT consultant, you have been tasked to implement wireless communication for a car company with about with 1500 associates. In four locations.

  Make a powerpoint presentation to share with the owner

A twenty year old company, SewWorld, comprised of six locations in three states, sells sewing machines, sewing related software, and accessories.

  Define the issues that arise from concurrency

examine the issues that arise from concurrency. What are the main concerns when multiple users have access to the same data? How does a DBMS handle these situations? What is locking? How is it resolved.

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd