Penetration testing & vulnerability assessments

Assignment Help Basic Computer Science
Reference no: EM13690745

Topic 1: Advanced and Persistent Threats

One of the biggest risks that companies face is advanced persistent threats. Discuss the most effective way to implement policies that mitigate the chance of an insider either taking part in or facilitating an advanced persistent threat.

What policies can help manage the insider threat for an organization's supply-chain companies, or the organization's off-shore contractors?


Integrate the concept of separation of duties into your discussion.

Topic 2: Mandiant Report

On Feb. 19, 2013 Mandiant released a report alleging that a specific Chinese military unit is behind one of the largest cyber espionage and attack campaigns aimed at American infrastructure and corporations. Public understanding of Advanced Persistent Threats (APT) is weak, attribution remains difficult, and cyberattacks are often dismissed as criminal or peripheral to national security. This carefully-researched report is significant because it convincingly and publicly assigns attribution for ongoing cyber espionage to groups supported by China. By publishing, Mandiant hopes that -

(a) this report will lead to increased understanding and coordinated action in countering APT network breaches; and

(b) its resulting exposure and discussion may thwart APT activities.

Discuss whether Mandiant's two desired outcomes above are likely to occur.

Topic 3: EMP and Solar Weather

While the daily news contains a wealth of information about vulnerabilities, threats, and hackers, there are still several national cybersecurity concerns about which little is known by the general public. Electromagnetic pulse (EMP) is described by several experts as a low-probability, high-effect event. First, read the journal article by Dan Dickerson: "No Defense: America's Growing Vulnerability to an EMP Attack." Another low-probability, high-effect threat are "Coronal Mass Ejections, more commonly known as Solar Flares. Our own sun goes through an eleven-year Sun Spot cycle, with the next maximum Solar Flare activity predicted to occur between 2013-2014. An "EMP" spike, or either a "Coronal Mass Ejection" magnetic field, can each disrupt or permanently disable power lines and computer circuitry. They can each fry transformers or overheat transistors. When an EMP event, or a Solar Flare, involves enough high energy, the resulting damage to electronic equipment may be so severe that a re-boot or re-start may not be possible. The equipment is trashed. The DOD, and possibly other countries are currently studying design for new energy weapons that can direct EMP against enemy computers.

After reading the EMP article, discuss with your classmates your opinion about the likelihood of an EMP attack by an adversary, or the likelihood of a Solar Flare that could permanently damage much of our sensitive electronic infrastructure equipment.

Answer these questions:

(1) to what degree should US policy makers should be concerned about a high-effect, low-probability EMP attack, or a powerful Solar Weather event?
(2) describe measures that may mitigate damage to the US power grid; and
(3) measures individuals can take to mitigate the consequences to their personal electronic equipment.


Topic 4: Penetration Testing & Vulnerability Assessments

As new technology becomes adopted by organizations, standards must also adapt to meet the change. What new standards should be adopted for penetration testing to assess vulnerability for mobile devices in the growing BYOD (Bring Your Own Device to work) environment?

Reference no: EM13690745

Questions Cloud

Draw the substitution products for the reaction : Question- Draw the substitution products for the following reaction, assuming that the reaction is carried out under SN2 conditions. If the products can exist as stereoisomers, show what stereoisomers are formed-
What is the maximum magnification of your microscope : You are building a compound microscope with an objective lens of focal length 1.40cm and an eyepiece lens of focal length 5.0 cm. You mount the lenses 18cm apart. What is the maximum magnification of your microscope
What frequency should be used : An AC series circuit contains a resistor of 20?, a capacitor of 0.75 ?F and an inductor of 120mH. What frequency should be used to create a resonance condition in the circuit
The dipole moment of formaldehyde : Question- The dipole moment of formaldehyde is approximately 2.3 Debyes, whereas the dipole moment of carbon monoxide is only approximately 0.1 Debyes. Give a brief explanation of this difference
Penetration testing & vulnerability assessments : Penetration Testing & Vulnerability Assessments
Compute what is its initial temperature : Assume all temperatures to be exact. A 5.20-g pellet of aluminum reaches a final temperature of 78 degrees C when gaining 200J of heat. What is its initial temperature
Draw the structure of the major organic product : Question- Draw the structure of the major organic product you would expect from the reaction of 1-bromopropane with NaCN.
Compute what is the wavelength of the light : A multi-slit diffraction contains 4000 lines/cm or a slit separation of 2.5um. If the third bright fringe occurs at an angle of 30 degrees from the principles maximum what is the wavelength of the light
Bond-pair repulsion is maximum for the c-h bonds : Question- If bond-pair bond-pair repulsion is maximum for the C-H bonds in CH3X,? All bond angles is 450o for CH3X

Reviews

Write a Review

Basic Computer Science Questions & Answers

  Limit approach to determine the order

Use the limit approach to determine the order for g(n) = n^J and f(n) = n^k, where k > j > 2

  List and describe three guidelines for sound policy

List and describe briefly the three guidelines for sound policy, as stated by Bergeron and Bérubé. Are policies different from standards? In what way? Are policies different from procedures? In what way?

  Optimizes processing large amounts of data

Businesses today are extremely reliant on large amounts of data for making intelligent business decisions. Likewise, the data warehouses are often structured in a manner that optimizes processing large amounts of data.

  Show that the regular sets are not closed

Exhibit an algorithm that detects whether one finite automaton accepts a subset of the set accepted by another machine. Show that this procedure works.

  Prove or disprove: every increasing function

Prove or disprove: every increasing function

  Evaluates and makes recommendations to address

Evaluates and makes recommendations to address differences in ethical codes of information technology conduct in different cultures in a very clear and detailed way.

  Describe a situation where dynamic memory allocation

Describe a situation where dynamic memory allocation might be required in order to make efficient use of your computer's resources. Also describe the precautions that your program should take for the correct and efficient implementation of dynamic..

  Use xml and retrieve the stored data using dom parser

project that requires me to use XML and retrieve the stored data using DOM parser. I have it written to the point that it writes regular equations no problem. But I want to include graph using images in the form of JPEG.

  How to deal with each type of known attack

Include Denial of Service attacks, Spoofing, Replays, TCP Session Hijacking, and Attacks on Encrypted Data (such as passwords).

  How to understand the code perfectly without unclear steps

Finish the following hangman C++ program and make it run well as well as comment the program through to help me understand the code perfectly without unclear steps.

  Describe an it system which has transformed the way

discuss an it system that has transformed the way organizations in at least one field carry out work. note what

  Write recursive method returns true if string palindrom

A palindrome is a word that reads the same backward or forward. For ex- ample, radar, racecar, and level are palindromes.

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd