Reference no: EM132325559
Lab: Designing the Secure Database
SQL injection and cross-site scripting attacks are one of the most common threats to a database system. For example, web programs and applications that access the database can send command and data to the database and display data. In case of Cross-site scripting, applications should parse all input data and strip out delimiters and other data that could be a part of a scripting attack.
You have been hired as a database security consultant to review the web application to identify the SQL injection and Cross-site scripting attacks and report your finding along with your recommendations.
To perform the above task, you have the opportunity to download free Web application Vulnerability software to identify any SQL injection and Cross-site scripting attacks in the application.
Steps to complete the task:
Step 1: Go to URL
Step 2: Fill the form by entering your name and email address.
(Note: you need to provide a working email address because download link will sent to your email address)
Step 3: Go to your email, follow the direction and download the software along with license file)
Requirements:
Operating System: Window Vista or up (Not Window XP)
.Net Framework 4.5.2 (During the process of download, .Net Framework will be updated to 4.5.2 or software will download .Net framework, once your complete the download, restart the system )
Step 4: Double click the icon and add the license file
Step 5: Scan the following URL (Select one)
Turn-in:
Once you run the scans for the above websites. Analyze the report and develop a document by answering the following questions
1. Provide a screen shot of the reports
2. What types of SQL-Injection attack has been identified in the report
3. What will be the impact of SQL-Injection attack and your recommendation to prevent those attacks?
4. What types of Cross-side Scripting issues has been identified in the report and writes your recommendation to remedy those issues
Use the American Psychological Association (APA) style (6th edition) for writing your assignment.
See the Course Calendar for the due date.
Compose your work in a .doc or .docx file type using a word processor (such as Microsoft Word, etc.) and save it frequently to your computer. For those assignments that are not written essays and require uploading images or PowerPoint slides, please follow uploading guidelines provided by your instructor.
Attachment:- Lab Designing Secure Database.rar
|
Analyse the firms internal environment
: Discuss the rationale for the selection of your chosen market. Your rationale should be justified with a more detailed discussion of your PESTEL analysis
|
|
What amount of loss attributable to this rental real estate
: Cobb, an unmarried individual, had an adjusted gross income of $130,000 in 20x1 before any IRA deduction, taxable social security benefits, or passive activity.
|
|
All kinds is important facet of information literacy
: Using sources of all kinds is an important facet of information literacy and patient education. Sometimes, it's just easier to find video, animation, simulation
|
|
How should patrick value the duplex apartment building
: How should Patrick value the duplex apartment building? Support your response with generally accepted accounting principles.
|
|
What types of sql-injection attack has been identified
: What will be the impact of SQL-Injection attack and your recommendation to prevent those attacks - What types of Cross-side Scripting issues has been identified
|
|
Describe areas of your social media activity
: Based on the analysis of your social media, discuss what areas of your social media activity reflect Christian values as they relate to respecting human value.
|
|
Should he immediately withdraw from the engagement
: Should he immediately withdraw from the engagement without discussing it further? Should he tell Lisa that she must report the foreign trust and any related ?
|
|
Develop a pre-audit discussion proposal
: BSBAUD501 Initiate a Quality Audit Assignment, HBA Learning Centres, Australia. Learners are required to develop a pre-audit discussion proposal
|
|
What mistakes have already been made in the investigation
: Bernie wanted to confront Laurie immediately. He was convinced she would confess if he told her that he had evidence against her.
|