Introduction to information security.

profileRazan abd
intro_to_information_security.docx

IS 231 Assessment Type: Assignment # 2

Course code & number

IS 231

Course Title

Introduction to Information Security

Assignment Title

Authentication and Identification

Hand Out Date

December 6th 2016

Hand In Date

December 17th 2016 at 11:59 pm

Sources of Information

1. Lecture notes and/or power point slides

2. Prescribed learning textbooks available on Safari database

To be filled by the student:

Student Name

Instructor

Student ID

Course code & section no.

Assignment Requirements

· An electronic copy of your assessment must be fully uploaded to blackboard by the deadline date and time.

· You must submit one single PDF or MS Office Word document. Any relevant images or screenshots must be included within the same MS Office Word or PDF document.

· The file size must not exceed 20MB.

· Answer the criteria in order, clearly indicating the CRITERIA number.

· Ensure that all work has been proof-read and checked prior to submission.

· Ensure that the layout of your documents are in a professional format with font style Arial, font size 12 for the text, font 14 for sub heading and font 16 for main heading, line spacing 1.5 and justified.

· Use the Harvard referencing system and provide references [e.g. (Smith, 2011)] within the text and an entry in a references list. Otherwise it will be considered as plagiarised work.

· Ensure that your back-up your work regularly and apply version control to your documents.

· Ensure that any file you upload is virus-free, not corrupted and not protected by a password otherwise they will be treated as a non-submission.

· Your work must be original with the appropriate referencing

What is Plagiarism:

Plagiarism is presenting somebody else’s work as your own. It includes: copying information directly from the Web or books without referencing the material; submitting joint coursework as an individual effort; copying another student’s coursework; stealing or buying coursework from someone else and submitting it as your own work. Suspected plagiarism will be investigated and if found to have occurred will be dealt with according to the procedures set down by the School.

Any student for whom it has been proved that they have plagiarised the work of others will be subject to the School's disciplinary procedures which could result in them being dismissed from their course of study

Your work will be submitted for electronic plagiarism checking. Any attempt to bypass our plagiarism detection systems will be treated as a severe Assessment Offence.

Question 1: (Authentication)

Bypassing Two-Factor Authentication on Outlook Web Access

1. Read the online article with the above title at: http://www.cyberdefensemagazine.com/bypassing-two-factor-authentication-on-outlook-web-access/

2. Discuss the two-factor authentication and how it has been violated in the above article.

3. Discuss your suggested solution to overcome this problem

In answering this question, you will have covered the following learning outcomes:

· Authentication

· Two-Factor (Multifactor) Authentication

· Authentication Factors

Question 2: (malware and vulnerabilities)

Android app security tested by malware and vulnerabilities

1. Read the online article with the above title at:

http://searchsecurity.techtarget.com/news/450404096/Android-app-security-tested-by-malware-and-vulnerabilities

2. Discuss the main problem in the above article

3. As an information security specialist; what would you suggest to solve the above problem

In answering this question, you will have covered the following learning outcomes:

· Security tests

· Malware

· Vulnerabilities

1