![]() |
CS205 ASSIGNMENT NO. 1 FALL 2022 |
KINDLY, DON’T COPY PASTE
CS205 ASSIGNMENT NO. 1 FALL 2022 || 100% RIGHT SOLUTION || INFORMATION SECURITY || BY VuTech
SEND WHATSAPP OR E-MAIL FOR ANY QUERY
0325-6644800
kamranhameedvu@gmail.com
Visit Website For More Solutions
www.vutechofficial.blogspot.com
Instructions: Please read the following instructions carefully before submitting assignment: You need to use MS Word document to prepare and submit the assignment solution on VU-LMS. It should be clear that your assignment will not get any credit if: § The assignment is submitted after due date. § The assignment is not in the required format (.doc or docx). § The submitted assignment does not open or file is corrupt. § Assignment is copied (partial or full) from any source (websites, forums, students, etc.). Objective: To enhance the learning capabilities of the students about: l Security Attacks l CIA triangle |
Question No.1
Suppose a well known hotel chain that operates across the world has reported a massive data breach in its online booking system. Security breaches today are very common, as attackers are constantly finding new and innovative ways of infiltrating organizations in search of valuable information.
The hotel management has faced the following issues / events:
1. Online booking interface of the system got crashed due to which the users remained unable to book the rooms online.
2. Customers of the hotel registered their complaints to the administration that their booking history is published on the online system which can be seen by anyone.
3. Some hackers have send too many fake login requests which causes the online system of the hotel unresponsive and customers were unable to book the room for whole day.
4. Hotel administration observed that the booking information of the customers on the online system of hotel was altered with some wrong information resulting in defamation of the hotel.
5. An unauthorized user logged into the hotel’s online system and changed the hotel menu and items prices.
As an Information Security officer, you are given a task to identify component of CIA Triad in each of the above mentioned issue which has been compromised in each of the event resulting in security issues.
Answer:
Component of CIA Triad in each of the above
mentioned issue which has been compromised in each of the event resulting in
security issues are as follows:
1.
Availability
2.
Confidentiality
3.
Availability
4.
Integrity
5. Integrity
Question No.2
Suppose e-Learning platforms are becoming prime target for attackers as more and more organizations are shifting towards the distance online learning. A popular online training platform has recently used a free public Cloud database storage service causing the student’s confidential information to be exposed publicly . Due to which students personal data is compromised.
What CIA component has been compromised by hackers in this case to gain access to valuable personal information? Justify your identified component with proper reason.
Answer:
CIA “ Confidentiality “component which means keeping secret or protecting secret, has been compromised by hackers in this case to gain access to valuable personal information
Question No.3
As you know Cyber attacks can originate from within an organization as well as from outside of it. Suppose Information security team of XYZ organization investigate and revealed that the user accounts and access privileges of a former employee were not fully removed from the IT systems on leaving the company.
In investigation
report, team has identified that this
former employee, who now works for a competitor, logged into this organization’s
customer database only three days ago.
You are required to identify that which type of security threat (Internal / external) has occurred for this organization in this case?
Answer:
In the above mentioned case “Internal Security Threat “ is occurred.
Best of Luck!
KINDLY, DON’T COPY PASTE
SUBSCRIBE, SHARE, LIKE AND COMMENTS FOR MORE UPDATES
SEND WHATSAPP OR E-MAIL FOR ANY QUERY
0325-6644800
kamranhameedvu@gmail.com