(a) Draw an attack tree showing some of the ways in which a mail server might be attacked. Your attack tree should have two levels below the root and should have at least three attack paths representing different types of attack. [4 marks]
Added by Xavier R.
Close
Step 1
The tree should have two levels below the root and at least three attack paths. Show more…
Show all steps
Your feedback will help us improve your experience
Akash M and 101 other AP CS educators are ready to help you.
Ask a new question
Labs
Want to see this concept in action?
Explore this concept interactively to see how it behaves as you change inputs.
Key Concepts
Recommended Videos
Part 1: Explore and Identify security threats [Up to 40 points] In the network diagram below, identify at least four major areas which are needed to prevent cyber attacks. Part 2: Proposed solution [Up to 110 points] With the improvement list which you provide in part 1: A. Provide proposed solutions to the above issues [70 points] B. Provide an updated Network diagram for the above solution [40 points]
Akash M.
Scenario You work for a PR and marketing company that handles highly sensitive information for its high-profile clients. Client records are stored in a database and file system hosted on your private corporate network. As well as client records, this includes media such as photos and videos. Most remote client communications and data transfers take place using a one-to-one encrypted messaging app, but you also accommodate some clients who prefer to use email. A high percentage of your staff work remotely, accessing data and services over a VPN. You are reviewing your security procedures in the light of some high-profile hacks of celebrity data. At this point, you want to understand the attack surface and attack vectors by which your private network could be compromised. 1. What remote access methods could an attacker exploit? 2. Focusing on email, think of how email is processed as it is sent by a remote user and received by your company. What are the attack vectors against the company's email servers? How can these be related to adversary capability, assuming the levels to be advanced (most capable), developed, and augmented (least capable)? 3. What comes next in the chain of processing incoming email, and what attack vectors can adversaries exploit? 4. What countermeasures can be deployed for each email attack vector?
Supreeta N.
Web/FTP Business Domain Mail Server VPN Server Server Servers Controller Secondary Users Historian Workstations The Internet Corporate Network Control Network accessible Directly from business network Data Acquisition Database Server Primary Configuration Server Server Historian Workstations Users Control System Network Field Controllers Safety System Vendors AMI Terminal Server Field Devices Modem Bank
Recommended Textbooks
Computer Science and Information Technology
Introduction to Programming Using Python
Computer Science - An Overview
Transcript
Watch the video solution with this free unlock.
EMAIL
PASSWORD