1answer.
Ask question
Login Signup
Ask question
All categories
  • English
  • Mathematics
  • Social Studies
  • Business
  • History
  • Health
  • Geography
  • Biology
  • Physics
  • Chemistry
  • Computers and Technology
  • Arts
  • World Languages
  • Spanish
  • French
  • German
  • Advanced Placement (AP)
  • SAT
  • Medicine
  • Law
  • Engineering
saul85 [17]
3 years ago
14

Information flow is a useful mechanism that can enforce a variety of security policies that are hard to describe in simple acces

s control lists. Describe how you can use information flow as a building block to catch the following attacks or vulnerabilities. Please specify the information sources and sinks that one should track (1 point * 3): 1. A buffer overflow attack that overwrites a function pointer. 2. Link following attack where a victim process reads a file from an attacker-controlled directory. 3. Skype app on Android accidentally stores the password in plaintext in a file that's accessible to everyone.
English
1 answer:
I am Lyosha [343]3 years ago
3 0

Answer / Explanation

For proper clarity, we redefine information flow as the navigation of data between humans and systems.

A proper and well secured mode of movement of information or data flow information flow is a critical factor when considering the performance of a process, decision making and in communications. The following are common types of information flow.

It should also be noted that the advantages of an information flow process can not be over emphasized.

Referring back to the question where we are being asked to describe how information flow serve as a building block to curb attacks can also point back to some of its advantages.

(1) Buffer Overflow attack: This can be described as an abnormal behaviour where a program while writing data or transferring data to a buffer exceeds the buffer's boundary and overwrites to adjacent memory locations which may result in abnormal program behavior including memory access errors, incorrect results, and crashes.  We should also understand that buffers are allotted areas of memory set aside to hold data, often while moving it from one section of a program to another, or between programs. Thus, information flow helps to curb the buffer overflow attach by setting a boundary limit in the process of transfer of communication between the program and the buffer therefor casing a stoppage in the overwrite process of a buffer overflow.

(2)  This can be likened to the page catch attack or Directory Traversal Attacks  where an attacker is are able to traverse out of the current directory into parent directories usually by supplying a series of “../” (dot dot slashes). Sometimes it is possible to back out of the root directory of the Web server and traverse into other directories on the file system. Typically, directory traversal attacks allow the attacker to access or overwrite files that are not intended to be accessible. Now to link the attack, it should be noted that the attacker tries to overwrite the buffer therefore intentionally creating a loophole in the program. Thus, by implementing the information flow, we can also curb this.

(3) This can be likened to the aforementioned process. If passwords are accidentally stored in a location where it is accessible to everyone, then it posses a risk of it being hacked or the password being changed. However, to prevent this, we can simply make use of the clear catch or clear buffer catch process, this way, we are sure of the security of the transfer of data which also streamlines it down to one of the functionality of the information flow process.

You might be interested in
Which form does a verb take to express a hypothetical situation?
Cloud [144]
I think you are right. The form verbs take to express a hypothetical or possible situation.
5 0
3 years ago
What do the pillowing lines illustrate about the momento morí theme of the play Everyman?
mina [271]

brainly.com/question/1164126
<span />


8 0
3 years ago
What is English words in Spain
Ludmilka [50]

Answer:

Below is a list of 15 English words loaned from Spanish with their meaning and etymological origin.

Breeze.

Ranch.

Guerrilla.

Patio.

Stampede.

Macho.

Cockroach.

Avocado.

Explanation: i dont know if this is what you mean?

8 0
2 years ago
When did muir invent a unique form of alarm clock? a. while the family still lived in scotland. b. after he sailed to san franci
Nataly [62]

Answer:D

Explanation:

8 0
2 years ago
Correct choice for arteries found in the man circulatory system answer please​
sweet [91]

Answer:

The largest artery is the aorta, which connects to the heart and picks up oxygenated blood from the left ventricle. The only artery that picks up deoxygenated blood is the pulmonary artery, which runs between the heart and lungs.

Explanation:

8 0
3 years ago
Other questions:
  • Is the example a complete sentence, sentence fragment, or run-on sentence?
    8·1 answer
  • PLEASE HELP MAKE BRAINLIST Using your SSR book, you will write what your character would be doing during this pandemic cornoa 19
    13·1 answer
  • Why does friar Lawrence agree to marry Romeo and Juliet
    7·1 answer
  • (Hunger Games) Explain the conflict Katniss feels while she waits for the sixty seconds to end?
    14·1 answer
  • A break in Earths crust ?
    6·2 answers
  • Does Lasse Viren, the runner, have siblings? If yes, write down the all the names.
    15·1 answer
  • My alarm clock did not go off. &gt; The bus arrived one hour ago. &gt; ?
    7·2 answers
  • 9. The monster vows revenge against humankind after he
    6·2 answers
  • pls dont delete will mark brainilest Which detail from the text best supports the opinion that Frida Kahlo was a confident woman
    10·1 answer
  • If you could give advice to King Duncan about going to Macbeth's home, what would you say?
    13·2 answers
Add answer
Login
Not registered? Fast signup
Signup
Login Signup
Ask question!