1answer.
Ask question
Login Signup
Ask question
All categories
  • English
  • Mathematics
  • Social Studies
  • Business
  • History
  • Health
  • Geography
  • Biology
  • Physics
  • Chemistry
  • Computers and Technology
  • Arts
  • World Languages
  • Spanish
  • French
  • German
  • Advanced Placement (AP)
  • SAT
  • Medicine
  • Law
  • Engineering
saul85 [17]
3 years ago
14

Information flow is a useful mechanism that can enforce a variety of security policies that are hard to describe in simple acces

s control lists. Describe how you can use information flow as a building block to catch the following attacks or vulnerabilities. Please specify the information sources and sinks that one should track (1 point * 3): 1. A buffer overflow attack that overwrites a function pointer. 2. Link following attack where a victim process reads a file from an attacker-controlled directory. 3. Skype app on Android accidentally stores the password in plaintext in a file that's accessible to everyone.
English
1 answer:
I am Lyosha [343]3 years ago
3 0

Answer / Explanation

For proper clarity, we redefine information flow as the navigation of data between humans and systems.

A proper and well secured mode of movement of information or data flow information flow is a critical factor when considering the performance of a process, decision making and in communications. The following are common types of information flow.

It should also be noted that the advantages of an information flow process can not be over emphasized.

Referring back to the question where we are being asked to describe how information flow serve as a building block to curb attacks can also point back to some of its advantages.

(1) Buffer Overflow attack: This can be described as an abnormal behaviour where a program while writing data or transferring data to a buffer exceeds the buffer's boundary and overwrites to adjacent memory locations which may result in abnormal program behavior including memory access errors, incorrect results, and crashes.  We should also understand that buffers are allotted areas of memory set aside to hold data, often while moving it from one section of a program to another, or between programs. Thus, information flow helps to curb the buffer overflow attach by setting a boundary limit in the process of transfer of communication between the program and the buffer therefor casing a stoppage in the overwrite process of a buffer overflow.

(2)  This can be likened to the page catch attack or Directory Traversal Attacks  where an attacker is are able to traverse out of the current directory into parent directories usually by supplying a series of “../” (dot dot slashes). Sometimes it is possible to back out of the root directory of the Web server and traverse into other directories on the file system. Typically, directory traversal attacks allow the attacker to access or overwrite files that are not intended to be accessible. Now to link the attack, it should be noted that the attacker tries to overwrite the buffer therefore intentionally creating a loophole in the program. Thus, by implementing the information flow, we can also curb this.

(3) This can be likened to the aforementioned process. If passwords are accidentally stored in a location where it is accessible to everyone, then it posses a risk of it being hacked or the password being changed. However, to prevent this, we can simply make use of the clear catch or clear buffer catch process, this way, we are sure of the security of the transfer of data which also streamlines it down to one of the functionality of the information flow process.

You might be interested in
Read the excerpt from The Odyssey.
nata0808 [166]

Answer:

A and B

Explanation:

A shows the reason the storm has taken place, which is what the excerpt is all about.

B shows how long it lasted which highlights the anger which Zeus felt which led him to punish the sailors with such a long storm.

3 0
3 years ago
For Odysseus and his men, the loss of Helios, the sun, symbolizes a loss of
gizmo_the_mogwai [7]

Answer:

Power

Explanation:

For Odysseus and his men, Helios, the sun symbolized light. So, the loss of Helios meant loss of light from the world. Odysseus is a Greek mythological hero who was the king of the island of Ithaca and the main protagonist of Homer's epic

6 0
3 years ago
Read 2 more answers
The past of BUY is _____ and the past participle is (have)____.​
White raven [17]

Answer:bought and had

Explanation:

4 0
3 years ago
Read the poem "Death, Be Not Proud" again and look for instances of apostrophe, metaphor, and personification in the poem. Write
Alika [10]
Well here is an idea you can write a summary about the author and about the poem
4 0
3 years ago
Which detail from the excerpt is the best evidence to support the thesis? The group traveled up the Nile in two boats, stopping
Alja [10]

Answer: D. Champollion wrote in his journal: "At last I have visited the palace, or rather the city, of monuments, Karnak. . . . No nation on earth, ancient or modern, has ever conceived architecture on so noble and vast a scale. . . ."

Explanation:

The detail from the excerpt that is the best evidence to support the thesis will be option D "Champollion wrote in his journal: "At last I have visited the palace, or rather the city, of monuments, Karnak. . . . No nation on earth, ancient or modern, has ever conceived architecture on so noble and vast a scale. . . ."

This can be seen in the excerpt and really doesn't need an explanation.

4 0
3 years ago
Other questions:
  • Why do readers take notes? Check all that apply.
    12·2 answers
  • Read this passage from The Odyssey:But since we chanced on you [Cyclops], we're at your kneesin hopes of a warm welcome, even a
    12·2 answers
  • Which type of propaganda technique involves showing people doing every day things?
    8·2 answers
  • How does the section “World War I” contribute to the main idea of the text (Paragraphs 4-5)?
    9·2 answers
  • Which sentence uses parentheses correctly? A) My computer (which apparently hates me) has frozen up again. B) David and Jonathan
    14·1 answer
  • "No wind had blown for weeks, and each bough was fully freighted. Each time he had pulled a twig he had communicated a slight ag
    7·2 answers
  • Which sentence correctly uses an adjectival phrase?
    6·1 answer
  • Make a poem (3-5 stanza) about fighting for your lover because your parents don’t want you to be together because your lover is
    5·1 answer
  • Describe the ways in which the socioeconomic class to which a person living in Elizabethan England belonged could be determined.
    9·1 answer
  • Prepare a qualitative research tool to be used in a particular research topic.
    10·1 answer
Add answer
Login
Not registered? Fast signup
Signup
Login Signup
Ask question!