Skip to main content

Web Application Security.

This project focuses on Web Application Security.
You are going to pick a Web Application threat then design a website which is vulnerable to that threat and demonstrate a successful attack scenario on your website.
Take a look at http://nsw-edu.com/sqlinjection.php I created this just for you within a couple of hours so you can better understand the goals of this project.
The page consists of a simple control menu (Show Table, Show Attack, Reset). Follow a similar simple template for this menu.
Then there is an iframe which loads the vulnerable login page with the vulnerable web application. In my case I have chosen SQL Injection but you can choose any of the major Web Application threats such as Cross-site Scripting. XSS, Session Hijacking, Invalidated redirects and forwards, Missing Function Level Access Control etc.
Go ahead and test the attack scenario on the test page. You will be able to successfully login using SQL injection. You might even try deleting the entire customers table. That's why I have added a reset button which recreates and populates the table.
Host your application and website on the web. Come up with one or multiple attack scenarios which can be actually tested on your website. Add a Reset button to the control menu to make sure the changes can be reverted for multiple testing.
Have all of this in one single interface. Just like the one I did (The control menu is on top and the test login page is loaded on the same page in an iframe)
Technically you will be creating an online penetration testing lab for a specific vulnerability of your choice.
Demonstrate your work on week 11 and 12 with successful attack scenario. Explain why the webpage is vulnerable and how to fix the code. Email me the URL and the scripts you wrote as a zip file.
This project will be 60% and it is the only assessment for you beside the exam which is 40%. You will complete this project individually.
  •  GET THIS PAPER COMPLETED FOR YOU FROM THE WRITING EXPERTS  CLICK HERE TO ORDER 100% ORIGINAL PAPERS AT PrimeWritersBay.com

    Comments

    Popular posts from this blog

    Identify and discuss a key milestone in the history of computers that interests you and why.

      Part 1Title: Lab ResponseDiscuss one feature of MS Word and one feature of MS Excel that you found challenging within the lab and why. Examples are WordArt, inserting shapes, adding borders, cell styles, etc. This response should be at least one paragraph in length. Part 2Title: History of Computers Identify and discuss a key milestone in the history of computers that interests you and why. This section should be at least one paragraph. Part 3Title: System Software vs. Application Software In your words, explain the difference between application software and system software as if to another coworker who has limited technical knowledge. Use examples to support your rationalization. This section should be at least two paragraphs. Part 4Title: Blockchain and Cryptocurrency In a minimum of one paragraph each: 1. Conduct some research on the internet and discuss one underlying technology of cryptocurrencies like blockchain, cryptography, distributed ledger technol...

    Cybersecurity and Infrastructure Security (CISA)

     Develop a research paper that identifies a specific Department of Homeland Security (DHS) operating agency. Fully describe 1 DHS operating agency from the following list: Cybersecurity and Infrastructure Security (CISA) U.S. Customs and Border Protection (CBP) U.S. Citizenship and Immigration Services (USCIS) Federal Emergency Management Agency (FEMA) U.S. Coast Guard (USCG) U.S. Immigration and Customs Enforcement (ICE) U.S. Secret Service (USSS) Transportation Security Administration (TSA) The information must include a discussion of the selected DHS agency. Identify the agency’s mission, goals, objectives, and metrics. Conduct an analysis of how these mission areas address the threats or challenges. Recommend agency program priorities among the current set of goals, objectives, metrics, or budget items. Justification of all choices is an essential element of this assignment. Reference all source material and citations using APA format. WE OFF...

    You have been given the t

    PPMP20009 Leading Lean Projects Term 2, 2018 Page 1 of 3 Assessment 1 (Individual Work – 40%) Case study: Managing Lean Project Introduction You have been given the task to organise the FIFA 2018 World Cup football tournament ( https://ift.tt/2If0UDE ). (For those not familiar with football, you may change the event to the recently concluded 2018 Gold Coast Commonwealth Games: https://gc2018.com/ ). Your tasks This assessment item requires you to work INDIVIDUALLY. 1. As the project manager in charge of delivering such as an important world sporting event: i. Identify and elaborate the following terms with regards to the event. a. Voice of the Customer (VOC) b. Critical to Customer Requirements (CCR) c. Critical to Quality parameters (CTQ) ii. In what ways would you have implemented lean project management for this event? Identify and elaborate processes from PMBOK, PRINCE2, Organisational Project iii. Management Agile Practices and Lean Six Sigma (DMAIC Me...