Suppose that as part of Bob’s early (unsuccessful) experiment with cloud-based surveys, the authentication system allows the user to attempt 100 passwords per second, but the system locks when the authentication system has been open for 10 seconds, and the user must wait for a 5 second lockout period. The password Bob used is 4 digits in length, only digits 0 - 9 allowed. (a) Calculate the total amount of time required for the attacker to guarantee to guess, including delays and actual guessing time (b) Bob eventually adjusted his authentication system to make it more difficult using hashing and other techniques, but then he realized that Malice has been capturing the hashed passwords sent from his laptop to the cloud server for authentication, to try to replay the hashes i. Explain which basic external attacks Bob’s authentication system is vulnerable to and ... ii. how you will improve the system.
Suppose that as part of Bob’s early (unsuccessful) experiment with cloud-based surveys, the authentication system allows the user to attempt 100 passwords per second, but the system locks when the authentication system has been open for 10 seconds, and the user must wait for a 5 second lockout period. The password Bob used is 4 digits in length, only digits 0 - 9 allowed. (a) Calculate the total amount of time required for the attacker to guarantee to guess, including delays and actual guessing time (b) Bob eventually adjusted his authentication system to make it more difficult using hashing and other techniques, but then he realized that Malice has been capturing the hashed passwords sent from his laptop to the cloud server for authentication, to try to replay the hashes i. Explain which basic external attacks Bob’s authentication system is vulnerable to and ... ii. how you will improve the system.
Database System Concepts
7th Edition
ISBN:9780078022159
Author:Abraham Silberschatz Professor, Henry F. Korth, S. Sudarshan
Publisher:Abraham Silberschatz Professor, Henry F. Korth, S. Sudarshan
Chapter1: Introduction
Section: Chapter Questions
Problem 1PE
Related questions
Question
- Suppose that as part of Bob’s early (unsuccessful) experiment with cloud-based surveys, the authentication system allows the user to attempt 100 passwords per second, but the system locks when the authentication system has been open for 10 seconds, and the user must wait for a 5 second lockout period. The password Bob used is 4 digits in length, only digits 0 - 9 allowed.
-
(a) Calculate the total amount of time required for the attacker to guarantee to guess, including delays and actual guessing time
(b) Bob eventually adjusted his authentication system to make it more difficult using hashing and other techniques, but then he realized that Malice has been capturing the hashed passwords sent from his laptop to the cloud server for authentication, to try to replay the hashes
i. Explain which basic external attacks Bob’s authentication system is vulnerable to and ...
ii. how you will improve the system.
Expert Solution
This question has been solved!
Explore an expertly crafted, step-by-step solution for a thorough understanding of key concepts.
This is a popular solution!
Trending now
This is a popular solution!
Step by step
Solved in 2 steps
Knowledge Booster
Learn more about
Need a deep-dive on the concept behind this application? Look no further. Learn more about this topic, computer-science and related others by exploring similar questions and additional content below.Recommended textbooks for you
Database System Concepts
Computer Science
ISBN:
9780078022159
Author:
Abraham Silberschatz Professor, Henry F. Korth, S. Sudarshan
Publisher:
McGraw-Hill Education
Starting Out with Python (4th Edition)
Computer Science
ISBN:
9780134444321
Author:
Tony Gaddis
Publisher:
PEARSON
Digital Fundamentals (11th Edition)
Computer Science
ISBN:
9780132737968
Author:
Thomas L. Floyd
Publisher:
PEARSON
Database System Concepts
Computer Science
ISBN:
9780078022159
Author:
Abraham Silberschatz Professor, Henry F. Korth, S. Sudarshan
Publisher:
McGraw-Hill Education
Starting Out with Python (4th Edition)
Computer Science
ISBN:
9780134444321
Author:
Tony Gaddis
Publisher:
PEARSON
Digital Fundamentals (11th Edition)
Computer Science
ISBN:
9780132737968
Author:
Thomas L. Floyd
Publisher:
PEARSON
C How to Program (8th Edition)
Computer Science
ISBN:
9780133976892
Author:
Paul J. Deitel, Harvey Deitel
Publisher:
PEARSON
Database Systems: Design, Implementation, & Manag…
Computer Science
ISBN:
9781337627900
Author:
Carlos Coronel, Steven Morris
Publisher:
Cengage Learning
Programmable Logic Controllers
Computer Science
ISBN:
9780073373843
Author:
Frank D. Petruzella
Publisher:
McGraw-Hill Education