Academic Integrity: tutoring, explanations, and feedback — we don’t complete graded work or submit on a student’s behalf.

In an arbitrary web application, user access is handled by three security mechan

ID: 3745578 • Letter: I

Question

In an arbitrary web application, user access is handled by three security mechanisms. Each mechanism has been reviewed and given a point score, a score of 0 means the mechanism is critically vulnerable, and a score of 5 means that the mechanism is compliant with the most current standards and best practices. 1. Authentication – Score of 3 2. Session management – Score of 1 3. Access control – Score of 5 What is the total overall security value of the application? (Use only a, b, c, d, or e as answer) a. 1 b. 5 c. 3 d. 0 e. 9

Explanation / Answer

According to me it is c.3

As it is said, a score of 0 means that the security mechanism of the web application is critically vulnerable and on the other hand a score of 5 means that the security mechanism is compliant with the most current standards and best practices.

In the case of this web application, the Authentication mechanism has a score of 3. This mechanism is really important as only authenticated users should be given access to the application. Since it has a score of 3 it cannot be confirmed that only authenticated users are given access. Authentication itself is not sufficient to protect data.

The next security mechanism which is Session Managment has the least score of 1. Session management is really important for a web application since the session should not get expired in between. It is also important to keep the server side state of the user's interaction with the application. Though the least score is 0, a score of 1 also means that the web application is critically vulnerable. The session values of a user are stored on the remote server. Since session management is critically vulnerable it is possible for an hacker to hack the session of a user.

The third security mechanism is Access Control which has the highest score of 5. Access control is important to authenticate and authorize the user to access the information they are allowed to see and use. Just like Authentication the main purpose of Access Control is to minimize the risk of unauthenticated access to confidential data. Since Access Control mechansim of this web application has the highest score of 5, it means that its Performance is Excellent.

So taking the above 3 security mechanims and their scores into consideration it can be said that the overall security value of the web application is c.3

Hire Me For All Your Tutoring Needs
Integrity-first tutoring: clear explanations, guidance, and feedback.
Drop an Email at
drjack9650@gmail.com
Chat Now And Get Quote