Research and report on a security vulnerability or attack, related to a particul
ID: 3757172 • Letter: R
Question
Research and report on a security vulnerability or attack, related to a particular organization (not a fictitious organization), that has occurred within the last 24 months or that could occur on the protocols used at each layer with in OSI model. Provide the name of the organization and discuss the following in your initial post to the class:
Explain the nature of the attack or vulnerability that caused the breach.
Identify pieces of hardware that were affected. Explain your answer.
Identify software that was affected. Explain your answer.
Identify processes that were affected. Explain your answer.
Identify protocols that were affected. Explain your answer.
Identify applications that were affected. Explain your answer.
Identify any people who were affected. Explain your answer.
Identify whether confidentiality, integrity, and/or availability was affected. Explain your answer.
It may be necessary for you to make theoretical estimates about the damage that was done or could have been done. Use the OSI model to explain how a pack traverses a host and a network and how a user gets into a network. Mere references will not tell the entire story; be sure to provide explanations. You should, however, properly cite any outside sources.
Explanation / Answer
Answer)
A security vulnerability attack example is as follows:
Faxploit :
It involved a stack overflow vulnerability while implementing the fax protocol in all the specified version of OfficeJet printers. It becomes overloaded and gets crashed which can help the attackers gain access.
It has affected many fax machines and hijacked the systems and networks connected.
Software and networks were affected by the help of EternalBlue which hacked the systems and stole the data.
The fax, printing process and networking/router were badly affected.
The Fax protocol and FTP were affected because of this. As the file transfer is needed for printing and transferring file and Fax is used as a whole for the transmission process.
Reporting, Printing applications got affected because of the above reasons as it got overloaded.
The number of people affected is huge as it has affected the fax devices.
Yes, the integrity, confidentiality, and availability got affected as the sensitive data got leaked because of the overloading in the fax devices.
The estimation was huge but HP released the patches for such vulnerability and users were recommended to apply the firmware updates. It was the Transport Layer which affected the systems.
Apologies for not providing the references/URL/sources as it is against the Chegg Policy.
Hit like if you find the answer useful. :)
Hope this answer helps. Thanks
Related Questions
drjack9650@gmail.com
Navigate
Integrity-first tutoring: explanations and feedback only — we do not complete graded work. Learn more.