Question

Scenario Question: You are working for a security organization and have been asked to perform a...

Scenario Question: You are working for a security organization and have been asked to perform a pen test on your E-commerce server. Since you will be using Whitebox pen testing prepare a plan to carry out the required task.

0 0
Add a comment Improve this question Transcribed image text
Answer #1

ANSWER:

Plan for white box Pen testing:

1: White-box infiltration testing offers a large valuation of in cooperation inside and external weaknesses, making it the best selection for reckoning trying.

2: The close affiliation connecting white-box pentesters and designer are to blame for a towering level of classification information which might disturb tester’s comportments, seeing as they activate base on alertness not to be had to hackers.

Firstly start planning by   to identify as well as piece the exposure that would be misused in an foe.

Time administration the stage imperative role as of the huge sum of data on hand to pentesters require point in time to process.

talented with stationary analysis technique used in white pack testing need more put into live out to use tackle and do the psychotherapy.

Here we discuss the some requirement for setting up such as

3: essentially amass all internal arrangement complex in sequence worn for progress of Software and complex like in commission system, expertise, hardware, design etc .

calisthenics the all the weak Vulnerabilities and safety measures Risks

name the bullying/hackers .

organize and perform the plan designed for whitebox testing which addicted the less point in point in point and give effective answer.

Find absent the tools finest suitable for trying.

plan official manuscript which includes for stepladder and comprehensive justification .

several key points ought to be measured which is as chase:

4: Weak accomplishment of encryption algorithms

All bags of defenseless scripting

reasonable error within system

Weak authentication

knob the bumper spread out

Depending ahead the level of intricacy incursion testing allow identifying a open to web summon, supply code opinion permits pentesters to find vulnerabilities at the source level

in addition take care of subsequent equipment be obliged to be done

Firewalls and anti-virus scanners must live updated .

If an unsecure exploit is accepted out, there is a peril that the tested claim or structure strength of personality crash and furthermore fundamental papers might be overwritten/gone astray/delete.

In this glasses case, the dissemination tester should be guarded to only exercise steady scripts beginning unfailing sources before to do with testing the vulnerabilities.

Add a comment
Know the answer?
Add Answer to:
Scenario Question: You are working for a security organization and have been asked to perform a...
Your Answer:

Post as a guest

Your Name:

What's your source?

Earn Coins

Coins can be redeemed for fabulous gifts.

Not the answer you're looking for? Ask your own homework help question. Our experts will answer your question WITHIN MINUTES for Free.
Similar Homework Help Questions
  • As you being to perform the network-mapping phase of the scenario, you have been asked what...

    As you being to perform the network-mapping phase of the scenario, you have been asked what the difference between scanning and enumeration is. Take this opportunity to discuss the following: Describe the processes of scanning and enumeration. What do they entail, and what is the desired outcome? In addition, research and recommend at least 2 scanning and enumeration tools that your organization could use.

  • Scenario: While working in an organic lab, you have been asked to prepare 5.0 g of...

    Scenario: While working in an organic lab, you have been asked to prepare 5.0 g of 2,5-dichloro-2,5- dimethylhexane from 2,5-dimethyl-2,5-hexanediol. Draw the complete mechanism for the reaction. [2 Marks] When setting up the reaction above, is your starting material a solid or a liquid? [1 Mark]

  • The following returns have been estimated for Security T and Security S: Scenario Security T Security...

    The following returns have been estimated for Security T and Security S: Scenario Security T Security S 1 20% 10% 2 13% -6% 3 15% 20% Each scenario is equally likely to occur, and you plan to invest 70% in Security T and 30% in Security S. What is the expected return of the portfolio? Round your answer to the nearest tenth of a percent.

  • The following returns have been estimated for Security T and Security S: Scenario Security T Security...

    The following returns have been estimated for Security T and Security S: Scenario Security T Security S 1 20% 10% 2 13% -6% 3 15% 20% Each scenario is equally likely to occur, and you plan to invest 70% in Security T and 30% in Security S. What is the expected return of the portfolio? Round your answer to the nearest tenth of a percent. Group of answer choices 11.7% 12.0% 13.6% 14.0%

  • The following returns have been estimated for Security B and Security O: Scenario Security B Security O 1...

    The following returns have been estimated for Security B and Security O: Scenario Security B Security O 1 10% 0% 2 -3% 5% 3 14% 10% Each scenario is equally likely to occur, and you plan to invest 40% of your funds in Security B and 60% in Security O. What is the standard deviation of the rate of return of your portfolio? Round your answer to the nearest tenth of a percent. Group of answer choices 52.9% 4.2% 17.6%...

  • E-commerce Web sites impact many different areas of an organization—from sales, through accounting and manufacturing, to...

    E-commerce Web sites impact many different areas of an organization—from sales, through accounting and manufacturing, to shipping. The requirements phase is extremely important for the e-commerce Web site. The requirements phase allows you to gather a list of requirements from the external and internal users. This document will be very helpful to the development and testing team. For this project, you will be adding the Requirements section to your E-Commerce Implementation Plan document. Complete the following tasks: Include the following...

  • you are working for a major chemical company and you are asked to perform an Ames...

    you are working for a major chemical company and you are asked to perform an Ames test for a newly developed cleaner. if you were to use his His auxotrophic mutants for your Ames test, you would need to include a minimal amount of histidine in your plates. why is this necessary?

  • Assignment Details Scenario You have been asked to be the project manager for the development of...

    Assignment Details Scenario You have been asked to be the project manager for the development of an information technology (IT) project. The system to be developed will allow a large company to coordinate and maintain records of the professional development of its employees. The company has over 30,000 employees who are located in four sites: Florida, Colorado, Illinois, and Texas. The system needs to allow employees to locate and schedule professional development activities that are relevant to their positions. Sophisticated...

  • First, review the module resources and consider the following scenario: You have been asked to evaluate...

    First, review the module resources and consider the following scenario: You have been asked to evaluate whether your organization's current pay structure makes sense in view of what competing organizations are paying. In your initial post to the discussion, address the following: How would you determine what organizations to compare your organization with? From an internal perspective, what are the potential consequences of having a pay structure that is out of line relative to those of your competitors? Consider the...

  • Question 33 Which of the following is the primary security feature of a proxy server? Content...

    Question 33 Which of the following is the primary security feature of a proxy server? Content filtering Route Filtering URL blocking Route blocking Virus Detection Question 34 Joe, an employee, was escorted from the company premises due to suspicion of revealing trade secrets to a competitor. Joe had already been working for two hours before leaving the premises. A security technician was asked to prepare a report of files that had changed since last night's integrity scan. Which of the...

ADVERTISEMENT
Free Homework Help App
Download From Google Play
Scan Your Homework
to Get Instant Free Answers
Need Online Homework Help?
Ask a Question
Get Answers For Free
Most questions answered within 3 hours.
ADVERTISEMENT
ADVERTISEMENT